Privacy Policy.
Privacy Policy
Privacy Policy of
www.istituto-superiore-di-medicina.com
This Application collects some Personal Data of its Users. Data Controller
World Health Academy Publishing House srls
Via Aldo Rossi, 31, 51016, Montecatini-Terme (Pistoia)
Holder's email address: : ceo@worldhealthacademy.eu
Types of Data Collected
Among the Personal Data collected by this Application, independently or through third parties, there are: Trackers; Usage data; name; surname; telephone number; email; billing address; shipping address; payment information; Device information.
Full details on each type of data collected are provided in the dedicated sections of this privacy policy or through specific information texts displayed before the data is collected.
Personal Data may be freely provided by the User or, in the case of Usage Data, collected automatically during the use of this Application.
Unless otherwise specified, all Data required by this Application is mandatory. If the User refuses to communicate them, it may be impossible for this Application to provide the Service. In cases where this Application indicates certain Data as optional, Users are free to refrain from communicating such Data, without this having any consequence on the availability of the Service or its operation.
Users who have doubts about which Data are mandatory, are encouraged to contact the Data Controller. Any use of Cookies - or other tracking tools - by this Application or by the owners of third-party services used by this Application, unless otherwise specified, has the purpose of providing the Service requested by the User, in addition to the additional purposes described in this document and in the Cookie Policy, if available.
The User assumes responsibility for the Personal Data of third parties obtained, published or shared through this Application and guarantees that he/she has the right to communicate or disseminate them, freeing the Owner from any liability towards third parties.
Methods and place of processing of the Data collected
Processing methods
The Data Controller adopts the appropriate security measures aimed at preventing unauthorized access, disclosure, modification or destruction of Personal Data.
The processing is carried out using IT and/or telematic tools, with organizational methods and logics strictly related to the purposes indicated. In addition to the Data Controller, in some cases, other parties involved in the organization of this Application (administrative, commercial, marketing, legal staff, system administrators) or external parties (such as third-party technical service providers, postal couriers, hosting providers, IT companies, communication agencies) also appointed, if necessary, as Data Processors by the Data Controller, may have access to the Data. The updated list of Data Processors can always be requested from the Data Controller.
Legal basis of the processing
The Data Controller processes Personal Data relating to the User in the event that one of the following conditions exists:
the User has given consent for one or more specific purposes; Note: in some jurisdictions, the Data Controller may be authorized to process Personal Data without the User's consent or another of the legal bases specified below, until the User objects ("opt-out") to such processing. However, this is not applicable if the processing of Personal Data is governed by European legislation on the protection of Personal Data;
the processing is necessary for the performance of a contract with the User and/or the execution of pre-contractual measures;
the processing is necessary to comply with a legal obligation to which the Data Controller is subject;
the processing is necessary for the performance of a task carried out in the public interest or for the exercise of official authority vested in the Data Controller;
the processing is necessary for the pursuit of the legitimate interest of the Data Controller or third parties.
However, it is always possible to request the Data Controller to clarify the concrete legal basis of each processing and in particular to specify whether the processing is based on the law, provided for by a contract or necessary to conclude a contract.
Place
The Data are processed at the Data Controller's operational offices and in any other place where the parties involved in the processing are located. For more information, please contact the Data Controller.
Your Personal Data may be transferred to a country other than the country in which you are located. To obtain further information on the place of processing, the User may refer to the section relating to the details on the processing of Personal Data.
The User has the right to obtain information regarding the legal basis of the transfer of Data outside the European Union or to an international organization under public international law or constituted by two or more countries, such as the UN, as well as regarding the security measures adopted by the Data Controller to protect the Data.
The User can check whether one of the transfers described above takes place by examining the section of this document relating to the details on the processing of Personal Data or request information from the Data Controller by contacting him at the contact details indicated at the beginning.
Retention period
The Data are processed and stored for the time required by the purposes for which they were collected. Therefore:
Personal Data collected for purposes related to the performance of a contract between the Data Controller and the User will be retained until the execution of such contract is completed.
Personal Data collected for purposes related to the legitimate interest of the Data Controller will be retained until such interest has been satisfied. The User can obtain further information regarding the legitimate interest pursued by the Owner in the relevant sections of this document or by contacting the Owner.
When the processing is based on the User's consent, the Data Controller may retain the Personal Data for longer until such consent is withdrawn. In addition, the Data Controller may be obliged to retain Personal Data for a longer period in compliance with a legal obligation or by order of an authority.
At the end of the retention period, the Personal Data will be deleted. Therefore, upon expiry of this term, the right of access, cancellation, rectification and the right to data portability can no longer be exercised.
Purposes of the Processing of the Data collected
The User's Data are collected to allow the Data Controller to provide the Service, comply with legal obligations, respond to requests or executive actions, protect its rights and interests (or those of Users or third parties), identify any malicious or fraudulent activities, as well as for the following purposes: Interaction with social networks and external platforms, Platform and Hosting Services, Infrastructure Monitoring, and Access to Accounts on Third-Party Services.
To obtain detailed information on the purposes of the processing and the Personal Data processed for each purpose, the User may refer to the section "Details on the processing of Personal Data".
Facebook Permissions Required by This Application
This Application may request certain Facebook permissions that allow it to perform actions with the User's Facebook account and to collect information, including Personal Data, from it. This service allows this Application to connect with the User's account on the Facebook social network, provided by Facebook Inc.
For more information on the permissions below, please refer to the Facebook permissions documentation and Facebook's privacy policy.
The required permits are as follows:
Basic Information
The basic information of the User registered on Facebook which normally includes the following Data: id, name, image, gender and language of location and, in some cases, Facebook "Friends". If you have made Additional Data publicly available, it will be available.
'About me' friends
Provides access to the 'About Me' section of your friends' profile.
Access to private data
It allows access to the private data of the User and friends. Access to posts contained in the User's timeline Provides access to posts on a User's timeline.
Access to activities
Provides access to the User's list of activities.
Access to friend lists
Provides access to friend lists that you have created.
Access to personalised friend lists
It provides access to the names of personalized lists that you have created to organize your friends.
Access to requests
Provides read access to your friend requests.
Access to the News Feed
It provides access to News Feed posts and allows the app to search on it.
Offline access
It allows access to data when the User is not connected.
CTA Page Login
Provides access to manage calls to action on pages managed by the User.
Details on the processing of Personal Data
Personal Data are collected for the following purposes and using the following services:
Accessing Accounts on Third-Party Services
This type of service allows this Application to take Data from your accounts on third-party services and perform actions with them.
These services are not activated automatically, but require the express authorization of the User.
Logging in to your Facebook account
This service allows this Application to connect with the User's account on the Facebook social network, provided by Meta Platforms, Inc. or by Meta Platforms Ireland Limited, depending on how the Data Controller manages the processing of the Data.
Permissions requested: 'About me' of friends; Access to private data; Access to posts contained in your timeline; Access to activities; Access to friend lists; Access to personalized lists of friends; Access to requests; Access to the News Feed; Offline access; CTA page access.
Place of processing: United States – Privacy Policy; Ireland – Privacy Policy.
Interaction with social networks and external platforms
This type of service allows you to interact with social networks, or other external platforms, directly from the pages of this Application.
The interactions and information acquired by this Application are in any case subject to the User's privacy settings relating to each social network.
This type of service may still collect traffic data for the pages where the service is installed, even when Users are not using it.
It is recommended to log out of the respective services to ensure that the data processed on this Application is not linked back to the User's profile.
Twitter Tweet button and social widgets (Twitter, Inc.)
The Twitter Tweet button and social widgets are services for interacting with the Twitter social network, provided by Twitter, Inc.
Personal Data processed: Usage Data; Tracking Tools. Place of processing: United States – Privacy Policy.
Infrastructure monitoring
This type of service allows this Application to monitor the use and behavior of components of the same, to allow the improvement of its performance and functionality, maintenance or troubleshooting.
The Personal Data processed depends on the characteristics and methods of implementation of these services, which by their nature filter the activity of this Application.
Sentry (Functional Software, Inc. )
Sentry is a monitoring service provided by Functional Software, Inc. .
Personal Data processed: various types of Data as specified in the privacy policy of the service. Place of processing: United States – Privacy Policy.
Platform and Hosting Services
These services are intended to host and operate key components of this Application, making it possible to deliver this Application from a single platform. These platforms provide the Data Controller with a wide range of tools such as, for example, analytical tools, for the management of user registration, for the management of comments and databases, for electronic commerce, for payment processing, etc. The use of these tools involves the collection and processing of Personal Data.
Some of these services operate through geographically located servers in different locations, making it difficult to determine the exact location where Personal Data is stored.
Wix (Wix.com, Ltd.)
Wix is a platform provided by Wix.com, Ltd. that allows the Owner to develop, operate, and host this Application.
Wix is an extremely versatile and customizable tool that allows you to host various types of websites ranging from simple blogs to complex e-commerce platforms.
Personal Data processed: surname; Usage data; email; billing address; shipping address; payment information; device information; name; telephone number; Tracking Tools.
Place of processing: Israel – Privacy Policy.
Your Rights
Users may exercise certain rights with reference to the Data processed by the Data Controller. In particular, within the limits provided for by law, the User has the right to:
withdraw consent at any time. The User may revoke the consent to the processing of their Personal Data previously expressed.
object to the processing of their Data. The User may object to the processing of their Data when it takes place on a legal basis other than consent. Further details on the right to object can be found in the section below.
access your Data. The User has the right to obtain information on the Data processed by the Data Controller, on certain aspects of the processing and to receive a copy of the Data processed.
verify and request rectification. You can verify the accuracy of your Data and request that it be updated or corrected.
obtain the restriction of processing. The User may request the restriction of the processing of their Data. In this case, the Data Controller will not process the Data for any other purpose than their storage.
obtain the deletion or removal of your Personal Data. The User may request the deletion of his/her Data by the Data Controller.
receive your Data or have them transferred to another controller. The User has the right to receive his/her Data in a structured, commonly used and machine-readable format and, where technically feasible, to obtain its unhindered transfer to another controller.
lodge a complaint. The User may lodge a complaint with the competent data protection supervisory authority or take legal action.
Details on the right to object
When Personal Data are processed in the public interest, in the exercise of official authority vested in the Data Controller or to pursue a legitimate interest of the Data Controller, Users have the right to object to the processing for reasons related to their particular situation.
Users are reminded that, if their Data are processed for direct marketing purposes, they can object to the processing at any time, free of charge and without providing any reason. If Users object to processing for direct marketing purposes, Personal Data is no longer processed for such purposes. To find out whether the Data Controller processes Data for direct marketing purposes, Users can refer to the respective sections of this document.
How to exercise your rights
To exercise their rights, Users may send a request to the contact details of the Data Controller indicated in this document. The request can be filed free of charge and the Data Controller will respond as soon as possible, in any case within one month, providing the User with all the information required by law. Any rectification, erasure or limitation of processing will be communicated by the Data Controller to each of the recipients, if any, to whom the Personal Data have been transmitted, unless this proves impossible or involves a disproportionate effort. The Data Controller shall notify the User of these recipients if he/she so requests.
Further information on treatment
Defense in court
The User's Personal Data may be used by the Data Controller in court or in the preparatory stages of its possible establishment to defend against abuses in the use of this Application or related Services by the User.
The User declares to be aware that the Owner may be obliged to disclose the Data by order of public authorities.
Specific information
At the request of the User, in addition to the information contained in this privacy policy, this Application may provide the User with additional and contextual information regarding specific Services, or the collection and processing of Personal Data.
System logs and maintenance
For needs related to operation and maintenance, this Application and any third-party services used by it may collect system logs, i.e. files that record interactions and which may also contain Personal Data, such as the User's IP address.
Information not contained in this policy
Further information in relation to the processing of Personal Data may be requested at any time from the Data Controller using the contact details.
Responding to "Do Not Track" requests
This Application does not support "Do Not Track" requests.
To find out if any third-party services you use support them, please consult their respective privacy policies.
Changes to this privacy policy
The Data Controller reserves the right to make changes to this privacy policy at any time by notifying Users on this page and, if possible, on this Application and, if technically and legally feasible, by sending a notification to Users through one of the contact details in its possession. Please consult this page frequently, referring to the date of last modification indicated at the bottom.
If the changes concern processing whose legal basis is consent, the Data Controller will collect the User's consent again, if necessary.
Definitions and legal references
Personal Data (or Data)
Personal data is any information which, directly or indirectly, including in connection with any other information, including a personal identification number, identifies or identifies a natural person.
Usage Data
This is the information collected automatically through this Application (including by third-party applications integrated into this Application), including: the IP addresses or domain names of the computers used by the User who connects with this Application, the addresses in URI (Uniform Resource Identifier) notation, the time of the request, the method used to forward the request to the server, the size of the file obtained in response, the numerical code indicating the status of the response from the server (successful, error, etc.) the country of origin, the characteristics of the browser and operating system used by the visitor, the various temporal connotations of the visit (e.g. the time spent on each page) and the details relating to the itinerary followed within the Application, with particular reference to the sequence of pages consulted, the parameters relating to the operating system and the User's IT environment.
User
The individual using this Application who, unless otherwise specified, is the Data Subject.
Interested
The natural person to whom the Personal Data relates.
Data Processor (or Processor)
The natural person, legal person, public administration and any other entity that processes personal data on behalf of the Data Controller, as set out in this privacy policy.
Data Controller (or Data Controller)
The natural or legal person, public authority, agency or other body which, alone or jointly with others, determines the purposes and means of the processing of personal data and the means adopted, including the security measures relating to the operation and use of this Application. The Data Controller, unless otherwise specified, is the owner of this Application.
This app
The hardware or software tool by which Users' Personal Data is collected and processed.
Service
The Service provided by this Application as defined in the relevant terms (if any) on this site/application.
European Union (or EU)
Unless otherwise specified, any reference to the European Union contained in this document is intended to extend to all current member states of the European Union and the European Economic Area.
Cookie
Cookies are Trackers that consist of small pieces of data stored within the User's browser.
Tracking Tool
Tracking Tool means any technology - e.g. cookies, unique identifiers, web beacons, embedded scripts, e-tags and fingerprinting - that allows Users to be tracked, for example by collecting or saving information on the User's device.
Legal references
This privacy policy has been drawn up on the basis of multiple legislative systems, including art. 13 and 14 of Regulation (EU) 2016/679.
Unless otherwise specified, this privacy policy applies exclusively to this Application. Last modified: April 7, 2023