Privacy Policy

This information is provided pursuant to articles 13 and 14 of the European Regulation 2016/679 regarding the protection of personal data, taking into account the Recommendation n. 2/2001 adopted on May 17, 2001, to users who use the service offered by the mobile application Firenzecard and is related to all personal data that Comune di Firenze con sede in Palazzo Vecchio collects and holds on its users.
The information is provided for the mobile application Firenzecard and not for other websites and/or applications that may be consulted by the user through links to external third party pages.
DATA CONTROLLER
Comune di Firenze con sede in Palazzo Vecchio – Piazza della Signoria, 50122 FIRENZE - P.IVA 01307110484 PEC: protocollo@pec.comune.fi.it;
Centralino: +39 055055, il Responsabile della Protezione Dati (RPD) è il Dott. Otello Cini - rpdprivacy@comune.fi.it.
Comune di Firenze con sede in Palazzo Vecchio – Piazza della Signoria, 50122 FIRENZE - P.IVA 01307110484 PEC: protocollo@pec.comune.fi.it;
Centralino: +39 055055, il Responsabile della Protezione Dati (RPD) è il Dott. Otello Cini - rpdprivacy@comune.fi.it.
RESPONSIBLE FOR DATA PROCESSING
SILFI SOCIETÀ ILLUMINAZIONE FIRENZE e SERVIZI SMARTCITY SPA con sede in Via Dei Della
SILFI SOCIETÀ ILLUMINAZIONE FIRENZE e SERVIZI SMARTCITY SPA con sede in Via Dei Della
Robbia 47 - 50132 FIRENZE - P.IVA 06625660482; il Responsabile del Trattamento è la Dott.ssa
MANUELA GNIULI in qualità di Direttore Generale, il Responsabile della Protezione Dati (RPD) è l’Ing. ALESSANDRO BURRESI - privacy@firenzesmart.it.
COLLECTED DATA
The personal data collected and processed through the mobile application refer to the following types. The user can register with the mobile application by entering the personal data relating to:
- Name
- Surname
- Email address
- Birthdate (optional)
- Gender (optional)
- ZIP (optional)
- Country (optional)
The user can also choose to register with the mobile application through the user's account on the Facebook social network, provided by Facebook Inc. The requested permissions concern basic information, which normally includes the following Data: id, name , surname, email, city of residence. If you have made additional data publicly available, it will be available. For more information on the following permissions, refer to Facebook's privacy policy https://www.facebook.com/privacy/explanation.
The user can also choose to register with the mobile application through the user's account on the X social network, provided by X Corp. The requested permissions concern basic information, which normally includes the following Data: nickname and name . If you have made additional data publicly available, it will be available. For more information on the following permissions, refer to Twitter's privacy policy https://twitter.com/it/privacy.
On iOS systems, the user can also choose to register with the mobile application using the Apple ID account, provided by Apple Inc. The requested permissions concern basic information, which normally includes the following Data: name, surname, e-mail. You may opt-out of your email address using an anonymous relay address provided by Apple. For more information on the following permissions, please refer to Apple's privacy policy https://www.apple.com/legal/privacy/it/.
TRACKING
This app makes use of tracking services in which information collected automatically and in an exclusively aggregated form is stored in order to verify the correct functioning of the App, and to carry out checks and optimizations of the service. None of this information is related to the natural person-user of the app, and does not allow identification in any way.
RECIPIENTS
The personal data provided may be communicated to suitably appointed recipients who will process the data as data processors and/or agents. In any case, the dissemination of the personal data processed is excluded. The complete list of data processors and those in charge of processing personal data can be requested by sending a specific request to the contact details of the Data Controller indicated in this document.
PURPOSE OF THE TREATMENT
The data is processed exclusively for the purposes for which it was collected, as described below. The Data Controller uses the data provided by the interested parties to:
1. Execution of the services made available through the application;
2. Manage the account of registered users to use the related services offered by the Data Controller;
3. Fulfill legal obligations, regulations, community legislation;
The provision of mandatory data and the refusal to give the relative consent to the Processing still allows you to take advantage of most of the services made available through the application, but will result in the impossibility of being updated on commercial initiatives and/or promotional campaigns, receive offers or other promotional material.
PROCESSING METHODS
Personal data is processed with automated and manual tools for the time strictly necessary to achieve the purposes for which it was collected. As soon as personal data are no longer necessary for the purposes for which they were collected, the Data Controller eliminates them unless the law provides for archiving obligations or the user has not consented to the processing for a longer time.
Specific security measures are observed to prevent data loss, illicit or incorrect use and unauthorized access. Security in the management of personal data is also guaranteed by the use of the user's personal password which must be kept with due diligence and attention.
Specific security measures are observed to prevent data loss, illicit or incorrect use and unauthorized access. Security in the management of personal data is also guaranteed by the use of the user's personal password which must be kept with due diligence and attention.
RIGHTS OF THE DATA SUBJECT
Each user has a series of rights regarding their personal data:
- Right of Access: You can request access to the personal data we hold about you.
- Right to Rectification: You have the right to request the correction of any inaccurate data.
- Right to Erasure (“Right to be Forgotten”): You can request the deletion of your personal data at any time.
- Right to Restriction of Processing: You can ask us to restrict the processing of your data.
- Right to Data Portability: You have the right to receive your personal data in a structured and commonly used format.
- Right to Object to Processing: You can object to the processing of your personal data.
To exercise these rights, you can:
- Delete your personal data directly in the app: Access the user profile edit section and select “Delete Account”.
- Contact us directly: Send a written request by email or regular mail using the contacts provided in this document in Article 1 of this Policy or by filling the information request form at the following link: https://www.firenzesmart.it/contatti.
The Data Controller will, within the time limits established by current legislation, provide a prompt response to requests to exercise the rights of data subjects. Any clarification or request for information can be addressed in writing to the Data Controller.