Privacy & cookie policy

Privacy & cookie policy

Updated to the European regulation for the protection of personal data n. 679/2016, GDPR and Legislative Decree no. 101/2018

In compliance with the obligations deriving from the community legislation (European regulation for the protection of personal data n. 679/2016, GDPR), from the "Privacy Decree" Legislative Decree no. 101/2018 and the Recommendation n. 2/2001 that the European authorities for the protection of personal data have adopted to identify the minimum requirements for the collection of personal data online, this PRIVACY & COOKIE POLICY applies exclusively to the online activities of this site and is valid for visitors /site users. The information is provided only for the website www.asteriapharma.com  and not for other websites that may be consulted by the user via links.
The purpose of this document is to provide maximum transparency regarding the information that the site collects and how it uses it.

Legal basis of the treatment

Data processed on the basis of consent
With the use or consultation of this site, visitors and users explicitly approve this privacy & cookie policy and consent to the processing of their personal data in relation to the methods and purposes described below, including any disclosure to third parties if necessary for the provision of a service.
The provision of data and therefore the Consent to the collection and processing of data is optional.
The User can deny consent and can revoke an already given consent at any time, by writing to the following email:
info@asteriapharma.com. However, denying consent may make it impossible to provide some services and the browsing experience on the site could be compromised.

Consent of the minor

In implementation of the art. 8, paragraph 1 of the EU Regulation and pursuant to article 2-quinquies of the Privacy Decree n. 101/2018, the minor who has turned 14 can express his consent to the processing of his data also for marketing purposes.
The consent of a minor under the age of 14 is lawful on condition that it is given by the person exercising parental authority.
In compliance with art. 2-quinquies Privacy Decree, ASTERIA PHARMA, in preparing the registration and consent acquisition forms in relation to the direct offer also to potential Users (from 14 years of age) uses a particularly clear and simple, concise and exhaustive, easily accessible and understandable language in order to make the consent given by the minor significant.

Types of data processed

Browsing the site for consultation does not require any request for personal data; however, technologies are in use that involve the storage of some data relating to the tools used, in some way attributable to the user.
The personal data we receive from our customers helps us personalize and continuously improve your purchases on the site. We use this data in particular to manage orders, provide products and services, communicate with you about orders, products, services and promotional offers, update our records and, in general, manage your account, display content such as wish lists and customer reviews and recommend products and services that may be of interest to you. We also use this data to improve our online shop and our service, to prevent or detect fraud or abuse of our website and to allow third parties to carry out technical, logistical and other activities on our behalf.

Navigation data

The computer systems and software procedures used to operate this website acquire, during their normal operation and only for the duration of the connection, some data whose transmission is implicit in the use of Internet communication protocols.
This is information that is not collected to be associated with identified interested parties, but which by their very nature could, through processing and association with data held by third parties, allow users to be identified. This category of data includes:

  • internet protocol (IP) address associated with the device used to connect;
  • type of browser and parameters of the device used to connect to the site;
  • name of the internet service provider (ISP);
  • date and time of visit;
  • web page of origin of the visitor (referral) and exit;
  • any number of clicks made within the site and any preference expressed
  • other parameters relating to the operating system and the user's IT environment.

These data can be used in order to obtain anonymous statistical information on the use of the site and to check its correct functioning as well as:

  • to fulfill the requirements dictated by national and community regulations;
  • to ascertain responsibility in the event of hypothetical computer crimes against the site and for investigations in the event of any disputes.

Only the data collected for surveillance purposes persists on the servers for a period of 12 months.

Data provided voluntarily by the customer

The optional, explicit and voluntary sending of e-mails to the addresses indicated on this Site involves the subsequent acquisition of the sender's address, necessary to respond to requests, as well as any other personal data included in the message.
Specific summary information, in which consent to the processing of the data processed is expressly requested, if necessary, will be progressively reported or displayed on the pages of the Site set up for particular services on request (newsletter, registration as a site user)

Purpose of the treatment

a) Provide the requested services and manage customer relations. The provision of personal data necessary for these purposes is not mandatory, but the refusal to supply them makes it impossible to carry out what is requested;
b) Fulfill the requirements dictated by national and community regulations;
c) For security purposes (spam filters, firewalls, virus detection), the automatically recorded data may possibly also include personal data such as the IP address, which could be used, in accordance with applicable laws, in order to block attempts to damage to the site itself or to cause damage to other users, or in any case harmful activities or activities constituting a crime.
This information is processed on the basis of the legitimate interests of the owner.

Secondary purposes of the processing of personal data

The personal data collected for the aforementioned purposes could also be processed to carry out activities functional to the promotion and sale of products through the site, to carry out market surveys and customer satisfaction: the provision of data for these purposes is optional and for the treatment consent is required for such data.
By granting consent to processing for Marketing purposes, the interested party specifically takes note of such promotional, commercial and marketing purposes in the broad sense of the processing (including the consequent management and administrative activities) and expressly authorizes them, once consent has been given on the basis of the established procedures, pursuant to the EU Regulation.
We inform you specifically and separately, as required by art. 21 of the EU Regulation, that if personal data are processed for direct marketing purposes, the interested party has the right to object at any time to the processing of personal data concerning him carried out for these purposes and that if the interested party opposes the treatment for direct marketing purposes, personal data can no longer be processed for these purposes.

Third Party Service Providers

ASTERIA PHARMA makes use of other companies and natural persons to carry out certain activities on its own behalf.
In addition to the owner, in some cases, categories of persons involved in the organization of the site (administrative, commercial, marketing, system administrators) or external subjects (such as third party technical service providers, postal couriers, hosting providers) may have access to the data. , IT companies, communication agencies).
These providers only have access to personal data that is necessary to perform their tasks. We guarantee that they cannot use the same data for other purposes and are also required to process personal data in accordance with this Privacy Policy and in accordance with the applicable regulations on personal data protection.

Security measures and methods of treatment

Personal data is processed with automated tools for the time strictly necessary to achieve the purposes for which it was collected. Specific security measures are observed to prevent data loss, illicit or incorrect use and unauthorized access, such as specific methods of selective access to data.
However, it is important to individually adopt suitable protections against unauthorized access to your password and to your computer.

Communication and dissemination

The personal data collected will not be disclosed, sold, exchanged or communicated with third parties other than the Data Controller, without the express consent of the interested party. The communication to third parties, other than the Data Controller, by the managers, internal, but also external to the corporate structure, and by the persons in charge of the treatment identified and appointed pursuant to art. 13 c.1 letter e of the EU Regulation is envisaged for the exclusive pursuit of the purposes referred to in points 1 and 2 of this information and in any case within the limits of the same, possibly to: third parties and companies of supply and technical assistance and IT, affiliated companies or third parties that provide ASTERIA PHARMA with information processing services or complementary activities to those proposed by ASTERIA PHARMA, to allow the execution of the contract, shippers, all engaged in the correct and regular pursuit of the purposes described.
In any case, the processing by third parties must take place correctly and in compliance with the provisions of the law in force.
Subject to express consent, communication to third-party companies (belonging to the group to which the owner belongs, or third-party companies supplying products relating to the owner's business: eg company selling cosmetic and beauty products) is required for marketing purposes (traditional or automatic) of the latter.

Place of treatment

The data collected by the site are processed by the Data Controller in accordance with the laws in force, the company ASTERIA PHARMA SRL, with registered office in Via M. CERVANTES DE SAVAEDRA, 55/5 - 80133, Naples (NA)                      VAT number: 09961201218 which is located in the European Economic Area and acts in accordance with European standards.

COOKIES

This site, like all websites, makes use of cookies, small text files that allow you to store information on visitor preferences, to improve site functionality, to simplify navigation by automating procedures (e.g. Login, language site) and for the analysis of the use of the site.
In particular, session cookies are essential to be able to distinguish between connected users and are useful to prevent a requested functionality from being provided to the wrong user, as well as for security purposes to prevent cyber attacks on the site. Session cookies do not contain personal data and last only for the current session, i.e. until the browser is closed. No consent is required for them.
The functionality cookies used by the site are strictly necessary for the use of the site, in particular they are linked to an express request for functionality by the user (such as Login), for which no consent is required.
By using the site, the visitor expressly consents to the use of cookies.

What are COOKIES and for what purpose they are used

Like all websites, this site also makes use of log files in which information collected in an automated manner is kept during user visits. The information collected could be the following:

  • internet protocol (IP) address associated with the device used to connect;
  • type of browser and parameters of the device used to connect to the site;
  • name of the internet service provider (ISP);
  • date and time of visit;
  • web page of origin of the visitor (referral) and exit;
  • possibly the number of clicks made within the site and any preference expressed.

As is customary on all websites, this site also uses cookies, small text files that allow you to store information on visitor preferences, to improve site functionality, to simplify navigation by automating procedures (eg. Login, site language) and for the analysis of the use of the site.
A "cookie" is a small text file created by some websites on the user's computer when he accesses a particular site, with the purpose of storing and transporting information. Cookies are sent from a web server (which is the computer on which the website visited is running) to the user's browser (Internet Explorer, Mozilla Firefox, Google Chrome, etc.) and stored on the latter's computer; they are then re-sent to the website on subsequent visits.
Some operations could not be performed without the use of cookies, which, in some cases, are therefore technically necessary. In other cases, the site uses cookies to facilitate navigation by the user or to allow them to use specifically requested services.
Cookies can also remain in the system for long periods and can also contain a unique identification code. This allows the sites that use them to keep track of the user's navigation within the site itself, for statistical or advertising purposes, i.e. to create a personalized profile of the user starting from the pages that he has visited and show him and/or or therefore send him targeted advertising (so-called Behavioral Advertising).

Which COOKIES are used and for what purpose

This site uses various types of technical and functional cookies. The Owner, following the instructions provided by the Guarantor Authority in the general provision of 8 May 2014, shows below the specific categories of cookies used, the purpose and the consequence that derives from their deselection.

COOKIE type - purpose - storage times - consequence in case of deselection

Technical cookies Site management. They allow the functioning and safe and efficient exploration of the website, valid for the browsing session, these are cookies necessary for the use of the website, blocking them does not allow their functioning Functionality cookies to facilitate navigation and the service rendered to the user according to a series of criteria selected by the latter with a maximum duration of one year, it would not be possible to maintain the choices made by users while browsing Analytics cookies collect information in aggregate form on users' browsing to optimize the browsing experience and the services themselves. Established by the third party, please refer to the links below it would no longer be possible for the Owner to acquire the aggregated information. Unclassified Cookies Unclassified cookies are cookies that are in the process of being classified, together with individual cookie suppliers.
In particular, the proprietary cookies used by this site are:

  • fe_session: cookie used to memorize the login to the site, also allowing navigation in the areas reserved for the customer. STORAGE TIME: 1 browsing session (in case of refusal of the "remember me" option); 7 days (if you accept the "remember me" option).
  • Cb-enabled: cookie useful for memorizing the acceptance of the use of cookies, preventing new visualizations of the brief information on the use of the cookies themselves. STORAGE TIME: 1 year
  • The functionality cookies used by the site are strictly necessary for the use of the site, in particular they are linked to an express request for functionality by the user (such as Login), for which no consent is required

Disabling COOKIES

Cookies are linked to the browser used and can be disabled directly from the browser, thus refusing/withdrawing consent to the use of cookies.
It should be noted that disabling cookies could prevent the correct use of some functions of the site itself; it will therefore not be possible to access some features, pages and sections of our website and, in this case, ASTERIA PHARMA declines all responsibility in this regard.
The instructions for disabling cookies are better described in the "help" menu of the browser in use, from where it is possible to change the cookie preferences by following the links found on the web pages:

For Internet Explorer™: http://windows.microsoft.com/en-US/windows-vista/Block-or-allow-cookies;
For Safari™: http://www.apple.com/legal/privacy/en-ww/cookies;
For Chrome™: http://support.google.com/chrome/bin/answer.py?hl=en&hlrm=en&answer=95647
For Firefox™: https://support.mozilla.org/en-US/kb/enable-and-disable-cookies-website-preferences;

Third party COOKIES

This site also acts as an intermediary for third-party cookies, used to be able to provide additional services and features to visitors and to improve the use of the site itself, such as buttons for social networks, or videos. This site has no control over third-party cookies, which are entirely managed by third parties. As a consequence of this, information on the use of these cookies and their purposes, as well as on the methods for disabling them, is provided directly by the third parties on the pages indicated below.
In particular, this site uses cookies from the following third parties:

  • Google Analytics: a Google analysis tool which, through the use of cookies (performance cookies), collects anonymous navigation data (IP truncated at the last octet) and exclusively aggregated for the purpose of examining the use of the site by users , compile reports on site activity and provide other information, including the number of visitors and the pages visited. Google may also transfer this information to third parties where required to do so by law or where such third parties process the information on Google's behalf. Google will not associate the IP address with any other data held by Google. The data transmitted to Google are stored on Google's servers in the United States.
    On the basis of a specific agreement with Google, which is designated as data controller, the latter undertakes to process the data based on the requests of the Data Controller given through the software settings. Based on these settings, the advertising and data sharing options are deactivated. Further information on Google Analytics cookies can be found on the Google Analytics Cookie Usage on Websites page.
    The user can selectively disable the collection of data by Google Analytics by installing this plugin on his browser:
    http://tools.google.com/dlpage/gaoptout?hl=en.
  • Youtube: a platform owned by Google, for sharing videos, which uses cookies to collect information from users and navigation devices. The videos on the site do not convey cookies when accessing the page, as the "advanced privacy (no cookies)" option has been set according to which YouTube does not store information about visitors unless they voluntarily reproduce the video.
    cookie: test_cookie .doubleclick.net is not a permanent cookie, but is used to check if the user's browser supports cookies.
    For further information on the use of data and their treatment by Google, it is recommended to read the information on the appropriate page prepared by Google, and on the page on How data is used by Google when using sites or apps of partners.

Social networking plugins

This site also incorporates plugins and/or buttons for social networks, in order to allow easy sharing of content on your favorite social networks. These plugins are programmed so as not to set any cookies when accessing the page, to safeguard user privacy. Eventually cookies are set, if so provided by social networks, only when the user makes effective and voluntary use of the plugin. Keep in mind that if the user browses being logged into the social network then he has already consented to the use of cookies conveyed through this site when registering with the social network. The collection and use of the information obtained through the plugin are governed by the respective privacy policies of the social networks, to which please refer.

  • Facebook - (cookie information link)
  • Instagram: - (https://www.facebook.com/policies/cookies/ )

Data transfer to non-EU countries

This site may share some of the data collected with services located outside the European Union area. In particular with Google, Facebook through social plugins and the Google Analytics service. The transfer is authorized on the basis of specific decisions of the European Union for which no further consent is required. The companies mentioned above guarantee their adherence to the Privacy Shield.

User rights

Pursuant to European Regulation 679/2016 (GDPR) and in compliance with the provisions of the Privacy Decree n. 101/2018, the User can, according to the methods and within the limits established by current legislation, exercise the following rights:

  • request confirmation of the existence of personal data concerning him (right of access);
  • have information about the logic, methods and purposes of the processing;
  • request the updating, rectification, integration, cancellation, transformation into anonymous form, blocking of data processed in violation of the law, including those no longer necessary for the pursuit of the purposes for which they were collected;
  • in cases of treatment based on consent, receive at the sole cost of any support, your data provided to the owner and held by it, in a structured and readable form by a data processor and in a format commonly used by an electronic device;
  • the right to lodge a complaint with the Privacy Guarantor or with the Judicial Authority;
  • pursuant to art. 2-terdecies of the Privacy Decree n. 101/2018, all rights (art 15 up to 22 of the EU Regulation) referring to personal data concerning deceased persons, can be exercised by those who have an interest of their own or act to protect the interested party, as his agent, or for reasons of family members deserving of protection
  • as well as, more generally, exercise all the rights that are recognized by the current provisions of the law.
  • Requests should be addressed to the Data Controller. In the event that the data are processed on the basis of legitimate interests , the rights of the data subjects are in any case guaranteed (except for the right to portability which is not envisaged by the regulations), in particular the right to object to the processing which can be exercised by sending a request to the Data Controller. You can object to the processing of your personal data:
    a) for legitimate reasons;
    b) (without the need to justify the opposition) when the data are processed for commercial or marketing purposes.
    Without prejudice to the limitations on the rights of the interested parties pursuant to art. 2-undecies and 2-duodecies Legislative Decree n. 101/2018.

Appeal

If the User believes that their rights regarding the protection of personal data have been violated, they can lodge a complaint with the Privacy Guarantor pursuant to art. 77 of the Regulation and art. 141 of the Privacy Decree or to appeal to the Judicial Authority pursuant to art. 78 and 79 of the EU Regulation and pursuant to art. 152 and following. Privacy Decree.

Data controller

The data controller in accordance with current laws is the company ASTERIA PHARMA SRL, with headquarters in Via M. CERVANTES DE SAVAEDRA, 55/5 - 80133, Naples (NA) VAT number: 09961201218, which can be contacted via 

email: info@asteriapharma.com

Responsible for data processing

To find out the appointed external and internal Managers, the Data Controller refers to the company's internal privacy policy.
For any communication, it is possible to contact the Data Controller via the e-mail address: info@asteriapharma.com
Google is appointed data controller, processing data on behalf of the owner (Google Analytics).