Last updated: 31.05.2021
For previous versions, please contact the Data Controller and person responsible for personal data processing.
immodebe.ch (hereinafter “the website”) collects certain personal data from users who browse it.
Based on Article 13 of the Swiss Federal Constitution and the federal data protection provisions (Data Protection Act, DSG), every person has the right to privacy and protection against misuse of their personal data. The operators of this website take the protection of your personal data very seriously. We treat your personal data confidentially and in accordance with legal data protection regulations and this data protection statement.
This notice is drafted on the basis of multiple legal frameworks, including Article 13 of the Swiss Federal Constitution, federal data protection provisions (Data Protection Act, DSG), and Articles 13 and 14 of Regulation (EU) 2016/679. Its purpose is to provide information on the methods, purposes, scope of communication, circulation, disclosure, retention periods, and nature of personal data, as well as the rights of users and persons who interact with the website, regardless of the purpose of the connection.
This notice applies exclusively to the website, unless otherwise specified.
The website does not provide services to minors under 18 years of age. In the case of requests made for or by minors, the parent or legal guardian must complete the request forms.
The controller has the right to modify this document by informing users on this same page or, where provided and possible, through contact details in their possession. Users are therefore invited to periodically consult this page. To confirm whether changes have been made, check the last updated date indicated at the bottom of the page.
The controller will collect users’ consent again if changes to this document concern data processing activities for which consent is required.
This website uses SSL / TLS encryption for security reasons and to protect the transmission of confidential content, such as requests you send to us as the website operator. You can recognize an encrypted connection by the browser address line changing from “http://” to “https://” and by the padlock symbol in the browser line.
If SSL or TLS encryption is activated, the data you transmit to us cannot be read by third parties.
Gabriele De Bernardis, Via Nosedo 10 CH – 6900 Massagno, info@immodebe.ch, +41 (0) 91 960 1880
Users’ personal data is stored and processed at the controller’s operational and administrative offices, as well as in the web farms where the servers hosting the website are located, or on servers that create security backups.
For details about personal data processing, please refer to the Hosting Provider’s Privacy Policy.
For data collected directly through the website, data is retained for 24 months after completion of the service, or until consent is withdrawn.
If the controller is required to retain personal data in compliance with a legal obligation or by order of an authority, the controller may retain data for a longer period necessary to meet those obligations.
At the end of the retention period, personal data will be deleted. After this period, it will no longer be possible to access your data or request its deletion or portability.
The controller has designed an IT system intended to guarantee security measures considered suitable to prevent unauthorized access, disclosure, modification, deletion, loss, misuse, or falsification of personal data.
Processing is carried out by authorized personnel using automated tools in compliance with current regulations and in accordance with principles of fairness, lawfulness, transparency, protection of user confidentiality, and user rights, for the time strictly necessary to use the service. Our IT system is structured to prevent data loss, unlawful or incorrect use, and unauthorized access.
Users have the right to obtain information regarding the security measures adopted by the controller to protect data.
We would like to point out that data transmission over the Internet (e.g., when communicating by email) may have security gaps. Complete protection of data against access by third parties is not possible.
Only the controller and/or external parties (such as third-party IT service providers, web farms, communication agencies, and suppliers of complementary services) have access to collected personal data. Where necessary, such entities are appointed by the controller as data processors.
Users may request an updated list of data processors from the controller at any time.
Our IT system is monitored and controlled by technicians and system administrators. Nevertheless, even if considered a remote possibility, unwanted access may occur. If this happens, the controller undertakes, as required by GDPR, to notify the Data Protection Authority within the legal deadlines.
The website collects user data directly or through third parties. More details on the type of data collected for each service are specified in dedicated sections of this privacy policy. The types of data collected automatically include:
These are collected in aggregated and anonymous form.
The website uses statistical tools to track user navigation; analysis is performed through logs. It does not directly use cookies but may use cookies by including third-party services.
Personal data that may be deliberately, voluntarily, and optionally provided by users by filling out forms includes (non-exhaustive list):
Use of contact form(s) to contact the website controller is not mandatory for browsing the website, but use implies explicit agreement to be contacted again. If the user chooses not to provide these data, the service will still be provided by the website.
Sending emails, making phone calls, or any contact between the user and the website controller through data published on the website is optional but entails subsequent acquisition and processing of provided personal data. These interactions are no longer governed by this statement but by the controller’s corporate policies.
Before entering third-party personal data on the website, users must verify they have permission and legal basis. The website cannot be held responsible for such abuse.
Each use of cookies is detailed in the Cookie Policy.
User data is collected by the controller for the following purposes:
Users may request clarification at any time from the controller regarding the purposes of each processing activity.
The controller collects users’ personal data in the cases described below.
Processing is necessary:
Users may request clarification at any time from the controller regarding the legal basis for each processing activity.
Service provider: The website
Purpose of the service: Users may fill in contact/information request form(s), entering their data and explicitly consenting to their use in order to respond to requests of the nature indicated in the form heading.
Personal data that may be collected: first name, last name, email, phone number, and any other data the user chooses to enter in the fields. Entering any data in contact form(s) constitutes explicit consent to its processing.
Personal data collected: first name, last name, email address, other data entered by the user.
Place of processing: Germany
These services are used by the controller and third parties to analyze traffic generated by users on the website.
Data collected and their use by third-party services are governed by their respective Privacy Policies, to which reference is made.
Service provider: Google, Inc.
Purpose of the service: web analytics service. This service collects user data (in anonymous form thanks to IP anonymization) to monitor and analyze website usage, generate reports, and also use them for other Google services.
Data collected: anonymized IP address, usage data
Place of processing: Netherlands or United States (depending on the country from which the user connects).
Privacy Policy: https://policies.google.com/privacy
Opt-Out: https://tools.google.com/dlpage/gaoptout?hl=it
Privacy Shield participant
Service provider: Google, Inc.
Purpose of the service: display fonts (character styles) other than standard browser fonts.
Data collected: usage data and those specified in Google’s privacy policy.
Place of processing: Netherlands or United States (depending on the country from which the user connects).
Privacy Policy: https://policies.google.com/privacy
This website uses Google Maps. This allows us to show interactive maps directly on the website and enables you to conveniently use the map function. When you visit the website, Google records your visit to the website page. This happens regardless of whether you have a logged-in user account or no Google user account. If you are logged into Google, your data will be directly associated with your account. If you do not want your data linked to your Google profile, you must log out before using the maps. Google stores your data as usage profiles and uses them for advertising, market research, and/or needs-based website design. Such evaluation is carried out in particular (including for users who are not logged in) to provide needs-based advertising and to inform other social network users about your activities on our website. You have the right to object to the creation of these user profiles; however, you must contact Google to exercise this right.
Users have all rights provided by Article 12 of the EU GDPR, including the right to check, modify, and supplement (rectify), and delete their personal data by contacting the controller or, in the case of third-party services, by accessing their websites as listed.
Specifically, users have the right to:
Users may exercise the rights above by submitting a request to the controller.
Exercising your rights is free of charge. The controller undertakes to handle requests as quickly as possible, and in any case within one month.
Users have the right to lodge a complaint with the Data Protection Supervisory Authority.
In the event of legal proceedings for abuse by the user in the use of the website or related services, the controller may disclose the user’s personal data. The controller is also obliged to provide such data upon request from public authorities.
Users are entitled to request from the controller specific notices regarding services on the website and/or the collection and use of personal data.
The website and/or third-party services may collect personal data such as IP addresses in the form of system logs. Collection of these data is related to website operation and maintenance.
Users may request additional information at any time from the data controller regarding personal data processing not contained in this Policy. The controller may be contacted via the contact details provided.
“Do Not Track” requests are not supported by the website.
Users are invited to consult the Privacy Policies of the third-party services listed above to verify which ones support such requests.
Personal data means information that identifies or makes identifiable, directly or indirectly, a person and can provide information about their characteristics, habits, lifestyle, personal relationships, health status, financial situation, etc.
Usage data means information collected automatically during website navigation, either by the website itself or by third-party applications included on the site. Examples include IP address and device/browser details (including geographic location), URI addresses, server response codes, pages viewed, and time spent by users on each page.
The subject who uses the website.
Unless otherwise specified, this coincides with the data subject.
The data subject is the natural person to whom personal data relate. Therefore, if processing concerns, for example, the address or other data of Mario Rossi, this person is the data subject (Article 4(1)(1) of Regulation EU 2016/679).
A processor is a natural or legal person or public administration to whom the controller assigns, including outside its organizational structure, specific and defined management and control tasks on its behalf for data processing (Article 4(1)(8) of Regulation EU 2016/679). The same Regulation introduced the possibility that a processor may, under certain conditions, appoint another entity as a so-called “sub-processor” (Article 28(2)).
The controller is the natural person, public authority, company, public or private body, association, legal entity, etc., that determines the purposes, aims, methods, and means of processing (Article 4(1)(7) of Regulation EU 2016/679).
The website through which users’ personal data are collected and processed. In this case: immodebe.ch
The service provided by the website as indicated in the related terms.
Any reference to the European Community extends to all current member states of the European Union and the European Economic Area, unless otherwise specified.
Cookies are tracking tools consisting of small portions of data stored within the user’s browser.
View the Cookie Policy
Last updated: 31.05.2021
Older versions available only upon request.