Skip to content

Privacy policy

Last updated: 19 September 2025

1. Who processes your data

Data Controller: iPescaOri, Via Traghete 68/C1 – 30021 Caorle (VE) – Italy

Email: info@ipescaori.it – Tel: +39 0421 82206

We operate this website and online store using the Shopify platform. For the provision of Services, some activities are carried out by providers acting as Processors under Art. 28 GDPR (including Shopify). For certain autonomous purposes (e.g., fraud prevention, platform improvement), Shopify may act as an independent Controller.

Further details are available in Shopify’s privacy policy.

2. Data we process

Depending on how you use the website/services, we may collect and process:

  • Identification and contact details (name, address, email, phone; shipping/billing addresses).

  • Account data (username, password, preferences).

  • Purchase and transaction data (products, amounts, payment method/confirmation, returns/exchanges).

  • Communications with our customer support.

  • Technical/navigation data (IP, device identifiers, browser, logs, on-site interactions).

  • Cookies and similar technologies (see dedicated Cookie Policy).

3. Purposes and legal bases (Art. 6 GDPR)

  • Order fulfilment, account management, payments, shipping, customer support – performance of a contract or pre-contractual measures (Art. 6.1.b).

  • Legal obligations (accounting, tax, warranties) – legal obligation (Art. 6.1.c).

  • Security, abuse/fraud prevention, legal defence – legitimate interest (Art. 6.1.f).

  • Promotional communications and marketing profiling (if applicable) – consent (Art. 6.1.a), revocable at any time.

  • Service improvement, statistical analytics – legitimate interest, or consent where required (see Cookie Policy).

4. Requirement to provide data

Data marked as essential are necessary for us to provide the Services. Without them, we may be unable to process your order or respond to your requests.

5. Recipients and categories of providers

We share data only when necessary with:

  • Shopify (e-commerce platform, hosting, payments)

  • Payment and shipping providers

  • IT/hosting, maintenance, security, fraud prevention services

  • Customer support and communication tools

  • Legal/accounting consultants to comply with legal obligations

We do not sell personal data.

For personalised advertising (if enabled), marketing/advertising partners are involved only with prior consent via the cookie banner.

6. Transfers outside the EU/EEA

Some providers (e.g., Shopify) may process data outside the EU/EEA.

When this occurs, we rely on EU Standard Contractual Clauses and, where necessary, additional safeguards to ensure an adequate level of protection.

7. Retention

  • Accounting/invoicing data: 10 years (legal obligation).

  • Account: for the duration of the relationship and up to 24 months of inactivity, unless additional obligations apply.

  • Customer support: up to 24 months after the request is closed.

  • Marketing: until consent is withdrawn, or up to 24 months from the last meaningful interaction.

  • Security logs: up to 12 months, unless security incidents occur.

After the retention period, data are deleted, anonymised, or securely archived.

8. Data subject rights (Arts. 15–22 GDPR)

You have the right to access, rectify, erase, restrict processing, data portability, object to processing, and withdraw consent at any time—without affecting the lawfulness of processing based on consent before its withdrawal.

You may also file a complaint with the Italian Data Protection Authority (Garante per la Protezione dei Dati Personali – www.garanteprivacy.it).

To exercise your rights, contact: info@ipescaori.it.

9. Minors

This website is not intended for minors.

In Italy, consent for information society services is valid from age 14; if data relating to minors are processed, consent from the holder of parental responsibility is required.

If you believe a minor has provided us with data without authorisation, please contact us so we can delete it.

10. Security

We adopt appropriate technical and organisational measures to protect personal data (encryption in transit, access controls, infrastructure hardening).

However, no measure is entirely “impenetrable”: please use secure channels for confidential information and keep your credentials safe.

11. Cookies and tracking

This site uses cookies and similar technologies for technical purposes, statistics, and—subject to consent—marketing/profiling.

You can find full details, cookie lists, legal bases, durations and withdrawal options in the Cookie Policy and in the Cookie Preferences Center (link in the footer).

12. Changes

We may update this Privacy Notice; updates will be published on the website with a new “Last updated” date.

 

Contacts:

iPescaOri – Via Traghete 68/C1 – 30021 Caorle (VE) – Italy

info@ipescaori.it – +39 0421 82206