Privacy Policy di wepere.com

Pursuant to art. 13, paragraph 1, EU REGULATION 679/2016 on the protection of personal data (GDPR)

I.A.C.E.R. S.r.l., in compliance with the provisions of Article 13, paragraph 1, of EU Regulation 679/2016 (hereinafter GDPR), informs users of the web portal https://wepere.com/, as “data subjects,” of the purposes of the collection and methods of processing of personal data.

Data Controller

I.A.C.E.R. S.R.L.
at Via Enzo Ferrari n. 2, 30037 Scorzè (VE)– Italy
Data Controller email address: iacer@iacer.it

Data Protection Officer - Identity and Contact Details

Please be informed that the Data Controller has designated, pursuant to Art. 37 of the GDPR, a Data Protection Officer who can be contacted via the following channels: email: m.sacheli@fiscleg.it – tel.: +39 049 8771611.

Types of Data collected

The computer systems and application procedures used to operate the aforementioned website automatically acquire the following types of data during their normal operation:

  • General data: first name; last name; telephone number; address; province; email address; city;
  • billing data;
  • browsing data collected during visits to the website, the transmission of which is implicit in the use of internet communication protocols. For example: IP address of the device connected to the site, type of browser used, name of the Internet service provider (ISP), date and time of visit, the visitor’s originating and exiting web page, etc.;
  • data collected through cookies during user navigation on the site. For further information on the cookies used by the web portal, please consult the full cookie policy attached to this document.

The User assumes responsibility for the Personal Data of third parties obtained, published, or shared through this Website and guarantees that he or she has the right to communicate or disseminate such data, releasing the Data Controller from any liability to third parties.

Purpose of the Processing of Collected Data

User Data is collected by the Data Controller for the following specific purposes:

  • a) to enable navigation of the web portal https://wepere.com;
  • b) to manage orders placed through the site and access the User’s personal page to check the status of orders and documentation relating to purchases made;
  • c) to contact the User following a contact request received via the “Contact Form”;
  • d) to enable commercial promotion and the description of the products and services offered, with the possible transmission of additional offers for services or products;
  • e) to provide the User with the information and services requested, including following contact established via the switchboard service or other channels;
  • f) to view and interact with social networks and external platforms;
  • g) to optimize and distribute traffic;
  • h) to manage tags;
  • i) to obtain anonymous statistical information on the use of the web portal or related services, to verify its correct functioning, to monitor its security, and to identify actions aimed at improving it;
  • j) interaction with data collection platforms and other third parties;
  • k) mailing lists or newsletters: specific data processing is governed by a specific policy. Please consult it;
  • l) general profiling: data collected by completing our forms, while browsing the site, or derived from the type of purchases you make may also be used to identify and define your tastes, preferences, habits, needs, and consumer choices;
  • m) fulfill legal obligations, comply with orders from public authorities, and ascertain any liability in the event of hypothetical cybercrimes against the site or its users.

Legal basis for processing

The legal bases for processing are those set forth in Article 6, paragraph 1, of the GDPR.

  • a) (“consent”) relating to the provision of offers for services and products, and profiling activities;
  • b) (“performance of a contract to which the data subject is party” or “execution of pre-contractual measures”);
  • c) “necessary for compliance with a legal obligation to which the Data Controller is subject”;
  • f) processing is necessary for the pursuit of the legitimate interests pursued by the Data Controller or by third parties.

The User may refuse consent and may revoke consent already provided at any time.

However, refusing consent may make it impossible to provide certain services and the browsing experience may be compromised.

How the collected data is processed

The personal data collected is processed in compliance with the principles of lawfulness, fairness, and transparency, as set forth in Article 5 of the GDPR, including with the aid of IT and telematic tools designed to store and manage the data, and, in any case, in a manner that guarantees its security and protects the data subject’s utmost confidentiality.

NB: In some cases, communications are sent using the MailChimp platform (MailChimp is an online marketing platform managed by The Rocket Science Group LLC, a company headquartered in the State of Georgia, USA). For the MailChimp privacy policy, please refer to the website https://mailchimp.com/legal/privacy/

Categories of subjects authorised to process data and to whom the data may be communicated

In addition to the Data Controller, in some cases, users’ personal data will be disclosed and processed, in compliance with applicable legislation, by other parties involved in the organization of this Website:

  • administrative, commercial, marketing, legal, system administrators, or external parties (such as third-party technical service providers, mail carriers, hosting providers, IT companies, communications agencies), appointed, in this case, as Data Processors by the Data Controller pursuant to Art. 28 GDPR. An updated list of Data Processors may be requested from the Data Controller at any time;
  • to public security authorities or other public entities for purposes of defense, state security, and crime detection, or to judicial authorities in compliance with legal obligations, where a crime is suspected.

The Data is processed at the Data Controller’s operating offices and in any other location—including outside the EU—where the parties involved in the processing are located.

Retention period

Depending on the various purposes and purposes for which they were collected, the data will be retained for the period required by applicable law or for the period strictly necessary to achieve those purposes. Specifically:

  • Browsing data will be retained for a maximum of 365 days;
  • Data collected through cookies will be retained for a period of time no longer than that indicated in the extended information attached to this document;
    Personal Data collected for purposes related to the performance of a contract between the Data Controller and the User will be retained until such contract has been fully performed;
  • Personal Data collected for purposes related to the Data Controller’s legitimate interest will be retained until such interest has been satisfied;
  • With regard to the pursuit of commercial and profiling purposes, the data will be retained for a period of 5 (five) years.

When processing is based on the User’s consent, the Data Controller may retain the Personal Data for a longer period until such consent is revoked. Furthermore, the Data Controller may be required to retain Personal Data for a longer period in compliance with a legal obligation or by order of an authority.

At the end of the retention period, Personal Data will be deleted. Therefore, upon expiration of this period, the right to access, erasure, rectification, and the right to data portability can no longer be exercised.

User Rights

We inform you that, as a data subject, you may exercise the rights provided for by the GDPR with respect to all personal data processed, specifically:

  • right of access to collected and processed data (Article 15);
  • right to obtain rectification of data (Article 16);
  • right to obtain erasure of data and the right to be forgotten (Article 17);
  • right to restrict processing (Article 18);
  • right to data portability to another controller (Article 20);
  • right to object to processing (Article 21);
  • right to withdraw consent (if the processing is based on consent), without prejudice to the lawfulness of processing based on consent before its withdrawal (Article 7);
  • right to lodge a complaint with the Supervisory Authority (Article 77);
  • right to lodge a judicial appeal against the Supervisory Authority (Article 78) and against the Data Controller or Processor (Article 79).

Right to complain

Data subjects who believe that the processing of their personal data through this site violates the Regulation have the right to lodge a complaint with the Data Protection Authority, pursuant to Article 77 of the Regulation, or to take appropriate legal action (Article 79 of the Regulation).

Automated processing and profiling

By providing your consent, the data collected may be subject to an automated decision-making process, using a specific algorithm that will determine which communications are best suited to your profile or which may be of greatest interest.

Nothing proposed will be binding on you.

The data subject has, in any case, the right to obtain human intervention in the decision-making process by the Data Controller, to express their opinion, to obtain an explanation of the decision reached, and to contest the decision itself.

How to exercise your rights

To exercise the rights set forth, Users may submit a request using the contact details of the Data Controller or DPO indicated in this document. Requests are submitted free of charge and will be processed by the Data Controller as quickly as possible, in any case within one month.

Cookie Policy

This website uses tracking tools. To learn more, the user can consult the website’s Cookie Policy.

Changes to this privacy policy

The Data Controller reserves the right to make changes to this privacy policy at any time by notifying Users on this page and, if possible, on this Website and, where technically and legally feasible, by sending a notification to Users via any contact information available to the Data Controller. Please check this page frequently, referring to the date of the last modification indicated at the bottom.

If the changes affect processing based on consent, the Data Controller will collect the User’s consent again.

Last updated: 22th July 2026