This policy explains how we process the personal data of people who visit www.poctus.it and people who contact us, under Regulation (EU) 2016/679 (“GDPR”) and Italian Legislative Decree 196/2003.
1. Data controller
The data controller is Francesco Saverio Mazzi (Frasma), an independent software studio based in Mantua, Italy, VAT no. IT02750410207.
For any question about your data, write to us at riccardocorona07@gmail.com.
2. What data we collect
We only collect what we need to answer your requests and run the site:
- Data you send through the “Book a demo” and “Become a partner” forms: full name, role, work email, company name and size, and your message.
- Data you send if you contact us by email or WhatsApp: your address or number and the content of your message.
- Technical data collected automatically by the server hosting the site: IP address, date and time, requested page, browser. It is used for security and to keep the site running, not to identify you.
3. Why we process it and on what legal basis
- Answering your demo, contact or Founding Partner Program requests and arranging intro calls: pre-contractual steps taken at your request (Art. 6(1)(b) GDPR).
- Keeping the site secure and working properly: our legitimate interest (Art. 6(1)(f) GDPR).
- Meeting legal obligations, where applicable: legal obligation (Art. 6(1)(c) GDPR).
4. Who we share it with
We never sell or hand over your data to third parties for marketing. Your data is handled by the Poctus founders and by the following providers, acting as processors or as independent controllers for their own services:
- Vercel Inc. (USA): website hosting and server logs.
- Web3Forms: forwarding messages sent through the site forms to the Poctus inbox.
- Google (Gmail): the mailbox we use to receive and answer messages.
- WhatsApp / Meta: only if you choose to contact us on WhatsApp.
- register.it: domain and DNS management.
5. Transfers outside the European Union
Some of these providers are based in, or process data in, the United States. In those cases the transfer relies on the EU-US Data Privacy Framework or on the Standard Contractual Clauses approved by the European Commission.
6. How long we keep it
Contact and demo request data is kept for as long as needed to handle the request and, in any case, no longer than 24 months after our last contact, unless a contractual relationship begins. Server logs are kept by the hosting provider for short periods, according to its policies.
7. Cookies and similar technologies
The site uses no profiling cookies, no third-party cookies and no analytics or advertising tools. We only use technical browser storage (sessionStorage) so the opening animation doesn’t replay when you switch language: it is cleared when you close the tab and needs no consent.
8. Your rights
At any time you can ask to access, correct or delete your data, restrict its processing, receive it in a portable format, or object to processing based on legitimate interest, by writing to riccardocorona07@gmail.com. We will reply within 30 days.
If you believe the processing breaches the GDPR, you can lodge a complaint with the Italian Data Protection Authority (www.garanteprivacy.it) or the authority in your country.
9. Minors
The site is aimed at companies and professionals. We do not knowingly collect data from anyone under 18.
10. Changes to this policy
We may update this policy, for example if the services we use change. The date of the latest update is shown at the top of the page.