Privacy policy of The Aniye Room program
Privacy Policy for the Processing of Personal Data in The Aniye Room Program
DEPECHE Srl Unipersonale, a company under the management and coordination of Portovenere Srl Unipersonale, as the data controller, wishes to inform users about how their data will be processed in accordance with Article 13 of the European Regulation 2016/679 (also known as "GDPR").
Purpose of Processing and Legal Basis
Depeche targets Aniye By users who have a valid account on the website, offering them participation in The Aniye Room program. This loyalty program allows users to collect points through their purchases and gain access to exclusive benefits.
The collected data (account registration details, date of birth, and spending volume) will be processed to manage The Aniye Room loyalty program for voluntarily enrolled users.
As part of this management, Depeche will send users service communications via email regarding the program’s operation, their achieved level, and their Stars points balance.
The processing of these data is necessary for fulfilling contractual obligations (Article 6, paragraph 1, letter b of the GDPR), as users must review and accept the Terms and Conditions available on the website. Providing this data is mandatory; failure to do so will result in the inability to participate in the program and, consequently, to receive its associated benefits and discounts.
Transfer of Data to Third Countries
The data will not be transferred to non-EU countries.
Data Retention Period
The data will be retained for the duration of the program or as long as the user remains enrolled.
If the user voluntarily opts out of the program, Depeche will automatically cancel any accumulated points and associated benefits.
Data Recipients
The data will be accessed by authorized internal personnel responsible for customer data processing, as well as IT service providers for hardware and software maintenance and support, who have been designated as data processors.
The data will not be disclosed to third parties.
Data Subject Rights
The data subject has the right to request access, rectification, deletion, restriction of processing, or to object to data processing, as well as the right to data portability, under the conditions set forth in Articles 15, 16, 17, 18, 20, and 21 of the GDPR.
Additionally, the data subject has the right to lodge a complaint with a Supervisory Authority if they believe that the data processing violates applicable data protection regulations.
To request information about data processing or exercise the rights mentioned above, users can contact the following email address: [email protected]