Legal documents
Privacy Policy
Last updated: September 4, 2026
This policy explains what personal data we collect when you visit scontino.com, why we process it and which rights you can exercise. It is provided under Articles 13 and 14 of Regulation (EU) 2016/679 (GDPR). It covers the public website: the application at app.scontino.com also processes account and subscription data, as set out below.
1. Who processes your data
The data controller is Bussolari Alessio, Via del Prete 121, 47841 Cattolica (RN), Italia, VAT no. 02037590383, tax code BSSLSS89L17D548E.
For any request about your data you can write to support@scontino.com or by certified email to alessio.bussolari@pec.it. We have not appointed a Data Protection Officer, because none of the cases set out in Article 37 of the GDPR applies.
2. What data we collect
We only collect the data needed to let you use the site and to reply to you. We do not buy contact lists and we do not enrich your data with information taken from other sources.
- Data you send us through the contact form: name, email address, subject (optional) and the text of your message.
- Browsing data logged automatically by the servers: IP address, date and time of the request, page requested, browser and operating system type, referring page.
- Language preference, stored on your device in a technical cookie.
- Account data, if you decide to sign up: registration happens on app.scontino.com and covers your email, encrypted password, billing details, and the Telegram channels and Amazon Associates account you connect.
3. Why we process it and on what legal basis
Every processing activity has a precise purpose and a legal basis that justifies it.
- Replying to the requests you send through the form or by email: pre-contractual steps and our legitimate interest in answering people who write to us (Art. 6.1.b and 6.1.f GDPR).
- Running the site, remembering the language you chose and protecting it from abuse and attack attempts: legitimate interest in offering a secure, working service (Art. 6.1.f GDPR).
- Providing the service to people who sign up, managing subscriptions and payments: performance of the contract (Art. 6.1.b GDPR).
- Issuing and keeping tax documents: legal obligation (Art. 6.1.c GDPR).
We do not profile you, we do not make automated decisions that produce legal effects on you, and we do not use your data for advertising.
4. Who we share data with
We do not sell your data and we do not pass it to third parties for marketing purposes. It is accessed only by the providers that help us run the service, appointed as data processors under Article 28 of the GDPR:
- Hetzner Online GmbH: hosting of the servers that run the site and the application, with data centres in the European Union.
- Google Ireland Limited: the pages load their typefaces from Google Fonts, so your browser connects to Google servers, which receive your IP address.
- Stripe Payments Europe Ltd.: handling of payments and subscriptions in the application. Card details are processed directly by Stripe and never pass through our systems.
- Our email provider, to receive and store the messages you send us.
We may also share data with public authorities or the courts where the law requires it.
5. Transfers outside the European Union
Our servers are in the European Union. Some providers may also process data in the United States: in those cases the transfer is covered by the standard contractual clauses approved by the European Commission and, where applicable, by the provider joining the EU-U.S. Data Privacy Framework. You can ask us for a copy of the safeguards in place by writing to support@scontino.com.
6. How long we keep it
We keep data only for as long as we need it for the purpose we collected it for.
- Messages sent through the contact form: 24 months from our last reply, then deleted.
- Server access logs: 12 months at most.
- Language technical cookie: 12 months, or until you clear it from your browser.
- Account and subscription data: for the whole duration of the relationship and, for tax documents only, for the following 10 years required by law.
7. Your rights
You can ask us at any time to access your data, correct it, erase it, restrict its processing, receive it in a machine-readable format or transfer it to another controller. You can object to processing based on our legitimate interest and, where processing is based on consent, withdraw it at any time without affecting what was done before.
To exercise your rights write to support@scontino.com: we reply within one month. If you believe the processing breaches the GDPR you can lodge a complaint with the Italian Data Protection Authority, the Garante per la protezione dei dati personali (garanteprivacy.it), or with the supervisory authority of the country where you live.
8. How we protect data
The site is served only over an encrypted connection (HTTPS). Access to the servers is limited to the people who need it and protected by personal keys; account passwords are stored encrypted and cannot be read, not even by us.
No measure is foolproof: if a data breach occurred with a high risk to your rights, we will tell you as required by Article 34 of the GDPR.
9. Minors
The service is not aimed at people under 18 and we do not knowingly collect their personal data. If you notice that a minor has sent us data, write to support@scontino.com: we will delete it without delay.
10. Changes to this policy
We may update this policy when the service, our providers or legal obligations change. The version in force is always the one published on this page, with the last update date at the top. If the changes are significant we will flag them on the site or by email.