(art. 13 EU Regulation 2016/679)

This information is valid for the website on which it is hosted pursuant to art. 13 of EU Regulation 2016/679 (General Data Protection Regulation; hereinafter “GDPR”) and concerns the processing of the interested party’s personal data carried out by the Professional in the exercise of his professional activity.


The Data Controller is

BaRum Group Srl

Contrada Santa Maria di Poggiarelli,
Industrial Area,
95041 Caltagirone, Catania

Owner’s email address: info@barumgroup.it


Personal data is collected and processed, both manually and via electronic systems, by the Data Controller and by appointed personnel for the following purposes: execution of the contract, pre-contractual measures and/or requests from the interested party; All in full compliance with the security and confidentiality rules established by current provisions.


The legal basis of the processing, depending on the case, is at least one of the following: execution of the contract with the interested party and/or pre-contractual measures; pursuit of a legitimate interest of the owner or of third parties, provided that the interests and rights do not prevail; compliance with legal and regulatory obligations or any orders from the Authorities; exercise and/or defense of a right in the competent offices.


The interested party can also contact the Data Controller by using the appropriate online form and/or by sending an email directly. In this case, the interested party voluntarily provides their data to the Data Controller, including their email address, in order to ask questions and/or be contacted.

The provision of personal data in relation to the execution of the contractual relationship and/or the requests of the interested party is mandatory; any refusal will make it impossible to fulfill the requested services.


Personal data are processed with automated and non-automated tools, for the time strictly necessary to achieve the purposes for which they were collected. Personal data is not disclosed to third parties. No data is released.

The data processing takes place at the studio of the Data Controller. The emails received by the User are also saved  hosted  on the Setupgrade Server in Germany.

The data stored on paper media are stored in special registers and/or cards, the conservation of which is implemented by archiving in special containers, kept at the Data Controller’s headquarters. Adequate security measures are adopted against the risk of intrusion and unauthorized access, suitable for guaranteeing the integrity, availability and confidentiality of the data, as well as the protection of the relevant areas and premises for the purposes of their custody and accessibility.


Personal data may be communicated to subjects (so-called “recipients”) for the purposes determined by the legal basis applicable from time to time.

In particular, personal data may be communicated to the following categories of subjects, all based within the European Union:

  • subjects who provide services and assistance activities to the Data Controller in the management of relationships with interested parties (order management, payments, invoicing, shipping, site maintenance): necessary for the execution of the contract (contractual obligation; legitimate interest);
  • people, companies, associations, professional firms that provide assistance and consultancy services in favor of the Data Controller (legal obligations and exercise or defense of a right);
  • suppliers of the Data Controller: necessary for the execution of the contract (contractual obligation; legitimate interest);
  • colleagues, housekeepers, consultants and other professionals, in relation to the execution of the professional tasks received (contractual obligation; legitimate interest);


The data is processed with logic related to the purpose indicated above, in order to guarantee the security and confidentiality of the data itself.

The data are stored at the headquarters of the Data Controller for a period of time not exceeding that necessary for the purposes for which they were collected and subsequently processed. In particular:

  • in relation to the purpose of managing the contractual relationships with the interested party: for the entire duration of the contract;
  • in relation to the fulfillment of legal obligations: for the entire duration envisaged by the relevant obligations;
  • in relation to the exercise and/or defense of a right: up to the limitation of rights and judicial actions.

The data will subsequently be deleted and/or anonymized.


The interested party may exercise the rights provided for by articles 15-22 of the GDPR towards the Data Controller, as applicable. In particular, he has the right to request access to data concerning him, updating, integration, rectification, cancellation, limitation, portability of data in open format (e.g. CSV), to revoke consent at any time without prejudice to the lawfulness of the processing based on the consent given before the revocation.

For legitimate reasons, the interested party may object, in whole or in part, to the processing of personal data (art. 21 GDPR), by sending the relevant request to the Data Controller by ordinary mail, e-mail or fax. In particular, the interested party has the right to object to the sending of commercial communications at any time.

Pursuant to art. 77 of the GDPR, the interested party also has the right to lodge a complaint with the Supervisory Authority of the Member State in which he habitually resides, where he works or the place where the alleged violation occurred. In Italy, the Guarantor for the protection of personal data, based in Rome, is responsible (www.garanteprivacy.it).


The Data Controller is committed to protecting the privacy of visitors and users.

The computer systems and procedures used to operate the Site acquire, during their normal operation, some data whose transmission is implicit in the use of Internet communication protocols.

This category of data includes the IP addresses or domain names of the computers used by users who connect to the site, the addresses in URI (Uniform Resource Identifier) ​​notation of the requested resources, the time of the request, the method used in submitting the request to the server, the size of the file obtained in response, the numerical code indicating the status of the response given by the server (successful, error, etc.) and other parameters relating to the operating system and the IT environment of the interested party.

This data is used for the sole purpose of obtaining anonymous information on the use of the Site, as well as to check its correct functioning. The data could be used to ascertain responsibility in the event of the commission of crimes.


Cookies consist of portions of code installed within the browser that assist the Owner in providing the Service based on the purposes described. Some of the purposes of installing Cookies may also require the User’s consent.

When the installation of Cookies is based on consent, this consent can be freely revoked at any time by following the instructions contained in this document.



This type of service analyzes the traffic of Vittorio Nicoletti’s VirtualArs, potentially containing Users’ Personal Data, in order to filter it from parts of traffic, messages and content recognized as SPAM.

Google reCAPTCHA (Google Inc.)

Google reCAPTCHA is a SPAM protection service provided by Google Inc.
Use of the reCAPTCHA system is subject to   Google’s privacy policy  and  terms of use .

Personal Data collected: Cookies and Usage Data.

Place of processing: United States –  Privacy Policy .



If an interaction service with social networks is installed, it is possible that, even if Users do not use the service, it collects traffic data relating to the pages on which it is installed.

Facebook Like Button and Social Widgets (Facebook, Inc.)

The “Like” button and Facebook social widgets are interaction services with the Facebook social network, provided by Facebook, Inc.

Personal Data collected: Cookies and Usage Data.

Place of processing: United States –  Privacy Policy .

Twitter Tweet Button and Social Widgets (Twitter, Inc.)

The Tweet button and Twitter social widgets are services for interaction with the Twitter social network, provided by Twitter, Inc.

Personal Data collected: Cookies and Usage Data.

Place of processing: United States –  Privacy Policy .

Pinterest β€œPin it” button and social widgets (Pinterest)

The “Pin it” button and Pinterest social widgets are interaction services with the Pinterest platform, provided by Pinterest Inc.

Personal Data collected: Cookies and Usage Data.

Place of processing: United States –  Privacy Policy .

Google+ +1 button and social widgets (Google Inc.)

The +1 button and Google+ social widgets are interaction services with the Google+ social network, provided by Google Inc.

Personal Data collected: Cookies and Usage Data.

Place of processing: United States –  Privacy Policy .

Linkedin social button and widgets (LinkedIn Corporation)

The LinkedIn button and social widgets are interaction services with the LinkedIn social network, provided by LinkedIn Corporation.

Personal Data collected: Cookies and Usage Data.

Place of processing: United States –  Privacy Policy .



Instagram Widgets (Instagram, Inc.)

Instagram is an image viewing service managed by Instagram, Inc. which allows VirtualArs by Vittorio Nicoletti to integrate such content within its pages.

Personal Data collected: Cookies and Usage Data.

Place of processing: United States –  Privacy Policy .

Google Maps widget (Google Inc.)

Google Maps is a map viewing service managed by Google Inc. which allows VirtualArs by Vittorio Nicoletti to integrate such content within its pages.

Personal Data collected: Cookies and Usage Data.

Place of processing: United States –  Privacy Policy .


In addition to what is indicated in this document, the User can manage preferences relating to Cookies directly within their browser and prevent – for example – third parties from installing them. Through the browser preferences it is also possible to delete Cookies installed in the past, including the Cookie in which the consent to the installation of Cookies by this site is possibly saved. The User can find information on how to manage Cookies with some of the most popular browsers, for example at the following addresses:  Google Chrome ,  Mozilla Firefox ,  Apple Safari  and  Microsoft Internet Explorer .

With reference to Cookies installed by third parties, the User can also manage their settings and revoke consent by visiting the relevant opt ​​out link (if available), using the tools described in the third party’s privacy policy or by contacting the third party directly.

Without prejudice to the foregoing, the User may use the information provided by  EDAA  (EU),  Network Advertising Initiative  (USA) and  Digital Advertising Alliance  (USA),  DAAC  (Canada),  DDAI  (Japan) or other similar services. With these services it is possible to manage the tracking preferences of most advertising tools. The Owner, therefore, advises Users to use these resources in addition to the information provided in this document.


The data controller is

BaRum Group Srl

Contrada Santa Maria di Poggiarelli,
Industrial Area,
95041 Caltagirone, Catania

Owner’s email address: info@barumgroup.it

Since the installation of Cookies and other tracking systems operated by third parties through the services used within WordPress cannot be technically controlled by the Owner, any specific reference to Cookies and tracking systems installed by third parties is to be considered indicative. To obtain complete information, the User is invited to consult the privacy policy of any third party services listed in this document.

Given the objective complexity of identifying technologies based on Cookies, the User is invited to contact the Owner should he wish to receive any further information relating to the use of the Cookies themselves.