Privacy Policy for the Website sardinia4emotions.eu

Pursuant to EU Regulation 2016/679 – GDPR and Italian Legislative Decree 196/2003 as amended by Legislative Decree 101/2018.

1. Data Controller

The Data Controller is:
Paolo Codini
Via Rockfeller 50 Sassari (SS), Italy
Email: [email protected]
The Data Controller is responsible for the processing of personal data collected through the website sardinia4emotions.eu.

2. Purpose of Processing

The website collects and processes personal data exclusively for:
– Browsing and website security
– Anonymous usage statistics through Matomo
– Handling requests sent via email
– Displaying historical comments (feature currently disabled)
Only after explicit consent, the delivery of non‑personalized advertising through Google AdSense, for the purpose of showing contextual ads, measuring ad performance, preventing fraud and abuse.
No profiling is carried out. Technical data may be shared with Google for the management of non‑personalized advertising.

3. Types of Data Processed

3.1 Browsing Data

The website’s systems automatically acquire certain technical data necessary for operation:
– IP address (anonymized when used for statistics)
– date and time of the visit
– requested URLs
– browser and device information
These data are used:
– to ensure security and proper functioning of the website
– to generate aggregated and anonymous statistics through Matomo
– for technical checks in case of malfunctions

3.2 Data Provided Voluntarily

Users may send emails to the Data Controller using the addresses provided on the website. The data provided (name, email, message content) are used exclusively to respond to the request.

3.3 Comments

The comment submission feature is disabled. Historical comments remain visible until the user requests deletion.

3.4 Data Processed by Google AdSense

Google may collect:
– IP address
– user agent
– device information
– page context
– technical data necessary to prevent fraud, abuse, and ensure correct ad delivery
Non‑personalized ads do not use browsing history, interests, or user activity.

4. Cookies and Analytics Tools

For data processed through Cookies, please refer to the dedicated Cookie Policy.

5. Data Location and External Services

5.1 Hosting

The website is hosted on a Netcup VPS, with servers located in the European Union.

5.2 CDN

To improve performance and security, the Cloudflare network is used.
Cloudflare may process technical browsing data (e.g., IP) for security purposes (firewall, attack mitigation). Cloudflare adheres to the EU–US Data Privacy Framework 2023.

5.3 Ferry Booking Service

For the external ferry booking service, the specific privacy notice provided on the ferry booking page applies, accessible before finalizing the reservation.

5.4 Google AdSense

The website uses Google AdSense to display non‑personalized ads.
Google may process technical browsing data for security purposes, fraud prevention, and ad performance measurement.
Data may be transferred to the United States in compliance with the EU–US Data Privacy Framework.

6. Legal Basis for Processing

Browsing and website security → legitimate interest of the Data Controller (Art. 6.1.f GDPR)
Technical cookies → legitimate interest
Matomo analytics cookies → user consent
Email requests → pre‑contractual measures (Art. 6.1.b GDPR)
Historical comments → original user consent
Google AdSense advertising (non‑personalized ads) → user consent (cookie banner)

7. Data Retention

Technical browsing data: retained for the time necessary for security and operation.
Matomo data: retained in anonymous form.
Emails sent by users: retained for the time necessary to handle the request.
Historical comments: retained until the user requests deletion.
Data processed by Google AdSense: retained by Google for the time necessary for security, fraud prevention, and ad performance measurement, according to Google’s Privacy Policy.

8. Data Recipients

Data may be processed by:
– Netcup (hosting)
– Cloudflare (CDN and security)
– Google Ireland Ltd. / Google LLC (AdSense service)
– Technical providers supporting website operation
Technical data may be shared with Google for the management of non‑personalized advertising.

9. User Rights

Users may exercise the rights provided by Articles 15–22 GDPR:
– access
– rectification
– deletion
– restriction
– objection
– portability (where applicable)
To exercise these rights: [email protected]

10. Disclaimer

This blog is not a newspaper, has no periodic publication schedule, and cannot be considered an editorial product under Italian Law 62/2001.

11. Updates

This privacy notice may be modified at any time.
Last update: October 2026.