Skip to main content

Privacy Policy

Pursuant to EU Regulation 2016/679 (GDPR) and Italian Legislative Decree 196/2003 – Last updated: June 2025

1. Data Controller

The Data Controller for personal data collected through the website www.mountainguides.alpine-world.com is:

Alpine World Mountain Guides
Aosta Valley, Italy
Email: info@mountainguides.alpine-world.com
Website: www.mountainguides.alpine-world.com

2. Types of Personal Data Collected

2.1 Data provided voluntarily by the User

  • First and last name
  • Email address
  • Phone number
  • Messages sent via the contact form
  • Information related to booking requests for hikes, climbing, or other activities
  • Any other information voluntarily provided by the User

2.2 Data collected automatically

  • IP address and browsing data (pages visited, duration of visit)
  • Browser type and operating system
  • Data collected via cookies and tracking technologies (see section 8)

3. Purposes of Processing and Legal Bases

Personal data are processed for the following purposes:

3.1 Responding to contact and booking requests

Legal basis: performance of pre-contractual measures or performance of a contract (Art. 6(1)(b) GDPR). Data provided via contact or booking forms are used to respond to enquiries and manage bookings for the activities offered (hiking, climbing, ski mountaineering and other mountain experiences).

3.2 Compliance with legal obligations

Legal basis: legal obligation (Art. 6(1)(c) GDPR). The Data Controller processes data where necessary to comply with obligations under Italian and EU law (e.g. tax, accounting and insurance obligations).

3.3 Statistical analysis and website improvement

Legal basis: legitimate interest of the Data Controller (Art. 6(1)(f) GDPR). Browsing data are analysed in aggregated and anonymised form to understand how users interact with the website and to improve its features and user experience.

3.4 Commercial communications and newsletter (with consent only)

Legal basis: consent of the data subject (Art. 6(1)(a) GDPR). Where the User has given explicit consent, data may be used to send updates, offers and news about Alpine World Mountain Guides services. Consent may be withdrawn at any time.

4. Processing Methods

Personal data are processed using electronic and paper-based tools, with appropriate technical and organisational security measures in place to prevent loss, unlawful use or unauthorised access. Processing is carried out in a lawful, fair and transparent manner, collecting only the data necessary for the purposes for which they are processed (data minimisation principle, Art. 5 GDPR).

5. Data Retention Period

Personal data are retained for the time strictly necessary to achieve the purposes for which they were collected, and in particular:

  • Contact and booking data: for the duration of the relationship and for 10 years thereafter, in accordance with legal obligations on tax and accounting matters.
  • Data for marketing purposes (with consent): until the User withdraws consent.
  • Browsing data and technical logs: a maximum of 12 months from collection, unless required for the detection of criminal offences.

6. Communication and Disclosure of Data

Personal data are not disclosed to the public. They may be communicated exclusively to:

  • Providers of technical and IT services (hosting, website management), acting as Data Processors pursuant to Art. 28 GDPR.
  • The Data Controller’s professional advisors (accountants, lawyers), to the extent strictly necessary.
  • Public authorities, where required by law.

Data will not be sold to third parties under any circumstances.

7. Transfer of Data Outside the EU

Some service providers used by the Data Controller (e.g. Google Analytics) may transfer data outside the European Economic Area (EEA). In such cases, the Data Controller ensures that the transfer takes place in accordance with the safeguards provided for under the GDPR, such as European Commission adequacy decisions or standard contractual clauses.

8. Cookies and Tracking Technologies

The website uses cookies and similar technologies. According to their function, cookies are classified as follows:

8.1 Technical cookies (necessary)

Essential for the correct functioning of the website. They do not require the User’s consent.

8.2 Analytical cookies

Used to collect information about website usage (e.g. Google Analytics with anonymised IP). They require the User’s consent. To disable data collection by Google Analytics: https://tools.google.com/dlpage/gaoptout

8.3 Profiling and marketing cookies

Used to display personalised advertising (e.g. Meta Pixel/Facebook). They require the User’s explicit consent.

Users can manage their cookie preferences via the banner displayed on first access to the website and at any time through their browser settings.

9. Rights of the Data Subject

Pursuant to Articles 15–22 of the GDPR, the User has the right to:

  • Access (Art. 15): obtain confirmation that personal data concerning them are being processed and receive a copy.
  • Rectification (Art. 16): obtain the correction of inaccurate or incomplete data.
  • Erasure (Art. 17): request the deletion of personal data (right to be forgotten), where no legal obligation to retain them applies.
  • Restriction of processing (Art. 18): request the suspension of processing in certain cases.
  • Data portability (Art. 20): receive personal data in a structured, machine-readable format.
  • Objection (Art. 21): object to processing based on legitimate interest or for direct marketing purposes.
  • Withdrawal of consent (Art. 7): withdraw consent at any time, without prejudice to the lawfulness of processing carried out before withdrawal.

To exercise these rights, the User may contact the Data Controller by writing to: info@mountainguides.alpine-world.com. The Data Controller will respond within 30 days of receiving the request.

The User also has the right to lodge a complaint with the Italian Data Protection Authority: www.garanteprivacy.it

10. Data Security

The Data Controller implements appropriate technical and organisational security measures to protect personal data against unauthorised access, disclosure, accidental alteration or destruction. These include: use of the HTTPS protocol for data transmission, access restricted to authorised personnel only, and regular updating of IT systems.

11. Processing of Minors’ Data

The website is not intended for users under the age of 16 and the Data Controller does not knowingly collect personal data from minors. Should the Data Controller become aware that data from a minor have been collected without the consent of the person holding parental responsibility, it will proceed with their immediate deletion.

12. Links to Third-Party Websites

The website may contain links to third-party websites. The Data Controller is not responsible for the privacy practices adopted by such sites and invites Users to read their respective privacy policies before providing any personal data.

13. Changes to This Privacy Policy

The Data Controller reserves the right to amend this Privacy Policy at any time, including following changes to applicable legislation. Material changes will be communicated to Users via a notice on the website. Users are invited to consult this page periodically to view the updated version.

This Privacy Policy is drawn up in accordance with Regulation (EU) 2016/679 (GDPR) and Italian Legislative Decree 196/2003 (Privacy Code) as amended by Legislative Decree 101/2018.

This site is registered on wpml.org as a development site. Switch to a production site key to remove this banner.