VDF Solutions · Homepage
DE IT EN

Privacy Policy

Your Data. Protected, transparent & secure.

Protecting your personal data is a top priority for VDF Solutions. Below, we explain in detail what information we collect when you use our website, how we process it, and your rights under the General Data Protection Regulation (GDPR) and Italian privacy legislation (Codice della Privacy).

1. Data Controller

VDF Solutions
Proprietor: Valentino Delle Femine
Marlignerstr. 65
39012 Meran (BZ), South Tyrol, Italy
Telephone: +39 347 724 1915
Email: info@vdf-solutions.com
Tax ID (Codice Fiscale): DLLGTN88P19A952I
VAT ID: [MANUAL ENTRY REQUIRED: Partita IVA / VAT ID]

A formal Data Protection Officer (DPO) is not legally required as the thresholds under Art. 37(1) GDPR are not met.

2. Principles and Legal Bases

We process personal data strictly in compliance with Regulation (EU) 2016/679 (GDPR), the Italian Legislative Decree 196/2003 as amended, and applicable ePrivacy provisions.

Our data processing relies on the following legal bases:

3. Website Delivery and Server Log Files (Hosting)

When you visit our website, your browser automatically transmits technical information to our hosting infrastructure. This information is temporarily stored in server logs.

The following data is processed automatically:

Hosting Provider: This website is hosted on Cloudflare Pages (Cloudflare, Inc., 101 Townsend St, San Francisco, CA 94107, USA). Cloudflare operates a global Content Delivery Network (CDN) to ensure fast, secure, and resilient delivery. Data transfers to the US are protected by standard contractual clauses (SCC) and Cloudflare’s certification under the EU-U.S. Data Privacy Framework.

Legal Basis: Art. 6(1)(f) GDPR. Our legitimate interest lies in the technical delivery, security, and stability of our website.

4. Contact Enquiries (Web3Forms)

When you submit an enquiry via our contact form, we process the information you provide (first and last name, business email address, company name, topic of interest, budget range, project description, and technical campaign parameters such as utm_source, utm_campaign, and referrer).

Processor Web3Forms: For encrypted form delivery, we utilize the API service Web3Forms (Surge Digital Inc., USA). When you submit the form, your entries are transmitted via HTTPS directly to api.web3forms.com and forwarded as an email notification to our inbox. Web3Forms operates as a data processor under Art. 28 GDPR on the basis of standard contractual clauses.

Legal Basis: Art. 6(1)(b) GDPR (pre-contractual communication) and Art. 6(1)(f) GDPR (legitimate interest in prompt and reliable client communication).

Retention Period: We retain your enquiry only as long as necessary to process your request, maintain documentation of business correspondence, or comply with statutory retention periods (e.g., 10 years pursuant to Art. 2220 Italian Civil Code).

5. External Media (Supabase Storage Video Previews)

Our homepage and design showcase feature moving video previews of our work. These MP4 video assets are delivered via the Supabase cloud infrastructure (Supabase Inc., Singapore / USA, hosted on AWS).

Consent & Technical Enforcement: By default, on your initial visit, no external video streams are loaded from Supabase. Instead, locally hosted WebP images are displayed from our own server. Only when you consent to the “External Media” category in our Consent Management modal are the video streams loaded from Supabase.

When videos are retrieved, your IP address is transmitted to Supabase servers to facilitate media streaming.

Legal Basis: Art. 6(1)(a) GDPR (consent via the Consent Manager).

6. Web Typography (Google Fonts)

This website incorporates typefaces provided by Google Fonts (Google Ireland Limited, Dublin, Ireland / Google LLC, Mountain View, CA, USA). When fonts are fetched, your browser connects to Google servers, transmitting your IP address.

Google is certified under the EU-U.S. Data Privacy Framework. External font loading is linked to our consent preferences.

Legal Basis: Art. 6(1)(a) GDPR (consent) or Art. 6(1)(f) GDPR where fonts are locally cached.

7. Cookies and Local Browser Storage (Consent Management)

We do not use advertising, profiling, or cross-site tracking cookies. To record and enforce your consent decisions in a legally compliant manner, we employ a single first-party storage element:

Name: vdf_consent
Storage Location: localStorage and first-party cookie
Provider: VDF Solutions (First-party)
Purpose: Stores your individual consent choices (allowed categories, consent timestamp, version ID).
Retention: 12 months (or until cleared in your browser).
Legal Basis: Art. 5(3) ePrivacy Directive and Art. 6(1)(c)/(f) GDPR (compliance with accountability duties under Art. 5(2) GDPR).

For more details, please see our dedicated Cookie Policy.

8. Your Rights as a Data Subject

Under the GDPR, you have the following rights at any time:

To exercise any of your rights, simply send an email to: info@vdf-solutions.com.

9. Right to Lodge a Complaint with a Supervisory Authority

If you believe that our processing of your personal data infringes data protection legislation, you have the right to lodge a formal complaint with a competent supervisory authority (Art. 77 GDPR).

The primary supervisory authority responsible for VDF Solutions (based in Meran, South Tyrol, Italy) is:

Garante per la protezione dei dati personali
Piazza Venezia 11, 00187 Roma, Italy
Telephone: +39 06 696771
Email: protocollo@gpdp.it
Website: https://www.garanteprivacy.it

You may also contact the supervisory authority in your country of habitual residence or workplace within the European Union.

10. Updates to this Privacy Policy

This privacy notice is currently effective as of September 2026. As our services evolve or legal requirements change, we will update this document accordingly.

← Back to homepage