Differences
This shows you the differences between two versions of the page.
| Both sides previous revision Previous revision Next revision | Previous revision | ||
| shared:privacy_setup [2021/12/13 07:47] – [Cookie consent] ggmei | shared:privacy_setup [2022/03/08 18:50] (current) – ggmei | ||
|---|---|---|---|
| Line 1: | Line 1: | ||
| - | ====== Privacy Setup ====== | + | ====== Privacy Setup (DRAFT) |
| The scope of the [[https:// | The scope of the [[https:// | ||
| - | Some of this processing happens on the website, which has to be compliant with the law. Three elements are needed: | + | Some of this processing happens on the website, which has to be compliant with the law. Three elements are strictly |
| - The design of the website must be compliant | - The design of the website must be compliant | ||
| - | - [[# | + | - [[# |
| - | - [[# | + | - [[# |
| - | There are also two further elements, that are less clear about the practical implementation and need: | + | There are also two further elements that may be activated on company' |
| * [[# | * [[# | ||
| * [[# | * [[# | ||
| Line 16: | Line 16: | ||
| These policies are meant to give transparency about the data treatments. | These policies are meant to give transparency about the data treatments. | ||
| + | |||
| + | **What to do**: the company can provide their texts, or both policies can be automatically generated by Cone with Iubenda. In both cases, the responsibility of the legal compliance lies on the company, which must control and approve the policies and keep them updated (directly, via third-party services, or via Cone). | ||
| + | |||
| + | **Costs**: if the company provides the policies, then they are just editorial content and there is no cost. If Cone sets them up with a third-party service, for each language of the website there is an extra annual fee, which includes Cone and third-party' | ||
| References: | References: | ||
| Line 24: | Line 28: | ||
| * single page [[https:// | * single page [[https:// | ||
| * separated pages [[https:// | * separated pages [[https:// | ||
| - | |||
| - | **What to do**: the company can provide their texts, or both policies can be automatically generated by Cone with Iubenda. In both cases, the responsibility of the legal compliance lies on the company, which must control and approve the policies and keep them updated (directly, via third-party services, or via Cone). | ||
| - | |||
| - | **Costs**: if the company provides the policies, then they are just editorial content and there is no cost. If Cone sets them up with a third-party service, for each language of the website there is an extra annual fee, which includes Cone and third-party' | ||
| ==== Cookie consent ==== | ==== Cookie consent ==== | ||
| Line 37: | Line 37: | ||
| **Cost**: extra on the annual fee, which includes Cone and third-party' | **Cost**: extra on the annual fee, which includes Cone and third-party' | ||
| - | ** Cookie consent solution | + | Iubenda' |
| * [it] https:// | * [it] https:// | ||
| * [en] https:// | * [en] https:// | ||
| Line 45: | Line 45: | ||
| Registro Preferenze Cookie | Registro Preferenze Cookie | ||
| + | https:// | ||
| ==== Record of consents ==== | ==== Record of consents ==== | ||
| + | It is also a broad requirement to keep a record of all the given consents. How this applies to the website processing in general is less clear. | ||
| + | |||
| + | One approach is to keep a record of a case by case processing, such as: | ||
| + | * keep a screenshot of the information and registration forms | ||
| + | * keep a list of registration and information requests with date and IP | ||
| + | * see case by case for every other service used (newsletters, | ||
| + | |||
| + | There are on the market also systems to cover this organically (see for example [[https:// | ||
| + | |||
| + | **Cost**: extra on the annual fee | ||
| + | |||
| + | |||
| + | ==== GDPR references ==== | ||
| + | |||
| + | * Iubenda on GDPR and other privacy laws [it] https:// | ||
| + | * Frequent cases (blog, ecommerce, newsletter) [it] https:// | ||
| - | https:// | ||