Legal Framework

Legal Information

dataguardcore — Via Paisiello 49, Paderno Dugnano, Milano, Italy

Privacy Policy

Effective Date: January 1, 2026

dataguardcore ("we," "our," or "us") is committed to protecting your personal data and respecting your privacy in accordance with the General Data Protection Regulation (EU) 2016/679 ("GDPR"), the California Consumer Privacy Act ("CCPA"), and all applicable data protection legislation.

1. Data Controller

The data controller responsible for your personal data is dataguardcore, located at Via Paisiello 49, Paderno Dugnano, Milano, Italy. Contact: [email protected]

2. Data We Collect

We may collect and process the following categories of personal data:

  • ▸ Identity Data: name, job title, company name
  • ▸ Contact Data: email address, phone number, physical address
  • ▸ Technical Data: IP address, browser type, operating system, device identifiers
  • ▸ Usage Data: pages visited, time spent, navigation patterns
  • ▸ Communication Data: correspondence records, inquiry details

3. Legal Basis for Processing

We process your personal data only when we have a lawful basis to do so, including:

  • ▸ Consent: where you have given explicit consent for a specific purpose
  • ▸ Contract: where processing is necessary for the performance of a contract
  • ▸ Legal Obligation: where we are required to comply with a legal obligation
  • ▸ Legitimate Interests: where processing is necessary for our legitimate business interests

4. Data Retention

We retain personal data only for as long as necessary to fulfil the purposes for which it was collected, or as required by applicable law. Specific retention periods are defined in our internal Data Retention Policy.

5. Your Rights

Under GDPR, you have the following rights regarding your personal data:

  • ▸ Right of Access (Article 15 GDPR)
  • ▸ Right to Rectification (Article 16 GDPR)
  • ▸ Right to Erasure / "Right to be Forgotten" (Article 17 GDPR)
  • ▸ Right to Restriction of Processing (Article 18 GDPR)
  • ▸ Right to Data Portability (Article 20 GDPR)
  • ▸ Right to Object (Article 21 GDPR)
  • ▸ Right not to be subject to automated decision-making (Article 22 GDPR)

To exercise any of these rights, contact us at [email protected]. We will respond within 30 days.

6. International Data Transfers

Where we transfer personal data outside the European Economic Area (EEA), we ensure appropriate safeguards are in place, including Standard Contractual Clauses (SCCs) approved by the European Commission or adequacy decisions where applicable.

7. Data Security

We implement appropriate technical and organisational measures to protect personal data against unauthorised access, alteration, disclosure, or destruction. These measures include encryption, access controls, and regular security assessments.

8. Data Breach Notification

In the event of a personal data breach, we will notify the relevant supervisory authority within 72 hours as required by Article 33 GDPR. Where the breach poses a high risk to individuals, we will also notify affected data subjects without undue delay.

9. Contact

For any privacy-related inquiries or to exercise your rights:

[email protected]

dataguardcore, Via Paisiello 49, Paderno Dugnano, Milano, Italy

You also have the right to lodge a complaint with the Italian Data Protection Authority (Garante per la protezione dei dati personali) at www.garanteprivacy.it.


Terms of Service

Effective Date: January 1, 2026

These Terms of Service ("Terms") govern your use of services provided by dataguardcore ("we," "our," or "us"), located at Via Paisiello 49, Paderno Dugnano, Milano, Italy. By engaging our services, you agree to be bound by these Terms.

1. Scope of Services

dataguardcore provides data protection consulting, privacy compliance, and data governance services. The specific scope, deliverables, and timelines for each engagement are defined in the applicable Statement of Work (SOW) or Service Agreement.

2. Payment Terms

All fees are quoted in Euros (€) unless otherwise stated. Payment is due in full upon acceptance of the Service Agreement unless alternative payment milestones are agreed in writing. Late payments incur a 2% monthly surcharge.

3. Intellectual Property

Upon full payment, all deliverables produced specifically for the client become the client's intellectual property. dataguardcore retains ownership of pre-existing methodologies, frameworks, tools, and templates used in service delivery.

4. Confidentiality

Both parties agree to maintain the confidentiality of all proprietary information exchanged during the engagement. This obligation survives termination of the service relationship for a period of three (3) years.

5. Limitation of Liability

dataguardcore's total liability under any Service Agreement shall not exceed the total fees paid by the client for the specific service giving rise to the claim. We shall not be liable for indirect, incidental, or consequential damages.

6. Termination

Either party may terminate a Service Agreement with 30 days' written notice. In the event of termination, the client is responsible for payment of all services rendered up to the termination date.

7. Governing Law

These Terms are governed by and construed in accordance with the laws of the Republic of Italy. Any disputes shall be subject to the exclusive jurisdiction of the courts of Milano, Italy.

8. Changes to Terms

We reserve the right to update these Terms at any time. Material changes will be communicated to active clients via email at least 14 days before taking effect.


Cookies Policy

Effective Date: January 1, 2026

This Cookies Policy explains how dataguardcore uses cookies and similar tracking technologies on our website in compliance with the ePrivacy Directive (2002/58/EC) and GDPR.

1. What Are Cookies

Cookies are small text files placed on your device when you visit a website. They enable the site to recognise your device and store information about your preferences or past actions.

2. Types of Cookies We Use

  • Strictly Necessary Cookies: Essential for site functionality. Cannot be disabled. Examples: session management, CSRF tokens.
  • Functional Cookies: Enhance user experience by remembering preferences. Opt-in only.
  • Analytics Cookies: Collect anonymised usage data. Opt-in only. We do not use Google Analytics by default.

3. Consent

We do not set any non-essential cookies until you provide explicit consent via our cookie banner. You may withdraw consent at any time by clearing your browser cookies or contacting us.

4. Third-Party Cookies

We do not sell or share cookie data with third-party advertisers. Any third-party cookies are strictly limited to service providers who assist in site operations (e.g., hosting providers) and are bound by data processing agreements.

5. Managing Cookies

You can control and manage cookies through your browser settings. Disabling certain cookies may impact site functionality. Instructions are available in your browser's help section.


Refund Policy

Effective Date: January 1, 2026

1. General Policy

dataguardcore delivers professional consulting services. Due to the nature of these services, refunds are evaluated on a case-by-case basis according to project milestones completed and deliverables provided.

2. Pre-Service Cancellation

If you cancel an engagement before work has commenced, you are entitled to a full refund of any advance payment within 14 business days.

3. Partial Services

Where work has partially been completed, a proportional refund may be issued based on the percentage of the project completed. Assessment of completed work is at the sole discretion of dataguardcore.

4. Completed Services

No refund is available for services that have been fully delivered and accepted. Deliverables are deemed accepted 7 business days after delivery unless the client raises a written objection within that period.

5. Dispute Resolution

If a refund request is disputed, both parties agree to attempt resolution through good-faith negotiation before pursuing any legal remedies under Italian law.

6. How to Request a Refund

To request a refund, contact us at [email protected] with your service agreement details and reason for the request. We will respond within 5 business days.