Privacy Policy

This Privacy Policy explains how Bedroom Photo Sock processes personal data when you use bedroomphotosock.garden. It applies to visitors, prospective clients, and other individuals who interact with the site in connection with legal services for real estate agents.

Policy guidance

This introduction outlines how the policy is organized and where to find key information.

Use of information
Handled under this policy framework
User rights
Requests and access options are described below
Support channel

Contact Information

Privacy email
Telephone
+39 312 177 0876
Mailing address
Via Pinerolo 23, 10060 None
Privacy contact

Use the contact details below for privacy questions, rights requests, or policy-related correspondence.

01 · Purpose

How We Use Data

We use personal data to operate and secure the site, respond to inquiries, provide legal services or related information for real estate agents, manage client and prospect communications, maintain records, analyse site performance, prevent misuse, and comply with legal obligations. We may also use data to establish, exercise, or defend legal claims.

Processing is limited to the operational and legal purposes described in this notice.
02 · Sharing

Service Providers

We may share personal data with hosting, security, analytics, communications, and other operational providers that support the site and our services. These parties act under contractual or comparable confidentiality obligations and may process data only for the purposes we specify, subject to applicable law.

Service providers receive only the information needed to perform their assigned functions.
01 · Collection

Data We Collect

We may process identification details, contact information, inquiry content, account or service preferences, technical data such as device and browser information, and usage data relating to pages visited and actions taken. Where needed to provide legal services for real estate agents, we may also process information included in messages, documents, or service requests submitted through the site.

The categories of data collected depend on how users interact with the site and its services.
02 · Sources

Sources of Data

We collect personal data when users submit forms, send messages, request information, or otherwise interact with the site. We also receive technical and usage data automatically through cookies, server logs, and similar tools. If a user provides information about another person, we process that information only as necessary for the relevant request.

Information is obtained directly from users and, in limited cases, from technical systems that support the site.
03 · Cookies

Types of Cookies

The site may use strictly necessary cookies for core operation, functional cookies to remember choices, and analytics cookies to understand site performance and usage patterns. Cookies may be session-based or persistent, depending on their purpose. Where required, non-essential cookies are used only with appropriate consent.

We use a limited set of cookies based on function and duration.
04 · Controls

Cookie Controls

Users may block or delete cookies through their browser settings and may manage non-essential cookies through any consent or preference mechanism made available on the site. Disabling some cookies may affect site functionality, security features, or the availability of certain services.

Cookie settings can be adjusted through browser controls and, where available, on-site preference tools.
GDPR
EU framework

GDPR Notice

Where the GDPR applies, we process personal data on a lawful basis such as consent, contract performance, legal obligation, legitimate interests, or another basis permitted by law. We apply data minimisation, purpose limitation, and security measures appropriate to the nature of the processing.

This notice applies to individuals in the European Economic Area and reflects the GDPR where it governs our processing activities.

The GDPR applies to our processing of personal data for users in the EEA, subject to the scope of the law.
GDPR Rights

GDPR Rights

Where the GDPR applies, users may have rights to access, rectification, erasure, restriction, portability, and objection, and where processing is based on consent, the right to withdraw consent. If a request is not granted in full, we will explain the legal reason where required.

EEA users may exercise GDPR rights subject to verification and legal exceptions.

Depending on applicable law, individuals may have rights to access their data, request correction or deletion, object to certain processing, request restriction, and receive a copy of data they provided. Some rights may not apply where processing is necessary for legal compliance, defence of claims, or other lawful reasons.

Available rights depend on the legal basis and the circumstances of the request.

To make a rights request, provide enough information to identify the relevant data and the nature of the request. We may ask for additional details to confirm identity or clarify the request. We will respond within the period required by applicable law and may decline requests that are unfounded, excessive, or legally restricted.

Requests are reviewed against identity and scope before a response is issued.

Personal data is retained for the period needed to handle inquiries, provide services, maintain records, meet legal obligations, resolve disputes, and enforce agreements. When data is no longer required, we delete it or anonymise it, unless a longer retention period is required by law or justified by a legitimate business need.

We keep data only for as long as needed for the relevant purpose or legal requirement.

When we make material changes, we will update the policy text and, where appropriate, provide a notice through the site or another reasonable channel. The revised version applies from the stated effective date.

We may revise this notice to reflect legal, technical, or operational changes.