Privacy Policy pursuant to EU Regulation 2016/679 (GDPR)

1. Data controller

The Data Controller is MIDRAS Srl., with registered office in Via Durazzo 2/c 70054 – Giovinazzo (BA), VAT no. 09021650727, contact email: info@midras.it (right away, "“Midras” or the “Holder”).


2. Types of data collected

Through the site www.midras.it The following personal data are collected and processed:

  • Data provided voluntarily by the user: Name, surname, shipping and billing address, email address, phone number, payment information, any order notes or messages sent via the contact form.

  • Browsing data: IP address, browser type, operating system, pages visited, access times, and other technical data necessary for the site to function.

  • Cookies and tracking tools: For more information, see the Cookie Policy.


3. Purpose of the processing

Users' personal data are processed for the following purposes:

to) Online order and purchase management: to allow registration on the site, purchase of products, management of the shopping cart and shipping of orders.
b) Customer Support: to respond to inquiries, returns, complaints, or other communications.
c) Fulfillment of legal and tax obligations: required by EU laws, regulations or standards.
d) Statistical analysis and site improvement: through the use of anonymous analysis tools such as Google Analytics.
And) Direct marketing (with prior consent): sending newsletters or commercial communications relating to the products and services offered by Midras.


4. Legal basis for processing

The processing of personal data takes place on the basis of:

  • Performance of a contract (Article 6, paragraph 1, letter b GDPR): order management and provision of requested services.

  • Fulfillment of legal obligations (art. 6, par. 1, letter c).

  • Consent of the interested party (art. 6, par. 1, letter a): for marketing purposes or newsletter subscription.

  • Legitimate interest of the Data Controller (Article 6, paragraph 1, letter f): IT security, fraud prevention, and service improvement.


5. Methods of processing

Processing is carried out using IT and electronic tools, adopting appropriate security measures to prevent unauthorized access, disclosure, modification, or destruction of personal data.


6. Data retention

  • Billing and order information: 10 years, in compliance with accounting and tax obligations.

  • Data for marketing purposes: until consent is revoked.

  • Technical and navigation data: up to 12 months.


7. Communication and dissemination of data

Personal data may be communicated to:

  • Couriers and shipping companies responsible for delivering the products;

  • IT service providers and hosting providers who support the operation of the site (including WooCommerce);

  • Consultants and professionals who provide accounting, legal, or tax services;

  • Public authorities and supervisory bodies, within the limits of the law.

The data will not be disclosed to the public in any way.


8. Third-party services – Google Analytics

The site uses Google Analytics, a web analytics service provided by Google Ireland Ltd. (“Google”).
Google collects anonymous and aggregate data to analyze user use of the site.
The information generated by the cookie about your use of the website (including your anonymised IP address) will be transmitted to and stored on Google servers located outside the EU, in compliance with the Standard Contractual Clauses approved by the European Commission.

For further information: https://policies.google.com/privacy


9. Transfer of data to non-EU countries

Any transfers of personal data to non-EU countries will occur exclusively to entities that guarantee an adequate level of data protection, as required by Articles 44–49 of the GDPR.


10. Rights of the interested party

The user may exercise, at any time, the rights provided for by Articles 15–22 of the GDPR, including:

  • right to access your personal data;

  • right to rectification or erasure;

  • right to limit or object to processing;

  • right to data portability;

  • right to withdraw consent (without affecting the lawfulness of the processing before the withdrawal);

  • right to lodge a complaint with the Guarantor for the Protection of Personal Data (www.garanteprivacy.it).

Requests can be sent to: info@midras.it


11. Minors under 16 years of age

The Midras site and services are not intended for persons under the age of 16.
Any data provided by minors will be deleted as soon as their minority is confirmed.


12. Changes to this policy

The Data Controller reserves the right to modify this information at any time.
Updated versions will be posted on this page with the date of update indicated.

Last updated: October 31, 2025

 

 
 

 


Cookie Policy of midras.it

1. What are cookies?

Cookies are small text files that websites you visit send to your browser, where they are stored before being retransmitted to the same sites on subsequent visits.
They are used to improve the functioning of the site, personalize the browsing experience and collect statistical information in aggregate form.


2. Types of cookies used by the site

The site www.midras.it uses the following categories of cookies:

a) Technical and functional cookies

They are necessary for the proper functioning of the site and to enable navigation and use of basic features (e.g., login, cart management, payments, language, etc.).
These cookies they do not require the user's consent.

Examples:

  • WooCommerce session cookies (cart and order management)

  • Preference cookies or site language


b) Analytical cookies (Google Analytics)

The site uses Google Analytics, a web analytics service provided by Google Ireland Ltd. (“Google”), which allows us to analyze in an anonymous and aggregate form how users use the site.
The user's IP address is anonymized, so that Google cannot trace the user's identity.

The information generated by the cookies about your use of the website is transmitted and stored by Google on servers outside the European Union, in compliance with the Standard Contractual Clauses approved by the European Commission.

Google uses this data to:

  • analyze site usage;

  • prepare reports on site activities;

  • provide services related to the use of the Internet.

For more information:
👉 https://policies.google.com/privacy
👉 https://support.google.com/analytics/answer/6004245


c) Profiling and marketing cookies

The site does not use profiling cookies own or third-party cookies for sending personalized advertising or for tracking for marketing purposes.


3. List of main cookies

Cookie NameTypeDurationDescription
woocommerce_cart_hashTechnicianSessionTracks the user's cart
woocommerce_items_in_cartTechnicianSessionSave items to cart
wp_woocommerce_session_*Technician2 daysContains a unique code to identify the user's order
_gaAnalytics (Google)2 yearsUsed to distinguish users (anonymized IP)
_gidAnalytics (Google)24 hoursUsed to count and track page views
_gatAnalytics (Google)1 minuteIt is used to limit the frequency of requests

4. Managing and disabling cookies

When you first access the site, a message appears information banner which allows you to:

  • accept all cookies,

  • reject unnecessary cookies,

  • or choose your preferences.

The user can modify or revoke the consent at any time via the “Cookie Settings” link” present in the footer of the site.

Furthermore, you can manage or disable cookies directly from your browser settings:


5. Data retention

Technical cookies last only for the duration of the browsing session or a few days.
Analytical cookies (Google Analytics) are stored for a maximum period of 24 months.


6. User rights

The user may exercise the rights provided for by Articles 15–22 of the GDPR (access, rectification, erasure, restriction, opposition, data portability, withdrawal of consent) at any time by contacting the Data Controller at info@midras.it.


7. Updates to this cookie policy

The Data Controller may modify this information at any time.
Any changes will be posted on this page with the updated date.

Last updated: October 31, 2025