Privacy policy

Privacy policy

Jun 23, 2024

Jun 23, 2024

Jun 23, 2024

The purpose of this document is to inform the natural person (hereinafter the "Interested Party") regarding the processing of their personal data (hereinafter "Personal Data") collected by the data controller, Real Society Srl, with registered office at Viale Jonio 143, 00141 Roma, email address info@godot.work, (hereinafter the "Data Controller"), through the Godot application (hereinafter the "Application"). 

Changes and updates will be binding as soon as they are published on the Application. In case of non-acceptance of the changes made to the Privacy Policy, the Interested Party is required to cease the use of this Application and may request the Data Controller to delete their Personal Data.

The purpose of this document is to inform the natural person (hereinafter the "Interested Party") regarding the processing of their personal data (hereinafter "Personal Data") collected by the data controller, Real Society Srl, with registered office at Viale Jonio 143, 00141 Roma, email address info@godot.work, (hereinafter the "Data Controller"), through the Godot application (hereinafter the "Application"). 

Changes and updates will be binding as soon as they are published on the Application. In case of non-acceptance of the changes made to the Privacy Policy, the Interested Party is required to cease the use of this Application and may request the Data Controller to delete their Personal Data.

1. Categories of Personal Data processed
1. Categories of Personal Data processed

The Data Controller processes the following types of Personal Data provided voluntarily by the Data Subject:

  • Contact data: name, surname, address, email, telephone, images, authentication credentials, any additional information sent by the Data Subject, etc.

  • Fiscal and payment data: tax code, VAT number, credit card details, bank account details, etc.

  • Employment-related data: data entered in the curriculum vitae, data related to the spouse or children, social security data, etc.

The Data Controller processes the following types of Personal Data collected automatically:

  • Technical data: Personal Data produced by devices, applications, tools, and protocols used, such as information about the device used, IP addresses, type of browser, type of Internet provider (ISP). Such Personal Data may leave traces that, particularly if combined with unique identifiers and other information received from servers, can be used to create profiles of natural persons

  • Application browsing and usage data: such as visited pages, number of clicks, actions taken, session duration, etc.

Failure to provide the Personal Data by the Data Subject for which there is a legal or contractual obligation, or which are necessary requirements for the conclusion of the contract with the Data Controller, will make it impossible for the Data Controller to establish or continue the relationship with the Data Subject.

The Data Subject who communicates Personal Data of third parties to the Data Controller is directly and exclusively responsible for their origin, collection, processing, communication, or dissemination.

The Data Controller processes the following types of Personal Data provided voluntarily by the Data Subject:

  • Contact data: name, surname, address, email, telephone, images, authentication credentials, any additional information sent by the Data Subject, etc.

  • Fiscal and payment data: tax code, VAT number, credit card details, bank account details, etc.

  • Employment-related data: data entered in the curriculum vitae, data related to the spouse or children, social security data, etc.

The Data Controller processes the following types of Personal Data collected automatically:

  • Technical data: Personal Data produced by devices, applications, tools, and protocols used, such as information about the device used, IP addresses, type of browser, type of Internet provider (ISP). Such Personal Data may leave traces that, particularly if combined with unique identifiers and other information received from servers, can be used to create profiles of natural persons

  • Application browsing and usage data: such as visited pages, number of clicks, actions taken, session duration, etc.

Failure to provide the Personal Data by the Data Subject for which there is a legal or contractual obligation, or which are necessary requirements for the conclusion of the contract with the Data Controller, will make it impossible for the Data Controller to establish or continue the relationship with the Data Subject.

The Data Subject who communicates Personal Data of third parties to the Data Controller is directly and exclusively responsible for their origin, collection, processing, communication, or dissemination.

2. Cookies and similar technologies
2. Cookies and similar technologies

The Application uses cookies, web beacons, unique identifiers, and similar technologies to collect the Data Subject's Personal Data on the pages, links visited, and other actions performed when the Data Subject uses the Application. They are stored to be transmitted upon the Data Subject's next visit. You can view the complete Cookie Policy at the following address: https://www.godot.work/cookie

The Application uses cookies, web beacons, unique identifiers, and similar technologies to collect the Data Subject's Personal Data on the pages, links visited, and other actions performed when the Data Subject uses the Application. They are stored to be transmitted upon the Data Subject's next visit. You can view the complete Cookie Policy at the following address: https://www.godot.work/cookie

3. Legal basis and purpose of the processing
3. Legal basis and purpose of the processing

Processing of Personal Data is necessary:

  • for the performance of the contract with the Data Subject, specifically: 

    1. fulfillment of any obligation arising from the pre-contractual or contractual relationship with the Data Subject 

    2. registration and authentication of the Data Subject: to allow the Data Subject to register on the Application, access and be identified also through external platforms 

    3. support and contact with the Data Subject: to respond to the requests of the Data Subject 

    4. payment management: to manage payments by credit card, bank transfer or other instruments 

  • for compliance with a legal obligation, specifically: 

    1. fulfillment of any obligation provided for by current regulations, laws and regulations, in particular, in tax and fiscal matters 

  • based on the legitimate interest of the Controller, for: 

    1. email marketing of products and/or services of the controller to directly sell the products or services of the Controller using the email provided by the Data Subject in the context of the sale of a product or service similar to the one being sold 

    2. management, optimization and monitoring of the technical infrastructure: to identify and solve any technical problems, to improve the performance of the Application, to manage and organize information in an IT system (e.g. server, database, etc.) 

    3. security and anti-fraud: to ensure the security of the assets, infrastructures and networks of the Controller 

    4. statistics with anonymous data: to carry out statistical analysis on aggregated and anonymous data to analyze the behaviors of the Data Subject, to improve the products and/or services provided by the Controller and better meet the expectations of the Data Subject 

  • based on the consent of the Data Subject, for: 

    1. profiling of the Data Subject for marketing purposes: to provide the Data Subject with information on the products and/or services of the Controller through automated processing aimed at collecting personal information with the purpose of predicting or evaluating their preferences or behaviors 

    2. marketing purposes of products and/or services of the Controller: to send commercial and/or promotional information or materials, to carry out direct sales activities of products and/or services of the Controller or to conduct market research through automated and traditional methods 

The Personal Data of the Data Subject may also be used by the Controller to defend itself in court before the competent judicial authorities.

Processing of Personal Data is necessary:

  • for the performance of the contract with the Data Subject, specifically: 

    1. fulfillment of any obligation arising from the pre-contractual or contractual relationship with the Data Subject 

    2. registration and authentication of the Data Subject: to allow the Data Subject to register on the Application, access and be identified also through external platforms 

    3. support and contact with the Data Subject: to respond to the requests of the Data Subject 

    4. payment management: to manage payments by credit card, bank transfer or other instruments 

  • for compliance with a legal obligation, specifically: 

    1. fulfillment of any obligation provided for by current regulations, laws and regulations, in particular, in tax and fiscal matters 

  • based on the legitimate interest of the Controller, for: 

    1. email marketing of products and/or services of the controller to directly sell the products or services of the Controller using the email provided by the Data Subject in the context of the sale of a product or service similar to the one being sold 

    2. management, optimization and monitoring of the technical infrastructure: to identify and solve any technical problems, to improve the performance of the Application, to manage and organize information in an IT system (e.g. server, database, etc.) 

    3. security and anti-fraud: to ensure the security of the assets, infrastructures and networks of the Controller 

    4. statistics with anonymous data: to carry out statistical analysis on aggregated and anonymous data to analyze the behaviors of the Data Subject, to improve the products and/or services provided by the Controller and better meet the expectations of the Data Subject 

  • based on the consent of the Data Subject, for: 

    1. profiling of the Data Subject for marketing purposes: to provide the Data Subject with information on the products and/or services of the Controller through automated processing aimed at collecting personal information with the purpose of predicting or evaluating their preferences or behaviors 

    2. marketing purposes of products and/or services of the Controller: to send commercial and/or promotional information or materials, to carry out direct sales activities of products and/or services of the Controller or to conduct market research through automated and traditional methods 

The Personal Data of the Data Subject may also be used by the Controller to defend itself in court before the competent judicial authorities.

4. Processing methods and recipients of Personal Data
4. Processing methods and recipients of Personal Data

Personal Data is processed by paper and computer tools with organizational methods and with logics strictly related to the purposes indicated and by adopting adequate security measures.

Personal Data is processed exclusively by: 

  • persons authorized by the Data Controller who have committed to confidentiality or have an adequate legal obligation of confidentiality;

  • subjects operating independently as distinct data controllers or subjects designated as data processors by the Controller in order to carry out all the processing activities necessary to pursue the purposes of this information notice (e.g. business partners, consultants, IT companies, service providers, hosting providers);

  • subjects or entities to whom Personal Data must be communicated due to legal obligations or by order of the authorities.

The above-mentioned subjects are required to use appropriate guarantees to protect Personal Data and can access only those necessary to perform the tasks assigned to them.

Personal Data will not be indiscriminately disclosed in any way.

Personal Data is processed by paper and computer tools with organizational methods and with logics strictly related to the purposes indicated and by adopting adequate security measures.

Personal Data is processed exclusively by: 

  • persons authorized by the Data Controller who have committed to confidentiality or have an adequate legal obligation of confidentiality;

  • subjects operating independently as distinct data controllers or subjects designated as data processors by the Controller in order to carry out all the processing activities necessary to pursue the purposes of this information notice (e.g. business partners, consultants, IT companies, service providers, hosting providers);

  • subjects or entities to whom Personal Data must be communicated due to legal obligations or by order of the authorities.

The above-mentioned subjects are required to use appropriate guarantees to protect Personal Data and can access only those necessary to perform the tasks assigned to them.

Personal Data will not be indiscriminately disclosed in any way.

5. Luogo
5. Luogo

Personal data will not be transferred outside the European Economic Area (EEA).

Personal data will not be transferred outside the European Economic Area (EEA).

6. Period of retention of Personal Data
6. Period of retention of Personal Data

Personal Data will be kept for the period of time necessary to fulfill the purposes for which they were collected, in particular: 

  • for purposes related to the execution of the contract between the Data Controller and the Data Subject, they will be kept for the entire duration of the contractual relationship and, after its termination, for the ordinary prescription period of 10 years. In the case of judicial disputes, for the entire duration of the same, until the expiry of the terms for challenging actions

  • for purposes related to the legitimate interest of the Data Controller, they will be kept until such interest is fulfilled

  • for compliance with a legal obligation, by order of an authority and for the protection in court, they will be kept in compliance with the timing provided by said obligations, regulations and in any case until the fulfillment of the prescription term provided by the current regulations

  • for purposes based on the consent of the Data Subject, they will be kept until the consent is revoked 

At the end of the retention period, all Personal Data will be deleted or kept in a form that does not allow the identification of the Data Subject.

Personal Data will be kept for the period of time necessary to fulfill the purposes for which they were collected, in particular: 

  • for purposes related to the execution of the contract between the Data Controller and the Data Subject, they will be kept for the entire duration of the contractual relationship and, after its termination, for the ordinary prescription period of 10 years. In the case of judicial disputes, for the entire duration of the same, until the expiry of the terms for challenging actions

  • for purposes related to the legitimate interest of the Data Controller, they will be kept until such interest is fulfilled

  • for compliance with a legal obligation, by order of an authority and for the protection in court, they will be kept in compliance with the timing provided by said obligations, regulations and in any case until the fulfillment of the prescription term provided by the current regulations

  • for purposes based on the consent of the Data Subject, they will be kept until the consent is revoked 

At the end of the retention period, all Personal Data will be deleted or kept in a form that does not allow the identification of the Data Subject.

7. Data Subject Rights
7. Data Subject Rights

Interested parties can exercise certain rights with reference to the Personal Data processed by the Controller. In particular, the Data Subject has the right to:

  • be informed about the processing of their Personal Data

  • withdraw consent at any time

  • limit the processing of their Personal Data

  • object to the processing of their Personal Data

  • access their Personal Data

  • verify and request the correction of their Personal Data

  • obtain the limitation of the processing of their Personal Data

  • obtain the erasure of their Personal Data

  • transfer their Personal Data to another controller

  • lodge a complaint with the data protection supervisory authority and/or take legal action.

To exercise their rights, interested parties can address a request to the following email address info@godot.work. Requests will be handled by the Controller immediately and processed as soon as possible, in any case within 30 days. 


Last updated: 23/06/2024

Interested parties can exercise certain rights with reference to the Personal Data processed by the Controller. In particular, the Data Subject has the right to:

  • be informed about the processing of their Personal Data

  • withdraw consent at any time

  • limit the processing of their Personal Data

  • object to the processing of their Personal Data

  • access their Personal Data

  • verify and request the correction of their Personal Data

  • obtain the limitation of the processing of their Personal Data

  • obtain the erasure of their Personal Data

  • transfer their Personal Data to another controller

  • lodge a complaint with the data protection supervisory authority and/or take legal action.

To exercise their rights, interested parties can address a request to the following email address info@godot.work. Requests will be handled by the Controller immediately and processed as soon as possible, in any case within 30 days. 


Last updated: 23/06/2024

Viale Jonio 143 - 00141 Roma Italia | Email: info@godot.work | Pec: realsocietysrl@pec.it | P. IVA 16342851009 | R.E.A RM - 1650859

Copyright © 2024 Real Society SRL

Viale Jonio 143 - 00141 Roma Italia | Email: info@godot.work | Pec: realsocietysrl@pec.it | P. IVA 16342851009 | R.E.A RM - 1650859

Copyright © 2024 Real Society SRL

Viale Jonio 143 - 00141 Roma Italia | Email: info@godot.work | Pec: realsocietysrl@pec.it | P. IVA 16342851009 | R.E.A RM - 1650859

Copyright © 2024 Real Society SRL