1. Controller
The controller for the Buono Confetto online store is Confetalia OÜ, registration number 17271565, registered address Harju maakond, Maardu linn, Parkheina tee 4, 74117, Estonia. Privacy questions and data-subject requests: info@buonoconfetto.eu, phone +372 5684 6311.
2. Data and sources
We process information you provide when creating an account, placing an order, submitting a form or contacting us: name, contact, delivery and billing details, order contents, payment status, preferences and correspondence. We do not receive full payment-card credentials. For security and consent evidence we may process device or browser information, timestamped consent choices, a one-way hash of the IP address and the user agent.
If you consent to analytics, we collect a pseudonymous visitor and session identifier, visit time, device type, viewed page path, referring website domain, UTM parameters (source, medium, campaign, term and content), page and product interactions and goals. When an order is placed, we may associate its internal identifier, value and currency with attribution data. We do not retain the full referrer URL, landing-page query string or contact details submitted through forms in analytics attribution.
If you separately consent to marketing, we may also read and store encrypted advertising click identifiers such as gclid, gbraid, wbraid, fbclid, msclkid or ttclid and activate consented Google or Meta measurement tools.
3. Purposes and legal bases
- managing orders, payment, delivery, accounts and customer service: steps before entering into a contract and performance of the contract; - accounting, tax, consumer-law and authority requirements: legal obligation; - service security, fraud prevention and establishing or defending legal claims: Confetalia OÜ's legitimate interests, balanced against visitor rights; - responding to a form: pre-contractual steps, contract or the legitimate interest described on the form; - first- and third-party analytics and attribution of traffic sources, goals and orders: consent; - advertising measurement, retargeting, advertising click identifiers and marketing pixels: separate marketing consent; - direct marketing: consent or another basis permitted by electronic-communications law, always with an opt-out.
Consent is voluntary. Refusing it does not prevent use of the store, cart or checkout.
4. Analytics and attribution
Analytics helps us understand which pages, search engines, referrals and campaigns lead to product interactions or orders. We may use first-touch, last-touch or last-non-direct attribution with a lookback window of up to 90 days. Attribution is statistical and does not prove that a channel caused a purchase.
An anonymous session is linked to an account only after the user signs in in the same browser. We do not combine devices belonging to different people and do not use these data for decisions producing legal or similarly significant effects.
5. Recipients and international transfers
Where necessary, recipients may include Montonio, the selected carrier (such as Omniva, DPD or SmartPosti), email, hosting, accounting and IT providers and public authorities where required by law. With the relevant consent, analytics or marketing data may be received by Google Ireland Limited and Meta Platforms Ireland Limited for configured services. Their services may involve processing outside the European Economic Area; we use an applicable GDPR Chapter V safeguard, such as an adequacy decision or European Commission standard contractual clauses.
6. Retention
Order and accounting records are kept for the statutory period, generally up to seven years after the relevant financial year. Account data is kept while the account is active. A period displayed on a form applies to that enquiry; support and complaint data is retained to resolve the matter and for applicable limitation periods.
Raw analytics events are kept for up to 90 days and session, attribution and conversion data for up to 180 days. A consent choice remains valid for up to 12 months; consent audit evidence may be retained for up to three years where needed to demonstrate compliance. Data is then deleted or irreversibly anonymised unless a longer period is required by law or for a legal claim.
7. Changing choices and deletion
Privacy settings can be changed at any time through the website footer. Withdrawing analytics consent stops new collection, deletes the visitor and attribution chain associated with that browser identifier and anonymises linked conversion records. Withdrawing marketing consent removes advertising click identifiers and stops future marketing-event delivery. Necessary session, security, consent, cart and checkout functions continue. A Global Privacy Control signal forces marketing off.
8. Your rights
You may request access, correction, erasure, restriction and portability, object to processing based on legitimate interests and withdraw consent at any time. Send requests to info@buonoconfetto.eu; we may reasonably verify identity. We normally respond within one month. You may complain to the Estonian Data Protection Inspectorate (https://www.aki.ee) or the supervisory authority where you live.
9. Security, children and changes
We use access controls, encrypted connections, encryption for selected fields, backups, logging and other risk-appropriate measures. The store is not directed at children who cannot independently enter into a contract. This policy may be updated when services, providers or law change; the current version and publication date appear on this page.