Mare Group

Privacy

PRIVACY NOTICE ON THE PROCESSING OF PERSONAL DATA

Website: www.maregroup.it

Pursuant to Articles 13 and 14 of Regulation (EU) 2016/679 (GDPR) and Italian Legislative Decree 196/2003, as amended by Legislative Decree 101/2018

Last revision: 30 March 2026

1. Data controller

This notice is provided by:

Data controller: Mare Group S.p.A

Registered office: Via Ex Aeroporto SNC c/o cons. Il Sole, Lotto XI, 80038 Pomigliano d’Arco (NA), Italy

VAT no.: 07784980638

E-mail: info@maregroup.it

DPO contact: dpo@maregroup.it

The DPO is the person designated under Article 37 GDPR to oversee the proper processing of personal data. The DPO can be contacted directly on any matter concerning the processing of your data or the exercise of your rights.

2. Scope

This notice applies to the website www.maregroup.it (hereinafter the “Website”), to all the subdomains listed below and to the mobile applications (Apps), as well as to any digital channel operated by Mare Group S.p.A. through which users’ personal data are collected.
https://www.maregroup.it/cleansky2/
https://www.maregroup.it/cleanaviation/
https://www.maregroup.it/improve/
https://www.maregroup.it/pas/
It does not apply to third-party websites that may be reached through links on the Website, for which reference is made to their respective privacy notices.

3. Personal data collected through the website

3.1 Browsing data (collected automatically)

In the course of their normal operation, the IT systems and software procedures of the Website automatically acquire certain data whose transmission is implicit in the use of Internet communication protocols. This information is not associated with directly identified data subjects, but by its nature could allow users to be identified:

These data are used solely to obtain anonymous statistical information on the use of the Website, to check that it operates correctly and to identify anomalies or attempts at unauthorised access. Logs are kept for 7 days, unless required for the investigation of computer crimes.

3.2 Data provided voluntarily by the user

The Website collects personal data that the user provides voluntarily in the following circumstances:

3.3 Data collected through cookies and similar technologies

The Website does not use cookies, either its own or third-party ones, and does not employ tracking, profiling or traffic-analysis technologies. The only storage on the user’s device is the browser session storage, which is purely technical: see the cookie statement at the bottom of this page.

4. Purposes of processing, legal bases and retention periods

The table below sets out the purposes for which data are processed, the related legal basis and the expected retention period:

Purpose of processingData processedLegal basis (Art. 6 GDPR)Retention period
Browsing the website (system logs)IP, dates/times, pages visited, browser, OSLegitimate interest (point f)7 days (unless required for security)
Replying to requests sent through the contact form / e-mailName, e-mail, content of the messagePerformance of pre-contractual measures (point b) or consent (point a)Until the request is closed + 24 months
Handling of job applications (Join Us section)Name, e-mail, telephone, message, curriculum vitaePerformance of pre-contractual measures (point b)Until the selection is closed + 24 months
Legal and tax obligationsPersonal and contractual detailsLegal obligation (point c)As provided for by the applicable legislation
Fraud prevention and IT securityAccess data, IP, system logsLegitimate interest (point f)According to the nature of the threat detected

At the end of the periods indicated, the data are deleted or permanently anonymised, unless retention is required by law.

5. Recipients of the data

Users’ personal data may be disclosed to the following categories of recipients, within the limits strictly necessary for the purposes pursued:

5.1 Data processors (Art. 28 GDPR)

Parties that process data on behalf of the Controller, bound by specific contractual agreements:

5.2 Joint controllers and independent controllers

5.3 Institutional bodies

6. Transfer of data to third countries

Personal data are processed mainly within the European Economic Area (EEA). Should a transfer to non-EEA countries become necessary (for example for the use of cloud or third-party services with servers abroad), the Controller ensures that the transfer takes place under one of the following conditions:

On request, the Controller provides information on the specific safeguards adopted for each transfer.

7. Rights of the data subject

As a data subject, under Articles 15-22 GDPR you have the right to:

To exercise your rights you can send a written request to info@maregroup.it or contact the DPO directly at dpo@maregroup.it. The Controller will reply within 30 days of receiving the request (extendable by 60 days in complex cases, with notice to the data subject). Exercising your rights is free of charge, except for manifestly unfounded or excessive requests (Art. 12(5) GDPR).

8. Security measures

The Controller adopts technical and organisational measures appropriate to the risk, pursuant to Article 32 GDPR, including:

In the event of a personal data breach that poses a risk to the rights and freedoms of data subjects, the Controller will notify the event to the Italian Data Protection Authority within 72 hours and, where necessary, will inform the data subjects (Articles 33-34 GDPR).

9. Changes to this notice

The Controller reserves the right to amend or update this notice at any time, including in response to regulatory changes or changes in the way data are processed. Changes will be published on this page with an indication of the date of the update.

In the event of substantial changes affecting the rights of data subjects, the Controller will give specific notice through the Website or, where available, by direct notification to the registered e-mail address.

10. Contacts

For any question concerning this notice or to exercise your rights:

ControllerMare Group S.p.A.
General e-mailinfo@maregroup.it
DPO e-maildpo@maregroup.it
Italian Data Protection Authoritywww.garanteprivacy.it — Tel. +39 06 69677 1