Privacy Policy
1. General Information
The protection of personal data is an important concern of the Confederation of Grand Lodges of Europe & the Mediterranean (CGLEM).
This Privacy Policy explains how personal data is collected and processed in accordance with the General Data Protection Regulation (GDPR).
2. Controller
The controller responsible for data processing on this website is:
Confederation of Grand Lodges of Europe & the Mediterranean (CGLEM)
c/o Gran Loggia Nazionale dei Liberi Muratori d’Italia
Fiscal code: 97165070588
Via Paolo Tosti n. 16/E
00199 Rome
Italy
Email: info@cglem.org
3. Hosting
This website is hosted by:
Hostinger International Ltd.
The hosting provider processes personal data (such as IP addresses) to ensure the secure and reliable operation of the website.
A Data Processing Agreement (DPA) has been concluded in accordance with Art. 28 GDPR.
4. Server Log Files
The hosting provider automatically collects and stores information in server log files, including:
IP address
Browser type and version
Operating system
Referrer URL
Time of request
These data are processed exclusively for technical monitoring and security purposes.
5. Cookies and Consent Management
This website uses cookies.
User consent is managed via Borlabs Cookie, ensuring that non-essential cookies are only set after explicit user consent.
Users may modify or withdraw their consent at any time via the cookie settings.
6. Google Analytics
This website uses Google Analytics, a web analytics service provided by Google Ireland Limited.
Google Analytics uses cookies to analyze how users interact with the website.
Processing is based exclusively on user consent (Art. 6(1)(a) GDPR).
IP anonymization is enabled, ensuring that IP addresses are shortened within the European Union before transmission.
Users may withdraw their consent at any time via the cookie settings.
7. Contact and Registration Forms
Contact Form (Elementor)
When users contact us via the contact form, the following data may be processed:
Name
Email address
Message
This data is used solely to process the inquiry.
Registration Forms (Formidable Forms)
Registration and communication processes are handled using Formidable Forms.
Depending on the form, the following data may be collected:
Name
Email address
Additional information voluntarily provided
Data processing is limited to the purpose of handling the respective request.
Legal basis:
Art. 6(1)(b) GDPR (pre-contractual measures)
Art. 6(1)(a) GDPR (consent)
8. Email Communication
If users contact us via email, the transmitted data will be stored and processed for the purpose of handling the request.
9. Local Fonts
All fonts used on this website are hosted locally.
No connection to external font providers is established.
10. Website Performance and Optimization
This website uses WP Rocket to optimize loading speed and performance.
These processes do not involve the processing of personal data beyond what is technically necessary.
11. SEO Tools
We use The SEO Framework to improve the visibility of our website in search engines.
No personal data is processed beyond standard website functionality.
12. Blog Usage
This website includes a blog section.
No user accounts are required
No commenting functionality is provided
No personal data is collected when accessing blog content
13. Data Retention
Personal data is retained only for as long as necessary:
Contact inquiries: until the request has been fully processed
Legal obligations: according to applicable statutory retention periods
14. Data Subject Rights
Under GDPR, users have the following rights:
Right of access (Art. 15 GDPR)
Right to rectification (Art. 16 GDPR)
Right to erasure (Art. 17 GDPR)
Right to restriction of processing (Art. 18 GDPR)
Right to data portability (Art. 20 GDPR)
Right to object (Art. 21 GDPR)
Users also have the right to lodge a complaint with a supervisory authority.
15. Withdrawal of Consent
Where data processing is based on consent, users may withdraw their consent at any time with future effect.
16. Security Measures
We implement appropriate technical and organizational measures to protect personal data against unauthorized access, loss, or misuse.