Privacy Policy ENG
PRIVPRIVACY POLICY
(according to Regulation (EU) 2016/679 – GDPR)
- Data Controller
The Data Controller responsible for the processing of personal data collected through this website is:
Dr. Ugo Boggi
Address: Via Paradisa, 2 – Pisa (PI), Italy
Tax Code: BGGGUO65H21B832U
Email: u.boggi@med.unipi.it
Users may contact the Data Controller at any time to exercise their rights under the GDPR or to obtain further clarification regarding this privacy policy.
- Types of Data Processed
This website has an exclusively informational purpose and does not require or intend to collect health or clinical data.
Through the contact channels available on the website (contact form, email or telephone), only common personal data may be processed, such as:
- first and last name
- email address
- telephone number
- any information voluntarily included in the message
Important notice:
Users are expressly invited not to include health data, clinical information, or references to medical conditions in messages sent through the website.
If such information is voluntarily provided by the user, it will be processed by the Data Controller solely for the purpose of responding to the request and will be retained only for the time strictly necessary to manage the communication.
Any processing of health data voluntarily provided by the data subject is carried out pursuant to Article 9(2)(a) of the GDPR, on the basis of the explicit consent of the data subject and exclusively for the purpose of evaluating the contact or appointment request.
- Purpose and Legal Basis of Processing
The personal data provided by users are processed for the following purposes:
Contact request management
Responding to information requests and providing details regarding the professional activity of the Data Controller.
Management of specialist visit bookings
Handling appointment requests for specialist visits performed by the Data Controller under the intramoenia system at the reference hospital facility.
Legal basis for processing:
Processing is necessary for the performance of pre-contractual measures requested by the data subject (Article 6(1)(b) GDPR).
- Appointment Management through External Platforms
For the management of some appointments, the website may use links or widgets from external platforms, including the platform Top Doctors.
In such cases, users will be redirected to systems managed by third parties acting as independent data controllers.
Users are therefore invited to consult the privacy policies published on such platforms, as this website has no control over the processing of personal data carried out on external systems.
- Processing Methods and Data Retention
Personal data are processed using electronic and telematic tools in accordance with the principles of lawfulness, fairness, transparency, and data minimization established by the GDPR.
Personal data are retained only for the time strictly necessary to manage the user’s request and in any case no longer than 12 months from the communication, unless further legal obligations apply.
If a professional relationship with the patient is established at the hospital facility, the management and retention of medical documentation will be carried out in accordance with the applicable healthcare regulations of the relevant healthcare institution.
- Disclosure of Data
Personal data are not disclosed to the public.
They may be communicated only in the following cases:
- to the hospital facility where the Data Controller performs professional activities under the intramoenia regime, exclusively for organizational purposes related to the requested visit;
- to technical service providers (e.g., website hosting providers) who process data on behalf of the Data Controller and are appointed as Data Processors pursuant to Article 28 GDPR;
- to competent authorities where required by law.
- Data Subject Rights
Pursuant to Articles 15–22 of the GDPR, the data subject has the right to:
- access their personal data
- request correction of inaccurate data
- request deletion of their data
- obtain restriction of processing
- object to the processing of personal data
- request data portability, where applicable
The data subject also has the right to withdraw any consent previously given at any time.
Requests may be sent to the Data Controller at the following email address:
u.boggi@med.unipi.it
The data subject also has the right to lodge a complaint with the Italian Data Protection Authority.
- Technical Management of the Website
The technical management of the website is entrusted to an external webmaster responsible solely for the technical maintenance of the platform.
The website contact system is configured to forward messages directly to the Data Controller’s email address, without storing messages or personal data in the website database.
The webmaster does not have access to the content of communications sent by users and does not process personal data related to contact requests.
COOKIE POLICY
Cookies Used
This website uses only technical and session cookies necessary for the proper functioning of web pages.
No profiling cookies, advertising cookies, or marketing or tracking tools are used.
For these cookies, prior user consent is not required under current regulations.
Cookie Management
Users may disable cookies at any time through their browser settings, bearing in mind that doing so may affect the proper functioning of certain website features.



