How Advanced Email Technologies collects, uses, and protects personal data in connection with the Certified Email and Certified Notification services.
Advanced Email Technologies ("Advanced Email Technologies", "we", "us", "our") is the data controller for personal data processed through the Certified Email and Certified Notification services (together, the "Service"), available at certifiedemail.pro. Our registered address is Via Stoppani 13, 24121 Bergamo, Italy. For any question about this policy or your personal data, contact us at privacy@certifiedemail.pro.
We process personal data in accordance with Regulation (EU) 2016/679 (the "GDPR") and Italian Legislative Decree No. 196/2003 (the Personal Data Protection Code), as amended by Legislative Decree No. 101/2018. Our processing activities do not meet the thresholds in Article 37 GDPR that require the appointment of a statutory Data Protection Officer. All data protection enquiries are handled directly by our privacy team at the address above.
This policy applies to personal data we process about:
It does not cover the practices of third-party sites we may link to, or of senders who use the Service to contact you — a sender remains separately responsible, as an independent controller, for their own communications and their own lawful basis for contacting you.
Name, email address, password (stored as a salted hash), billing address, and, where applicable, VAT or tax identification number.
The content and attachments of messages you certify, the recipient's email address, delivery and acceptance responses from the recipient's mail server, and — for Certified Notification — the identity details you specify for the recipient (name and identifying number) and the identity details the recipient enters to unlock the document.
IP address, browser and device type, pages visited, timestamps, and log-in activity. See Section 10 for cookie-based collection.
Payment card and billing details are collected and processed by our third-party payment processor. We do not store full card numbers on our own systems.
Records of support tickets, emails, and other communications you send us.
The core function of the Service is to create an independent, tamper-evident record of a message's delivery and content. This means that, unlike an ordinary email provider, we intentionally retain a cryptographic fingerprint (SHA-256 hash) of the message and its attachments, the delivery response from the recipient's mail server, and a third-party RFC 3161 timestamp — for as long as your account remains active, so that the certificate remains verifiable.
Because this record can contain personal data about you and about the message recipient, we limit its use strictly to generating, storing, and — at your request — reproducing your certificate. We do not read, scan, or use certified message content for advertising, profiling, or any purpose beyond providing and securing the Service. Access to stored messages and certificates requires authenticated login; we do not expose them via public or guessable links.
If you close your account, we retain certificates and the underlying evidentiary record for the period described in Section 8, to preserve their evidentiary value and to meet our own record-keeping obligations, after which they are deleted.
We do not sell personal data. We share it only with the following categories of recipients, each bound by a data processing agreement where they act on our behalf:
Where personal data is transferred outside the European Economic Area, we rely on an adequacy decision of the European Commission or on appropriate safeguards under Article 46 GDPR, such as the European Commission's Standard Contractual Clauses, together with supplementary technical and organisational measures where required. You may request a copy of the relevant safeguard by writing to privacy@certifiedemail.pro.
No system is completely secure. If we become aware of a personal data breach that is likely to result in a risk to your rights and freedoms, we will notify the Garante per la Protezione dei Dati Personali within 72 hours, and affected individuals, as required by Articles 33 and 34 GDPR.
Our website uses cookies that are strictly necessary to operate it, together with optional analytics cookies deployed only with your consent. Full details of the cookies we use and how to manage your preferences are set out in our Cookie Policy.
If you are in the European Economic Area, the United Kingdom, or another jurisdiction granting equivalent rights, you may:
To exercise any of these rights, write to privacy@certifiedemail.pro. We will respond within one month, as required by Article 12(3) GDPR. We may need to verify your identity before acting on a request, and some requests concerning certified evidentiary records may be limited where erasure or restriction would compromise a certificate already relied upon by a third party — in which case we will explain the specific limitation that applies.
We do not use your personal data for automated decision-making, including profiling, that produces legal or similarly significant effects on you.
The Service is intended for business and professional use by adults. In accordance with Article 2-quinquies of the Italian Personal Data Protection Code, as introduced by Legislative Decree No. 101/2018, we do not knowingly collect personal data from individuals under 14 without the consent of a parent or legal guardian. If you believe a child has provided us with personal data without such consent, contact us and we will delete it.
We may update this policy from time to time to reflect changes in our practices or legal obligations. We will post the revised version on this page with an updated "Last updated" date, and, where changes are material, notify registered users by email.
Questions, requests, or concerns about this policy or our handling of your personal data can be sent to:
Advanced Email Technologies
Via Stoppani 13, 24121 Bergamo, Italy
privacy@certifiedemail.pro
If you are not satisfied with our response, you have the right to lodge a complaint with a supervisory authority. As our registered address is in Italy, our lead supervisory authority is the Garante per la Protezione dei Dati Personali, Piazza Venezia 11, 00187 Roma, Italy — garanteprivacy.it. If you reside in another EEA member state, you may instead lodge a complaint with the supervisory authority in your own country of residence.