Privacy Policy Postcard

Last updated: May 5, 2026

This Privacy Policy describes how personal data is processed in connection with the Postcard application, which allows users to create, customize and generate digital postcards, including through artificial intelligence functionalities.

1. Data Controller

The Data Controller is Coscia Vito Donato, developer and operator of the Postcard application.

For any request or information, you may contact the Data Controller through the contact details available on www.cosciavitodonato.it or via the official app page.

2. Categories of Data Processed

Postcard does not require account registration and does not provide, within the app, mandatory forms for entering personal data such as name, surname, email address or phone number.

However, the application may process certain technical data, usage data and user-provided content strictly necessary for the provision of its functionalities and for service improvement.

3. Purposes of Processing

The data is processed for the following purposes:

4. Legal Basis for Processing

Processing necessary for the provision of requested services is based on the performance of a contract or pre-contractual measures.

Processing necessary for security, fraud prevention, diagnostics and technical improvements is based on the legitimate interest of the Data Controller.

Where required, consent will be collected prior to processing not strictly necessary for service provision.

5. Processing Methods

Data processing is carried out using electronic tools and appropriate technical and organizational measures to ensure security, integrity, availability and confidentiality.

Data is primarily processed in an aggregated or technical manner and is not used to directly identify users.

6. Third-Party Services

7. Data Sharing

Data is not disclosed publicly and may only be processed by authorized service providers acting on behalf of the Data Controller.

8. International Data Transfers

Data may be transferred outside the European Economic Area in compliance with applicable legal safeguards.

9. Data Retention

Data is retained only for as long as necessary to fulfill the purposes described above.

10. Data Subject Rights

Users may exercise their rights under GDPR, including access, rectification, erasure, restriction of processing, objection and data portability.

11. Changes to this Policy

This Privacy Policy may be updated at any time. Updates will be published on this page.