This notice explains how personal data is processed through www.netcomsecuritygroup.com and the contact channels used for information, quotations and site survey requests.
Controller and contact details
The controller is Fiasca Matteo Emanuele, trading as NetCom Security Group, VAT number 04852300237, Negrar di Valpolicella (VR), Italy.
For information and requests concerning personal data, email
Information you provide in an enquiry
We process the contact details and information you provide to reply, assess your needs and handle any service request. Forms collect your first name, surname, email address, telephone number, municipality, service of interest and message. Depending on the service, they may also include fields about the property, protection needs, indicative budget and timing.
Required fields are identified in the form. Without them, the form cannot be submitted; you can still contact us by email or telephone. Do not enter combinations, credentials, precise internal locations or detailed inventories of valuables.
The form is provided through Google Apps Script. Enquiries are recorded in Google Sheets and notified to
For quotation and service requests, the legal basis is taking steps at your request before entering into a contract and, where applicable, performing that contract, under Article 6(1)(b) GDPR. For other communications, we rely on our legitimate interest in handling incoming correspondence, under Article 6(1)(f) GDPR. Acknowledging the privacy notice in the form is not consent to analytics or promotional communications.
Enquiries that do not lead to a contract are retained for as long as needed to handle them and no longer than 24 months from receipt. If a contractual relationship begins, the necessary data is kept for its duration and subsequently to meet applicable legal obligations or protect rights relating to that relationship. Data that is no longer necessary is deleted or anonymised; this approach also covers operational copies of enquiries in spreadsheets and emails.
Browsing, hosting and security
The website uses Aruba for hosting. Visiting the pages involves exchanging technical data, such as your IP address, browser information, requested resources and connection date and time, with the systems providing the service.
This data is used to deliver pages, diagnose problems and prevent abuse, based on our legitimate interest in operating and securing the website, under Article 6(1)(f) GDPR. Retention is limited to the time necessary for these purposes; any extension is restricted to handling specific incidents, protecting rights or meeting legal obligations.
Embedded form and map
Pages containing the Google Apps Script form connect to the Google services needed to load and use it. The Contact page also contains a map that requests map images from CARTO, a service of CartoDB Inc. The provider receives technical request data, including the IP address and information sent by the browser.
These services make the form and map available. Loading them is separate from Analytics and is not enabled by consent to analytics. Enquiry data is handled as described above; delivering and protecting website functions falls within the technical purposes described in the previous section.
Statistics with Google Analytics 4
With your consent, we use Google Analytics 4, provided by Google Ireland Limited, to understand website use and measure interactions with its content and contact channels. The legal basis is consent under Article 6(1)(a) GDPR.
The Analytics tag loads only after you accept analytics, using Basic Consent Mode. If you decline, Analytics sends no measurements. You can change or withdraw your choice through “Manage privacy”; declining analytics does not prevent you from submitting an enquiry.
Enhanced measurement is limited to page views, scrolling, video interactions and downloads. Contact actions and successful form submissions are also measured through dedicated events. Statistics include technical information about the device and browser, viewed pages and interactions. We do not send names, email addresses, telephone numbers, enquiry reference codes or message contents in events. Data redaction features configured in Analytics are enabled. Google Signals, user-provided data collection and advertising personalisation are disabled.
User and event data retention is set to 14 months, without resetting the retention period for user identifiers when new activity occurs. This setting does not determine cookie lifetimes and does not apply in the same way to aggregated reports. Analytics cookies are set to last 180 days, without automatic renewal on each visit, unless the browser imposes a shorter limit.
Recipients and transfers
Data may be processed by the controller, authorised people and the providers of the services used: Aruba for hosting, Google for Apps Script and Sheets, Google Ireland Limited for Analytics, CARTO for maps and providers involved in delivering email. Their roles depend on the service and its processing terms.
Using Google and CARTO services may involve processing outside the European Economic Area. Providers describe the safeguards available under their terms, including standard contractual clauses and adequacy decisions where applicable. See Google's information on data transfers and CARTO's basemap terms. For information about safeguards applicable to data handled by NetCom, contact the controller.
Your rights
Where the law provides, you may request access, rectification, erasure, restriction and portability of your data, or object to processing. Where processing relies on consent, you may withdraw it without affecting the lawfulness of processing carried out before withdrawal.
To exercise your rights, email
For choices concerning browser storage, see the Cookie Policy.
Version dated 5 September 2026.








