This notice, provided under Articles 13 and 14 of Regulation (EU) 2016/679 (GDPR), applies to the whole ADOMU website: the event pages, the pass checkout, the “Where to stay” section with its discount code, experience sign-ups and our email communications.
1. Data controller
The data controller is the association Parallel Coast, organizer of ADOMU — Digital Nomad Summit & ADOMU Electronic Music Fest.
Parallel Coast — Via Eleonora d'Arborea 95, 09017 Sant'Antioco (SU), Italy. VAT number IT04189800925 — Tax code 90040240922. Legal representative: Marina Cristofalo, President of the association.
No Data Protection Officer (DPO) has been appointed, as the conditions of Art. 37 GDPR do not apply: processing is managed directly by the controller. For any request regarding your data, including the rights described in section 10, write to hello@adomu.io or to the registered office above.
2. The website forms and the data we collect
We only collect the data each form needs for its purpose. Fields marked as required are essential: without them we cannot complete the purchase or provide the service you asked for.
- Pass checkout form: name, email, phone, country, address, city, postal code, customer type (individual or company), tax code, company name, VAT number, e-invoicing recipient code or PEC, quantity and order details. These are the data required for the contract and the invoice.
- Rate reserved for Sardinian residents: if you tick the box to claim it, we ask you for no document and no extra data. We use the postal code of the billing address you have already given us to check that it is in Sardinia, and if it is not we tell you straight away instead of quietly charging you the full price. The order records that you bought at the reduced rate: it is part of the contract and the invoice, and at the door our staff may ask you for a document confirming your residency. We look at that document and nothing more — we keep no copy of it and record none of its details.
- Applying to join the network (stays, coworking spaces, experiences): your business name, contact person, email, phone, town and address, VAT number where you have one, website and social channels, your proposal's description, the photographs you upload and the discount you choose to reserve for the community. If your application is approved you receive a personal link to read and accept the partnership agreement: from that step we keep the name you type as your signature, with date and time. Description, photographs and discount terms are meant for publication on the website; your email, phone and any internal notes stay with us and appear on no public page.
- “Get your personal code” form (Where to stay): email and, optionally, your name. Used to generate and send you a personal discount code and to verify it when you present it at the property.
- Experience sign-ups: first and last name, email, phone and — where the activity requires it for safety or insurance reasons — date of birth and notes shared with the operator.
- Speaker area: people speaking at the Summit receive a personal link to sign their collaboration agreement and fill in their profile. We collect first and last name, place and date of birth, home address and country, tax code, VAT number where they have one, email and phone; the name typed as a signature, with date and time; the agreed fee; and, for the public part, biography, role, social channels and the photographs they upload. Personal and tax details are needed for the agreement and the legal obligations arising from it; biography and photographs are published on the website and programme. The fee, contact details and internal notes never appear on public pages.
- Travel arrangements for speakers: on the same profile the speaker enters their inbound and outbound flight details (date, time, flight number and airport), the link to their presentation, and uploads the invoice for their fee; we add the hotel booked for them and the transfer times, which they can read but not change. Flight details and hotel and transfer arrangements are used solely to organise hospitality and are deleted once the event is over; the invoice is kept like any other tax document. None of this appears on public pages.
- Optional newsletter and marketing consent: email and name, if you tick the box in the forms above.
- Phone alerts (push notifications): if you turn them on from the programme page, we store the address your browser assigns to that installation and the language you chose. These are not a name or an email address: they identify an installation, not a person, and are not linked to your purchase, your account or anything else you gave us. We do not use them for profiling, and we use them only to announce programme changes and event news and, where the service is on, for your daily summary: that summary is written by your own phone from what you starred, and none of its content reaches us. Legal basis: your consent, which you can withdraw at any time from the same button that turned them on or from your browser settings; on withdrawal the address is deleted.
- Technical browsing data, collected only if you consent to analytics: page visited, language, device type (mobile or desktop), referring page, campaign parameters (utm_source, utm_campaign), the country you connect from, and two random identifiers — one for the session, which ends when you close the tab, and one for the installation, which stays on your device and lets us tell ten different visitors apart from one person coming back ten times. They are random numbers: they are not derived from anything you gave us, they are not linked to your purchase, your account or your phone alerts, and they do not tell us who you are. They are not anonymous either, because they stay the same over time, and we would rather say so plainly. We derive the country from the IP address of the request and keep only the two-letter country code: the IP address is never recorded in our statistics. If you withdraw your analytics consent, the installation identifier is deleted from your device.
3. Purposes and legal basis
- Handling your purchase, issuing the invoice, providing support and meeting accounting and tax obligations — legal basis: performance of the contract (Art. 6.1.b) and legal obligations (Art. 6.1.c).
- Issuing, sending and verifying the accommodation discount code, and managing experience sign-ups — legal basis: performance of the contract or of the pre-contractual measure you requested (Art. 6.1.b).
- Checking eligibility for the resident rate and applying the reduction — legal basis: performance of the contract (Art. 6.1.b). Without that check we could not offer the reduction to anyone.
- Assessing network applications, entering into the partnership agreement and publishing the partner's listing — legal basis: performance of the pre-contractual measure you requested and then of the contract (Art. 6.1.b).
- Service communications about the event (program, logistics, changes) — legal basis: performance of the contract (Art. 6.1.b).
- Newsletter, invitations to future editions and marketing and remarketing activities on third-party platforms — legal basis: your consent (Art. 6.1.a), which is free, optional and withdrawable at any time with no effect on your purchase.
- Aggregate website usage statistics and campaign measurement — legal basis: your consent (Art. 6.1.a), given through the banner. If you do not consent to analytics, no visit is recorded at all.
- Website security, abuse prevention and legal defence — legal basis: the controller's legitimate interest (Art. 6.1.f).
4. Special category data and minors
We do not ask for health data, beliefs or other special categories of data (Art. 9 GDPR). If an experience requires information about food intolerances or physical limitations, the field is optional, is collected with your explicit consent, is visible only to the operator running the activity and is deleted after the event. Please do not enter information in free-text fields beyond what is strictly necessary.
Buying passes and signing up to our online services is reserved to adults: we do not knowingly collect data provided directly by children. Minors may attend our events when accompanied by the person holding parental responsibility, who provides and warrants the data needed for registration and remains our point of contact for any communication concerning them.
5. Payments
Payments are processed by Stripe Payments Europe Ltd. and PayPal (Europe) S.à r.l. et Cie, S.C.A., depending on the method you choose at checkout. Card or account details never pass through and are never stored on our systems: we only receive the payment outcome, the transaction identifier and the data required for invoicing. Each provider also processes data as an independent controller for anti-fraud and anti-money-laundering obligations, under its own privacy notice.
6. Cookies and tracking technologies
This notice covers two websites operated by the same controller: adomu.shop, the platform where passes are purchased and members' areas live, and adomu.io, the institutional website, built with Wix. They use different technologies, so their tables are kept separate.
We use essential cookies and equivalent technologies needed to run the websites, keep your session and complete your purchase: these require no consent.
Only with your explicit consent, collected through the banner on your first visit, we enable our own usage analytics (measuring visits and the purchase journey) and third-party marketing and remarketing tools, which allow us to measure campaigns and show you relevant ADOMU ads. Until you consent, these tools stay switched off and we record no visit in our own records.
Regardless of your choices, the technology platform hosting this website collects some audience measures needed to deliver and maintain the service: number of visits, page viewed, duration and — derived from your IP address and browser — country and device type. The IP address is not retained in our own records. Details are in the table below.
Below is the list of technologies used on the adomu.shop platform:
| Name | Category | Purpose | Duration |
|---|
| Platform session cookie | Essential | Keeps your session, security and cart during checkout | Session |
| adomu_cookie_consent_v1 | Essential | Stores your cookie choices so the banner is not shown again | 12 months (browser local storage) |
| adomu_sessione / adomu_visita_* | Analytics | Random session identifier: avoids counting the same visit twice. Active only with analytics consent | Browser session |
| adomu_codice_alloggio | Essential | Keeps the accommodation discount code you requested on your device | Until manually cleared |
| ADOMU analytics (server-side) | Analytics | Aggregate visit counts, referring page and campaign parameters. No IP address stored | 26 months in aggregate form |
| Stripe / PayPal | Essential | Anti-fraud security and payment completion on the providers' pages | As per the provider's notice |
| Meta Pixel | Marketing | Campaign measurement and remarketing. Loaded only after marketing consent | Up to 13 months |
| Platform analytics | Technical audience measurement | Audience measurement performed by the provider hosting this site: visits, pages, duration, plus country and device type derived from IP address and browser. It serves to deliver and maintain the service and is not used to profile you | As per the provider's notice |
| Session recording | Technical audience measurement | The provider hosting this site records browsing as a replay, to diagnose errors and usability problems. Payment card details are not recorded, as they are entered on Stripe's and PayPal's own pages | 30 days, then deleted automatically |
| sidebar_state | Essential | Remembers whether the sidebar of the members' area is open or closed. Present only for those accessing the management area | 7 days |
The institutional website adomu.io, built on the Wix platform, sets the technical cookies Wix installs to run the site. You express your choices through the banner shown on that site.
| Name | Category | Purpose | Duration |
|---|
| svSession | Essential | Identifies the visitor across pages: required for the site to work | 12 months |
| smSession | Essential | Identifies logged-in members | Session |
| XSRF-TOKEN | Essential | Security: protects against fraudulent requests | Session |
| hs | Essential | Site security | Session |
| TS* | Essential | Security and fraud prevention | Session |
| consent-policy | Essential | Stores your choices on the adomu.io cookie banner | 12 months |
| bSession | Analytics | System effectiveness measurement | 30 minutes |
| fedops.logger.* | Analytics | Detects errors and loading issues to improve site stability | 12 months |
| _wixAB3 | Analytics | A/B testing to improve the browsing experience. Active only with your consent | 6 months |
| _wixCIDX | Marketing | Campaign measurement. Active only with your consent | 3 months |
The adomu.io list reflects the cookies the Wix platform installs by default. If additional analytics or marketing tools are enabled on that site, this list is updated accordingly.
You can change or withdraw your choices at any time via the “Cookie preferences” link in the footer of every adomu.shop page, or from the adomu.io banner, or by clearing cookies in your browser. Withdrawal does not affect the lawfulness of processing carried out beforehand.
7. Who receives your data
Data are processed by the controller's authorised staff and may be shared with the following parties, acting as data processors under an Article 28 GDPR agreement:
- The application and hosting platform provider for the website and database.
- Stripe and PayPal for collecting payments.
- The e-invoicing provider and transmission to the Italian Revenue Agency's exchange system.
- The provider delivering transactional emails and the newsletter.
- Partner accommodations and operators, limited to the data needed to validate your discount code or run the experience you signed up for.
- Accounting and tax advisors, and advertising platforms (the latter only if you gave marketing consent).
- Public authorities, where disclosure is required by law.
8. Transfers outside the European Union
Some providers may process data in countries outside the European Economic Area. In that case the transfer relies on a European Commission adequacy decision or on the Standard Contractual Clauses, supplemented by additional security measures. You may request a copy of the safeguards in place by writing to hello@adomu.io.
9. Retention periods
- Accounting and tax data and invoices: 10 years from issue, as required by law.
- Order data and service communications: up to 24 months after the event, for support and to handle any disputes.
- Speaker agreements and related documents: 10 years from signature, as for any document with tax and contractual relevance. Photographs and materials uploaded by speakers are kept for the same period, unless removal from public pages is requested, which we always honour.
- Network partnership agreements and application data: 10 years from acceptance, as for any document with contractual relevance. Applications that are not approved are deleted within 12 months. Published photographs and descriptions stay online for as long as the partnership lasts, and we take them down at the partner's request.
- The resident-rate marker on an order: it follows the order and invoice it belongs to, because it is part of them. Nothing remains of any document shown at the door, because we keep no copy of it.
- Accommodation discount codes and experience sign-ups: up to 12 months after the edition they refer to.
- Data processed for marketing purposes: until you withdraw consent and, in any case, no longer than 24 months from the last contact.
- Browsing statistics: in aggregate or pseudonymised form, no longer than 26 months.
10. Your rights
At any time you may exercise the rights under Articles 15-22 GDPR: access to your data, rectification, erasure, restriction of processing, objection to processing based on legitimate interest, data portability, and withdrawal of your consent to marketing and non-essential cookies.
Simply write to hello@adomu.io: we will reply without undue delay and in any case within one month. If you believe the processing infringes the law, you have the right to lodge a complaint with the Italian Data Protection Authority (www.garanteprivacy.it) or to seek a judicial remedy.
11. Security and automated decision-making
We apply appropriate technical and organisational measures to protect your data: encrypted connections, back-office access restricted to authorised staff, and logging of operations on data. We do not carry out automated decision-making or profiling producing legal effects concerning you.
This notice may be updated: the current version is always published on this page together with the date of the last update.