Privacy Policy
Draft for review · Publication date pending
1. Introduction
OSFI Global is an institutional website presenting the activities and initiatives of OSFI — Order Sovereign Federal International. This draft Privacy Policy explains how personal information may be collected, used, stored, and protected when visitors access www.osfiglobal.com or submit information through its contact form.
The contact form is not yet enabled for delivery. Its contents are validated in your browser and are not submitted or stored by this website. The processing described below must be confirmed before delivery is activated.
2. Data controller
The proposed data controller is LB Group S.R.L.S., Via Eraclito 15/3, Milan, Italy. Postal code: to be confirmed. VAT number: to be confirmed.
The legal identity and actual role of the data controller require verification before publication. Privacy contact: management@lbgroup.it.com. Website: www.osfiglobal.com.
3. Personal information collected
Once contact delivery is enabled, the information collected may include the following. Technical information required for website operation and security may be processed by hosting providers.
We do not intentionally request medical information or special categories of personal data. Do not submit medical records or sensitive health information.
- Full name and email address
- Organization name, where provided
- Information submitted through the contact form
- Technical information, including IP addresses and browser-related information
4. Purposes of processing
Personal information may be processed for these purposes:
- Respond to inquiries and provide information about OSFI activities
- Manage institutional communications and partnership requests
- Maintain website functionality and security
- Prevent unauthorized access and abuse
- Comply with applicable legal obligations
5. Legal bases
Where GDPR applies, processing may be based on legitimate interests, steps taken before entering into a contract, compliance with legal obligations, or consent where required. The applicable legal basis must correspond to the specific processing purpose and be verified before activation.
6. Data sharing
Personal information may be processed by authorized service providers supporting website hosting, security, technical maintenance, and email delivery. We do not sell personal information. Actual providers and arrangements must be documented before publication.
7. International data transfers
Where personal information is transferred outside the European Economic Area, appropriate safeguards will be implemented where required by applicable law. Transfer locations and safeguards require verification against the services actually configured.
8. Data retention
Personal information will be retained only for as long as necessary for the purposes for which it was collected. The proposed retention period for contact inquiries is up to 12 months after the last relevant interaction, unless a longer period is justified.
Technical logs will be retained according to documented operational and security requirements. These arrangements must be confirmed before delivery is enabled.
9. Individual privacy rights
Depending on applicable law, individuals may exercise the following rights and lodge complaints with a competent data protection authority. Requests may be sent to management@lbgroup.it.com.
- Access, correction, or deletion of personal information
- Restriction of processing or objection to processing
- Data portability
- Withdrawal of consent where applicable
10. United States privacy rights
Depending on applicable state privacy laws, individuals may have additional rights. Where legally required, appropriate mechanisms will be provided to exercise those rights. The website does not intend to sell personal information or use personal information for behavioral advertising.
11. Data security
Appropriate technical and organizational measures are intended to protect personal information, including encrypted communications, access controls, secure hosting, and restrictions on data access. Actual security measures and processing practices require review; no claim of legal compliance is made by this draft.
12. Children’s privacy
The website provides general institutional information and is not directed to children under the age of 13. We do not knowingly collect personal information from children under 13 through the website.
13. Cookies
The website uses built-in consent controls, not an external consent provider. A necessary first-party cookie remembers your category choices, consent version and save time for up to 180 days. It contains no name, email address or unique visitor identifier. Cookie Settings in the footer lets you change or withdraw optional consent. No optional analytics or marketing trackers are currently configured. See our Cookie Policy for details.
14. Policy updates
This Privacy Policy may be updated when processing practices or legal requirements change. Updates will be published on this page. The actual publication date will be added when the reviewed policy goes live.
15. Contact
LB Group S.R.L.S. · Via Eraclito 15/3 · Postal code to be confirmed · Milan, Italy. Email: management@lbgroup.it.com.
