Privacy Policy

Last updated: December 5, 2025

1. Introduction

Welcome to Colab. We respect your privacy and are committed to protecting your personal data. This privacy policy explains how we collect, use, and safeguard your information when you visit our website (https://joincolab.it) or use our services.

2. Data Controller

The data controller responsible for your personal data is:

Colab

Partita IVA: IT02736820461

Email: info@joincolab.it

Address:
Via Nazario Sauro 19
55100 Lucca
Italy

3. Data We Collect

3.1 Contact Form Data

When you submit our contact form, we collect:

  • Your name
  • Your email address
  • The message content you provide

Legal basis: Legitimate interest (to respond to your inquiries)

Processing: This data is sent via email through our SMTP provider (Gmail/Google Workspace) and stored in our email system.

3.2 Payment and Subscription Data

When you purchase a membership or subscription, we collect:

  • Full name
  • Email address
  • Date of birth
  • Payment information (processed securely by Stripe)
  • Subscription details (plan type, duration, dates)

Legal basis: Contract (necessary to provide the service you purchased)

Processing: Payment data is processed and stored by Stripe (our payment processor). We store subscription metadata within Stripe's secure infrastructure. We do not store credit card details on our servers.

3.3 Cookies and Similar Technologies

Our website uses the following:

  • localStorage: We store your cookie consent preference locally in your browser (key: "Colab-cookie-consent")
  • Google Maps cookies: If you accept cookies, Google Maps sets cookies to provide the interactive map feature. These cookies are set by Google and subject to Google's privacy policy.
  • Google Analytics cookies: If you accept cookies, Google Analytics sets cookies to collect anonymous usage data (pages visited, time on site, browser type, etc.) to help us improve our website. These cookies are set by Google and subject to Google's privacy policy.

Legal basis: Consent (you can accept or reject via our cookie banner)

4. How We Use Your Data

We use your personal data to:

  • Respond to your contact form inquiries
  • Process your membership payments and subscriptions
  • Provide access to our coworking space facilities
  • Display interactive maps (with your consent)
  • Analyze website usage and improve our services (with your consent, via Google Analytics)
  • Comply with legal obligations

5. Data Sharing and Third Parties

We share your data with the following third-party service providers:

  • Stripe: Payment processing and subscription management. Stripe is PCI-DSS compliant and may transfer data outside the EU under appropriate safeguards. See Stripe's Privacy Policy.
  • Google (Gmail/Workspace): Email delivery for contact form submissions. See Google's Privacy Policy.
  • Google Maps: Interactive map display (only with your consent). See Google's Privacy Policy.
  • Google Analytics: Website analytics and usage statistics (only with your consent). Google Analytics collects anonymous data about page views, session duration, and user behavior. See Google's Privacy Policy.

We do not sell your personal data to third parties.

6. Data Retention

We retain your data as follows:

  • Contact form data: Retained in our email system for up to 2 years or until you request deletion
  • Payment and subscription data: Retained in Stripe for the duration of your subscription plus 7 years for accounting and tax purposes (as required by Italian law)
  • Cookie consent: Stored locally in your browser until you clear it or change your preference

7. Your Rights Under GDPR

As a data subject in the EU, you have the following rights:

  • Right to access: Request a copy of your personal data
  • Right to rectification: Request correction of inaccurate data
  • Right to erasure: Request deletion of your data (subject to legal retention requirements)
  • Right to restriction: Request limitation of processing
  • Right to data portability: Receive your data in a machine-readable format
  • Right to object: Object to processing based on legitimate interests
  • Right to withdraw consent: Withdraw consent at any time (for cookie consent)

To exercise any of these rights, please contact us at info@joincolab.it.

8. Data Security

We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction. Payment data is processed through Stripe's PCI-DSS compliant infrastructure.

9. International Data Transfers

Some of our service providers (Stripe, Google) may transfer your data outside the European Economic Area (EEA). When this occurs, we ensure appropriate safeguards are in place, such as Standard Contractual Clauses or the provider's certification under recognized frameworks.

10. Changes to This Policy

We may update this privacy policy from time to time. The "Last updated" date at the top indicates when this policy was last revised. We encourage you to review this policy periodically.

11. Contact Us

If you have any questions about this privacy policy or our data practices, please contact us:

12. Supervisory Authority

If you believe we have not handled your personal data properly, you have the right to lodge a complaint with the Italian data protection authority:

Garante per la protezione dei dati personali

Website: www.garanteprivacy.it