The University of Messina implements protection measures for the processing of personal data in order to adapt and maintain it in compliance with the New Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April. 2016 - General Regulation on the Protection of Personal Data (GDPR) - relating to the protection of individuals with regard to the processing of personal data, as well as to the free movement of such data and which repeals Directive 95/46 / EC ; and to the Legislative Decree n. 196/2003 - Code regarding the protection of personal data - as adapted to the aforementioned Regulation by Legislative Decree no. 101/2018 of 10 August 2018.
 
 
The Data Controller is the University of Messina (Owner),
in the person of the Magnificent Rector, Prof. Salvatore Cuzzocrea

with registered office at: Plesso Centrale dell'Ateneo, Piazza Pugliatti 1, 98125 Messina .
Telefono: 0906768900
Email: rettorato@unime.it
PEC: protocollo@pec.unime.it
 
The Data Protection Officer (DPO) is Dr. Daniela Prestipino.
What follows is the DPO's contact information:
Telefono: 0906768355
Email: rpd@unime.it
PEC (Certified email): protezionedati@pec.unime.it

 
The processing of personal data - which is associated with a purpose connected to the institutional mission of the University (teaching, research and third mission - described in the Statute) is necessary for the performance of the relative institutional tasks and activities. The processing of personal data takes place in application of the current regulations; respecting human dignity, fundamental human rights and freedoms (students, University staff, users who relate to the University, stakeholders in general) - art.1 of the "new" Legislative Decree 196/2003 / Legislative Decree 101/2018. The University undertakes to process personal data in a transparent manner towards the interested parties, i.e. the people to whom the data refer.
 
In general, the legal basis of the treatment, i.e. the legal requirement that configures it as lawful, is identified in art. 6 paragraph 1 letter e) of the GDPR: "processing is necessary for the execution of a task of public interest or connected to the exercise of public powers with which the data controller is invested". Further bases of lawfulness prescribed by the European regulation (for example the consent or the equal interest ), will be specified.
 
Personal data are processed according to the provisions of art. 5 of the GDPR: lawfully, correctly and transparently; for specific, explicit and legitimate purposes; in compliance with the data quality principles (minimization, accuracy and limitation of conservation), and with the security requirements pursuant to art. 32 of the GDPR (integrity and confidentiality; availability and resilience of systems). 
 
The interested party can operate the control over their information by exercising the rights declared in CHAPTER III of the GDPR: information and access (articles 12-15) obtaining the origin, purpose, copy, destination of the data and legal basis; being able to request the correction (articles 16,19) and / or cancellation (articles 17, 19), the limitation of treatment (articles 18, 19) or the existence of an automated decision-making process (article 22).
The interested party can oppose the treatment at any time (art.21), revoke the consent (without however prejudicing the lawfulness of the treatment based on the consent given before the revocation, art.7); it can also lodge a complaint with the Control Authority (art.15). In order to exercise the aforementioned rights, users can fill the following form.
 
The Italian National Supervisory Authority for the protection of personal data is the Guarantor for the protection of personal data (Privacy Guarantor).
http://www.garanteprivacy.it.
 
To activate their rights, the interested party can contact the Data Controller or Data Protection Officer.
 
We recommend periodic consultation of this section of the portal to find out about the University's information updates and initiatives on the subject.