Italiano

Mauro Giorgi

Privacy notice

Updated 24 August 2026

In brief. AIwithMauroGiorgi analyses documents locally in your browser: the text you paste is not uploaded. Personal data is processed only when you visit the site, subscribe, contact me or use the reserved WeAIComply pathway. It is not sold or used for advertising or profiling.

Data controller

For maurogiorgi.com, subscriptions and contact requests, the controller is Mauro Giorgi. Contact: [email protected]. No Data Protection Officer has been appointed.

For the generation, delivery and verification of documents within the reserved WeAIComply pathway, the independent controller is Consul Service SRL, Via Carso 18, 62012 Civitanova Marche (MC), Italy — [email protected]weaicomply.com.

When you visit the site

Cloudflare processes technical request data needed to deliver and protect the site, such as IP address, date and time, requested page, browser and device information, HTTP and security data, and approximate country. The application also records aggregate events such as a visit, the start of a form and page depth to understand whether the site works.

The legal basis is the legitimate interest in security, service delivery and aggregate performance measurement under Article 6(1)(f) of Regulation (EU) 2016/679. No advertising or profiling cookies are used. The reserved pathway uses the strictly necessary mg_free_session cookie after invitation activation; it is secure, inaccessible to JavaScript and expires after 30 days.

If you subscribe

The form collects your first name, surname, company, sector, role, email address, answers to the two questions, chosen language and basic browser/device details. These details are used to send access to AIwithMauroGiorgi, provide related operational communications, create a reserved WeAIComply invitation where requested, and understand the service’s audience and technical compatibility.

Legal basisPerformance of the service you request, Article 6(1)(b), and legitimate interests in service administration and improvement, Article 6(1)(f).
RetentionFor up to 24 months after the last interaction, unless a longer period is required to establish, exercise or defend legal claims, or you request earlier erasure where applicable.
StorageCloudflare Workers KV. Cloudflare’s network and storage architecture may process or replicate data outside the European Economic Area subject to the safeguards described below.

Reserved invitation and session

If you request the free WeAIComply pathway, the backend creates a random personal token. Only its cryptographic hash is stored, together with your email, name, company, language, entitlement and creation and expiry dates. The invitation expires after 7 days. Once activated, a separate hashed session identifier is stored for up to 30 days so that you can continue the pathway securely. Tokens and session identifiers do not contain readable personal data.

Reserved WeAIComply pathway

The pathway may collect your authorised email address, legal company name, Italian VAT number, number of employees, AI tools and users, answers to the GDPR and AI Act questionnaire, calculated internal risk level, chosen language and verification code. The data is used to generate and email the requested documents and to create a limited public verification record.

The legal basis is performance of the service requested under Article 6(1)(b). The risk level is a rule-based result used only to tailor the documents; it does not produce legal effects or similarly significant decisions about a person within Article 22 GDPR. Generated documents are templates based on the information provided: they are not a certification and do not guarantee compliance.

The verification record contains only the Italian VAT number, verification code and issue date. Do not enter special-category data, criminal-offence data or information unrelated to the questionnaire.

Documents you analyse

AIwithMauroGiorgi runs entirely in your browser. The text you paste is not sent anywhere — there is no server to which it could be transmitted. I do not see or retain it and cannot retrieve it.

The same applies to the browser extension and the application installed on your phone.

Visit statistics

The site records aggregate events, browser and operating-system category, referrer domain, approximate country and page depth. No application-level advertising identifier or profiling cookie is created. Cloudflare may nevertheless process IP addresses and other technical logs to deliver and secure the service, as described above.

If you contact me

The contact form collects your name, email address, message and language. A Cloudflare Pages Function forwards the message through Resend to my mailbox; the website does not create a separate database copy. Correspondence is retained for as long as necessary to reply and manage any resulting relationship, normally no longer than 24 months, subject to legal record-keeping needs. The legal basis is Article 6(1)(b) for pre-contractual or requested steps and Article 6(1)(f) for other legitimate correspondence.

Recipients

Data may be processed by the following providers to the extent needed for their role:

Data may also be disclosed where required by law or necessary to establish, exercise or defend legal claims. It is not sold, exchanged for advertising purposes or used for profiling.

International transfers

Some providers operate internationally. Where personal data is transferred outside the European Economic Area, the transfer must rely on an adequacy decision, participation in the EU–US Data Privacy Framework where applicable, Standard Contractual Clauses or another safeguard permitted by Articles 44–49 GDPR. You may request information about the applicable safeguard by emailing me.

Web fonts

The pages load fonts from Google Fonts. Your browser makes that technical request directly; the text you submit in forms or analyse with AIwithMauroGiorgi is not included in it.

Required and optional data

Fields marked as required are necessary to provide the requested access, reply or generate documents. If they are not supplied, that part of the service cannot be delivered. Optional information is identified as such.

Your rights

Subject to the conditions in Regulation (EU) 2016/679, you may request access, rectification, erasure, restriction, portability and object to processing based on legitimate interests. Where processing is based on consent, you may withdraw it without affecting earlier lawful processing. You may also lodge a complaint with the Italian Data Protection Authority or the supervisory authority where you live or work.

For maurogiorgi.com requests, email [email protected]. For WeAIComply document-service requests, email [email protected]. A response will normally be provided within one month.

Security

The service uses HTTPS, server-side access checks, cryptographically random invitations, hashed tokens, short expiry periods, secure session cookies and restricted secrets. No internet service can be guaranteed completely secure; suspected incidents are assessed and handled in accordance with applicable law.

Changes

If this notice changes, the date above will show it. If a change concerns data already collected, I will notify you beforehand.