logo Tef Bridge

Privacy policy

REGULATORY FRAMEWORK

  • Directive 2002/58/EC of the European Parliament and of the Council of 12 July 2002 concerning the processing of personal data and the protection of privacy in the electronic communications sector (Directive on privacy and electronic communications).
  • Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC (General Data Protection Regulation).

DATA CONTROLLER

When you visit and use our website, we may collect and process personal data, where personal data means any information relating to an identified or identifiable natural person (hereafter, referred to as “Data”). The Data Controller is TEF Bridge s.r.l. with legal premises in Piazza Leonardo da Vinci 32, 20133, Milano (MI), Italy (hereafter referred to as the “Data Controller”).

TYPE OF DATA PROCESSED

Browsing data

The computer systems and software procedures used to run this website acquire personal data as part of their standard operations. The transmission of such Data is an inherent feature of internet communication protocols.
This information is not collected in order to be associated with identified interested parties (data subjects) but might, because of the type of information it is, allow users to be identified through processes of elaboration and association with data held by third parties.
This category of data includes IP addresses and/or the domain names of computers used by users who connect to this website, the URI (Uniform Resource Identifier) notation of the requested resources, the time of request, the method used to submit the request to the server, the size of the file received in reply, the numerical code indicating the status of the response given by the server (successful, error, etc.) and other parameters relating to the user’s operating system and IT environment.
These data are used for the sole purpose of computing anonymous statistics about the usage of the website and to check that it is working correctly, and are deleted immediately after being elaborated. The data could be used to ascertain liability in the event of any computer crimes against this website. With the exception of this possibility, web contact data are never stored for more than seven days.

Data provided by the user voluntarily

The Data that users provide optionally, explicitly and voluntarily when compiling registration forms on this site (among which, the “Contact Us” form, our newsletter subscription form and the “Work with Us” form) will then be collected and stored by us, in order for us to provide the service or services requested. Summary privacy statements and, when applicable, consent forms will be progressively presented or displayed on the website pages relating to the services requested.

Aggregated or anonymous data

Anonymisation is a technique applied to personal data in order to prevent a natural person (data subject) from being identified. Anonymised data do not fall within the scope of data protection legislation. We gather, elaborate and share aggregate data as statistical or demographic data for various purposes. Aggregate data can derive from Data provided by the user but are not considered to be Data in that, as specified, they do not identify the data subject directly or indirectly. These data are used to improve the quality of our existing products/services, develop new functions, and for other general research purposes (for example, to check how frequently a visitor uses a given product or service, to calculate the percentage of users who access a given website function, etc.).

LINKS TO OTHER WEBSITES

This site can contain links or references to access other websites, such as the social platforms Facebook, Instagram, Google+, Twitter and Pinterest. If you click on a social media share link, you can share our messages and content. Please note that the Data Controller does not control the tracking technologies on other websites, and this policy does not apply to these third-party websites.

LEGAL BASIS FOR PROCESSING

The Data Controller can lawfully process all Data conferred freely by users through forms contained within the website, in that the processing is necessary for the performance of a contract at the request of the data subject prior to entering into a contract (Article 6(1)(b) GDPR), or is lawful in that the data subject has given consent to the processing of his or her personal data for one or more specific purposes (Article 6(1)(a) GDPR). Furthermore, the Data Controller can process the user’s Data when such processing is necessary for compliance with a legal obligation to which the Data Controller is subject (Article 6(1)(c) GDPR). More information on the legal basis for processing the Data are included within the specific privacy statements relating to each form through which data are gathered.

OPTIONAL CONSENT TO PROVIDING PERSONAL DATA

Apart from what is specified for the browsing data, you are free to provide your personal data. However, if you do not give your consent, it may be impossible for you to receive what you have asked.
Please note that we are not required to obtain your consent for the use of only technical cookies or third-party analytics cookies that are equivalent to technical cookies. If you disable technical cookies or prevent their use, this will impact your experience of navigating the site correctly and you may not be able to access the services, pages, functions or contents of the website itself. The Data Controller will ask for your specific consent for all other types of cookies (marketing and profiling cookies).

DATA PROCESSING PURPOSES

We process Data through various means, including automated tools. Data are processed in a manner that ensures appropriate security of the Data, including protection against unauthorised or unlawful processing and against accidental loss. The Data Controller has adopted appropriate safety measures set out in law, and taking inspiration from the main international standards, has adopted further safety measures to minimise risks concerning confidentiality, availability and integrity of Data gathered and processed.

DATA RETENTION PERIOD

Data will be processed via digital methods within the time strictly necessary to achieve the purposes for which the data were collected. Data gathered for the purposes of statistical analyses are anonymised. More information on the Data retention period is included in the specific privacy statements relating to each form through which data are gathered.

SHARING, COMMUNICATING AND DISSEMINATING DATA

Data can be transferred or communicated to other companies for purposes strictly connected to and essential for the functionality of the service, and can be, for example, the trusted suppliers who manage our computer system. Data provided by users who request brochures, leaflets, information material, etc. are used for the sole purpose of providing the service requested, and are communicated to third parties only if this is strictly necessary (companies that provide enveloping, labelling and delivery services). With the exception of these cases, Data will not be communicated to any other party, unless in the case of legal or contractual obligations, or by authorisation of the data subject.
Therefore, Data could be transmitted to third parties, but only and exclusively if:

  1. The data subject gives their explicit consent for their data to be shared.
  2. There is the need to share this information with third parties in order to provide the service requested.
  3. It is necessary in order to comply with requests from judicial or public safety authorities.

More information on the parties to whom we could communicate your Data are included in the privacy statements attached to every form on the website.
In any case, no data obtained from the web service will be disseminated.

THE RIGHTS OF DATA SUBJECTS

Legislation protecting Data expressively gives certain rights to the persons to whom the data refer (known as data subjects). In particular, under Regulation (EU) 2016/679, Article 15 et seq., every data subject has the right to obtain confirmation as to whether or not personal data relating to him or her are being processed, to know the source of the data, the purposes and methods of the processing, the right to obtain their integration, updating, rectification, or to obtain their cancellation if they are processed unlawfully, or on the grounds of a reason specified in Regulation (EU) 2016/679, Article 17, the right to data portability and to lodge a complaint with a supervisory authority.

Processing of personal data outside the EEA

Your Data will not be transferred outside the European Economic Area (EEA).

CHANGES TO THE CURRENT PRIVACY POLICY

The Data Controller verifies its policy on privacy and security periodically and, if appropriate, will review it in the light of changes to legislation, in matters of organisation or dictated by progress in technology. Whenever the policy is altered, the new version will be published on the website at this page.

QUESTIONS, COMPLAINTS, SUGGESTIONS AND EXERCISING YOUR RIGHTS

If you are interested in receiving more information, putting forward your suggestions, making a complaint or raising objections about the organisation’s privacy policies or the way our Company processes Data, or to exercise your rights under data protection legislation, please contact the Data Controller by writing to: TEF Bridge s.r.l. with legal premises in Piazza Leonardo da Vinci 32, 20133, Milano (MI), Italy, or send an email to: info@tefbridge.tech.

CONTACT FORMS

PRIVACY STATEMENT PURSUANT TO ARTICLE 13 OF REGULATION (EU) 2016/679

Pursuant to Article 13 of Regulation (EU) 2016/679 (GDPR), we inform you that your personal data (first name, family name, email address and other personal data included in the contact form) will be processed by TEF Bridge s.r.l., as the Data Controller, to respond to your requests for information about the services we offer. The legal basis under Article 6(1)(b) GDPR is that the processing is necessary for the performance of a contract at the request of the data subject. After you have given your explicit and free consent, TEF Bridge s.r.l. will be able to send you periodic emails with content promoting and advertising our Company (“Newsletter”). You can withdraw your consent at any time, and will no longer be subscribed to our Newsletter. You are free to give us your personal data. If you do not give us your email address, TEF Bridge s.r.l. will be unable to give you the information you have requested.
Your personal data will be processed by persons authorised to process data under Article 29 of the GDPR, by which we mean TEF Bridge s.r.l.’s employees and/or collaborators. Your personal data can be communicated, and therefore known, to suppliers who act on our behalf to manage TEF Bridge s.r.l.’s computer system. Personal data will in any case always be processed within the European Union.
Your personal data will be retained for the time necessary to address your requests, and will then be deleted. Concerning subscription to our Newsletter, TEF Bridge s.r.l. will store your personal data for as long as you are interested in subscribing to our Newsletter. We will also remind you that, where applicable, you have the right to ask TEF Bridge s.r.l. for access to personal data and to rectify or cancel them or limit the processing that concerns them or to object to their processing, as well as your right to data portability. You can contact the competent supervisory authority to exercise your privacy rights.
To exercise your rights, write to us at: TEF Bridge s.r.l., with legal premises in Piazza Leonardo da Vinci 32, 20133, Milan (MI), Italy, or send an email to: info@tefbridge.tech.

PRIVACY STATEMENT – NEWSLETTER

PRIVACY STATEMENT PURSUANT TO ARTICLE 13 OF REGULATION (EU) 2016/679

Pursuant to Article 13 of Regulation (EU) 2016/679 (GDPR), we inform you that your personal data (email address, job title and company) will be processed by TEF Bridge s.r.l., as the Data Controller, in order for you to subscribe to our service of periodic emails containing material promoting and advertising our Company (“Newsletter”). The legal basis under Article 6(1)(a) GDPR is that your free consent can be withdrawn at any moment. You are free to give us your personal data. If you do not give us your email address, TEF Bridge s.r.l. will be unable to put you on the mailing list for our Newsletter.
Your personal data will be processed by persons authorised to process data under Article 29 of the GDPR, by which we mean TEF Bridge s.r.l.’s employees and/or collaborators. Your personal data can be communicated, and therefore known, to suppliers who act on our behalf to manage TEF Bridge s.r.l.’s computer system. Personal data will in any case always be processed within the European Union.
TEF Bridge s.r.l. will retain your personal data for as long as you are interested in subscribing to our Newsletter. Please also remember that, where applicable, you have the right to ask TEF Bridge s.r.l. for access to your personal data and to rectify or cancel them, or limit the processing that concerns them or to object to their processing, as well as your right to data portability. You can contact the competent supervisory authority to exercise your privacy rights.
To exercise your rights, write to us at: TEF Bridge s.r.l., with legal premises in Piazza Leonardo da Vinci 32, 20133, Milan (MI), Italy or send an email to: info@tefbridge.tech.

POLICY STATEMENT – DOWNLOADING SERVICES

PRIVACY STATEMENT PURSUANT TO ARTICLE 13 OF REGULATION (EU) 2016/679

Pursuant to Article 13 of Regulation (EU) 2016/679 (GDPR), we inform you that your personal data (email address, job title and company) will be processed by TEF Bridge s.r.l., as the Data Controller, in order to deliver the information brochures requested by you and published by TEF Bridge s.r.l. The legal basis under Article 6(1)(b) GDPR is that the processing is necessary for the performance of a contract at the request of the data subject. With your explicit and free consent, TEF Bridge s.r.l. can send you periodic emails with content promoting and advertising our Company (“Newsletter”). You can withdraw your consent at any time, and will no longer be subscribed to our Newsletter. You are free to give us your personal data. If you do not give us your email address, TEF Bridge s.r.l. will be unable to deliver the brochures requested by you. We would also like to inform you that your personal data may be used for statistical purposes to help TEF Bridge s.r.l. analyse the services it offers. These statistics will be elaborated exclusively on aggregated data and cannot identify you in any way.
Your personal data will be processed by persons authorised to process data under Article 29 of the GDPR, by which we mean TEF Bridge s.r.l.’s employees and/or collaborators. Your personal data can be communicated, and therefore known, to suppliers who act on our behalf to manage TEF Bridge s.r.l.’s computer system. Personal data will in any case always be processed within the European Union.Your personal data will be retained for the time necessary to supply the brochures you requested, and will then be deleted. Concerning your Newsletter subscription, TEF Bridge s.r.l. will store your personal data for as long as you are interested in subscribing to our Newsletter. We will also remind you that, where applicable, you have the right to ask TEF Bridge s.r.l. for access to personal data and to rectify or cancel them, or limit the processing that concerns them or to object to their processing, as well as your right to data portability. You can contact the competent supervisory authority to exercise your privacy rights.
To exercise your rights, write to us at: TEF Bridge s.r.l., with legal premises in Piazza Leonardo da Vinci 32, 20133, Milan (MI), Italy or send an email to: info@tefbridge.tech.

PRIVACY STATEMENT – REGISTRATION TO EVENTS

Pursuant to Article 13 of Regulation (EU) 2016/679 (GDPR), your personal data necessary to attend the event organised by us will be processed by TEF Bridge s.r.l., as the Data Controller, to enable you to register and participate in our events. The legal basis under Article 6(1)(b) GDPR is that the processing is necessary for the performance of a contract at the request of the data subject. Furthermore, we wish to inform you that we may send customer satisfaction questionnaires on the organisation of our events to the email address you provided. The legal basis under Article 6(1)(f) GDPR is that the processing is necessary for the purposes of the legitimate interests pursued by the Data Controller, always keeping in consideration the rights and freedoms of the data subject. You are free to complete the questionnaire sent by us and can object to such processing of your data at any moment. In that case, TEF Bridge s.r.l. will stop sending you customer satisfaction questionnaires concerning events organised by us.
Your personal data will be processed per persons authorised to process data under Article 29 of the GDPR, by which we mean TEF Bridge s.r.l.’s employees and/or collaborators. Your personal data can be communicated, and therefore known, to suppliers who act on our behalf to manage TEF Bridge s.r.l.’s computer system. Personal data will in any case always be processed within the European Union.
Your personal data will be retained for the time appropriate to pursuing the purposes declared and which is coherent under the Italian Civil Code. Please remember that, where applicable, you have the right to ask the Data Controller for access to personal data and to rectify or cancel them, or limit the processing that concerns them or to object to their processing. Lastly, you have the right to lodge a complaint with the competent supervisory authorities.
Consent to the use of your image (video and photographs) – During events organised by TEF Bridge s.r.l., we may take contextual videos and photographs to promote our initiatives through our institutional channels. Photographs and videos will not be used in situations that could undermine personal dignity and decorum. The use and placement of images are to be considered provided for free. If you do not want to be photographed or filmed during an event, we respectfully ask you not to attend.
To exercise your rights, write to us at: TEF Bridge s.r.l., with legal premises in Piazza Leonardo da Vinci 32, 20133, Milan (MI), Italy or send an email to: info@tefbridge.tech.

PRIVACY NOTICE – B4i

We inform you that your personal data will be processed in compliance with the legislation on the protection of personal data (Regulation (EU) 2016/679, “GDPR”), and Italian Legislative Decree 196/2003 as further amended (“Privacy Code”).

  • Data controller
    The data controller is TEF Bridge s.r.l., with registered office in Piazza Leonardo da Vinci 32, 20133, Milano (MI) (“Controller”).
    You can contact at any time the Controller by sending a letter to its registered office address or by emailing info@tefbridge.tech.
  • Processing of personal data
    The personal data are collected directly from the data subject, where the data subject registers for the the entrepreneurial hub named Bocconi for innovation (“B4i”)or from other data controllers with whom the data subject had a prior relationship (such as the Università Commerciale Luigi Bocconi), including as a result of merger and acquisition transactions.
PURPOSE OF PROCESSING LEGAL BASIS PERSONAL DATA PROCESSED RETENTION PERIOD
a) Application management for B4i. Performance of a contract to which the data subject is party or execution of pre-contractual measures taken at the request of the data subject (Art. 6(1)(b) GDPR).
  • personal details
  • tax code
  • curriculum vitae
  • professional profile (including actual role within the start-up)
The data will be kept for two years from the outcome of the selections.
b) B4i roll-out (management of pre-acceleration and acceleration programs), including responding to your particular queries related to B4i. Performance of a contract to which the data subject is party (Art. 6(1)(b) GDPR).
  • Data mentioned under letter a) above
  • Identity document and tax code
  • Ownership share of the start-up admitted to B4i
The data will be kept for the entire duration of the relevant B4i programme and for any additional time required to complete it.
c) Managing Mentor or Alumnus Angel applications and awarding the relevant title. Execution of pre-contractual measures taken at the request of the data subject (Art. 6(1)(b) GDPR).
  • Master data
  • Professional title
  • Role within start-up
  • Professional experience: skills and expertise from sector
  • Bocconi alumnus status
The data will be kept for as long as the qualification is maintained.
d) Subscription to the newsletter by filling in the form available online on the Controller website. Consent given by the data subject (Art. 6(1)(a) GDPR).
  • First name
  • Last name
  • e-mail address
Until withdrawal of consent.
e) Sharing your personal data to other entities for the purpose of sending you marketing communications relating to their own programs and initiatives. Consent given by the data subject (Art. 6(1)(a) GDPR).
  • First name
  • Last name
  • e-mail address
Until withdrawal of consent.
f) Contacting the person who participated in the relevant B4i programme in order to obtain feedback on the progress of the business activity. Pursuit of the legitimate interest of the Controller (Art. 6(1)(f) GDPR).
  • First name
  • Last name
  • e-mail address
  • Professional title
Until the data subject expressly objects to receiving such communications.
g) For security and internal organization purposes. Pursuit of the legitimate interest of the Controller (Art. 6(1)(f) GDPR).

The processing of your personal data is based on our legitimate interest in protecting our systems and organizing B4i from a strategic standpoint.

  • All the relevant personal data collected during B4i
Until the data subject expressly objects to such processing.
h) For research and statistical purposes. This data can be processed both on not anonymous and aggregate basis and on an anonymous and aggregate basis. Pursuit of the legitimate interest of the Controller (Art. 6(1)(f) GDPR).

The processing of your personal data is based on our legitimate interest in assessing, monitoring and enhancing the quality, effectiveness, and relevance of B4i, also by ensuring that initiatives are grounded on factual and data-driven evidence.

  • All the relevant personal data collected during B4i
Until the data subject expressly objects to such processing.
i) Execution of extraordinary corporate transactions involving B4i, including mergers, acquisitions, disposals, corporate reorganizations, and restructurings. Pursuit of the legitimate interest of the Controller (Art. 6(1)(f) GDPR); and, to the extent a communication/transfer of data is needed as a result of the transaction, compliance with the law (Art. 6(1)(c) GDPR).

In the first scenario, the processing of your personal data is based on our legitimate interest in carrying out extraordinary corporate operations. Such transactions are essential for the strategic development and continuity of our B4i programs and may require the evaluation, transfer, or integration of assets, including personal data.

  • All the relevant personal data
For the period strictly necessary in the context of the corporate transaction, and afterwards limited to the purposes of complying with applicable legislation.

When the Controller processes your personal data under the contractual basis (Article 6(1)(b) GDPR), providing your personal data is required. If you do not provide the required personal data, you will not be able to apply and, if selected, join the relevant B4i programme.
When we process your personal data based on your consent (Article 6(1)(a) GDPR) you are free to provide us with your consent and to withdraw it at any time without affecting your possibility to join B4i programme.
When we process your personal data to pursue our legitimate interests (Article 6(1)(f) GDPR) you have the right to object at any time, on grounds relating to your particular situation. Please refer to Section 8 below for further information.

  • Methods of data processing
    In relation to the aforementioned purposes, personal data are processed by means of manual and automated tools in a manner strictly related to those purposes and, in any case, in such a way as to guarantee the security and confidentiality of the data, in addition to compliance with the specific obligations laid down by law.
    No automated decision-making processes will be used during the processing operations.
  • Recipients of personal data
    For the pursuit of the above-mentioned purposes, the personal data collected may be processed by:

    1. its internal personnel pursuant to Article 29 of the GDPR and Article 2-quaterdecies of the Privacy Code;
    2. third companies appointed as data processors, pursuant to Article 28 of the GDPR, which supports the Controller in organizing B4i (such as companies providing IT support; media agency);
    3. external consultants, mentors and other third parties involved in organizing B4i and supporting the Controller;
    4. entities that, directly or indirectly, exercise control or coordination over the Controller, or are subject to common control, direction, or significant influence within the same institutional or corporate constellation, insofar as such disclosure is instrumental to administrative, organizational, or governance purposes consistent with the Controller’s legitimate interests;
    5. companies involved in extraordinary corporate transactions.

In any event, you may request further information by writing to the Controller at the addresses indicated in Section

  • Data transfer outside the European Economic Area
    The personal data collected will be transferred to third countries outside the European Economic Area (“EEA”) and, in particular, to the United States of America. Any transfer of personal data will be carried out in compliance with Articles 44 et seq. of the GDPR, ensuring an adequate level of protection essentially equivalent to that ensured within the EEA. For any further information (including the safeguards adopted and the means by which you can obtain a copy of them) you may contact, in writing, the Controller at the addresses mentioned under Section 1.
  • The rights of the data subject
    You have the right to exercise the rights recognised by the legislation at any time, pursuant to Articles 15-22 of the GDPR. In particular, as a data subject, you have the right to obtain:

    1. confirmation as to whether or not personal data are being processed and access to the data (including a copy thereof) and, among the others, the following information: purpose of processing, categories of personal data, recipients and/or categories of recipients, storage period;
    2. rectification of inaccurate personal data and/or supplementation of incomplete data, including by providing a supplementary declaration;
    3. deletion and restriction, in the cases provided for by the GDPR;
    4. data portability and, in particular, the possibility of requesting the direct transmission of processed personal data to another data controller;
    5. withdrawal of any consent given, without prejudice to the lawfulness of the processing based on the consent before revocation. Consent to receiving marketing communications may be withdrawn at any time, including by clicking on the unsubscribe link included in any marketing communication received;
    6. objection, at any time, to the processing, pursuant to Article 21 of the GDPR, on grounds relating to your particular situation. The Controller will no longer process the personal data unless it demonstrates compelling legitimate grounds for the processing which override your interests, rights and freedoms or for the establishment, exercise or defence of legal claim.

Without prejudice to any other administrative or jurisdictional recourse, you also have the right to lodge a complaint (Art. 77 GDPR) with the Italian Data Protection Authority (www.garanteprivacy.it), if you consider that the processing concerning you violates the regulations in force on the protection of personal data.
In order to exercise all the above-mentioned rights, you may contact the Controller at any time at the addresses mentioned under Section 1 above.

© 2026 TEF Bridge s.r.l. | società a socio unico | Sede legale: piazza Leonardo da Vinci 32, 20133 Milano | TAX Code/VAT n.: 08235820969
EAI: MI – 2011581 | S. C. entirely paid in: 108.000€ | C.R.: 08235820969