Last updated: April 21, 2026

This policy (“Privacy Policy”) describes how NEXT CODE ACADEMY S.R.L. processes the personal data of users who visit the website next4consulting.it and its internal sections. NEXT CODE ACADEMY S.R.L. processes personal data in compliance with Regulation (EU) 2016/679 (“GDPR”), Legislative Decree 196/2003 as amended by Legislative Decree 101/2018, and applicable legislation.

1. Data Controller

NEXT CODE ACADEMY S.R.L.
P.za S. Bernardo, 106, 00187 Roma (RM), Italia
VAT No.:  16436221002
Email: info@next4consulting.it
PEC:  nextcodeacademy@legalmail.it

2. Types of Data Collected

2.1 Browsing Data

IT systems automatically collect information such as: IP address; date and time of access; pages visited; browser and device type; technical data and logs. This data is used for statistical and security purposes.

2.2 Data Voluntarily Provided by the User

When a user fills in forms on the website, Next4 may collect: first and last name; email and phone number; company and role; messages or information freely entered.

2.3 Cookies and Similar Technologies

The website uses technical and analytical cookies and, subject to consent, profiling cookies. For more information, please refer to the dedicated Cookie Policy.

3. Purposes of Processing

A. Provision of the requested service (content downloads / requests)

Managing requests submitted via forms and sending requested informational materials (e.g., grant fact sheets). Legal basis: performance of pre-contractual measures at the request of the data subject (Art. 6(1)(b) GDPR).

B. Marketing and newsletter

Sending informational and promotional communications relating to NEXT CODE ACADEMY S.R.L.’s services. Legal basis: free, specific, and optional consent of the user (Art. 6(1)(a) GDPR). Consent: is optional and does not condition access to services; may be withdrawn at any time; is collected separately from other purposes.

C. Statistics and website improvement

Aggregate analysis of website usage to improve its functionality and content. Legal basis: legitimate interest (Art. 6(1)(f) GDPR) or consent where required.

D. IT security

Protection of the website and systems from fraudulent activity. Legal basis: legitimate interest (Art. 6(1)(f) GDPR).

4. Processing Methods

Data is processed using IT tools, with appropriate technical and organisational measures, and solely for the stated purposes. For marketing purposes, the Data Controller uses a consent recording and tracking system (so-called consent logging), which documents: date and time of consent; IP address and technical device data; version of the policy accepted; status of expressed preferences (specific purposes); any confirmation via a double opt-in mechanism. No automated decision-making processes that produce legal effects on the user are carried out.

5. Data Retention

Contacts and requests: up to 24 months. Marketing: until consent is withdrawn and in any case no longer than 24 months from collection or last active interaction. Technical data/logs: up to 12 months. Consent logs may be retained for a longer period where necessary for judicial defence purposes or to comply with legal obligations.

6. Data Disclosure and Transfer

Data may be disclosed to: technical providers (hosting, CRM, newsletter, cloud services); collaborators, consultants, and business partners; competent authorities where required by law. Where certain services involve transfers of data outside the EU, these will only take place in the presence of adequate safeguards (SCCs, adequacy decisions, supplementary measures). Data may also be processed through CRM platforms and email marketing tools, appointed as data processors pursuant to Art. 28 GDPR.

7. Data Subject Rights

Users may exercise at any time the rights provided under Arts. 15–22 GDPR, including: access to data; rectification; erasure; restriction of processing; portability; objection; withdrawal of consent. A complaint may be lodged with the Italian Data Protection Authority (www.garanteprivacy.it). To exercise your rights: privacy@next4.it

8. Double Opt-In

To ensure data accuracy and prevent unauthorised use, the Data Controller uses a double opt-in mechanism to verify email addresses. After completing the form, the user receives a communication containing a unique confirmation link. The confirmation procedure is intended solely to verify ownership of the email address and does not constitute, nor may it be interpreted as, an expression of consent to the processing of personal data for marketing purposes. Any consents for marketing purposes are collected separately and remain fully independent of the verification procedure.

9. Changes to the Privacy Policy

The Company may amend this Privacy Policy at any time. Changes will be published on this page with an updated date.

10. Contact

NEXT CODE ACADEMY S.R.L.
P.za S. Bernardo, 106, 00187 Roma (RM), Italia
VAT No.:  16436221002
Email: info@next4consulting.it
PEC:  nextcodeacademy@legalmail.it

Download the grant factsheet

Enter your email to access the download.
You will receive a personal access link: once confirmed, you’ll be able to download all grants without entering your email again.

Your data will be used solely to verify your email address and allow you to download the requested document. No additional consent is required. Privacy Policy

*Your data will be used exclusively to access the grants and to receive informational communications. You may unsubscribe at any time.