Skip to content

Legal

Privacy Policy

Last updated: 19 August 2026

1. Who is responsible for your data

The data controller is Francesca Lucibello, wedding and event planner, Ravello, Province of Salerno, Italy — Francesca lucibello - P.IVA 05444310659. You can reach the controller at hello@topwed.it.

This policy explains how personal data is handled under Regulation (EU) 2016/679 (GDPR), the UK GDPR and the Italian Privacy Code (D.Lgs. 196/2003 as amended).

2. What we collect

  • Enquiry data. Names, email address, country, approximate wedding date or season, estimated guest count, venue preference, how you found us, and anything you write in the message field.
  • Villa Mariella enquiry data. Names, email address, date, guest count and event type.
  • Booking data. If you book a discovery call, the scheduling provider collects your name, email and time zone on our behalf.
  • Technical data. Standard server logs (IP address, browser, timestamp) kept for security, and your cookie preferences.
  • Planning data. If you become a client, we will also process the information needed to plan your wedding: guest lists, dietary requirements, travel details, and — where a legal ceremony is involved — identity and civil-status documents.

We do not knowingly collect data from anyone under 16, and we ask you not to submit special-category data (health, religion, and similar) through the website forms. Dietary or accessibility needs are collected later, directly, with your consent.

3. Why we use it, and on what legal basis

  • To answer your enquiry — pre-contractual steps at your request (Art. 6(1)(b) GDPR).
  • To plan and deliver your wedding or event — performance of a contract (Art. 6(1)(b)).
  • To submit marriage paperwork to the comune, prefettura, consulate or church on your instruction — contract and, for document copies, your explicit consent (Art. 6(1)(b) and Art. 9(2)(a) where applicable).
  • To keep the site secure and working — legitimate interests (Art. 6(1)(f)).
  • Analytics and third-party embeds — your consent, given through the cookie banner (Art. 6(1)(a)), which you may withdraw at any time.
  • Accounting and tax records — legal obligation under Italian law (Art. 6(1)(c)).

4. Who we share it with

Enquiries are stored in a hosted database and are visible only to Francesca Lucibello. Where necessary to plan your wedding, relevant details are shared with the specific suppliers involved — venue, caterer, florist, photographer, drivers, celebrant — and with public authorities where a legal ceremony requires it. Suppliers receive only what they need, never your full file.

We also use service providers acting as data processors: website and database hosting, email delivery, the scheduling provider, and (only with your consent) the Instagram feed provider. Some providers may process data outside the EEA; where that happens, transfers rely on the European Commission's Standard Contractual Clauses or an adequacy decision. We never sell your data, and we do not use it for automated decision-making or profiling.

5. How long we keep it

  • Enquiries that do not become bookings: up to 24 months, then deleted.
  • Client files: for the duration of the engagement and for 10 years afterwards, as Italian civil and tax law requires for contracts and invoices.
  • Copies of identity or civil-status documents: deleted once the marriage is registered, unless you ask us to keep them.
  • Server logs: up to 12 months. Cookie preferences: up to 12 months.

6. Your rights

Under the GDPR you have the right to access your data, to correct it, to have it erased, to restrict or object to processing, to data portability, and to withdraw consent at any time without affecting processing already carried out. To exercise any of these, email hello@topwed.it; we respond within 30 days.

If you believe your data has been mishandled you may complain to the Italian supervisory authority, the Garante per la protezione dei dati personali (garanteprivacy.it), or — if you are in the UK — to the Information Commissioner's Office (ico.org.uk).

7. Security

The site is served over HTTPS. Form submissions are transmitted encrypted and stored in a database that is not publicly readable; access is restricted to the controller. Anti-spam measures are applied to forms. No system is perfectly secure, but personal data is never posted to third parties beyond the processors listed above.

8. Cookies

Non-essential cookies and third-party embeds load only after you opt in. Full detail, including the categories and how to change your mind, is in the Cookie Policy.

9. Changes

If this policy changes materially we will update the date at the top of the page and, where the change affects consent, ask you to make your cookie choices again.

This policy is provided as a working draft based on the site's actual data flows. Please have it reviewed by an Italian lawyer or DPO, and replace the bracketed business details, before publishing.