Last updated: June 2026
TesseraMia Privacy Policy (English)
Last Updated: June 2026
1. Introduction
Welcome to TesseraMia.
TesseraMia is a digital membership, loyalty, and event card platform that enables organizations to issue digital cards compatible with Apple Wallet and Google Wallet.
This Privacy Policy explains how we collect, use, disclose, and protect personal data in accordance with Regulation (EU) 2016/679 ("GDPR") and applicable privacy laws.
By using the Service, you acknowledge that you have read and understood this Privacy Policy.
2. Data Controller
TesseraMia
Owner and Data Controller:
Mouheb Douiri
Via Cappuccini 17
61029 Urbino (PU), Italy
P. IVA: 02860820410
Codice Fiscale: DROMHB99L30Z352P
Email: info@tesseramia.it
3. Definitions
- Service means the TesseraMia platform, website, APIs, and wallet integrations.
- Tenant means a business, association, club, or organization using TesseraMia.
- Cardholder means an individual receiving a digital card.
- Personal Data means any information relating to an identified or identifiable natural person.
4. Data We Collect
4.1 Business Customers (Tenants)
We may collect:
- Full name
- Email address
- Company or organization name
- Billing information
- Account credentials
- Service usage information
4.2 Cardholders
Depending on the card issuer's configuration, we may collect:
- Full name
- Date of birth
- Email address
- Phone number (optional)
- Membership number
- Loyalty points balance
- Reward redemption history
- Digital card identifiers
5. How We Use Personal Data
We process personal data to:
- Provide the Service
- Issue and manage digital cards
- Maintain loyalty programs
- Process reward redemptions
- Send service communications
- Deliver marketing notifications authorized by the Tenant
- Improve platform security
- Detect fraud and abuse
- Comply with legal obligations
6. Legal Basis for Processing
We process personal data based on:
Contract Performance
To provide requested services.
Legitimate Interests
To maintain security, prevent abuse, and improve our platform.
Consent
Where required by law, including certain marketing communications.
Legal Obligations
To comply with tax, accounting, and regulatory requirements.
7. Wallet Providers
Digital cards may be added to:
- Apple Wallet
- Google Wallet
Use of these services is also governed by the privacy policies and terms of Apple and Google.
TesseraMia is not responsible for data processing performed independently by Apple or Google.
8. Notifications
TesseraMia may send:
- Service notifications
- Membership updates
- Loyalty point updates
- Promotional notifications authorized by the Tenant
Notification frequency may be limited to prevent abuse.
Users may disable notifications through device settings where supported.
9. Payment Processing
Payments are processed through third-party providers such as Stripe.
TesseraMia does not store complete payment card details.
Payment information is processed according to the privacy policies of the respective payment providers.
10. Data Storage
Data is hosted on infrastructure provided by DigitalOcean.
Reasonable technical and organizational measures are implemented to protect personal data against unauthorized access, alteration, disclosure, or destruction.
11. Data Retention
Personal data is retained only as long as necessary for the purposes described in this Policy.
When an account is terminated:
- Data may be retained for up to 30 days.
- After the retention period, personal data is permanently deleted unless retention is required by law.
Accounting and tax records may be retained for longer periods where legally required.
12. International Transfers
Although TesseraMia primarily serves users within the European Union, data may be processed or accessed from other jurisdictions when necessary.
Where required, appropriate safeguards under GDPR will be implemented.
13. Children's Privacy
Users under 16 years of age may only use the Service with parental or legal guardian authorization.
If we become aware that personal data has been collected in violation of applicable laws, we will take reasonable steps to remove such information.
14. User Rights
Under GDPR, individuals may have the right to:
- Access their data
- Correct inaccurate information
- Delete personal data
- Restrict processing
- Object to processing
- Request data portability
- Withdraw consent where applicable
Requests may be submitted to:
15. Security Measures
We implement reasonable security measures including:
- Encrypted communications
- Access controls
- Authentication systems
- Monitoring and fraud prevention measures
No system can guarantee absolute security.
16. Suspension and Abuse Prevention
TesseraMia reserves the right to suspend or terminate accounts that:
- Violate these policies
- Engage in fraudulent activity
- Abuse the platform
- Send spam or excessive notifications
17. Changes to This Policy
We may update this Privacy Policy periodically.
Material changes will be communicated through the Service or by email when appropriate.
18. Contact Information
For privacy-related inquiries:
Email: info@tesseramia.it
Data Controller: Mouheb Douiri
Via Cappuccini 17
61029 Urbino (PU), Italy