Advice to Koinos Capital SGR S.p.A on comprehensive data protection matters, including GDPR compliance, risk assessment, implementation of a Data Protection Organizational Model, conducting Data Transfer Impact Assessments (DTIAs), and mapping cross-border data flows to non-EEA countries.
Assistance to a leading Ho.Re.Ca. operator during an on-site inspection by the Italian Data Protection Authority (“Garante”), including coordination of responses to the Authority’s requests, document production, liaison with inspectors, and strategic advice throughout enforcement proceedings.
Advisory to Cryptosmart S.p.A., as external Data Protection Officer, overseeing GDPR compliance, privacy audits, data subject rights, and data breach management, with a focus on reconciling GDPR principles with blockchain technology constraints.
Assistance to Sekurest S.r.l. in ensuring full compliance with GDPR and Italian data protection law in connection with the launch of an innovative fintech platform for tourism service payments.
Assistance to an asset management company in designing and implementing an AI governance framework, including the definition of AI use policies, risk classification under the EU AI Act, establishment of monitoring and oversight procedures for high-risk AI systems, compliance reporting mechanisms, and operational protocols for the mitigation of AI-related regulatory and reputational risks.
Ongoing advisory services to multiple operators in the HealthTech and MedTech sectors on personal data processing, with a particular focus on the lawful handling of special categories of data under Article 9 GDPR, including health data. The practice encompasses AI-related matters, notably the deployment of medical scribe systems and compliance with the EU AI Act, as well as regulatory pathways for the classification and certification of Software as a Medical Device (SaMD) under the Medical Devices Regulation (EU) 2017/745.
Advice to a JobTech platform on the design, development, and operational governance of its AI system, ensuring full alignment with the EU Artificial Intelligence Act and GDPR obligations. Services included AI risk classification, assessment of system functionality and purpose, drafting of AI use policies, establishment of monitoring and oversight procedures for high-risk AI applications, and implementation of compliance and reporting mechanisms to address regulatory and reputational risks.
Legal advisory to a SaaS fintech platform on the design, implementation, and regulatory compliance of a cash-back program, including contractual frameworks, consumer protection requirements, and operational governance to mitigate legal risks.
Advice to WhiteBIT Group, a leading cryptocurrency exchange, in negotiating a sleeve sponsorship agreement with Juventus Football Club, covering intellectual property, marketing rights, and regulatory compliance.
Assistance to Eko in structuring and negotiating the partnership agreement with Udinese Calcio relating to the development and operation of the club’s esports team.
Advice to Brots in structuring and launching the first NFT associated with a FIMI music award for Italian artist Lazza, addressing IP, data protection, and regulatory compliance aspects.
Representation of Luca Volpi (aka “Luke92Fut”), a digital content creator, in litigation brought by Lega Nazionale Professionisti Serie A concerning the alleged unlawful use of football match highlights, ensuring the defense of digital content rights.
Advisory to Scalapay IP SpA on the legal structuring and Italian-law compliance of promotional prize competitions under consumer protection and advertising regulations.
Assistance to a leading operator in the gold investment sector in connection with the launch of a digital gold accumulation plan, including the drafting and negotiation of agreements with platform users, management of regulatory compliance matters, and advice on consumer protection requirements under the Italian Consumer Code.
Legal assistance to a crypto-asset exchange in connection with a promotional campaign involving the engagement of financial influencers (finfluencers), including regulatory compliance with advertising and consumer protection rules, contractual arrangements with content creators.
Assistance to national and international clients operating call centers, including regulatory compliance and fulfilment of registration obligations with the Registro degli Operatori di Comunicazione (ROC).