Cliente público

PD Crotone: institutional website for a provincial political federation, with strict GDPR compliance

An institutional online presence with staff-managed publishing, first-party-only data flows, and a dedicated financial-transparency section: compliance posture documented for the data controller, no intrusive consent prompts for the visitor, and no developer in the loop for day-to-day edits.

Staff-managedzero developer dependency

Disponível em inglês e italiano

Este case ainda não foi traduzido para o seu idioma. Você está lendo a versão em inglês.

The problem

Public-facing institutional bodies need an online presence that simultaneously satisfies compliance constraints (GDPR, financial transparency, accessibility), absence of invasive third-party trackers, and the ability for staff to publish content without depending on the development team for every edit. Standard solutions (WordPress templates with marketing plugins) introduce cookies and trackers that are incompatible with the regulatory risk profile of an institutional body, and locked admin UIs that push every change back into the developer queue.

The approach

  • Editor-friendly CMS so the client's staff publishes updates and amendments autonomously, with no development cycles for routine changes.
  • Headless modern stack chosen to keep data flows entirely first-party: no non-essential cookies, no third-party trackers, no consent banners by design.
  • Dedicated financial-transparency section for the body's regulated funding disclosures, with structured and accessible data.
  • Privacy and accessibility posture aligned to the institutional risk profile: privacy notice, data flows, and accessibility requirements documented for the data controller.
  • Hosted on the proprietary platform baseline with security headers and strong TLS, consistent with the rest of the portfolio.

The result

  • Site live and operated autonomously: the staff publishes content directly, with no developer in the loop for day-to-day edits.
  • No cookie banner, no consent prompts: the visitor reaches the content without interstitials.
  • Financial-transparency section compliant with the regulatory expectations of the funding scheme.
  • GDPR compliance documented for the data controller, ready for audit on demand.
  • Predictable maintenance: the same hosting baseline as the rest of the platform, no special-case operations.

Ready to get started?

Let’s build something great together. Tell us about your idea and we’ll help you bring it to life.

WhatsApp