Privacy Policy
- 1. Introduction
The General Data Protection Regulation – EU Regulation 2016/679 (hereinafter referred to as "GDPR") applies in the European Union.
The protection of your personal data is important to us. This Privacy and Personal Data Protection Policy (hereinafter "Privacy Policy") explains how we collect, use, and protect your personal data in accordance with the GDPR, Law 4624/2019, and any other applicable legislation.
- 2. Definitions of personal data (in accordance with Article 4 of the GDPR) (σύμφωνα με το αρ. 4 ΓΚΠΔ)
- "Personal Data": any information through which a natural person ("Data Subject") is or can be identified.
- - "Controller": the natural or legal person, public authority, agency, or other body which, alone or jointly with others, determines the purposes and means of the processing of personal data.
- "Processor": the natural or legal person, public authority, agency or other body which processes personal data on behalf of a controller.
- - "Data Subject": natural persons for whom the controller collects and processes personal data (in this Data Policy, Data Subjects are the users of the website).
- - "Recipient": the natural or legal person, public authority, agency or other body to which the personal data are disclosed, whether a third party or not.
- - "Processing": any operation or set of operations which is performed on personal data or on sets of personal data, whether or not by automated means, such as collection, recording, organisation, structuring, storage, adaptation or alteration, retrieval, consultation, use, disclosure by transmission, dissemination or otherwise making available, alignment or combination, restriction, erasure or destruction.
- - "Consent" of the data subject: any indication of intent, freely given, specific, explicit, and fully informed, by which the data subject indicates that they agree, by a statement or by a clear affirmative action, to the processing of personal data relating to them.
- 3. Data Controller
The data controller is the sole proprietorship under the name "Daraliotis Konstantinos" and the title "Modern Essentials," based in Thessaloniki, at 3 Anatolikis Thrakis Street, Postal Code 562 24, e-mail: info@modernessentials.gr. info@modernessentials.gr.
4. Data Collection
We take care to collect only your absolutely necessary personal data αποκλειστικά για τους σκοπούς που παρατίθενται παρακάτω (υπό 4.)exclusively for the purposes set out below (under 4.). In particular, the following categories of personal data may be collected, stored, and generally processed:
- Information you enter when using services on our website, such as:
- ○ Information you provide to us via a billing form, i.e., name, country of residence, address, city/town, region, postal code, telephone number, email address, order notes.
- ○ Information you provide to us via a custom order form, i.e. full name, email address, telephone number, order comments, attached photo.
- - Information you provide when you register and create a user account on our website, i.e., email address and password .
- - Information contained in any communication you have with us via email or through the website.
- - Company name, profession, tax identification number (TIN), and competent tax office, if you need an invoice to be issued in your enterprise's name.
- - Any other personal info you send us.
- - Technical data from your browsing, such as IP address, browser type, device, and browsing information, collected through Google Analytics.
- - In the case of payment by bank transfer, only the necessary transaction details (name, sender's IBAN, amount, and date of payment), exclusively for order payment confirmation and accounting purposes. This information is not shared with third parties and is not used for any other purpose.
- - In case of payment by debit or credit card, you are transferred to a secure bank environment and we do not process any of your card information.
- - When paying with Google Pay, you will be transferred to Google's secure environment and we do not process any of your card information.
- - When paying with Link by Stripe, you will be transferred to the secure environment of the Stripe Payments Europe Ltd. electronic payment platform. Your credit or debit card details are entered directly into the secure environment of the platform, and our enterprise does not retain or know any of these details. Card details (number, CVV, etc.) are not stored on our server and are not accessible to us. Stripe acts as an independent data controller for payment data in accordance with its privacy policy. Stripe is certified in accordance with PCI DSS (Payment Card Industry Data Security Standard). For more information on how Stripe processes data, please see its privacy policy here: https://stripe.com/privacy). https://stripe.com/privacy).
5. Legal basis for processing
The processing of your data is based on one or more of the following legal bases:
- - Your consent, when you fill out any form on our website, or
- - Our obligation arising from a contract between us, or
- - Our legitimate interest in improving the services and security of the website.
- 6. Purpose of processing
We may use the above information for the following purposes:
- - To administer our website and business.
- - To process orders and deliver the products you purchase through our website.
- - To collect payments for the products you purchase through our website.
- - Sending receipts, invoices, and payment reminders.
- - Sending non-promotional communications in relation to your orders or any requests you have made.
- - Managing requests and complaints you have made.
- - Maintaining the security of the website and preventing any fraud.
- - Confirming your compliance with the terms and conditions of use of our website.
- - Analyzing traffic through Google Analytics in order to continuously improve the user experience.
- 7. Duration of personal data retention
Personal data that we process for any of the above purposes will not be retained for longer than is necessary for that purpose or as required by law.
- 8. Recipients
Only our enterprise has access to your above information. We will not share your personal information with any third party without your consent, except:
- - If it is necessary to fulfill our contractual obligations to you, e.g., in order for you to receive the product you have ordered, we must forward your address and contact information to the shipping and distribution companies you have selected when placing your order, or
- - If required by law and under specific conditions permitted or imposed by law or by court order.
- 9. Third-party websites
In any case, if you are transferred to third-party websites through our website, we cannot control and are not responsible for the privacy policy and personal data processing practices of the third-party website owner.
- 10. Cookies
Our website uses cookies to improve your experience and analyze traffic. You can disable cookies through your browser settings, but some features may not be available without them. For more information, please refer to the Cookies Policy posted in the relevant section of our website.
- 11. Rights
- - Right of access:you have the right to be informed by us about whether and how we process your data. You can also request information about the purpose of the processing, the type of data we hold, to whom we transfer it, how long we store it, whether automated decision-making is used, and your other rights, such as the right to rectification, deletion of data, restriction of processing, and lodging a complaint with the Personal Data Protection Authority.
- Right to correct inaccurate personal data:if you find that there is an error in your data, you can ask us to correct it (e.g., correcting your name or updating a change of address).
- - Right to erasure/right to be forgotten:you can ask us to erase your data if it is no longer necessary for the above-mentioned processing purposes or if you wish to withdraw your consent.
- Right to portability:you can request to receive the data you have provided in a readable format or ask us to transfer it to another controller.
- - Right to restriction of processing:you may request that we restrict the processing of your data for as long as your objections to the processing are pending.
- - Right to object and withdraw consent:you may object to the processing of your data and we will stop processing the data, unless there are other compelling and legitimate reasons that override your right. If you have given your consent to the collection, processing, and use of your personal data, you can withdraw your consent at any time with future effect by contacting us via email at info@modernessentials.gr. info@modernessentials.gr.
In cases where we process your personal data based on our legitimate interest, you may ask us to stop for reasons related to your personal situation. Unless we have a compelling legitimate reason to continue processing, we will stop.
To exercise your rights, you can submit a request to us at info@modernessentials.gr with the subject line "Exercise of Rights," and we will review it and respond as soon as possible.
- 12. Complaint
If you believe that the processing of your personal data violates the applicable legislation on
the protection of personal data, you can submit a complaint to the Personal Data Protection
Authority (1-3 Kifissias Avenue, PC 115 23, Athens, tel.: 210. 6475600, contact@dpa.gr). contact@dpa.gr).
- 13. Amendments
We may update our policy from time to time by publishing a new version on our website. You
should occasionally check our page to ensure that you understand any changes to our
policy. We may notify you of changes to our policy by email.
