Personal Data
The company AKTI SALONIKIOU IKE, located at 27–29 G. Tsontou Street, 54627, Thessaloniki, as the Data Controller, prioritizes the security of your personal data by complying with both National and European Legislation and with Regulation (EU) No. 679/2016 (GDPR). Through our privacy policy, we inform you, on the one hand, about the company’s practices regarding the processing of your personal data and, on the other hand, about your rights as data subjects. In this way, you will be able to provide your explicit consent for the collection and processing of your personal data, which you may withdraw or modify at any time.
THE PERSONAL DATA WE PROCESS
According to Regulation (EU) No. 679/2016 (GDPR), personal data refers to information that can be used to identify an individual. During the process of signing contracts, collecting billing information, communicating with customers or potential customers, communicating with our customers’ partners, company partners, or completing any forms on our website, we request your full name, address, postal code of your area, email address, and phone number. In some cases, other necessary details may be requested, such as VAT number, tax office, profession, and ID number.
METHODS OF DATA COLLECTION
The collection of personal data from customers, their partners, and the company’s partners is done with their written consent.
The company has designed its website so that users can visit it without needing to reveal their identity unless they wish to do so. Users of our website are asked to provide their personal data only in the following cases: a) when they wish to send an email to the company, b) when they subscribe to the website’s ‘Newsletter’ to receive updates. In all of the above cases, the provision of any personal data is done voluntarily by the users of the website.
PURPOSES OF PROCESSING
The company collects, retains, and processes your personal data only when you voluntarily provide it to us, for the following purposes:
LEGAL BASIS FOR PROCESSING
We process your personal data only when you voluntarily provide it to us and only when we obtain your free, explicit, and fully informed consent. Your consent for the processing of your personal data can be withdrawn at any time.
SECURITY OF YOUR PERSONAL DATA
The company, as part of its personal data protection practices, regularly reviews the necessity of retaining your personal data and deletes any data it deems unnecessary or not absolutely required for the processing purposes. The company is committed to ensuring the security and integrity of the data it collects, and for this reason, it takes the necessary measures to protect the personal data it gathers. These measures protect user data from any unauthorized access or disclosure, loss or misuse, and alteration or destruction. Specifically, we protect the security of your information by using software that encrypts and anonymizes the information you enter.
SSLThe company’s website uses the SSL protocol with 128-bit encryption (the strongest currently available) for secure online transactions. This ensures that all your personal information is encrypted so that it cannot be read or modified during transmission over the internet. The SSL (Secure Sockets Layer) protocol is the global standard for website certification to internet users and for encrypting data between internet users and web servers. An SSL encrypted communication requires that all information sent between a client and a server be encrypted by the sending software and decrypted by the receiving software, thus protecting personal information during transmission. Additionally, all information transmitted via the SSL protocol is protected by a mechanism that automatically verifies whether the data has been altered during transmission.
Full Disk Encryption. All desktop and laptop computers are protected through encryption technology to prevent data loss. For encryption, we use built-in encryption functionality such as OPAL (USB) and Bitlocker (Windows). Data encryption is applicable to all computers, including desktops, laptops, groups of hard drives, and portable media. To prevent sensitive data leaks (Data Loss Prevention – DLP), the necessary measures are in place to ensure data security.
File EncryptionWith file encryption, we protect data everywhere, no matter where it is, as the content is encrypted immediately upon creation. File encryption systems safeguard data by requiring user authentication before allowing access to encrypted data. With file encryption, all data remains encrypted even when transferred to a shared folder, removable USB media, or the cloud. User files start by default with the highest level of security to keep sensitive information away from the wrong hands, and certain files can later be removed from this specific policy. It provides data protection even when the data is outside the perimeter, even if the computer is open.
Additionally, we restrict access to your personal data only to those employees who need to know it in order to fulfill their professional duties. They will process your personal data exclusively in accordance with our instructions and are committed to maintaining the relevant confidentiality terms.
DATA TRANSFER TO THIRD PARTIES
The company is committed to not selling, renting, or in any way publishing or disclosing the personal data of its customers to any third party. We may transfer personal data of users to third-party legal or natural persons only if:
A. Explicit consent has been given by the customers for the transfer of personal data.
B. The transfer of personal data to legal or natural persons who collaborate with our company is necessary for the fulfillment of the customers’ wishes and orders within the framework of our agreement. The legal and natural persons working with us have the right to process users’ personal data only to the extent that it is absolutely necessary for the implementation of the contract.
C. It is required for compliance with the relevant provisions of the law and only to the competent authorities.
RETENTION PERIOD OF YOUR PERSONAL DATA
We retain your personal data for as long as necessary to fulfill the purposes outlined in this Privacy Policy (unless a longer retention period is required by applicable law). In general, this means that we will keep your personal data for as long as our collaboration lasts or as long as you are subscribed to our website’s Newsletter and until our email communication is completed. We delete your personal data after the withdrawal of your given consent or after one (1) year from the sending of the last informational or communication email.
COOKIES
The company, in order to ensure the best possible navigation on our website, uses ‘cookies’ technology. ‘Cookies’ are small text files that contain information and are stored on your computer’s hard drive during your visit to our website. These cookies can be removed at any time. We use ‘cookies’ to distinguish you from other visitors, to record your IP address and how you use our website, and to facilitate your access to all the features of our website. The use of ‘cookies’ allows us to collect information for statistical and advertising purposes, but primarily to personalize your browsing experience by storing your preferences. No cookies are placed on your devices, except for necessary cookies, without or before you provide us with your consent. You have the option to disable cookies at any time, easily through the settings of your browser, but if you do so, we will not be able to record your purchases or allow you to make purchases on our website, nor will we be able to provide you with optimal access to all features of our website. All consent statements for cookies provided through our website are also kept in writing and stored in a secure place. Finally, we would like to inform you that every 12 months from your last visit to our website, the consent given, if any, will expire and a new one will be requested.
CONTACT FORM
By submitting your message through the contact form to the company and checking the “I AGREE” box, you accept the terms regarding the use of your email address and full name by the company. We are committed not to using this information for commercial promotion purposes or transferring it to third parties. If you do not wish for us to retain the personal data obtained through the use of the contact form, you can request its deletion.
CHILDRENS’ PRIVACY
We do not knowingly process any information from individuals under the age of 15. Our website is intended solely for individuals who are 15 years or older. If you are under the age of 15, do not use or provide any information on this website. If we become aware that we have collected or received personal data from a child under the age of 15, we will delete that information unless explicit consent or authorization has been provided by the child’s guardian.
YOUR RIGHTS
We respect your right to access, correct, request deletion, or request a restriction on the use of your personal information, as required by Regulation 679/2016 (GDPR).
Τα ανωτέρω δικαιώματά σας μπορείτε να τα ασκήσετε μέσω αιτήματος στη διεύθυνση ηλεκτρονικού ταχυδρομείου της εταιρείας μας info@tzikascon.gr. Το διάστημα ολοκλήρωσης του εκάστοτε αιτήματος είναι 30 ημέρες και ενδέχεται να υπάρξει παράταση αυτού, κατόπιν σχετικής ενημέρωσής σας.
COMPLAINTS
According to Regulation (EU) 679/2016 (GDPR), you have the right to file a complaint with the Personal Data Protection Authority (Aρχή Προστασίας Δεδομένων Προσωπικού Χαρακτήρα) if you believe that your rights regarding the protection of personal data have been violated. The complaint can be submitted to the Authority through its official website, providing the necessary details and information about the incident. The Authority will review the complaint and take appropriate action if it determines that there has been a violation of data protection regulations. For more information or to file a complaint, you can visit the website of the Authority.