Privacy Policy

1. Introduction
At “Iambos Geúseis” (hereinafter “we”, “us”, “the site”) we understand how important the privacy and security of your personal data is. This Privacy Policy explains how we collect, use, store and protect your personal data when you visit or use our site.

2. Data Controller
The controller responsible for the processing of your personal data is “Iambos Geúseis”.
Contact details:

3. What data we collect
During your visit or use of the site, we may collect:

  • Contact details (name, email, phone) — e.g. if you fill in a reservation or contact form.

  • Technical data (IP address, browser type, device, operating system, referral websites)

  • Usage data (how you use the site, which pages you view, visit duration)

  • Cookies and other tracking technologies (see the section on cookies)

4. Why we use them / Legal basis
We use the data for:

  • To process your requests (e.g. reservations, communication)

  • To improve the site and the user experience

  • Statistics, analytics and analyses

  • To communicate with you, e.g. for updates or responses

  • To comply with legal obligations

The legal basis for processing may be your consent, the contract (when you make a reservation), or legitimate interest (service improvement), depending on the case.

5. Cookies & similar technologies
Our site uses cookies to store preferences, recognize visitors and collect anonymous statistics.
You can manage or disable cookies through your browser settings — however, some features of the site may not function properly.

6. Disclosure to third parties / providers
We do not sell your personal data. We may share it with:

  • Our service providers (e.g. hosting, analytics, email marketing)

  • These third-party companies are required to maintain confidentiality

  • If provided by law or court order

7. International data transfer
If any of the servers or providers are located outside Greece / the EU, we ensure that there is a legal framework in place (e.g. standard contractual clauses, risk minimization) so that your data are protected.

8. Data security
We take technical and organizational security measures (encryption, access restriction, regular backups) to protect the data.
However, no method of transmission over the Internet or storage is completely secure — there is a residual risk.

9. Retention period
We retain personal data for as long as necessary for the purposes of processing or as required by law.
When they are no longer needed, they are deleted or anonymized.

10. Your rights
According to the General Data Protection Regulation (GDPR), you have:

  • Right of access to your data

  • Right to rectification / updating

  • Right to erasure (“right to be forgotten”)

  • Right to restriction of processing

  • Right to data portability

  • Right to object to specific types of processing

  • Right to withdraw consent (where it has been given)

To exercise any of the above, please contact us (usually by email)

11. Changes to the Policy
We may update this Privacy Policy from time to time.
Any change will be published on this page with an update date.

12. Contact
If you have any questions or wish to exercise your rights, please contact us using the details provided above.

Scroll to Top