PRIVACY POLICY
Privacy Policy Greece and DSGVO EU
Effective date: [01.10.2025]
Last updated: [01.10.2025]
1. Controller
The controller responsible for the processing of your personal data under the General Data Protection Regulation (GDPR) and applicable Greek data protection laws is:
Disco Memory Manolis Tsapakhs
Address: Lentas, Discos, Crete
Email:
Phone: +30 69 82 03 2885
2. Supervisory Authority in Greece
If you believe that your data protection rights have been violated, you have the right to lodge a complaint with the competent supervisory authority in Greece:
Hellenic Data Protection Authority (HDPA / Αρχή Προστασίας Δεδομένων Προσωπικού Χαρακτήρα – AΠΔΠ)
Kifisias 1-3, 11523 Athens, Greece
Email:
Website: https://www.dpa.gr
3. Applicable Law
In addition to the GDPR, processing of personal data is also governed by Greek Law 4624/2019, which implements and supplements the GDPR in Greece.
4. Collection and Use of Personal Data
We collect and process personal data only for specific, legitimate purposes, including but not limited to:
-
Operating and improving our website
-
Providing our services to you
-
Responding to your inquiries
-
Compliance with legal obligations
Legal bases for processing include consent (Article 6(1)(a) GDPR), performance of a contract (Article 6(1)(b) GDPR), legal obligations (Article 6(1)(c) GDPR), and legitimate interests (Article 6(1)(f) GDPR).
5. Cookies and Tracking Technologies
Our website uses cookies and similar technologies.
-
Strictly necessary cookies are essential for the operation of our website.
-
Analytics and marketing cookies are used only with your prior consent, in accordance with Greek e-Privacy rules and guidance from the Hellenic Data Protection Authority.
You may withdraw your consent or adjust your cookie preferences at any time via our cookie banner or browser settings.
6. Use of Analytics Tools
Where we use analytics services (e.g., Google Analytics), IP addresses are anonymized where possible. If such services involve data transfers outside the European Union/EEA, we ensure adequate safeguards (such as Standard Contractual Clauses) are in place.
You may opt out of analytics tracking at any time.
7. Data Transfers Outside the EU/EEA
If personal data is transferred to a third country (outside the EU/EEA), we ensure that adequate protection is provided in accordance with GDPR Articles 44–49, such as EU adequacy decisions or Standard Contractual Clauses.
8. Data Retention
We retain your personal data only for as long as necessary for the purposes set out in this Privacy Policy, or as required by law.
9. Your Rights under GDPR and Greek Law
You have the following rights:
-
Access to your personal data (Art. 15 GDPR)
-
Rectification of inaccurate or incomplete data (Art. 16 GDPR)
-
Erasure of your data ("right to be forgotten", Art. 17 GDPR)
-
Restriction of processing (Art. 18 GDPR)
-
Data portability (Art. 20 GDPR)
-
Objection to processing based on legitimate interests (Art. 21 GDPR)
-
Withdrawal of consent at any time (Art. 7 GDPR)
Additionally, under Greek Law 4624/2019, you may exercise these rights directly before the Hellenic Data Protection Authority.
10. Security
We implement appropriate technical and organizational measures to ensure the security of your personal data, including encryption, access controls, and secure data storage.
11. Updates to this Privacy Policy
We may update this Privacy Policy from time to time. Updates will be published on this page with a revised “last updated” date.