1. Data Controller The business “Cafe – Restaurant Agios Achillios” (Agios Achillios, Prespes, P.C. 53077, phone: +30 2385046601, email: agiosahilios.rest@gmail.com) acts as the Data Controller of your personal data when you navigate the website agiosahilios.gr. We are committed to fully respecting your privacy in accordance with the General Data Protection Regulation (GDPR – EU 2016/679).
2. What data we collect and how During your visit to our website, we may collect:
- Identification & Contact Data: Full name, phone number, email address, and any information you include in your messages (Collected only if you fill out our contact or reservation form).
- Technical / Browsing Data: IP address, browser type, time spent on the website (Collected via strictly necessary cookies and analytics, provided you have given your consent).
3. Purpose of Processing and Legal Basis We process your data exclusively for the following purposes:
- Managing Reservations / Answering inquiries: To respond to your message or manage your reservation request (Legal basis: Performance of a contract / Steps at your request prior to entering into a contract).
- Smooth operation of the website: To ensure the security of our IT systems (Legal basis: Legitimate interest).
4. Sharing with third parties Your personal data is never sold or transferred to third parties for marketing purposes. Access may only be granted to trusted external partners (e.g., website hosting provider) who are bound by confidentiality agreements and process data strictly under our instructions.
5. Data Retention We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected. Data from contact/reservation forms is deleted after a reasonable period following the completion of your visit, unless legal obligations (e.g., tax laws) require further retention.
6. Your Rights Under the GDPR, you have the following rights regarding your personal data:
- Right of Access (to know what data we hold).
- Right to Rectification of inaccurate data.
- Right to Erasure (“right to be forgotten”).
- Right to Restriction of processing.
- Right to Object to processing.
- Right to Data Portability.
To exercise any of your rights, please contact us at agiosahilios.rest@gmail.com. You also have the right to lodge a complaint with the Hellenic Data Protection Authority (www.dpa.gr).
