Privacy Policy

Definitions

Administrator (We) – Greek Company sp. z o.o., Tax ID: 586-239-0964, email address: office@greekcompany.pl
Personal Data – all information about an identified or identifiable natural person through one or more specific factors determining physical, physiological, genetic, mental, economic, cultural, or social identity, including device IP, location data, internet identifier, and information collected through cookies and other similar technologies.
Policy – this Privacy Policy.
GDPR – Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC.
Website – the website operated by us at [website]
User (You) – any natural person visiting the Website or using one or more services or functionalities described in the Policy

Data Processing in Connection with Use of the Website

In connection with your use of the Website, we collect your data to the extent necessary to provide individual services offered, as well as information about your activity on the Website. The detailed principles and purposes of processing personal data collected during your use of the Website are described below.

Purposes and Legal Bases for Data Processing on the Website

Use of the Website

1. We process personal data of all persons using the Website (including IP address or other identifiers and information collected through cookies or other similar technologies) who are not registered Users (i.e., persons without a profile on the Website) for the following purposes:
– to provide electronic services in the scope of making content collected on the Website available to Users – in which case the legal basis for processing is the necessity of processing to perform a contract (Article 6(1)(b) GDPR);
– for analytical and statistical purposes – in which case the legal basis for processing is our legitimate interest (Article 6(1)(f) GDPR) consisting in conducting analyses of User activity and their preferences to improve the functionalities used and services provided;
– for the purpose of establishing and pursuing claims or defending against them – the legal basis for processing is our legitimate interest (Article 6(1)(f) GDPR) consisting in protecting our rights;
– for marketing purposes (ours and our partners’), in particular related to presenting behavioral advertising – the principles of processing personal data for marketing purposes are described in the “MARKETING” section.

2. Your activity on the Website, including your personal data, is recorded in system logs. Information collected in logs is processed primarily for purposes related to providing services. We also process it for technical and administrative purposes, to ensure the security of the IT system and manage that system, as well as for analytical and statistical purposes – in this scope, the legal basis for processing is our legitimate interest (Article 6(1)(f) GDPR).

Use of Paid Services on the Website

1. If you place an order (for purchase of goods or services) on the Website, we will process your personal data for the following purposes:
– to fulfill the order placed – the legal basis for processing is the necessity of processing to perform a contract (Article 6(1)(b) GDPR); with respect to data provided optionally, the legal basis for processing is consent (Article 6(1)(a) GDPR);
– to fulfill statutory obligations incumbent upon us, arising in particular from tax regulations and accounting regulations – the legal basis for processing is legal obligation (Article 6(1)(c) GDPR);
– for analytical and statistical purposes – the legal basis for processing is our legitimate interest (Article 6(1)(f) GDPR) consisting in conducting analyses of your activity on the Website and your purchasing preferences to improve the functionalities used;
– for the purpose of establishing and pursuing claims or defending against them – the legal basis for processing is our legitimate interest (Article 6(1)(f) GDPR) consisting in protecting our rights.

Contact Forms

1. The Website provides the ability to contact us using electronic contact forms. Using the form requires providing your personal data necessary for us to contact you and provide a response to the question asked. In the form, you may also provide other data to facilitate our contact or handling of the inquiry. Providing data marked as mandatory is required to accept and handle the inquiry, and failure to provide it will prevent us from handling your question. Providing other data is voluntary.

2. Personal data that you send us via the contact form are processed:
– to identify you as the sender and handle your inquiry submitted through the provided form – the legal basis for processing is the necessity of processing to perform a service contract (Article 6(1)(b) GDPR);
– for analytical and statistical purposes – the legal basis for processing is our legitimate interest (Article 6(1)(f) GDPR) consisting in maintaining statistics of inquiries submitted by Users through the Website to improve its functionality.

Marketing

1. We process your personal data to carry out marketing activities, which may consist of:
– displaying marketing content that is not tailored to your preferences (contextual advertising);
– displaying marketing content corresponding to your interests (behavioral advertising);
– sending email notifications about interesting offers or content, which in some cases contain commercial information (newsletter service)
– conducting other types of activities related to direct marketing of goods and services (sending commercial information electronically and telemarketing activities)

2. To carry out marketing activities, in some cases we use profiling (if you consent to it). This means that through automatic data processing, we evaluate selected factors concerning natural persons to analyze their behavior or create predictions for the future.

Direct Marketing

Your personal data may also be used by us to direct marketing content to you through various channels, i.e., via email, MMS/SMS, or by telephone. We undertake such activities only if you have consented to them, which you may withdraw at any time.

Social Media

We process your personal data when you visit our profiles maintained on social media (Facebook, YouTube, Instagram, Twitter). These data are processed solely in connection with maintaining the profile, including to inform you about our activity and promote various events, services, and products. The legal basis for processing personal data for this purpose is our legitimate interest (Article 6(1)(f) GDPR) consisting in promoting our own brand.

Cookies and Similar Technologies

Cookies are small text files installed on your device when you browse the Website. Cookies collect information that facilitates use of the website – e.g., by remembering your visits to the Website and actions you perform. Within the Website, we may use the following types of cookies:

Service Cookies
We use so-called service cookies primarily to provide you with electronic services and improve the quality of these services. In this connection, we and other entities providing analytical and statistical services on our behalf use cookies, storing information or obtaining access to information already stored in your telecommunications terminal device (computer, phone, tablet, etc.). Cookies used for this purpose include:
– cookies with data entered by you (session identifier) for the duration of the session (user input cookies);
– authentication cookies used for services requiring authentication for the duration of the session (authentication cookies);
– cookies used to ensure security, e.g., used to detect authentication abuse (user centric security cookies);
– multimedia player session cookies (e.g., flash player cookies), for the duration of the session (multimedia player session cookies);
– persistent cookies used to personalize the User interface for the duration of the session or slightly longer (user interface customization cookies),
– cookies used to monitor website traffic, i.e., data analytics, including Google Analytics cookies (these are files used by Google to analyze how you use the Website, to create statistics and reports on the functioning of the Website). Google does not use the collected data to identify the User or combine this information to enable identification. Detailed information about the scope and principles of data collection in connection with this service can be found at: https://www.google.com/intl/en/policies/privacy/partners.

Marketing Cookies
We and our trusted partners also use cookies for marketing purposes, including in connection with directing behavioral advertising to you. For this purpose, we and our trusted partners store information or obtain access to information already stored in your telecommunications terminal device (computer, phone, tablet, etc.). The use of cookies and data collected through them for marketing purposes, in particular in the scope of promoting services and goods of third parties, requires obtaining your consent, which may be withdrawn at any time.

Cookie Management
– If you do not want to receive cookies, you can change your browser settings. We note that disabling cookies necessary for authentication processes, security, and maintaining user preferences may make it difficult to use the Website.
– To manage cookie settings, select the web browser you use from the list below and follow the instructions:
Edge
Chrome
Safari
Firefox
Opera
Mobile devices:
Android
Safari (iOS)

Important Marketing Techniques

1. The purpose and scope of data collection and its further processing and use by service providers, as well as the possibility of contact and User rights in this regard, are described in the service providers’ privacy policies.

2. We may use remarketing techniques that allow advertising messages to be tailored to your behavior on the Website, which may give the illusion that your personal data is being used for tracking, but in practice we do not transfer any of your personal data to advertising operators. The technological condition for such activities is enabled cookie support.

3. We may use solutions that examine user behavior by creating heat maps and recording behavior on the Website. This information is anonymized before being sent to the service operator so that they do not know which natural person it concerns. In particular, entered passwords and other personal data are not recorded.

Personal Data Retention Period

1. The period for which we process your data depends on the type of service provided and the purpose of processing. As a rule, data is processed for the duration of service provision or order fulfillment, until you withdraw your consent or submit an effective objection to data processing (in cases where the legal basis for data processing is our legitimate interest).

2. The data processing period may be extended if processing is necessary to establish and pursue possible claims or defend against them, and after that time only if and to the extent required by law.

3. After the processing period expires, your data is irreversibly deleted or anonymized.

Your Rights

In connection with our processing of your personal data, you have the following rights:

1. right to information about personal data processing – on this basis, upon your request, we will provide you with information about data processing, including primarily the purposes and legal bases of processing, the scope of data held, entities to whom it is disclosed, and the planned deletion date;
2. right to obtain a copy of data – on this basis, upon your request, we will provide you with a copy of the processed data concerning the person submitting the request;
3. right to rectification – upon your request, we are obliged to remove any inconsistencies or errors in the processed personal data and supplement it if it is incomplete;
4. right to erasure of data – on this basis, you may request deletion of data whose processing is no longer necessary to achieve any of the purposes for which it was collected;
5. right to restriction of processing – on this basis, upon your request, we will cease performing operations on your personal data – except for operations to which you have consented – and their storage, in accordance with adopted retention principles or until the reasons for restricting data processing cease;
6. right to data portability – on this basis – to the extent that your data is processed in connection with a concluded contract or expressed consent – we will provide you with the data you provided in a computer-readable format. You may also request that we send this data to another entity – provided, however, that we have the appropriate technical capabilities.
7. right to object to data processing for marketing purposes – you may at any time object to the processing of personal data for marketing purposes, without the need to justify such objection;
8. right to object to other data processing purposes – You may at any time object to the processing of personal data that takes place on the basis of our legitimate interest (e.g., for analytical or statistical purposes or for reasons related to property protection); an objection in this regard should contain justification;
9. right to withdraw consent – if data is processed on the basis of your consent, you have the right to withdraw it at any time, which, however, does not affect the lawfulness of processing carried out before the withdrawal of consent.
10. right to lodge a complaint – if you believe that the way we process your personal data violates the GDPR or other regulations concerning the protection of personal data, you may lodge a complaint with the President of the Personal Data Protection Office.

Data Recipients

1. In order to provide you with the best possible services, we will disclose your personal data to our trusted partners, including in particular providers responsible for IT system support, entities such as banks and payment operators, entities providing accounting services, couriers (in connection with order fulfillment), marketing agencies (in the scope of marketing services), and our affiliated entities.

2. Your personal data will be made available to other entities for their own purposes, including marketing purposes, only if you consent to it.

Transfer of Data Outside the EEA

The level of personal data protection outside the European Economic Area (EEA) may differ from that provided by European law. For this reason, we will transfer your personal data outside the EEA only when necessary and with an appropriate level of protection. You will be notified each time this occurs.

Personal Data Security

1. Please be aware that we take all steps to ensure that your personal data is processed by us in a secure manner – ensuring primarily that access to your data is granted only to authorized persons and only to the extent necessary due to the tasks they perform.

2. We take all necessary measures to ensure that our subcontractors and other cooperating entities provide guarantees of applying appropriate security measures in every case when they process your personal data on our behalf.

Contact Details

For all matters referred to in this policy, in particular related to the processing of your personal data, you may contact us via:
email: office@greekcompany.pl