This Privacy and Protection of your Personal Data Policy aims to inform you of the terms of collection, processing and transmission of your personal data that we may collect as Controller. AEGEO SPA and its trained staff implement the 10 Principles of Processing of GRPPD 2016/679 (legality, objectivity, transparency, purpose limitation, data minimization, accuracy, storage limitation, integrity, confidentiality and accountability) in order to protect your rights as to the use of your Personal Data.
You have the following rights: of information and access, the rights to rectification or erasure of your personal data, the rights to restriction and to data portability, the rights to object to processing and non-automated decision-making based on profile, under the conditions of the applicable legislation, the right to withdraw consent, where processing is based on consent, as well as the right to address the Personal Data Protection Authority in Greece (Kifissias avenue 1-3, 11523 Athens, e-mail: firstname.lastname@example.org) or in his/her country. The above shall apply without any discrimination and apply to all the processes they perform and to all the services provided by the companies of the group.
You also have the right to contact us at the "Processing Manager" details below, in order to submit any complaint, to exercise the above-mentioned rights with respect to the processing of your personal data and for any other information you wish.
2. Ways of collecting personal data - Security of transactions.
AEGEO SPA will always ask you for the minimum required by law to acquire our products or services in order to take part in competitions and promotions or to register your resume and to serve our legitimate interests according to service provided by us, the contract between us or for marketing and promotion of our services and products. These include, as the case may be, a name, a debit / credit / prepaid card number, contact numbers, an email address, a postal address or an invoice or proof of service, and delivery details of your order.
AEGEO SPA retains your personal data only definitely for as long as is required by the contractual terms of each service, in conjunction with the applicable financial, banking, tax, telecommunication and other legislation, based on the purpose of processing, but also afterwards, to the maximum up to the limitation of the claims and then anonymises or destroys them.
Your data generally is retained for a minimum of five (05) years unless otherwise provided by applicable law, or for as long as you wish to have an AIGAIO SPA account for a maximum period until the of any claims from our relationship are written off.
Where the legal basis is consent processing will be valid as long as you don’t withdraw your consent.
In the case of submission of CVs, the personal data that is registered is maintained and processed for a period of one (01) year and then deleted or destroyed without notice.
If you maintain a member account, your data is processed for the duration of the account and after it is deleted, it may still be retained for a minimum period of five (05) years up to a maximum until any claims from the services are canceled.
AEGEO SPA uses SSL protocol, with encryption up to 2048-bit, for secure online trading. This encrypts all of your personal information, including your debit / credit / prepaid card number, your name and address so that they cannot be read or changed when they are transferred to the Internet.Secure Sockets Layer (SSL) has been established globally as the most secure protocol for the certification of web sites for network users - and for encrypting data between network users and web servers. An encrypted SSL communication requires all information sent between a client and a server to be encrypted by the sender software and decrypted by the receiving software, thereby protecting personal information when transferred.In addition, all information sent under the SSL protocol is protected by a mechanism that automatically verifies whether the data has been changed during transport.
User data (name, occupation, e-mail address, home address, etc.) and transactions of users of the e-shop are treated as private, as is the case with ordinary store transactions.
Users, when providing their data in the context of their transactions as with the present, enclose the data themselves which are the necessary data required in the scope of the execution of the transaction.
It is ensured that only authorized employees have access to transaction information and only when necessary, e.g. to process the transaction between us.
3. Cases of personal data collection
AEGEO SPA collects your personal data in the following cases:
- When filling in an application form on our website to buy a product and / or a service
- When you voluntarily subscribe to printed or electronic directories by giving your consent to receiving printed materials, electronic or SMS news materials or other marketing materials, or to renew your preferences or when taking part in competitions, questionnaires and surveys.
- When you visit and navigate to our websites where we collect information from your terminal device, such as your IP address, the operating system you are using, the appropriate type of data collection, such as cookies, and your browser version, etc, according to the terms of the section “Cookies Policy” below
- When submitting CVs for us to find a job in the company AEGEO SPA.
- Ιn case you choose to receive newsletter and offers via e-mail.
- for the performance of a contract between us (such as services, including services provided when you visit one of our stores, purchase of products etc.) or in order to take steps or provide information at yours request prior to entering into a contract
- To receive and record requests to use the company’s services, as well as in order to manage these requests and to inform the users/ clients thereabout
- To ensure that you can communicate with the company about our products and services or about issues you have already raised or any complaints expressed
- In case you have expressly gave your consent in order to receive notifications via e-mail of our products, offers and news as well as for the processing of your health data, in order to take preventive measures, in cases where certain treatments are not indicated in relation to a health problem that is notified to us.
- For the establishment, exercise, defence and limitation of legal claims
3.b. Boarding pass
When you visit one of our stores in order to receive one or more of our services, you will be requested to provide us data such as your name, surname date of arrival and departure(if your temporary residence is a hotel, otherwise in the relevant field you fill in your home address),your email address, data concerning your health and data related to your preferences (this may include questions such as «how you feel today» or your beauty care routine etc.). We are also giving you the option to give your consent in order to receive promotional emails and updates. In order to receive promotional emails and updates as well as when you provide us with your health data, the legal basis is consent and processing will be valid as long as the consent is valid. The purpose of the processing of your name’s data & the date of arrival and departure data (or residence), is the performance of the contract between us (services). The purpose of the processing οf data concerning your preferences and your e-mail’s address is the legitimate interests pursued by us (e.g. evaluation of a proposed service, communication in the context of issues that may arise after the performance of the contract). After the services/contract have been concluded, the purpose of the data processing is the legitimate interests pursued by us ( establishment, exercise, defence and limitation of legal claims). In case you have provided us with your e-mail address and you have given your consent to receive updates and offers, your e-mail address will be processed for this purpose as well.
4. Cookies Policy
In addition, cookies enables us to watch the performance and traffic of our website, by improving the website’s interface/ display and the content, according to the preferences of our guests.
We use the cookies necessary to maintain the connection of users to its online services and to store user/visitors’ choices with regard to optional cookies.With the consent of visitors/users we will use additional optional cookies for audience measurement and analysis (analytics) in order to improve the performance and content of our site.
For more information, see the Cookies Policy.
5. Legal basis of Processing
AEGEO SPA will use your information for the following legitimate processing purposes:
-For purposes of compliance with applicable law
-For the purpose of performing the contract between us (such as services, purchase products) or in order to take steps or provide information at yours request prior to entering into a contract.
- In case you have given consent to the processing of your personal data for one or more specific purposes. This includes cookies’ options, receipt of newsletter and e-mails with promotional content and health data that you provide to us, which is important to make known to us, in order to avoid treatments that are not suitable.
-for the purposes of the legitimate interests pursued by us. This includes preferential data, data which is retained after the execution of a contract between us and/or negotiations prior to entering into a contract between us to the limitation of the claims as well as your e-mail address.
In any case that you have provided us with your e-mail address (either via our stores or via a web contact or contract between us) and you have given your consent to receive updates and offers, your e-mail address will be processed for this purpose as well.
6. Disclosure to third parties
In any case, we take the appropriate technical and organizational measures to ensure that your personal information is stored and processed in accordance with the appropriate security standards and in accordance with the terms of this Policy and the applicable data protection laws.
The personal data declared in the online store with the trademark AEGEO SPA are used exclusively by AEGEO SPA (the “Controller”) or cooperating companies, with which AEGEO SPA has concluded relevant contracts for the protection of your data, in order to support, promote and execute the transactional relationship between us (e.g. companies we use to support our promotional policy, if you have chosen to receive updates, courier companies for order execution, companies that undertake the organization of the company’s file).
Finally, we may transmit or disclose your personal information to official, national or foreign governmental and supervisory bodies (e.g. police, the Bank of Greece, international tax authorities, etc.) when we are required to comply with the law and to prevent to our detriment and to the detriment of our clients’ unlawful actions (e.g. fraud, money laundering, etc.).
7. Security of personal data
AEGEO SPA staff is trained and responsible, while recognizing the importance of protecting privacy and all your personal information. To that end, we have appropriate security policies and we use the appropriate technical and operational tools, data encryption, firewalls, access levels, authorized employees, staff training, periodic inspections, etc.Any partner who has access to the above information uses them to serve the above purposes only. We share the information you give us only in the ways described in this Policy and in accordance with your explicit and specific consent by type of processing that you may at any time and freely to recall by contacting us.
8. Unsolicited commercial communication
Ιn order to receive updates and offers via e-mail, we must have your consent.
We do not allow and do not authorize any attempt to use our services in a way that could harm, disable, burden any part of our services, or prevent anyone wishing to use our services.
If we believe that any unauthorized or inappropriate use is made of any of our services, we may, without notice, in our sole discretion, take appropriate steps to block messages from a particular domain, a server emails, or an IP address.
9. Contact for questions or comments
11. CONTROLLER CONTACT DATA
Trade Name: “AEGEO SPA CONSULTING & MANAGEMENT OF WELLNESS CENTERS LIMITED LIABILITY COMPANY”
Distinctive title “Aegeo Spas L.T.D.”,
headquarters: Ammoudara Aleviziou, 72, Andreas Papandreou Ave.,
General Commercial Registry Number: 077701127000
Telephone: +30 2810 263700, +30 2810 325053