1. Data Controller
The controller of any personal data arising from your visit to the aquasportscenter.gr website is the business “Aqua Sport Center”, hereinafter “we”, based in Alexandroupoli, Greece. We process data in accordance with the General Data Protection Regulation (EU 2016/679 — GDPR) and Greek Law 4624/2019.
For any data protection matter you can contact us at: [email protected]
2. What Data We Process
The aquasportscenter.gr website is informational/presentational in nature. It has no booking or contact form and no online payment system, so we do not actively collect personal data through the website.
The contact details (phone, email) shown on the website are our own details, which you may choose to use in order to reach us outside the website and arrange an appointment for an activity. Any details you give us this way (e.g. name, phone number during a telephone booking) are used solely to organise your booking, on the legal basis of the performance/preparation of our service contract.
Please note that any risk-information/liability-waiver form signed on site before an activity is a separate document, and any personal data it contains is governed by the terms of that form itself.
3. Technical Infrastructure Data
To operate and secure the website we use hosting infrastructure providers and a content delivery / protection network (CDN & security layer). As part of their technical operation, these providers process, automatically, basic technical data for every request (such as IP address, browser type, time of the request), for the sole purpose of delivering the page and protecting it against malicious traffic.
We do not use this data for profiling or advertising. We do not run web analytics tools, advertising pixels or similar tracking technologies on the website.
Legal basis: our legitimate interest in the secure and uninterrupted operation of the website.
5. Recipients & Processors
We do not sell or transfer data to third parties for advertising purposes. For the technical operation of the website we work with hosting infrastructure and content delivery / security network providers, who act as data processors on our behalf. Where these providers process data outside the European Economic Area, the transfer is covered by approved safeguards (such as Standard Contractual Clauses).
6. Retention Period
Technical infrastructure data (e.g. security logs) is retained by our providers for the period set by their own policies. Details you give us to organise a booking (e.g. name, phone number) are kept for as long as necessary to serve the booking and to meet any tax/accounting obligations, and are deleted once they are no longer needed.
7. Your Rights (GDPR)
If you have provided us with personal data (e.g. for a booking), you have the following rights:
- Access: to learn what data of yours we may be processing
- Rectification: to request correction of inaccurate data
- Erasure: to request deletion of your data
- Restriction: to request restriction of the processing
- Objection: to object to processing that is based on legitimate interest
- Portability: to receive your data in a structured, commonly used format
To exercise any of these rights, contact us at: [email protected]. We respond within one (1) month.
If you believe that the processing of your data infringes the law, you have the right to lodge a complaint with the Hellenic Data Protection Authority (HDPA): www.dpa.gr
8. Security
The website is served exclusively over an encrypted connection (HTTPS/SSL) and is hosted on infrastructure that applies modern security measures. We take reasonable technical and organisational measures to protect any data provided to us.
9. Changes to This Policy
We may update this policy, in particular if new tools or features are added to the website (e.g. an online booking system, analytics). The version in force at any time is published on this page with its last-updated date.
