Website Privacy Policy
Last modified: 22/10/2021.
Psarra Elizabeth (hereinafter referred to as ‘the Company’ or ‘us’ or ‘us’) is committed to protecting your personal data with respect to this website, in accordance with the European General Data Protection Regulation – EU 2016/679 (hereinafter ‘Regulation’) and applicable national law.
This Privacy Policy of the website aims to inform you about the practices applied by the Company when processing your personal data through its website, www.optikapsarraelsa.gr (hereinafter ‘Website’). Detailed Privacy Policy of the company, for all the personal data it processes, can also be found on its website, www.optikapsarraelsa.gr
Elissavet Psarra who is based in Kordelio, Thessaloniki (59 Andrea Papandreou Street), contact phone 2310 770216.
The term “personal data” according to the Regulation is any information concerning an identified or identifiable natural person (“data subject”); an identifiable natural person is one whose identity can be verified, directly or indirectly, in particular through reference to an identity element, such as name, identity number, location data, online identity, or one or more factors that characterize the physical, physiological, genetic, psychological, economic, cultural, or social identity of that natural person. any information concerning an identified or identifiable natural person (“data subject”).
The Company collects some of your personal data through this Website, in the following ways:
A. Directly from you voluntarily, when
- fill in and submit the online Order Forms electronically. There are certain order forms on the Website, through which you can contact the Company and request information, express opinions or complaints, as well as order products from our eshop. Any personal information (name, telephone number, e-mail address, delivery address, etc.) submitted voluntarily by you will be collected, stored and processed only for the purposes for which it was provided to us, ie to fulfill the your request or to contact you. This information will be retained by the Company for a period of five years.
B. Automatically when you visit our Website.
We may automatically collect your Internet Protocol (IP) addresses, as well as information about third party websites or web portals, when you choose to access them through links that may exist on our Website. The collection is done by specialized security software, for reasons of security of information technology (IT systems security) and diagnosis of errors or security breaches (forensics). Cookies may also be stored on your device during your visit and depending on your browser settings.
Attention: before you provide us with personal data concerning a third party natural person, you have the responsibility and obligation to inform this person about the content of this Policy.
Our Company uses the appropriate technical and organizational security measures and follows the international best practices to protect your personal data from unauthorized access, misuse, alteration, prohibited dissemination, loss and accidental or unlawful destruction. Indicative:
– We have properly configured new generation firewalls.
– Apply encryption where required.
– We observe the procedure of notification of security breach to the Data Protection Authority, and if necessary, we activate the notification procedure to the affected data subjects.
– We train our staff in order to manage your personal data with due care and always in accordance with the Regulations.
– We commit our employees and associates, who manage personal data, with written contracts, as defined by the Regulation.
– Ειδικότερα για την ασφάλειά σας κατά την Είσοδο (“Login”) χρησιμοποιούνται δύο πεδία για την αναγνώριση χρήστη: το Αναγνωριστικό Εισόδου (e-mail ή username) και ο Προσωπικός Μυστικός Κωδικός Ασφαλείας (password). Κάθε φορά που καταχωρείτε τα στοιχεία σας ως χρήστης, παρέχεται πρόσβαση μόνο σε εσάς, στον προσωπικό σας λογαριασμό. Η συγκεκριμένη διαδικασία επιτυγχάνεται με ασφάλεια, μέσω της κρυπτογράφησης κατά την μεταφορά των προσωπικών σας δεδομένων στο διαδίκτυο και τους εξυπηρετητές (servers) της Επιχείρησης και των Συνεργατών της. Η Επιχείρηση δεσμεύει τους Συνεργάτες της να τηρούν τον Κανονισμό και να προστατεύουν τα δεδομένα που καταχωρείτε καθώς και να παρέχουν ασφαλή πρόσβαση στο λογαριασμό σας. Εσείς, ως χρήστης, είσθε ο μόνος που έχετε πρόσβαση στα στοιχεία σας μέσω του ανωτέρω μυστικού κωδικού και είσθε αποκλειστικά υπεύθυνος για τη διατήρηση της μυστικότητάς του και την απόκρυψη του από τρίτα πρόσωπα. Σε περίπτωση απώλειάς του ή διαρροής του, θα πρέπει να προβείτε στην άμεση ειδοποίηση της Επιχείρησης, άλλως η Επιχείρηση δεν ευθύνεται για τη χρήση του από μη εξουσιοδοτημένο πρόσωπο. Προτρέπουμε κάθε χρήστη να αλλάζει κωδικό πρόσβασης σε τακτά χρονικά διαστήματα, να αποφεύγει τη χρήση εύκολα ανιχνεύσιμων κωδικών (π.χ. ημερομηνία γέννησης ή τηλέφωνο, ή 1234… κλπ.) και να χρησιμοποιεί ανάμικτα αριθμούς και σύμβολα για τη δημιουργία του κωδικού του, εκτός από τα κλασικά γράμματα του αλφαβήτου. Τέλος, ο χρήστης δεν θα πρέπει να χρησιμοποιεί τον ίδιο κωδικό πρόσβασης για περισσότερες από μία υπηρεσίες (δηλαδή, θα πρέπει για τη δική του ασφάλεια, να έχει άλλο κωδικό e-banking, άλλον για το email του, άλλον για «login» στην Περιοχή Συνεργατών κλπ.).
The above security measures are reviewed and amended whenever necessary. You can find a detailed list of applied technical and organizational measures implemented by the company on the website www.optikapsarraelsa.gr in the Privacy Policy.
The Company does not address its products and services to minors. It does not collect or disclose, to its knowledge, personal data of minors. People under the age of 15 must not provide us with their personal data without the consent of their parents or legal guardians.
Our Company transmits personal data that you enter on the Website, or that are automatically generated by the Website (cookies), to the following persons:
- To its authorized employees, who are responsible for the management and fulfillment of obligations related to your application.
- Collaborating companies (and / or freelancers) that process your data on our behalf (processors, who are bound by appropriate written contracts and comply with the Regulations), such as courier service providers, etc.
- To payment service providers and / or domestic or foreign credit institutions, for the execution of a contract with you or transactions that you requested or made, such as SEPA, SWIFT, VISA, PAYPAL, MASTERCARD, etc.
In any case, we bind both our employees and the cooperating companies and third parties, with appropriate written contracts, in accordance with the provisions of the Regulation.
Finally, our company transmits personal data to competent government / state bodies or law enforcement agencies, only in the following cases:
- if an obligation arises under a provision of law, transnational contract, or court decision, or
- if the transfer is necessary for the establishment, support or exercise of rights of the Company, in the context of the defense of its legal interests.
- The company ensures and takes appropriate measures so that data subjects can exercise the rights recognized to them by national and EU law regarding the collection and processing of personal data concerning them. These rights are as follows:
- The Right of Access to Data.
- The right to correct the data.
- The right to delete data (“right to be forgotten”).
- The right to restrict data processing
- The right to data portability
- The right to object to the processing of data
An undertaking may refuse to comply in whole or in part with a request received from the data subject only when this possibility is provided for by Regulation or national law. The company provides the data subject with information about the processing operations following the relevant request submitted to him within one (1) month from the receipt of the request and the identification of the subject. This deadline may be extended by a further two months, if required, if the request is complex or there are a large number of requests. In this case, the company is obliged, within one month from the receipt of the request, to inform the data subject about the delay, as well as the reasons for it. Within the above period of time, it also informs the data subject of any refusal to satisfy, in whole or in part, the submitted request, as well as of the reasons for the refusal.
- If the data subject submits the request by electronic means, the information shall be provided, if possible, by electronic means, unless the data subject requests otherwise.
- If the data subject ‘s request is manifestly unfounded or excessive, in particular because of its recurring nature, the undertaking may make its satisfaction conditional on the payment of a reasonable fee or refuse to comply with the request
- In order to exercise your rights, you can contact the Company in the information we provide in the “Contact” field below.
Data subjects have the right to appeal to the Personal Data Protection Authority (“APDPX”) for issues related to the processing of their personal data. For the competence of the Authority and the way of submitting a complaint, detailed information is provided on the website of APDPH (http://www.dpa.gr à My rights à Submitting a complaint).
For more information about your rights or to exercise them, you can contact the Company in one of the following ways:
- Written letter to be delivered by mail to Andreas Papandreou 59
- Phone: + (30) 2310 770216.
- Email: elsa.opto@yahoo.gr
This Website may contain links to third party websites that are not covered by this Privacy Policy. As the Company cannot guarantee the security measures of these websites, all visitors are encouraged to read the respective privacy policies of these websites before providing information of any kind.
Also, since the Website as well as the e-mail (email) use the publicly available communication networks, which by their nature are not guaranteed to be completely secure, the Company in no case can guarantee the uninterrupted and error-free provision of internet services and its content, nor even the lack of “viruses”.
From time to time we improve the services we provide to you and apply new technologies, so this Website Privacy Policy will be updated accordingly. Therefore, it is important that the visitor regularly consults our Privacy Policy. The Policy with the most recent modification date, which is always listed at the top of the first page, is considered valid.