Skip to content
Privacy policy
PRIVACY POLICY OF THE E-SHOP AGORART.GR
Our company, under the trade name Agorart, based in Ilioupoli, Attica, at 42 Athinodorou Street, ZIP Code 163 46 (the Company, we, Agorart), takes appropriate measures to comply with the applicable national and European legislation regarding the protection of your personal data. We have established this Data Protection Policy (hereinafter the Policy) to inform visitors of our e-shop website (hereinafter e-shop, Agorart, or the Company) about the processing of their data.
This privacy policy is addressed to those who browse our e-shop, create an account, make purchases through our e-shop, contact us, or receive our promotional communications (hereinafter you, your).
This Policy should be read together with our Cookies Policy and the Terms & Conditions of our e-shop, as these texts form an integral part of this Policy and jointly govern the operation of the e-shop and the execution of transactions (purchases) through it. By continuing to browse our e-shop and/or making purchases, you automatically and unreservedly accept the terms of this Policy, as amended from time to time. We invite you to periodically review this Policy to stay informed of any changes. If you do not agree with any modifications, you should refrain from using the website and/or making purchases.
1. Data Controller & Contact Information
-
The Data Controller for your personal data is the company operating under the trade name Agorart, with the details listed above.
-
Contact Information: For any issues related to this Privacy Policy and the processing of your personal data, you can contact us by sending an email to: info@agorart.gr
2. What is Personal Data?
Personal data is any information that allows your unique identification, either on its own or in combination with other data, in accordance with the General Data Protection Regulation (GDPR 2016/679/EU), applicable Greek law, and decisions of the Hellenic Data Protection Authority (HDPA), as well as guidelines and rulings of the competent European bodies.
The processing of personal data is conducted in accordance with the provisions of the GDPR, any specific national or EU legislation for particular sectors, the applicable Greek data protection legislation, as well as Law 3471/2006 (as amended) regarding privacy and electronic communications, and decisions of the HDPA.
These are typically collected:
-
When you browse our Website and e-shop
-
When you make purchases through our e-shop
-
When you subscribe to our Newsletter
-
When you submit a service request
For more information regarding data processed via cookies, please refer to our Cookies Policy.
3. What Data Do We Collect?
We may collect, indicatively, the following personal data:
-
Identity & Contact Data: full name, mailing address, email, phone number
-
Account Data: previous orders, billing and shipping addresses
-
Financial and Tax Data: payment method, card type, transaction amount, refunds, invoice details
-
Transaction/Purchase Data: product types, transaction value, shipping and billing addresses, purchase time, card type
-
Technical Data: IP address, operating system
-
Analytics Data: statistical/pseudonymized data collected through cookies (see Cookies Policy)
Note: During the payment process, we do not record or store your payment details, such as credit card numbers. This information is provided directly by you to the payment service provider. We do not knowingly collect information from anyone under the age of 18. Our services are intended exclusively for individuals aged 18 or older. If you are under 18, please do not use our website or provide any personal data (e.g., name, address, contact details, email).
4. For What Purposes Do We Use Your Data?
We use your personal data solely for the following legal and clearly defined purposes:
-
Browsing the e-shop: To ensure the smooth operation and proper presentation of the website on your device, to improve user experience, and to ensure the website’s security.
-
Creating a user account: To manage your profile and history, facilitate future purchases, track your orders, and speed up the purchase process.
-
Order execution and customer service: To process your order, communicate with you regarding its progress, ship your products, and manage any returns, exchanges, or complaints.
-
Payment processing: To manage transactions and process payments.
-
Customer support: To respond to your requests, complaints, or inquiries through contact forms, email, or phone.
-
Sending promotional communications: If you have given your explicit consent, we may use your contact details (email, phone) to send updates about products, services, offers, news, and competitions.
-
Legal obligations: To comply with tax, accounting, and other legal obligations.
-
Security & fraud prevention: To protect our website and prevent fraudulent or illegal activity.
5. Legal Bases for Processing
The legal bases under which we process your personal data include:
-
Contractual necessity: Processing is required for the fulfillment of our contractual obligations (e.g., order execution, delivery, payments).
-
Legal obligation: To comply with laws (e.g., tax legislation, consumer protection).
-
Legitimate interests: For the improvement of our services, fraud prevention, and website security.
-
Consent: When you voluntarily provide your data or subscribe to promotional communications. You can withdraw your consent at any time without affecting the lawfulness of prior processing.
6. Who Do We Share Your Data With?
We only share your data when necessary and always under conditions ensuring its protection and confidentiality:
-
Courier and delivery services, to ship your orders.
-
Payment service providers, to process your transactions.
-
External collaborators, such as accountants, IT providers, and technical support, who are contractually bound by confidentiality and data protection obligations.
-
Public authorities, if required by law or court order (e.g., tax authorities).
We do not sell, rent, or otherwise disclose your data to third parties for commercial purposes.
7. Data Retention Period
We retain your personal data only for as long as necessary to fulfill the purposes outlined in this Policy, unless a longer retention period is required or permitted by law. For example:
-
Transaction data is retained for 5–10 years in accordance with tax legislation.
-
User account data is retained until you request its deletion.
-
Data related to promotional communications is retained until you withdraw your consent.
After the retention period, your data is securely deleted or anonymized.
8. Your Rights Regarding Your Personal Data
As a data subject, under the General Data Protection Regulation (GDPR), you have the following rights:
-
Right of access: You have the right to know what personal data we hold about you and receive a copy of it.
-
Right to rectification: You can request the correction of inaccurate or incomplete data.
-
Right to erasure ("right to be forgotten"): You can request the deletion of your data when it is no longer necessary or if you withdraw your consent, unless there are legal reasons to retain it.
-
Right to restriction of processing: You may request the limitation of processing in certain circumstances.
-
Right to data portability: You have the right to receive your data in a structured, commonly used, and machine-readable format and transmit it to another controller.
-
Right to object: You may object to the processing of your data based on our legitimate interests or for direct marketing purposes.
-
Right to withdraw consent: Where processing is based on your consent, you may withdraw it at any time.
To exercise your rights, you can contact us at: [insert contact email or form].
We will respond to your request within one (1) month, unless an extension is required due to complexity.
If you believe your data protection rights are violated, you have the right to lodge a complaint with the Hellenic Data Protection Authority (www.dpa.gr).
9. Data Security
We take all appropriate technical and organizational measures to ensure the security and protection of your personal data from unauthorized access, loss, misuse, alteration, or disclosure. These measures include:
-
Use of SSL (Secure Socket Layer) encryption during transactions.
-
Controlled access to data by authorized personnel only.
-
Regular backups and system security checks.
-
Hosting on secure servers within the EU.
However, no method of transmission or storage is completely secure. For this reason, we encourage you to also take security precautions when using the internet (e.g., strong passwords, careful handling of personal devices).
10. Cookies Policy
Our website uses cookies to improve your experience, analyze website performance, and personalize content. For more information about the types of cookies we use and how you can manage your preferences, please refer to our [Cookies Policy].
11. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in legal requirements or our services. The updated version will be posted on this page with a revised “Last Updated” date.
We encourage you to review this Policy periodically.
- Choosing a selection results in a full page refresh.
- Opens in a new window.