Privacy Policy
Privacy Policy
The personal data that you provide us during your navigation within our online store, your registration as a user/client of our online services (creation of a user account) or the registration of your order(s) are subject to processing and will be kept in a file under the responsibility of the Company.
What is personal data?
The term "personal data", as used herein, refers to information of individuals, professionals or not, such as name, postal address, email address, contact telephone, credit card details, etc., which can be used to identify the identity of a customer or visitor of the online store, hereinafter referred to as "Personal Data or Data".
The processing of personal data is done in accordance with Law 4624/2019, Law 3471/2006 and the EU Regulation 2016/679, as well as the generally valid Greek and European legislation on personal data protection.
What is Personal Data Processing?
Processing of Personal Data is the collection, registration, organization, storage, adaptation, modification, retrieval, search for information, use, transmission to third parties, dissemination, correlation, combination, restriction, deletion and destruction of Personal Data of individuals.
What kind of Data do we collect?
A) A) During your visit and navigation within our online store:
We do not collect your Data, except those collected from the cookies that you have allowed through your consent to be used, which are mentioned in detail.
B) B) When you register as a user of our services by creating a user account or selecting the direct purchase as an unregistered user (guest):
Name, Surname, Telephone, Address (including city, region, zip code, country) the mobile phone number, and potentially the bell name and address, email address and password (if registered as a user).
C) C) Additionally, your Paypal account or credit / debit card information may be required to complete the payment.
D) D) We collect preferences and browsing data, ie we record the products of our online store that you place in your basket or in your favorites or you the ones that you have bought in the past.
E) E) Also, if you have agreed to have us send you newsletters, we keep your email address in our "newsletter mailing list".
What is the purpose of us processing your data?
We collect your Data exclusively for the purposes of the services provided by the online store www.romi.gr and especially for a) the company’s sales management, e.g. contacting you and inform you of the current availability of products, the progress and execution of your order, the delivery status of the products to your address, the management of your debts to the Company, the completion of any returns/replacements, the provision of guarantees, b) compliance with the obligations imposed by the current legislation, c) customer satisfaction research, product promotion, periodic sending of newsletters for products and services.
What is the legal basis for processing your Data?
The processing of customer/user data such as contact info, billing info, shipping info, transactions info, is either done for the execution of the sales contract, or is based on the consent of the user himself.
For your Data related to the sending of newsletters, product promotion, satisfaction surveys and the use of Cookies, the lawful processing of them is based on your consent.
Who are the recipients of your Data?
Recipients of the Data are the absolutely necessary personnel of the Company, which is committed to maintaining confidentiality and the companies that cooperate with us, which process your Data as Executors of the Processing on our behalf and in accordance with our orders.
We may share or disclose your Data when you have expressly requested it or when required by law.
How do we ensure that Editors respect your Personal Data?
The Editors have agreed and contractually committed with the Company:
• keep confidential,
• not to send Data to third parties without the permission of the Company,
• take appropriate security measures,
• comply with the legal framework for the protection of personal data.
Do we send your Data abroad?
We do not send your Data outside the European Union (EU). Your Personal Data is stored and processed only within E.E.
When do we delete your Data?
The data provided by you will be kept / stored by us only for the period of time required for the fulfillment of the purpose for which you have given your data to us and in compliance with applicable law, in any case not exceeding 20 years.
If you have given us your express consent to the use of your personal data for advertising purposes (subscribe to the Newsletter), we will use your data for this purpose until you revoke your consent. You can revoke your consent at any time with effect for the future.
We delete the Data collected by Cookies in accordance with the Cookies Policy.
For how long will we send you info material?
We will send you a newsletter only with your consent, for as long as your information is in the "newsletter mailing list", ie as long as you have not stated that you no longer wish to receive newsletters.
Is your Data secure?
We are committed to safeguarding your Personal Data. We have taken appropriate organizational and technical measures to secure and protect your Data from any form of accidental or improper processing.
We use an Electronic Security Certificate (SSL - Secure Socket Layer), to ensure the secure exchange of data between the website and your browser.
These measures shall be reviewed and amended as necessary.
The processing of your Data in any way is allowed only to persons authorized by us, our employees and partners exclusively for the above mentioned purposes.
What are your rights?
You have the right to access your personal data.
This means that you have the right to be informed by us if we process your Data. If we process your Data you can ask to be informed about the purpose of processing, the type of your Data we hold, to whom we give it, how long we store it, if automated decisions are made, but also about your other rights, such as correction deletion of data, restriction of processing and submission of a complaint to the Personal Data Protection Authority.
You have the right to correct inaccurate personal data.
If you find that there is an error in your Data you can ask us to correct it (eg name correction or change of address notification).
You have the right to delete / forget.
You can ask us to delete your data if it is no longer necessary for the above mentioned processing purposes or you wish to revoke your consent in case this is the only legal basis.
You have the right to portability of your Data.
You can ask us to receive in readable form the Data you have provided or ask us to forward it to another controller.
You have the right to restrict processing.
You can ask us to restrict the processing of your Data for as long as your processing objections are pending.
You have the right to object to the processing of your Data.
You can oppose the processing of your Data or withdraw your consent and we will stop processing your Data unless there are other compelling and legitimate reasons that prevail over your right.
How can you exercise your rights?
If you wish to contact us for any issue related to the processing of your Data and the exercise of your rights, you can contact the e-mail address (info@romi.gr).
When do we respond to your requests?
We respond to your requests free of charge without delay, and in any case within (1) one month from the time we receive your request. However, if your Request is complex or there is a large number of your Requests, we will inform you within the month if we need to receive an extension of another (2) two months within which we will respond to you.
If your Requests are manifestly unfounded or excessive, in particular because of their recurring nature, Romi may charge a reasonable fee, taking into account the administrative costs of providing the information or performing the requested action, or refusing to follow up the Request.
Is any kind of automated decision making present, including profiling, when processing your Data?
We do not make decisions, nor do we make profiles, based on automated processing of your Data.
What can you do if we violate the applicable law on the protection of Personal Data?
You have the right to submit a complaint to the Personal Data Protection Authority (postal address 1-3 Kifissias, PC 115 23, Athens, tel. 2106475600, e-mail address (e-mail: contact@dpa.gr), if you believe that the processing of your Personal Data violates the applicable national and regulatory framework law for the protection of personal data.
How will you be notified of any changes to this Policy?
We will update this Policy whenever necessary. If there are significant changes to the Policy or the way we use your Personal Data, we will notify you either by posting a notice in a prominent place before the changes take effect or by any other appropriate means. We encourage you to read this Policy regularly to know how your Data is protected.
