Privacy Policy
Personal Data Protection
We consider the protection of your personal data to be of utmost importance. This Privacy Policy (hereinafter referred to as the "Policy") concerns the conditions for collecting, storing, using, and processing your personal information by THOMAS NAKAS BOOKSTORES IKE (Headquarters Address: 23rd kilometer of Marathon Avenue, Rafina - Attica, contact phone: 2294079816, email: [email protected]), hereinafter referred to as the Company, when you use the provided services, visit the Company’s stores, purchase products, participate in Company events, and when you visit, register, or use the website www.nakasbookhouse.gr, provided you are a natural person.
Our core principles regarding personal data:
We collect and process personal data only when absolutely necessary.
We do not send spam emails.
We do not sell, rent, or otherwise distribute or disclose your personal data.
For any questions or further clarification, we are always at your disposal.
The website www.nakasbookhouse.gr:
The website www.nakasbookhouse.gr is the online platform of the Company. The personal data you provide while navigating our website will be processed and stored in a file under the responsibility of the Company.
What is Data Processing
The term "personal data," as used in this Policy, refers to information about individuals, whether private or professional, such as name, postal address, IP address, contact phone number, etc., that can be used to identify a visitor to the website, hereinafter referred to as "Personal Data" or "Data."
What is Data Processing:
Personal data refers to any information that can be used to identify an individual. Processing involves the collection, recording, organization, storage, adaptation, alteration, retrieval, searching, use, transmission to third parties, dissemination, correlation, combination, restriction, deletion, and destruction of Personal Data of individuals.
What Personal Data Do We Collect:
For the purpose of selling the Company’s products or services, the personal data we collect includes:
First Name – Last Name
Residential Address
Occupation
Email Address
Phone Number
Age
We reserve the right to collect, process, store, and transfer various types of personal data about you, which we have grouped as follows:
Identity Data includes name, father's name, surname, age, or date of birth.
Contact Data includes billing address, delivery address, email address, and phone numbers.
Financial Data includes bank account details and payment card information.
Transaction data includes details regarding payments to and from you, as well as other information about products and services you have purchased from us.
· Technical Data includes IP address, login details, browser type and version, time zone and location, types and versions of browser extensions, operating system and platform, and other technology on the devices used to access this website.
· Profile Data includes your username and password, purchases or orders made by you, interests, preferences, comments, and responses to any surveys.
· Usage Data includes information about how you use the website, products, and services.
· Marketing and Communications Data includes your preferences for receiving promotional materials from us and third parties, and your preferences for communication with us. The Company reserves the right to use this data to send updates about new products or offers from NAKAS BOOK HOUSE bookstores and other companies in the NAKAS GROUP to customers or registered users of the online store.
When visiting and navigating our website, we do not collect your personal data, except for what is collected through cookies that you have consented to be used, as detailed in our Cookie Policy here.
Using the online Contact Form, we collect various pieces of information such as name, postal address, phone number, and email address. When using the contact form, providing personal data is done voluntarily and solely at the user's discretion. The processing of personal data is carried out only to the extent necessary.
The website may use Google Analytics (GA) to track user activity. We use this data to determine the number of people using our website, to better understand how they find and use our sites, and to see their journey through the website.
Although GA records data such as your geographic location, device, web browser, and operating system, none of this information is used by us to personally identify you. GA also records your computer's IP address, which could be used to identify you, but Google does not provide us with access to this information. We consider Google to be a third-party data processor.Η GA χρησιμοποιεί cookies, λεπτομέρειες για τα οποία μπορείτε να βρείτε στους οδηγούς προγραμματιστών της Google.
You have the option to disable cookies in your browser, which will prevent GA from tracking any part of your visit to pages within this website.
Method of Data Collection
We collect personal data from you when you use our website or when you interact with our call centers.
Additionally, we collect your data following your voluntary submission via the contact form on our website, when you register as a member of the NAKAS BOOK HOUSE club, or when you provide your details to participate in company events.
6. Purpose of Data Processing:
We collect your data exclusively for the purposes of providing services on the website www.nakasbookhouse.gr, specifically for:
a) Monitoring website traffic
b) Communicating with you using the details you provide through the contact form on the website
c) Complying with obligations imposed by current legislation
d) Conducting customer satisfaction research, promoting products, and periodically sending newsletters about products, offers, and services
7. Legal Basis for Data Processing
The processing of users' data on the website is either within the framework of the provided services or based on the user's own consent.
For your data related to receiving newsletters and the use of Cookies, the legality of processing is based on your consent. For more information on our Cookie Policy, see here.
We will process your personal data only when allowed by law. We will use your personal data only:
When we need to perform a contract we are about to enter into or have already entered into with you.
When it is necessary for our legitimate interests (or the interests of a third party) and your interests and fundamental rights do not override those interests.
When we need to comply with a legal or regulatory obligation.
When you have given us your explicit consent to do so.
In cases where the legal basis for processing your personal data is consent, please note that you have the right to withdraw your consent at any time by contacting us using the contact details provided in this Policy.
The legal basis for data processing is recorded as follows:
Purpose / Activity: [Specify the purpose or activity here]
Type of Data: [Specify the type of data collected here]
Legal Basis for Processing: [Specify the legal basis for processing data here, e.g., consent, contract performance, legitimate interests, legal obligations]
If you need specific examples or details for each section, let me know!
Registration of New Customer
a. Identity
b. Contact
Formation of a contract with you
Processing and delivering your order, including:
Managing payments,
Collecting and recovering amounts owed to us
a. Identity
b. Contact
c. Financial
d. Transaction
e. Marketing and Communication
a. Contractual obligation
b. Necessary for our legitimate interests (e.g., debt recovery)
To manage our relationship with you, including:
a. Updates on changes to terms and conditions or the privacy notice
b. Requesting feedback or participation in a survey
a. Identity
b. Contact
c. Profile
d. Marketing and Communications
a. Contractual obligation
b. Necessary for compliance with a legal obligation
c. Necessary for our legitimate interests (e.g., updating our records and analyzing how customers use our products/services)
To provide you with the opportunity to participate in a sweepstakes, competition, or to complete a questionnaire
a. Identity
b. Contact
c. Profile
d. Usage
e. Marketing and Communications
b. Necessary for our legitimate interests (to analyze how customers use our products/services, to develop them, and to expand our business activities).
To manage and protect our business and website (including troubleshooting, data analysis, testing, system maintenance, support, reporting, and data retention).
a. Identity
b. Contact
c. Technical
α. Necessary for our legitimate interests (for the management of our business, provision of administration and IT services, network security, fraud prevention, and in the context of business or group reorganization)
β. Αναγκαίο για συμμόρφωση προς μια νομική υποχρέωση
To deliver relevant website content and advertisements to you and to measure and understand the effectiveness of the advertisements we serve
a. Identity
b. Contact
c. Profile
d. Usage
e. Marketing and Communications
f. Technical
Necessary for our legitimate interests (to analyze how customers use our products/services, for product and service development)
Based on consent regarding direct marketing activities and for the purpose of business development and updating our marketing strategy.
To use data analytics tools to improve the website, products/services, our customer relationships, and their experiences.
a. Technical
b. Usage
Necessary for our legitimate interests (to categorize customers for our products and services, to keep our website updated and relevant, to develop our business, and to update our marketing strategy)
To make recommendations to you about goods or services that may interest you.
a. Identity
b. Contact
c. Technical
d. Usage
e. Profile
Based on your consent, however, where permitted by applicable law, we may lawfully use your personal data, where necessary, for our legitimate interests, which include promoting our products and services, special offers, and promotions that may interest you.
Based on your consent. In this case, the Company reserves the right to use automated processes to analyze your behavior and preferences, with the aim of identifying and recommending services and goods that may interest you.
8. Data retention period:
he retention period for personal data is always kept to the minimum necessary for the purposes described in this policy. In some cases, we may retain data for longer periods, as permitted or required by law, such as for legal obligations, payment requirements, accounting and tax purposes, or compliance with other legal requirements. When we no longer have a valid and legally acceptable need to process the data, we will delete or anonymize your data. Additionally, we will securely store and isolate the data from further processing in backup storage media until deletion becomes feasible.
9. Recipients of the Data:
Recipients of the Data are specific and authorized personnel of the Company, who are bound by a confidentiality agreement. We reserve the right to share your personal data with affiliated businesses, solely for the purpose of providing you with better and more efficient service. We also reserve the right to share your personal data with service providers who offer support services to us. Affiliated businesses and service providers are third parties bound by contract not to use your information in any way other than to assist us in providing you with the products and services offered by the Company. We also reserve the right to disclose your personal data to third parties when you request us to do so or when we believe it is required by law.
10. Transfer of Your Data Abroad:
Your Personal Data is stored and processed only within Greece and we do not transfer data within or outside the European Union.
11. Data Security:
We are committed to safeguarding your Personal Data. We have implemented appropriate organizational and technical measures to ensure the security and protection of your Data from any form of accidental or unlawful processing.
These measures apply to both electronic and physical records, are reviewed systematically, and are modified as necessary
Any processing of your Data is permitted only by authorized individuals, employees, and partners of ours, exclusively for the purposes described above, as outlined earlier.
12. Your Rights Regarding Personal Data:
Right to Access Your Personal Data.
This means you have the right to be informed by us if we are processing your Data. If we are processing your Data, you can request information on the purpose of the processing, the type of Data we hold about you, whom we share it with, how long we retain it, whether automated decision-making occurs, as well as your other rights, such as correction, deletion of data, restriction of processing, and filing a complaint with the Data Protection Authority..
Right to Correct Inaccurate Personal Data.
If you find that there is an error in your Data, you can submit a request to us to correct it (e.g., correcting a name or updating a phone number).
Right to Deletion/Right to be Forgotten
You may request that we delete your data if it is no longer necessary for the purposes of processing mentioned above, or if you wish to withdraw your consent when it is the only legal basis.
Right to Data Portability
You may request to receive your data in a readable format or ask us to transfer it to another data controller.
Right to Restriction of Processing.
You can request that we restrict the processing of your Data while we are examining your objections to the processing.
Right to Object to Processing.
You may object to the processing of your Data or withdraw your consent, and we will stop processing your Data unless there are other compelling and legitimate reasons that override your right.
13. Exercising Your Rights
Τo exercise your rights, you can send a request either to our postal address (23rd Kilometer of Marathon Avenue, Rafina - Attica) or to our email address ([email protected]) with the subject line 'Exercise of Access/Correction/Deletion/Restriction/Objection Right,' including a description of your request. We will review it and respond as soon as possible
14. Response to Requests:
We respond to your requests free of charge and without delay, and in any case within one (1) month from the receipt of your request. However, if your request is complex or if there is a large number of requests, we will inform you within the month if we need to take an additional two (2) months to respond.
If your requests are clearly unfounded or excessive, particularly due to their repetitive nature, the Company may charge a reasonable fee, considering the administrative costs for providing the information or carrying out the requested action, or may refuse to act on the request.
For more information regarding the status of your request, you can call 2294079816
15. Use of Automated Decision-Making, Including Profiling, in the Processing of Your Data;
We do not make decisions, nor do we engage in profiling, based on automated processing of your Data.
16. Processing of Minor's Data:
We do not process data concerning children under the age of 16, except with the explicit consent of their parents. If you are under 16, you need to obtain parental consent before subscribing to our email newsletter or providing us with your data for any reason.
17. Applicable Law for Data Processing:
We process your Data in accordance with the General Data Protection Regulation (GDPR) 2016/679/EU, and generally with the applicable national and European legislation and regulatory framework for data protection and privacy.
18. Complaint in the Event of a Breach of Data Protection Legislation:
You have the right to file a complaint with the Data Protection Authority (postal address: Kifisias 1-3, P.C. 115 23, Athens, Tel: 210.6475600, email: [email protected]) if you believe that the processing of your Personal Data violates the applicable national and regulatory framework for data protection..
19. Update on Changes to This Policy;
This privacy policy may change from time to time in accordance with legal requirements or industry developments. We will not explicitly notify our customers or website users of these changes. However, if there are significant changes, we will inform you by prominently posting the changes on the website or by other appropriate means. Nevertheless, we recommend that you periodically review this page for any policy changes.
The Company is the Data Controller for the data it processes. Our address (Head Office) is: 23rd Kilometer of Marathon Avenue, Rafina - Attica, telephone: 2294079816, email: [email protected].
If you wish to contact us regarding any issue related to the processing of your Data and the exercise of your rights, you can reach out to the email address [email protected]