Privacy Policy

Chalamalia Agoritsa hereinafter “The Company”, attaches great importance to the lawful processing, security and protection of your personal data, under

in any capacity you communicate or collaborate with us, such as candidates

or active customers, consumers, website visitors, employees, suppliers,

businesses, individuals, consumers, passengers or cooperating third parties.

This Privacy Policy also describes how to use, disclose and

protection of your personal data, the choices you have regarding

your personal data, as well as how you can contact us. THE

this Protection Policy is in accordance with the conditions arising from

European Regulation 679/2016 and any other relevant applicable legislation. With the

use of our website and the signing of the relevant declaration of consent,

you unconditionally accept the practices described herein, of which the

terms henceforth govern the contractual relationship between us and are incorporated into the terms

use of each of our services.

1. What is your personal data.

Your personal data includes any information on paper or electronic media that can lead, either directly or in combination with others, to your unique

identifying or locating you as a natural person. This category includes

as the case may be, information such as full name, VAT number, social security number

insurance, physical and electronic addresses, landline and mobile numbers

phone numbers, calling and called phone numbers, message recipients

SMS/MMS, your bank account details, details

your bank/debit/credit/prepaid cards, addresses

e-mail, history of your online searches (log files, cookies

etc.), and any other information that allows you to be uniquely identified during

provisions of the General Data Protection Regulation (GDPR

2016/679), of Law 4624/2019, of the currently applicable Greek legislation as well as

and the decisions of the Personal Data Protection Authority

(APDPH)

2. What is Personal Data Processing?

Any operation or series of operations carried out with or without the use of automated means, on personal data or aggregates

personal data, such as the collection, registration, organization,

structuring, storing, adapting or changing, retrieving, searching for information,

use, disclosure by transmission, dissemination or any other form of disposal, association or

combination, limitation, deletion or destruction.

3. What personal data we collect about you.

We take care to collect only your absolutely necessary Personal Data, which is appropriate and clear for the intended purpose. This Data

include the following:

a. Data you provide to us when you register and create an account

user on the Company’s Websites or Apps, via the Internet or

your mobile phone or through your personal contact with our stores or with them

our vendors and specific data such as electronic address (e-mail)* and

password/login password (as mandatory) and name, surname, postal address

address, phone number (optional):

b. Data and information you provide to us through transactions between us

(purchases, orders, etc.) and the communication between us (through physical

stores, our online store, our sellers, the phone,

email or through any other means). For example,

we collect notes from our conversations with you, details of any

complaints or comments you make, details of purchases you have made, products

that were added to or removed from your cart, list of products that

wish to buy (wish list), coupon redemptions, which of the websites

you visit us and how and when you contact us.

c. Data related to the payment method for the transactions that

carry out with us.

d. Data you provide to us when you subscribe to our newsletter.

e. Data about the products and services that you usually choose in preference.

In order to recommend products or services of your interest and to

further enhance your shopping experience with us. Of course, you always have

the choice not to share such information with us;

f. Traffic data of our website.

g. Information collected from the use of cookies in your browser.

Learn more about how cookies are used here.

h. To provide the best possible website experience, we collect techniques

information about your internet connection and browser;

as well as the country code and phone number where your computer is located, the

websites that appear when you visit, the advertisements that you place on

click and whatever search terms you entered.

i. Your social media username, if you interact with us

through these channels, to help us respond to feedback, the

your questions or comments.

4. Lawful processing

The company will use your information for the following legitimate processing purposes (according to Article 6 GDPR), as the case may be, with the express

your consent which you can freely withdraw at any time, or for

performance of a contract or pre-contractual relationship with you, or for legal service

our interest or to protect your vital interest, namely:

To manage your information seeking calls aimed at

completing your requests, purchases and orders.

To respond to your requests and queries regarding our products/services

as well as updating and responding to your suggestions and comments on improving them

our products and services.

To analyze our website traffic and improve your experience

as well as to provide you with information related to products, services, specials

offers and promotions.

For our internal operations and analysis such as internal management, prevention vs

fraud, use of management, invoicing, accounting information systems,

billing and control.

Providing the Data to the Company may be necessary to

achieve the purposes specified in this Privacy Policy or be

optional.

If you refuse to provide the information that is considered mandatory, it may, for

for example, to make it impossible for the Company to fulfill the sales contract or

the provision of the other services available on its Websites.

5. What are the collection and processing principles

This Privacy Policy aims to inform you about the terms of collection, processing and transmission of your personal data that we may collect as Processors. The company and the staff

applies the ten Processing Principles of GDPR 2016/679 (lawfulness,

objectivity, transparency, purpose limitation, data minimization, accuracy,

storage time limitation, integrity, confidentiality and accountability). THE

Company protects and ensures your eight Rights regarding the use of

Your Personal Data (update, access, correction, deletion, limitation

processing, portability, objection and non-automated decision-making based on

profiles, as specified in Greek legislation). The above applies without any

discrimination and apply to all the processing we carry out and to all the

services we provide independently.

6. What are the ways of collecting your personal data

The Company collects your personal data by accepting the terms of use of each of our services, such as:

When you call our numbers, when you email us, or fill out an application or

order.

When you contact our offices or our staff and our telephone

center, either for purchases or for expressing your opinion, complaints or comments.

When you send us your billing or shipping mailing address or

proof of service as well as details of its home delivery

of your order.

When you visit our website, through which we collect, with express

your consent, through cookies, information from your terminal device, such as

your internet protocol (IP) address, the operating system used,

your browser type and version etc.

7. Minimizing, storing and deleting your data

The Company will always ask you for the minimum personal data required by law to connect to our online platforms and services, in order to

buy products / services, to place an online order, to

communicate through websites with other users or to participate in

contests or promotions.

Our Company keeps your personal data only for as long as required by

the contractual conditions of each service, in combination with the current legislation, based on

of the respective processing purpose, while subsequently anonymizing or destroying them.

You can ask us and find out what data we collect about you

and correct or delete them by completing a relevant application we have

available, unless their retention is required by tax law,

evidentiary or judicial purposes and for the prosecution of illegal acts.

8. Cookies Policy

According to the European E-Privacy Directive 2009/136/SE (which will be replaced

with the ePrivacy Regulation) and the 25.2.2020 APDPH Guidelines, our website

accepts the use of “cookies”. These are online collection tools and

analyzing information coming from social networking platforms or

partner websites of third parties, in order to measure traffic,

to improve the operation, content and overall appearance of our website and

to adapt to the needs of our customers.

When using our website, personal data is processed

you from third parties, such as social networks and search engines, e.g. Google Analytics,

Facebook social Plug-ins etc., without any involvement, influence or control on its part

Company and are transmitted either within or outside the European Economic Area (27 states

EU members plus Iceland, Liechtenstein and Norway), for which they are exclusive

responsible third parties. If you do not want third parties, such as Google, Facebook,

Twitter, receive information from your browser when

visiting the Company’s websites you can opt out of the terms that

provided by the respective Usage Policy available on the website of each such

third party. Although most browsers accept it

automatically the use of cookies, you can always change the settings at

your computer, choosing not to accept cookies, or being asked to

accept each of them separately. However, you should know that something

this will limit the range of browsing options available to you in each

website and user experience.

9. Transmission of your data to third parties

As a rule, our Company does not transmit your personal data to third parties, except when we act as an intermediary and to the extent that this is required to

complete your order and fulfill requests regarding the

services provided by us. Such third parties may be government officials

and supervisory bodies (e.g. prosecuting and prosecuting authorities, prosecution of electronic

of crime, APDPH, EETT), when we are asked to comply with the legislation and to

prevent illegal actions at our expense and at the expense of our customers (e.g.

telephone fraud, verbal abuse, insult to personality, etc.). Maybe even third parties

to be accounting and law firms.

In our company we choose reliable providers and try to set

contractual restrictions on third parties receiving your personal data so

to ensure their legal use. However, we cannot guarantee that it will not

will use or disclose this data without your permission. For this

That’s why we recommend that you carefully review our privacy practices

data of any third party providers/suppliers whose products or services

you buy through our websites.

In order to process your data, we may need to transfer it

your information in other countries, including countries based within and

exceptionally outside the European Economic Area (EEA), based on adequacy decisions

of the EU, corporate binding rules, standard contracts and approved

codes of conduct.

The Company’s absolutely necessary personnel have access to your Data, the

which is committed to confidentiality and those who work with us

businesses or third party service providers, which process your Data as

Carrying out the Processing on our behalf and in accordance with our instructions.

10. How is your Data shared?

Disclosure of Data by our Company. The Company shares your Data with:

• Third party service providers who process personal data for

account of the Company, for example (indicatively mentioned) for the

credit card and payment processing, transfers and deliveries;

hosting, managing and maintaining our data, email distribution, research and

analysis, management of promotions, as well as management of some

services and data. When we use third party service providers

we enter into agreements that oblige them to implement appropriate technical

and organizational measures to protect your personal data.

• Other third parties, to the extent required for the following purposes: (i)

compliance at the request of an organ of the Greek State, judicial

decision or applicable law, (ii) preventing illegal uses of the Network

of our Sites and Apps or violations of the Terms of Use of the Sites and

Our Apps and our policies, (iii) our protection against third party claims, and

(iv) contributing to the prevention or investigation of cases of fraud (eg counterfeiting);

• other third parties to whom you yourself have given your consent.

Sharing of Data by you

• When you use certain social media items on

Our Sites or Apps, you can create a public profile on

which should include information such as username, profile picture and city.

You can also share content with your friends or the wide

audience, including information about your interaction with it

Company. We encourage you to use the tools we provide for

the management of sharing on the Company’s social media with

for the purpose of controlling the information you make available through the data

the Company’s social media.

11. What is the policy we apply with third party Processors of your Data in accordance with the above:

We provide only the information needed to perform their specific services.

• They can only use your Data for accurate

purposes we set out in our contract with them.

• We work closely with them to ensure that your privacy

it is respected and protected at all times.

• If we stop using their services, any of

the data they hold will be deleted or made anonymous.

To improve your experience as a customer on our Sites and Apps,

we use the following companies, which will process your Personal Data

Data as part of their contracts with us:

Facebook Google YouTube

Instagram Twitter LinkedIn

ACS Hotjar

In case you wish to receive more information about the

disclosure of your Data to third parties please contact us with

email [email protected]

12. How do we ensure that Processors respect your Data?

The Processors on our behalf have agreed and contractually committed to the Company:

• to observe confidentiality,

• not to send your Data to third parties without the Company’s permission,

• take appropriate security measures,

• to comply with the legal framework for the protection of

personal data and in particular Regulation 979/2016/EU (otherwise GDPR).

13. Security of your personal data

In any case, we take appropriate technical and organizational measures to ensure the confidentiality, integrity and availability of your data.

We aim to ensure that your personal information is transferred,

stored and processed in accordance with appropriate international standards and

security procedures. In the Company we have trained and responsible staff,

while we recognize the importance of protecting the privacy of all

your personal information. For this purpose we have appropriate policies

security and we use the appropriate technical and operational tools, such as

anonymisation, pseudonymisation, data encryption, tokenisation, use

firewalls, establishing access levels, authorized employees, training

personnel, periodic inspections, compliance with international safety standards and

business continuity. Any of our partners who have access to the above information, use it for

to exclusively serve the above purposes. We share the information

that you give us exclusively in the ways described in this Policy

and according to your express and specific consent per type of processing which

you can withdraw at any time and freely by contacting us.

14. Data Transfer

The personal data we collect (or process) in the context of our Websites and Apps will be stored within the European Union. However,

some of the recipients of the Data with whom the Company shares it

Your Personal Data may be located in countries other than this one

which the initial collection of your Personal Data took place. THE

legislation in those countries may not provide the same level of protection

data compared to the country that originally provided your Personal Data.

However, when we transfer your Personal Data to other recipients

countries, including the US, we are committed to protecting Personal

your data as described in this Privacy Policy and in accordance with

the applicable legislation.

We take steps to comply with applicable legal requirements for

transfer of personal data to recipients in non-European countries

Economic Area or Switzerland which do not ensure an adequate level of protection.

We use various measures to ensure that your Personal Data

transported to these countries enjoy adequate protection according to them

data protection rules. These include the signing of Conventions

Clauses, the certification that the recipient has adopted the European

binding rules or adheres to the EU-US Privacy Shield

and Switzerland – USA.

15. How long do we keep your Data?

We retain your Personal Data for as long as necessary to fulfill the purposes set out in this Privacy Policy (unless required by

applicable law longer retention period). Generally this means that they will

retain your Personal Data for as long as you have an account with

Our company. Regarding your Personal Data related to purchases

products, we retain this data for a longer period of time in order to

comply with our legal obligations (such as tax and commercial

legislation and for warranty purposes where applicable). At the end of this

retention period, your data will be deleted completely or anonymized, for

example by aggregating with other data so that they can

used in a non-identifiable way for statistical and business analysis

programming.

Some examples of Customer Data retention periods:

• Orders

When you place an order, we will retain the personal data that you give us

you gave for five years so we can comply with the legal and

our contractual obligations.

• Guarantees

If your order included a warranty, the relevant Personal Data will

be maintained until the end of the warranty period.

• Newsletters

Your declaration of consent to send a newsletter is kept for

as long as the newsletter is sent to you by the Company and in any case not more than

six months from the cessation of its mission.

16. Display of targeted advertisements

Provided you have given us written consent we may use your personal data together with other information we have collected, after

human intervention by our commercial department in order to display advertisements

related to your apparent preferences, on our website or elsewhere

web page.

However, we do not use automated tools to identify and evaluate it

your consumer profile and your inherent preferences with other personal ones

information (such as your email address) to

display advertisements or send you personalized information. Moreover, no

we share your personal information with third parties so that they can

to send you relevant advertisements, unless you have expressly consented in writing

to them. If you wish to stop us from sending you updates or offers, you can use the unsubscribe link located at

end of any e-mail you may have received from us (unsubscribe).

17. Is your Data secure?

We are committed to safeguarding your Personal Data. Recognizing the importance of the security of your Personal Data, we have

take all appropriate organizational and technical measures for security and protection

of your Data from any form of accidental or unlawful processing. We use them

more modern and advanced methods, in order to ensure the maximum possible

security.

www.nb.org uses the TLS 1.2 protocol, for secure online

trade. In this way all Data that

provide, including your credit card number, name

and your address so that they cannot be decrypted or

change during their transfer to the Internet.

Additionally, the information used to identify you as a user

account are two: the Login Code (Username) and the Personal Secret

Security Code (Password). Each time you enter your details, you

access to your personal account is provided. The specific process

is achieved securely through encryption during their transfer to

internet and the servers of the Company. By the same standards, it is given to you

the ability to change your Personal Secret Security Code (Password)

as often as you wish. After entering the desired code, the new

code is coded and stored in the Company’s systems. For the reason

this, the only one who knows your code is you and you are exclusive

responsible for maintaining the confidentiality of the code from third parties.

These measures are reviewed and amended when deemed necessary.

18. Unsolicited Commercial Communication

Our Company does not permit the use of our website or services to transmit bulk or unsolicited commercial e-mail messages

(spam). Also, we do not allow sending messages to and from customers

us, which use or contain invalid or falsified headings, no

valid or non-existent domain names, origin hiding techniques

of each message, false or misleading information or violate the terms

website usage. We do not allow the collection of addresses in any way

email or general customer and subscriber information

us, through our website or services. We do not authorize or authorize

no attempt to use our services in a way that could harm;

disable, overburden any part of our services or interfere

anyone who wishes to legally use our services.

If we believe that there is any unauthorized or inappropriate use of

any of our services, we may, without notice, at our absolute discretion

discretion to take appropriate measures to block messages

from a specific domain, a message server

email, or an (IP) address. We have the option to delete

any account using our services, which at its absolute discretion

our discretion, transmit or link to the transmission of any messages

that violate this policy.

19. What are your rights?

You have the right to access your Personal Data.

This means that you have the right to be informed by us if we are processing your Data. If we are processing your Data you can ask to be informed

for the purpose of the processing, the type of your Data we hold, to whom

we give, how long we store them, if it is automatically downloaded

decisions, but also for your other rights, such as correction, deletion

data, restriction of processing and submitting a complaint to the Authority

Personal Data Protection.

You have the right to correct inaccurate personal data.

If you find that there is an error in your Data you can submit it to us

request to correct them (e.g. name correction or change update

address).

You have a right to erasure/right to be forgotten.

You can ask us to delete your data if it is not necessary

no longer for the aforementioned processing purposes or wish to

revoke your or where this is the only legal basis.

You have the right to portability of your Data.

You can ask us to receive the Data you hold in a human-readable format

provide or ask us to pass them on to another controller.

You have the right to restrict processing.

You can ask us to restrict the processing of your Data for as long as

time pending consideration of your objections to processing.

You have the right to object and withdraw consent to the processing of

Your data.

You can object to the processing of your Data and we will

stop processing your Data, unless there are other compelling reasons

and legitimate reasons that override your right. If you have declared the

your consent to the collection, processing and use of your data

of a personal nature, you can withdraw your consent at any time

with future effect:

●Choosing not to receive Marketing Communications.

You can opt out of receiving marketing communications by changing your registration

email and sms by clicking the delete link or following the instructions

are included in the message.

●Alternatively you can contact us using the details

communications we give you in term 17 below.

In case we rely on our legitimate interest: In cases where

we process your personal data based on our legitimate interest,

you can ask us to stop for reasons related to personal

your situation. We must then do so if we do not believe we have a legitimate one

compelling reason to continue processing your Personal Data.

20. How can you exercise your rights?

To exercise your rights you can submit a relevant request to us at the email address [email protected] entitled “Exercise of Right” and we will consider it and

we will reply you as soon as possible.

21. Where can you go if we breach the applicable law for the protection of your Personal Data?

You have the right to file a complaint with the Personal Data Protection Authority (1-3 Kifisias postal address, PO Box 115 23, Athens, tel. 210. 6475600,

e-mail address (e-mail) [email protected]), if you consider that the

processing of your Personal Data violates applicable national and

legal regulatory framework for the protection of personal data.

22. Validity of Privacy and Privacy Policy

We update this Privacy Policy whenever necessary. If there are significant changes to the Privacy Policy or the way in which

we use your Personal Data, we will publish on our website the

update this, before the changes take effect and we will notify you

in any convenient way.

We encourage you to read this Policy periodically to

know how your Data is protected.