Privacy Policy
Effective Date: 07/14/2025
1. Introduction
At [Your Business Name] (“we,” “us,” or “our”), we are committed to protecting your personal data and respecting your privacy. This policy explains how we collect, use, and safeguard your information when you visit our website and purchase our Cretan traditional gift boxes.
2. What Information We Collect
We may collect and process the following personal data:
-
Contact Details: Name, address, email, and phone number.
-
Order Information: Products purchased, order history, delivery address, payment method (note: we do not store full payment card details).
-
Account Details: If you create an account, your username and password.
-
Communication: Any information you provide when contacting us (e.g., emails, messages).
-
Website Usage Data: IP address, browser type, device information, and browsing behavior collected through cookies (see our Cookie Policy).
3. How We Use Your Information
We use your personal data for the following purposes:
-
To process and deliver your orders.
-
To communicate with you regarding your orders, inquiries, or complaints.
-
To improve our website and services.
-
To send you marketing emails (only if you have given your consent).
-
To comply with legal obligations.
4. Legal Basis for Processing
We process your data only when:
-
It is necessary for the performance of a contract (e.g., to fulfill your order).
-
We have your consent (e.g., for marketing).
-
It is necessary for compliance with a legal obligation.
-
It is in our legitimate interest (e.g., to prevent fraud).
5. How We Share Your Information
We do not sell your personal data. We may share your information with:
-
Service providers (e.g., payment processors, delivery companies) to fulfill your order.
-
Professional advisers (e.g., accountants, lawyers) when necessary.
-
Authorities if required by law.
All service providers are required to protect your data and use it only for the services they provide to us.
6. How We Protect Your Information
We use appropriate technical and organizational measures to safeguard your personal data, including secure servers, encryption, and access controls.
7. How Long We Keep Your Information
We retain your personal data only as long as necessary to fulfill the purposes described above, comply with our legal obligations, or resolve disputes.
8. Your Rights
Under the General Data Protection Regulation (GDPR), you have the right to:
-
Access your personal data.
-
Correct or update your data.
-
Request deletion of your data.
-
Object to or restrict the processing of your data.
-
Withdraw your consent at any time (for marketing or other consent-based processing).
-
Lodge a complaint with your local data protection authority.
To exercise your rights, contact us at [your email address].
9. Cookies
Our website uses cookies to enhance your experience. You can set your browser to refuse cookies, but some site features may not function properly. For more information, see our Cookie Policy.
10. Changes to This Privacy Policy
We may update this policy from time to time. Any changes will be posted on this page with an updated effective date.
11. Contact Us
If you have any questions about this Privacy Policy or your personal data, please contact us:
-
Email: dpo[at]cretabox[dot]com
-
Address: 8, Agiou Nikolaou, Souda, Chania, Crete, Greece P.C.73 200