Personal Data Protection Policy

The following document constitutes the Personal Data Protection Policy of the company named “PALTSOGLOU BROS OE.”

Please take a moment to familiarize yourself with how personal data is processed and the privacy policies adhered to by our company, legally operating under the name “PALTSOGLOU BROS OE” and the trade name “PALXIL,” with its headquarters located at the 5th km of the Neapolis-Kozani National Road.

Our company (hereafter referred to as “the Company,” “we,” or “us”) acts as the Data Controller for personal data, meaning we collect, store, maintain, and use your personal data only when necessary.

1. The Company Website

The official website of the Company is https://palxil.com/, through which you can access information about our products, updates, and contact details.

2. About Personal Data (Definitions and Explanations)

Below are explanations and definitions related to personal data and applicable legislation:

"Personal Data" refers to information or details about individuals, such as their full name, identification details, postal address, email address, and contact information, which can identify or be used to identify them. From here on, it will be referred to as "Personal Data" or "Data."

"Processing of Personal Data" means any operation or series of operations performed on personal data, with or without automated means. This includes actions such as collection, recording, organization, structuring, storage, adaptation or alteration, retrieval, consultation, use, disclosure by transmission, dissemination, or any other form of making data available, alignment, combination, restriction, erasure, or destruction.

Processing of your personal data may be mandatory or optional, depending on the intended purposes.

3. What Personal Data We Process

a) Data required for payment methods and other transactions with the Company.

b) Data collected via cookies (see also Cookie Policy). These data are collected to recommend products typically chosen by you. You can opt-out of this data collection if you wish.

c) Data on website traffic collected via cookies. See our Cookie Policy on the website for details.

4. How Your Data Is Used

Your personal data is used exclusively for the purposes for which it was originally collected. Specifically, this includes: Processing purchases and product orders, fulfilling contractual obligations. Complying with legal obligations, such as tax laws. Addressing or defending legal claims. Communicating with you regarding contractual obligations. Providing personalized recommendations and offers based on your preferences

5. Legal Basis for Processing Your Data

Your personal data is processed solely for the aforementioned purposes based on the legal grounds outlined in Article 6 of the General Data Protection Regulation (GDPR): Fulfillment of contractual obligations. Compliance with legal obligations (e.g., tax compliance). Legitimate interests of the Company. Your consent, which must be explicit and affirmative when no other legal basis applies.

6. Sharing Your Personal Data

Personal data is shared only when necessary and solely for fulfilling the above processing purposes. We always ensure the necessary security measures are in place when sharing data. Your data may be shared with: Third-party service providers processing data on behalf of the Company, such as credit/debit card payment processors, delivery services, email distribution systems, and promotional campaign managers.

When processing is outsourced, all confidentiality and privacy obligations are maintained between the Company and the data processor.

7. Data Retention Period

Your personal data is retained only for as long as required to achieve the purposes mentioned above. Once the retention period ends, the data is destroyed. If the legal basis for processing is consent, processing ceases upon withdrawal of that consent.

8. Data Security

Ensuring the security of your personal data is a top priority. We safeguard your data stored with us through technical and organizational measures to prevent loss or misuse by third parties.

Data transmissions are encrypted using SSL (Secure Sockets Layer) technology, recognizable by the padlock icon in your browser.

To ensure long-term data protection, technical security measures are regularly monitored and updated to align with current technology standards.

9. Your Rights Regarding Your Personal Data

Under applicable national and EU legislation, you have the following rights:

  • Access to your data.
  • Correction of inaccurate data.
  • Deletion of data (where applicable).
  • Data portability.
  • Restriction of data processing.
  • Withdrawal of consent (where applicable).

You can exercise your rights by contacting the Company:

10. Applicable Law

The applicable law regarding personal data is the General Data Protection Regulation (EU Regulation 2016/679) and Greek Law 4624/2019.

11. Where to Lodge Complaints

If you believe your personal data has been processed in violation of applicable law, you can file a complaint with the Hellenic Data Protection Authority: Address: 1-3 Kifissias Avenue, 115 23, Athens, Greece Phone: +302106475600 Email: contact@dpa.gr

12. Modifications to the Privacy Policy

The Company reserves the right to modify this privacy policy as necessary, always in compliance with the GDPR and other relevant laws. We encourage you to review this policy periodically and contact us for any questions or clarifications.

With this policy, the Company (as Data Controller) fulfills its obligation to inform you under Articles 13 and 14 of the GDPR

Thank you for taking the time to read this policy.