Πολιτική Απορρήτου

Privacy, Security and Personal Data Protection Policy

Please read carefully the following terms of our privacy, security and personal data protection policy before visiting and using our website, in order to be informed about which data we collect during your use of this website, for what purposes and on what legal basis, how such data is protected, and what your rights are regarding this use.

SyneΘesis takes all necessary technical and operational measures to ensure the lawful processing, security and protection of your personal data, which we collect and are required to manage in the context of our activities, regardless of the capacity under which you communicate or cooperate with us, including but not limited to website visitors, collaborating entities, individuals, and participants in our activities. For this reason, we inform you that we process this information strictly in accordance with all conditions set out in Greek and European law, especially the provisions of the General Data Protection Regulation (GDPR 2016/679), Law 4624/2019, and the decisions of the Hellenic Data Protection Authority (HDPA), and we protect the privacy of your personal data using secure technical means.

What Are Personal Data

Personal data or personal information refers to any information relating to an identified or identifiable natural person (“data subject”). An identifiable natural person is one who can be identified directly or indirectly, in particular by reference to an identifier such as a name, identification number, Tax Identification Number (AFM), Social Security Number (AMKA), email address, landline or mobile phone number, device identifiers (computer, mobile phone), browsing history, or any other information that allows unique identification in accordance with the General Data Protection Regulation (GDPR 2016/679), Law 4624/2019, applicable Greek legislation, and the decisions of the HDPA.

Principles of Personal Data Collection and Processing

SyneΘesis applies the Processing Principles set by data protection legislation, specifically the principles of lawfulness, fairness, transparency, purpose limitation, data minimization, accuracy, storage limitation, integrity, confidentiality and accountability.

Lawful Processing

According to Article 6(1) of the GDPR, the processing of personal data is lawful only if at least one of the following applies:
a) you have given your consent, or in the case of a minor, consent has been provided by the person holding parental responsibility;
b) processing is necessary for the performance of a contract to which you are party or to take steps at your request prior to entering a contract;
c) processing is necessary for SyneΘesis to comply with a legal obligation;
d) processing is necessary to protect your vital interests or those of another natural person;
e) processing is necessary for the performance of a task carried out in the public interest;
f) processing is necessary for the purposes of the legitimate interests pursued by SyneΘesis or a third party.

What Personal Data We Collect, How We Collect It, For What Purpose and the Legal Basis

SyneΘesis collects only the personal data you provide to us. We always request the minimum legally required personal data for your access to our electronic platforms, to communicate with us or to participate in the events we organize.

However, upon entering our website, and in order to technically enable your navigation and use of the site, it is possible that we collect and store information (such as your device’s IP address, cookies or RFID tags) that may lead to your identification.

Specifically, we collect personal data in the following ways and for the following lawful purposes:

  • When you visit our website, we automatically receive, after your explicit consent via cookies, information from your device such as your browser type and version.
  • When you complete a registration/participation form for activities (e.g. conferences) and provide personal data such as name, surname, date of birth, etc.
  • When you contact us via telephone, email, social media pages we manage, or via our website by submitting a contact form.
  • When you participate in activities organized by our company, adults for themselves and minors via parents/guardians provide, with explicit written consent (registration forms, participation declarations), the right to collect audiovisual material (photos, videos) and material produced by written or oral work presented. Such material may be posted on our website or included in printed publications distributed to participants, with clear reference to personal details (name, role, age, school) of creators/participants.
  • When you voluntarily subscribe to printed or electronic mailing lists to receive newsletters, SMS, or other informational materials, or when you participate in competitions, surveys or questionnaires.

Newsletter Delivery

With your consent, we will use your personal data, preferences, and transaction information to update you via email, online services, SMS/Viber, or social media about our services, activities and events. You may withdraw your consent at any time.

SyneΘesis uses your personal data only for the lawful purposes described above, primarily based on your explicit consent, which you may freely withdraw at any time.

Data Controller & Data Protection Officer

Data Controller: SyneΘesis, 21 Georgiou Tersteti, synethesis.gr, Tel: +30 6940765009

Data Protection Officer: SyneΘesis, 21 Georgiou Tersteti, synethesis.gr, Tel: +30 6940765009

Retention of Personal Data

Personal data collected and processed is stored in secure electronic files fully compliant with applicable legislation for the duration of your mandate or for as long as required by the processing purpose and any other lawful, related purpose.

Your Rights Regarding Personal Data

SyneΘesis applies the GDPR principles and you have the following rights:

  • Right of access
  • Right to rectification
  • Right to erasure
  • Right to restrict processing
  • Right to object
  • Right to data portability
  • Right to withdraw consent at any time

Security of Personal Data – Recipients – Consent

SyneΘesis ensures that your personal information is transmitted, stored and processed according to appropriate international security standards and procedures, using suitable technical safeguards.

As a rule, SyneΘesis is the sole recipient of your personal data and does not transfer it to third parties unless required for your participation in our activities and only with your explicit consent. Transfers to other EU countries may occur as required by law.

Transfers outside the EU may occur but SyneΘesis commits to protecting your data according to this Privacy Policy and applicable legislation.

Data may also be disclosed to public authorities when required by law.

Servers storing personal data are access-controlled and protected against unauthorized access, misuse, alteration or destruction. However, although we take all necessary measures, absolute security cannot be guaranteed.

Visitors must notify us immediately of any unlawful or inappropriate use of personal data related to the website.

Links to Third-Party Websites

Our website may contain links to third-party websites not controlled by SyneΘesis. We bear no responsibility for their content, actions or policies. Users should consult their privacy policies.

SyneΘesis also maintains social media platforms (Facebook, Instagram, TikTok). Posting data there is at your own responsibility and governed by the platforms’ policies.

Unsolicited Commercial Communication (Spam)

SyneΘesis does not allow the use of our website for the transmission of mass or unsolicited emails. Any unauthorized or inappropriate use of our services may result in immediate measures, including blocking or deletion of accounts.

Validity of the Privacy and Security Policy

This Policy is published by SyneΘesis and may be revised periodically. You are responsible for checking the applicable terms and Privacy Policy before using our website.