PRIVACY POLICY
Last updated: 15.12.2025
This Privacy Policy describes how Leonidas Vassilopoulos, a sole proprietorship based in Metonos 2, Athens 104 36, Greece (“we,” “us,” “our”), collects, uses, and protects your personal information when you use our website and services. We comply with the EU General Data Protection Regulation (GDPR) and applicable privacy laws.
1. Data Controller
The data controller responsible for your personal data is:
Leonidas Vassilopoulos
Metonos 2, 104 36 Athens, Greece
Email: leonidasvassilopoulos@gmail.com
2. Personal Data We Collect
We may collect the following information when you use our website, place an order, or create an account:
Full name
Email address
Phone number
Billing and shipping address
Payment information (processed securely via third-party providers)
Analytics data (website usage, device information)
We do not collect or process sensitive personal data.
3. How We Collect Personal Data
We collect data:
When you place an order
When you create a user account
Through essential and analytics cookies
Through WooCommerce order processing
Through PayPal payment processing
Through Google Analytics
4. Legal Basis for Processing
We process personal data under the following legal bases:
Contractual necessity: To process and fulfill orders
Legal obligation: For tax and accounting compliance
Legitimate interests: Website operation, fraud prevention, analytics
No automated decision-making or profiling is used.
5. How We Use Your Information
We use your data for:
Order processing and delivery
Creating and managing your user account
Customer support and communication
Website functionality and analytics
Improving user experience
We do not use your data for marketing or email newsletters.
6. Data Sharing with Third Parties
We only share data with trusted service providers necessary for operating our business:
WooCommerce (e-commerce platform)
PayPal (payment processing)
Google Analytics (analytics)
CookieYes (cookie consent management)
These providers process data in compliance with GDPR and store data within the EU or use GDPR-compliant safeguards.
We do not sell or rent personal data.
7. Data Storage & Retention
Personal data is stored within the European Economic Area (EEA).
Retention periods:
Order records: 7–10 years (legal obligation)
User accounts: Until deleted by the user
Analytics data: According to Google Analytics retention settings
8. Your GDPR Rights
You have the right to:
Access your data
Correct inaccurate data
Request deletion of your data (where applicable)
Restrict or object to processing
Export your data (data portability)
To exercise your rights, contact:
leonidasvassilopoulos@gmail.com
9. Security Measures
We implement technical and organizational measures to protect personal data, including encryption, secure servers, and restricted access.
10. Cookies
We use the following cookie categories:
Strictly necessary cookies
Functional cookies
Preference cookies
Analytics cookies
See our Cookie Policy for details.
11. Changes to This Policy
We may update this Privacy Policy periodically. Updates will be posted on this page.
