The present Privacy Policy and Protection of Personal Data Statement and the following Terms of Use of this website www.herakleidon.gr describe the method of data collection from the website, the use of this data by us, as well as the (general) terms of use of this website.
By using the above website of the Herakleidon Museum (hereinafter "the Museum" or "the Shop"), it is considered and presumed that you agree to the practices and procedures for accessing and processing your personal data described in this Policy-Statement, as well as the following Terms of Use of the above websites.
Privacy Policy and Protection of Personal Data
The Herakleidon Museum Shop (hereinafter "the H.M. Shop" or "the Museum" or "the Shop") always with the principle of legality and the protection of your Personal Data, as determined by the applicable legal framework, informs you that it implements a Privacy Policy and Protection of Personal Data to protect your personal data in browsing and transactions on our website (www.herakleidon.gr) (hereinafter "the website"). This Policy applies to both the website and all services offered by it.
Protection of Personal Data
The H.M. Shop created this website (www.herakleidon.gr) with the sole purpose of online selling of editions and other items of the Museum's shop (e-shop).
The processing of personal data is carried out in accordance with the provisions of the General Data Protection Regulation (GDPR 2016/679), any specific national and European legislation for certain areas, the current Greek legislation for the protection of personal data, as well as for the protection of personal data and privacy in the field of electronic communications (Law 3471/2006, as applicable) and the decisions of the Hellenic Data Protection Authority (HDPA). The H.M. has adapted to the GDPR framework.
Concept of "personal data"
Personal data are information that identifies you directly or indirectly. Indirectly means in combination with other information, such as your name, postal address, email address, and phone number, or a unique device identification number.
Collection and processing of personal data
The H.M. Shop designed its website so that users can visit and browse it anonymously without having to reveal their identity unless they wish to. Visitors to our website are asked to provide us with their personal data only if they want to purchase items through the H.M. Shop.
Also, the H.M. Shop learns about the web locations and pages visited by users on the herakleidon.gr website to determine the most popular services. This data is used to provide personalized content and advertising on herakleidon.gr to users whose behavior indicates an interest in a specific topic.
The H.M. Shop collects personal data provided by users of the website from the following sources: (1) information that the user provides during registration for the Newsletter, (2) information that the user provides for participation in educational programs, tours, or other actions and events of the Museum, (3) information that the user provides for the electronic purchase from the shop and for the execution of his electronic order, (4) information that the user gives us during his connection through another platform (ios, android applications, Facebook, Google), (5) information regarding the web locations and pages visited by users on the herakleidon.gr website.
When filling out any participation form, as well as for electronic purchases from the store, you will be asked, depending on the service, for your full name, address, postal code, your email address, your phone number, and the payment method for the order. Additionally, more specific information may be requested, such as shipping details for an order, billing information, or other details regarding your order.
Purposes of Personal Data Processing
By processing your personal data, we are allowed to communicate with you via mail, email, phone calls, or text messages (sms) regarding: (i) the delivery of the electronic purchase order to your location, (ii) the confirmation and identification of you as a customer in any necessary case, (iii) sending the Newsletter, (iv) contacting you for conducting research on your opinion about possible new services that may be offered, (v) providing personalized content and advertising on herakleidon.gr to users whose behavior indicates an interest in a specific topic.
You have the option to choose not to receive such communications from the H.M. by sending your request via email to the email address: shop@herakleidon.org.
Use of User Data for Advertising Purposes
For the continuous improvement and enhancement of our services, we may send you marketing messages via email related to the H.M., which may interest you. You can choose the types of communications you want to receive at any time by updating your email preferences. You can also unsubscribe at any time. To stop receiving marketing email messages, follow the instructions in the email message you receive.
Access to Information
Every completion of an electronic order requires the collection of personal information. Your granting of your personal data means that you consent to the use of this data by H.M. employees for the reasons mentioned above. H.M. requires its employees and website maintainers to provide users-customers with the level of security referred to in this Privacy Policy - Personal Data Protection Statement. In no other case can H.M. share your personal information with others without your prior consent unless required by law or court decision. Please note that under specific conditions, the collection, use, and disclosure of your personal data collected online without your prior consent are allowed or required by law or court decision (for example, in the case of a court decision).
H.M. does not distribute electronic addresses or any other information concerning its users and customers to any other organization or partner not connected with the Museum, except to direct collaborators in the process of serving electronic orders.
Use of Personal Data
We will use your personal data exclusively for the purposes described above. We do not collect or process more or other types of personal data than necessary to fulfill the above purposes. Also, the P.M.H. does not sell, lease, or rent user-customer lists to third parties. We will use personal data only in accordance with the terms of this Privacy and Personal Data Protection Policy, unless you have specifically provided your consent for another use of your personal data. If we intend to use your personal data, which we process, for purposes other than those disclosed to you in this Policy, we will inform you in advance and will use your personal data for a different purpose only with your prior consent.
Also, P.M.H. does not use or disclose sensitive personal information, such as race, religion, or political beliefs, without your explicit consent.
Legal obligations and legal defense
We may need to use and retain personal data for legal and compliance reasons, such as the prevention, detection, or investigation of a crime, prevention of loss, fraud, or any other misuse of our services and information systems. We may also use your personal data for internal and external audit requirements, information security purposes, or to protect or exercise our rights, privacy, security, our property, or the rights of other individuals.
Non-personal identification information
P.M.H. also collects anonymous demographic information, which is not unique to you, such as postal code, age, gender, preferences, interests, and favorites. Automatically collected non-personal identification information by P.M.H. may include: IP address, browser type, domain names, access times, and referral website addresses. This information is used by P.M.H. for the operation of the service, maintaining the quality of the service, and providing general statistics regarding the use of P.M.H.'s location.
Furthermore, regarding the use of our website www.herakleidon.gr, the following features apply, and the following privacy mechanisms are in place:
Cookies
The P.M.H. website (www.herakleidon.gr) has the ability to use cookies as part of the facilitation and operation of its services through its website. Cookies are small files (text files) sent and stored on the user's computer, allowing websites like www.herakleidon.gr to operate smoothly and without technical glitches, to collect multiple user choices, recognize frequent users, facilitate their access, and collect data to improve the content of the P.M.H. website. Cookies do not harm the users' electronic computers or the files stored on them. We use cookies to provide information about P.M.H. and to process electronic purchases. Also, our cookies allow us to present you with advertising and educational content related to your interests and needs. Please be aware that cookies are absolutely necessary for the correct and uninterrupted operation of the www.herakleidon.gr website.
Cookies are divided into the following categories:
- Necessary cookies: Allow the execution of basic site functions. Without these necessary cookies, the smooth operation of the website is directly affected, limiting your personal browsing experience as well as basic e-commerce functions.
- Functionality cookies: Remember your preferences while browsing our website, so we can suggest the right products or services based on your needs, making it much easier for you to find what you are looking for.
By entering the site, you accept the use of the above necessary cookies and functionality cookies.
- Performance cookies: Performance cookies collect information about how visitors use our website. They allow us to see which pages visitors visit most often, inform us if they encounter any problems while navigating, etc. These cookies do not collect information that identifies the visitor, as the information is aggregated and therefore anonymous. They are used only to improve the operation of the www.herakleidon.gr website.
Correction, Modification, or Deletion of Information
Herakleidon Museum allows users of the website to correct, change, complete, or delete data and information they have provided to Herakleidon Museum. If you choose to delete information, Herakleidon Museum will take action to delete that information from its files immediately. To protect user safety and security, Herakleidon Museum will try to verify that the person making the changes is indeed the same person as the user. To access, change, or delete your personal data, to report issues related to the website's operation, or to ask any questions, please contact Herakleidon Museum via email at: shop@herakleidon.org.
Transaction Security
Herakleidon Museum is committed to ensuring the security and integrity of the data it collects from users of its website. Herakleidon Museum has adopted procedures to safeguard the personal data that users provide to its website or through any other means (e.g., by phone). We apply the appropriate level of security and have therefore implemented reasonable physical, electronic, and administrative procedures to ensure the security of the data collected from accidental or unlawful destruction, loss, alteration, unauthorized disclosure, or access to personal data transmitted, stored, or otherwise processed. These procedures also help to certify that this information is accurate and used correctly. The exchange of personal and private data between the website and users occurs using the SSL (Secure Socket Layer) protocol for secure communication, where data is encrypted and protected by digital signatures. (From another site: Your connection to this is secure because it uses 256-bit TLS technology. TLS technology relies on a key code to encrypt data before it is sent via the (TLS) connection. Security checks between data and the Server are based on the unique key code, ensuring the integrity of the communication. The browsers Netscape Navigator, Internet Explorer, Mozilla Firefox, Opera, Safari support the TLS protocol and are recommended for connecting to the Herakleidon Museum website.)
Access to your personal data is granted only to Herakleidon Museum staff or third-party associates directly involved with Herakleidon Museum, which is required to have such information to serve electronic orders or purchases. In these cases, your unique personal data (email, name, address, phone number) is not transferred to the third party. Additionally, Herakleidon Museum may share data with trusted partners to assist in conducting statistical analyses, sending emails or postal messages to provide customer support, or to arrange deliveries. All third parties are prohibited from using your personal data except to provide these services to the website and must maintain the confidentiality of your information.
In case of a data breach containing personal data, the Hellenic Data Protection Authority (HDPA) will comply with the current legislation regarding the notification of the breach.
Your legal rights
As a data subject, you have specific legal rights regarding the personal data we collect from you.
The following list provides information about your legal rights arising from applicable data protection laws:
- Right to Withdraw Consent: Where the processing of personal data is based on your consent, you have the right to withdraw this consent at any time.
- Right to Rectification: You can request us to correct the personal data concerning you. We make reasonable efforts to keep your personal data accurate, complete, and up-to-date based on the most recent information available to us.
- Right to Restriction: You can request the restriction of the processing of your personal data if: a) you contest the accuracy of your personal data for a period enabling us to verify its accuracy, b) the processing is unlawful and you oppose the erasure of your personal data, requesting instead the restriction of its use, c) we no longer need your personal data, but you need it for the establishment, exercise, or defense of legal claims, or d) you have objected to processing pending the verification of whether our legitimate grounds override yours.
- Right to Access: You can request information about the personal data we hold about you, including details about the categories of personal data we have, for what purpose they are used, from where they were collected if not directly from you, and to whom they have been disclosed, on a case-by-case basis. You can receive, free of charge, a copy of the personal data we hold about you. We reserve the right to charge a reasonable fee for any further copies you may request.
- Right to Data Portability: Upon your request, we will transfer your data to another data controller, where technically feasible, provided that the processing is based on your consent or is necessary for the performance of a contract. Instead of receiving a copy of your personal data, you can ask us to directly transfer the data to another data controller you specify.
- Right to Erasure: You can request the erasure of your personal data when: a) the personal data are no longer necessary in relation to the purposes for which they were collected or otherwise processed, b) you withdraw your consent, and there is no other legal ground for the processing, c) you object to the processing, and there are no overriding legitimate grounds for the processing, d) your personal data have been unlawfully processed unless processing is necessary for compliance with a legal obligation which requires processing by us, particularly for legal obligations regarding the fulfillment of duties, supporting, exercising, or defending legal claims.
- Right to Object: You can object, at any time, to the processing of your personal data due to your particular situation, provided that the processing is not based on your consent but on our legitimate interest or the legitimate interest of a third party. In this case, we will no longer process your personal data unless we can demonstrate compelling legitimate grounds and an overriding interest for processing or for the establishment, exercise, or defense of legal claims. If you object to the processing, please clarify whether you wish to delete your personal data or restrict its processing by us.
- Right to Lodge a Complaint: In case of an alleged violation of privacy legislation, you have the right to lodge a complaint with the supervisory authority for data protection in the country where you live or where the alleged violation occurred.
Please note:
- Timeframe: We will attempt to fulfill your request within 30 days. However, the deadline may be extended for specific reasons related to the particular legal right or the complexity of your request.
- Access limitation: In some cases, we may not be able to provide access to all or some of your personal data based on legal provisions. If we deny your request for access, we will inform you of the reason for this denial.
- Non-recognition: In certain situations, we may not be able to locate your personal data due to the identification details you provide in your request. Two examples of personal data we cannot search for when you provide your name and email address are: a) data collected through browser cookies, b) data collected from social networks if you have posted a comment under a pseudonym unknown to us.
- In such cases, where we cannot identify you as the subject of the data, we cannot comply with your request to exercise your legal rights, as described in this article, unless you provide additional information that allows us to identify you.
- Exercise of your legal rights: In order to exercise your legal rights, please contact us in writing via email at: info@herakleidon.org. You also have the right to lodge a complaint with the Hellenic Data Protection Authority located in Athens, 1-3 Kifisias Ave., 115 23, tel. 210 6475600, fax 210 6475628, complaints@dpa.gr, if you believe that the processing of your Personal Data violates the current national and regulatory framework for the protection of personal data. You can find more information on submitting a complaint at the following link: www.dpa.gr
Retention of your personal data
In general, we will delete the personal data we collect from you when it is no longer necessary to achieve the purposes for which it was originally collected. However, we may be required to store your personal data for a longer period due to legislative provisions or a court decision.
Additionally, we will not delete all your personal data if you have requested us not to contact you in the future. For this purpose, Herakleidon maintains records containing information about individuals who do not wish to be contacted in the future (e.g., via mass email messages). At any time, upon your request, the specific personal data will be permanently deleted by us.
Please direct questions regarding data protection and any requests to exercise your legal rights to the email address: shop@herakleidon.org
Periodic Changes
As Herakleidon expands, updates, and improves its website, products, and services related to it, it will also renew this policy. We recommend that you read this policy regularly to stay informed about any changes to the content of this privacy protection policy. This policy will be modified from time to time without prior notice to users.
Acceptance of the Privacy and Personal Data Protection Policy and the relevant procedures applied by Herakleidon
By using this website, it is considered and presumed that you fully accept and consent to this Privacy and Personal Data Protection Policy, as well as the Terms of Use of the website, as quoted below.
Contact Information
Herakleidon welcomes your comments and feedback on this Privacy Statement. If you believe that Herakleidon has not complied with this Policy, please contact the sales department at 210 34 61 981. We will make every effort to promptly address any issues.