Select your language

Select your language

Tel:+30 2106001670

PRIVACY POLICY AND PERSONAL DATA PROTECTION

INWEBPRO SINGLE-MEMBER P.C.

1. Introduction

1.1 This Privacy Policy concerns the processing of personal data by "INWEBPRO – Innovative Web Provider INTERNET SERVICES information systems Single-Member P.C." (hereinafter the "Company" or "INWEBPRO"), based in Chaidari, Attica, at 73A Iroon Polytechniou Street, with Tax Registration No. 997778410, Tax Office KEFODE Attica, tel. +30 210 6001670, in the context of the operation of the website www.inwebpro.gr and the provision of hosting and domain name registration services.

1.2 The Company acts as Data Controller for personal data it collects directly from its Customers/users (e.g. registration and billing details). For data that Customers store or manage through hosting services (e.g. databases, email accounts of third-party websites), the Company acts as a Data Processor on behalf of the Customer, who remains the Data Controller for such data.

1.3 This Policy supplements the General Terms and Conditions for the Use of Hosting and Domain Name Registration Services and forms an integral part thereof.

2. Legal Framework

2.1 The processing of personal data by the Company is governed by the General Data Protection Regulation (EU) 2016/679 (GDPR), Law 4624/2019, Law 3471/2006 on the protection of personal data in electronic communications, as well as any other applicable national or EU legislation.

3. What Data We Collect

3.1 Identification and contact details: full name or company name, address, Tax Registration No./Tax Office (for billing), email, telephone.

3.2 Account details: username, password (encrypted), order and service renewal history.

3.3 Payment details: transaction details via credit card, PayPal or bank deposit (full card details are not stored by the Company, only by the payment provider).

3.4 Technical data: IP address, server access log files, hosting resource usage data.

3.5 Domain name data: Registrant details, as required by the regulations of the relevant Registries (e.g. the .gr Registry, ICANN for international domains).

4. Purposes and Legal Basis of Processing

4.1 Performance of a contract (Article 6(1)(b) GDPR): provision of hosting services, registration/renewal of domain names, billing, technical support.

4.2 Legal obligation (Article 6(1)(c) GDPR): compliance with tax/accounting legislation, responding to requests from judicial or administrative authorities.

4.3 Legitimate interest (Article 6(1)(f) GDPR): network and systems security, fraud/abuse prevention, service improvement.

4.4 Consent (Article 6(1)(a) GDPR): sending newsletters or promotional messages, where required by law.

5. Data Retention Period

5.1 Data is retained for as long as the Customer maintains an active account, and after account termination/deletion for the period required by tax legislation (typically up to 5 years for accounting records), or for as long as required for the Company to defend its legitimate interests before judicial or administrative authorities.

5.2 Access log files are retained for a limited period, as necessary for security purposes and troubleshooting.

6. Recipients of Data

6.1 The Company does not transfer personal data to third parties, except:

a) Payment providers (banks, PayPal, card processing companies) for completing transactions.

b) Partner domain name registrars (e.g. for .com/.net/.org/.biz/.info domains), to the extent required for registration.

c) Infrastructure/technical support providers acting as data processors under confidentiality agreements.

d) Public authorities, where required by law, a court decision, or a decision of a competent authority.

6.2 The Company does not sell or rent personal data to third parties for commercial purposes.

7. International Transfers

7.1 Where a service (e.g. registration of international domains) requires the transfer of data outside the European Economic Area, the Company ensures that appropriate safeguards are in place (e.g. the European Commission's Standard Contractual Clauses).

8. Rights of Data Subjects

8.1 The Customer/user has the right to:

a) Access the data held about them.

b) Rectify inaccurate or incomplete data.

c) Erasure ("right to be forgotten"), where this does not conflict with a legal obligation of the Company.

d) Restrict processing.

e) Data portability for data they have provided.

f) Object to processing, where it is based on legitimate interest.

g) Withdraw consent at any time, where processing is based on it.

8.2 To exercise the above rights, the data subject may contact the Company at: , or via the contact form on www.inwebpro.gr.

8.3 The data subject has the right to lodge a complaint with the Hellenic Data Protection Authority (www.dpa.gr), if they believe that the processing of their data violates applicable legislation.

9. Data Security

9.1 The Company implements appropriate technical and organizational measures to protect personal data against unauthorized access, loss, destruction or alteration, such as password encryption, restricted access for authorized personnel, and regular backups.

9.2 In the event of a personal data breach likely to result in a risk to the rights and freedoms of data subjects, the Company will notify the Data Protection Authority and, where required, the affected data subjects, in accordance with Articles 33-34 of the GDPR.

10. Cookies

10.1 The website www.inwebpro.gr uses cookies for its operation, to improve user experience and, where applicable, for statistical/advertising purposes. Detailed information is provided in the Company's separate Cookie Policy [link to be added].

11. Amendments

11.1 The Company reserves the right to amend this Privacy Policy, notifying users via its website. Users are advised to periodically check this page.

12. Contact Details

12.1 For any question regarding this Privacy Policy, you may contact us at tel. +30 210 6001670 or by email at