Privacy and Cookie Policy
About Us
Our company operates under the registered name “Theoprofil,” founded in 2002. We specialize in the trade of polyurethane panels, metal sheets, and the manufacturing of machinery for producing polyurethane panels, as well as custom parts and accessories related to panels.
Personal Data and Privacy
Data Collection
Situations in which you may be asked to provide your data and the types of data collected:
- When purchasing products from our online store, via telephone order or email order.
- Personal data we may request includes: name, address, email address, phone number, and other contact details.
- Access to our online store, subscription to our social media pages, and participation in our promotional campaigns (newsletter).
- Personal data collected: account information such as username, device details, IP address, cookies data, and location. Optionally (for newsletter subscription), we ask for your full name and whether you are a professional or a private individual; this helps us send you relevant materials.
Data Processing
Your data is processed for order and payment handling, refunds, and communication with you (contact occurs only upon your request).
Legal Basis for Data Processing
We may use your data in the following cases:
- To communicate with you regarding your requests, respond to questions, comments, and complaints, and to manage your orders and purchases.
- To inform you about our products and offers (subject to your consent).
- To analyze purchasing trends in order to improve and enhance the range of products we offer.
- To prevent fraud and other criminal activities.
- To protect network and information security, taking measures to safeguard your information against loss, damage, theft, or unauthorized access.
Data Retention Period
Retention period for inactive accounts: 3 (three) years
Retention period for pending orders: 1 (one) month
Retention period for failed, canceled, and completed orders: 5 (five) days
Data related to your order invoices are retained as long as required by law.
Who May Have Access to Your Data
Your personal data is stored in our company’s database and is accessible only to authorized personnel. Data you provide when subscribing to our newsletter is stored in the email marketing service database we use, which complies with the standards of the General Data Protection Regulation (GDPR).
Your personal data may be disclosed if requested by fraud prevention organizations (such as OLAF), the Cyber Crime Unit, Police, or other authorities.
Data Transfer Outside the EU and EEA
We do not transfer your data outside the EU and EEA.
Your Rights
According to the General Data Protection Regulation (GDPR) effective since May 25, 2018, you have the right to:
- Access information about which data we have collected, for what purpose, and how long it will be retained.
- Request correction of any inaccurate or incomplete personal data concerning you.
- Request deletion of your personal data when it is no longer necessary for the purpose it was collected, or if it has been processed unlawfully in violation of the GDPR.
- Withdraw your consent to the processing of your data at any time.
- Request restriction or blocking of data processing if you dispute the accuracy of the data, believe the processing is unlawful, or no longer wish to receive promotional messages.
- Receive your personal data in a machine-readable format and transfer it to another data controller.
If you wish to exercise these rights, please contact us via our contact form. Submission of requests is free of charge.
Learn more at the Hellenic Data Protection Authority’s website: https://www.dpa.gr/
Security Measures for Protecting Your Data
Our company takes all necessary measures to protect your data from loss, damage, alteration, or unauthorized access by third parties.
Links to Other Websites
While browsing our websites, you may encounter links to third-party sites. Please review their privacy policies separately.
Data Collection from Our Site Plugins
Akismet: We collect information about visitors who comment on sites using the Akismet anti-spam service. The data collected depends on how Akismet is configured but generally includes the commenter’s IP address, user agent, referrer URL, website URL, and any additional data provided by the commenter such as name, email, and comment content.
YITH WooCommerce Live Chat: This plugin uses Firebase database, with a designated Data Protection Officer (DPO). Through the chat popup on our website, users can contact a representative or leave an offline message. During chat sessions, the following data is temporarily stored in Firebase: username, email address, and client IP address. For details, please refer to the Firebase Privacy Policy. After the chat ends, all data is deleted from Firebase and not stored elsewhere.
PayPal: Please refer to PayPal’s privacy policy here: https://www.paypal.com/us/webapps/mpp/ua/privacy-full
Cookie Policy
What Are Cookies and What Information Do They Collect
“Cookies” are small files containing information that a website’s server stores on a user’s computer so that each time the user visits the site, the website can retrieve this information and provide related services. Examples include user preferences such as selections of buttons, searches, ads, etc.
Last updated: 7/5/2019