In compliance with the current legal framework and the General Data Protection Regulation 2016/679 of the European Parliament and of the European Union Council, known as GDPR, which enhances the protection of
personal data throughout the European Union, we have taken all steps necessary to ensure the secure processing, storage and protection of your personal data.This privacy policy is addressed to customers of our physical store and users of our Website www.vayavintage.com
Whenever you provide us with your personal information, we use it in accordance with the General Data Protection Regulation (GDPR) and applicable data protection laws and for the purposes set out in this policy, the registration forms you have completed and all relevant terms and conditions.
 
1. Who collects your personal data?

The company with the distinctive title "Vaya Vintage" is the controller of the processing of the personal data you provide to us and is responsible for the security of your data under the Personal Data Protection Act.For any issue concerning this privacy policy and the processing of your personal data, you can contact us by sending an email to info@vayavintage.com

2. What personal data do we collect?

- Contact details such as first name, surname, address, email address, telephone number, postcode.

- Account information such as first name, last name, address, email address, phone number, postcode, date of birth, gender, city, country and user name.

- Payment information and history

- Order information

- Purchase history

- Delivery history

- Activity log information

- IP address

- While browsing the www.vayavintage.com Website we collect:Internet Protocol Address, navigation data within the Website, Preference and Service Information, User generated file.

- Data related to electronic communication under the terms and conditions of this policy in order to respond to requirements and requests and to improve the services offered, but also to communicate directly with you about information that may be of interest to you.

3. Why do we use your personal data?

We use your personal data:

- To manage your online purchase, i.e. to process your orders and returns through our online services and to send you notifications about the delivery status or in case of any problems during the delivery of your items.

- To process your payments.

- To manage complaints about our products.

- To offer you different alternative payments.

- To identify you and verify that you are over 16 years of age.

- To improve your shopping experience and our services.

- To send promotional emails about new products, special offers, our news or other information we think you may find useful, using the email addresses you have provided to us.

- To manage and analyse our customer base (the
buying behaviour) in order to improve the quality, variety, and
availability of the services we offer

- To conduct customer satisfaction surveys
our

- For the administrative organization and operation of our company.

- For promotional activities

- To enhance our service experience

- To fulfil an obligation under law; or
contract

- To send you information newsletters with articles about our services.

4. How long do we keep your data?

Your personal data is retained to fulfil the purposes
set out in this Policy and if you request us to do so we may remove all information we hold (unless a longer retention period is required by applicable law).
Our company may also retain personal data after the fulfilment of the purposes of collection and processing, for use: before tax, social security authorities, auditing authorities, and any other public authority or competent Court, until the limitation period provided by law in each case or for as long as we consider it necessary to defend our rights and legitimate interests. After the expiry of the retention period, your personal data will be deleted from our records and system, in compliance with
our company's policy and always provided that its retention is no longer required for the fulfilment of the stated purposes.

5. Who has access to your personal data?

In order to provide you with certain services, we need to share your personal data with some of our partners. These include delivery, payment and marketing service providers, the web hosting service provider with whom we have a relationship
We will never transfer, sell, rent or trade our customers' data to other organisations for marketing purposes. We may share your data with government agencies, regulatory bodies, law enforcement agencies, courts, banking institutions and insurers in circumstances where we are required to do so:

- To comply with our legal obligations.

- To exercise our legal rights.

- to prevent, detect, investigate crimes or prosecute offenders.

- to protect our employees and customers.

6. What is the lawful basis for processing your data?

We process your personal data because it is necessary for:

- the performance of the contract for the sale of goods

- to comply with our legal obligations

- To comply with our legal obligations in order to fulfil our legal obligations; to comply with our legal obligations; to comply with our legal obligations; to pursue our legitimate interests; to comply with our legal obligations; to pursue our legitimate interests; to comply with our legal obligations

In general, we rely on your consent as a legal basis only for processing related to sending direct marketing messages by email. You have the right to withdraw your consent at any time. Where your consent is the only legal basis for processing, we will stop processing your data upon its withdrawal.

7. How do we protect your data?

We implement appropriate technical and organisational measures to ensure that your personal data is always protected and secure. Our security measures include data encryption, regular cybersecurity assessments of all service providers that may handle your personal data, security controls that protect our entire technology infrastructure from external attack and unauthorized access, and internal policies that define how we ensure your data is protected; however, we promise to notify the appropriate authorities of a potential data breach. We will also notify you if there is a threat to your rights or interests. We will do everything possible to prevent a data breach and assist the authorities if there are any such breaches. The company processes data
exclusively by designated personnel who are
bound by strict confidentiality obligations.

8. What are your rights?

- Right of access: you have the right to request information about the personal data we process at any time. You can contact us and we are happy to notify you by email of your personal data.

-Right to rectification: you have the right to request the rectification of your personal data if it is incorrect.

-Right to erasure ("right to be forgotten"): You have the right to request that personal data processed by our company be erased at any time, unless an order is pending which has not yet been sent or you have a debt to us.

-Right to restrict processing: You have the right to ask us to restrict processing when there is a specific reason to do so (e.g. if you object to our legitimate interest or if your personal data is incorrect or if you think the processing is unlawful or if we no longer need it).

-Right to portability: Whenever our company processes your personal data, you have the right to obtain a copy of it in a structured, commonly used and machine-readable format, and to request that it be transferred to another party. This only includes personal data that you yourself have provided to us.

-Right to object to processing on the basis of legitimate interest: You have the right to object to the processing of your personal data based on our legitimate interest. We will not continue to process your personal data unless we can demonstrate legitimate grounds for processing that override your interests and rights or there are legitimate claims against us.

-Right to object to direct marketing. You have the option to opt out of direct marketing.

9. How can you exercise your rights?

If you wish to exercise any of the above rights, please contact us using our contact details.If you believe that our Company is processing your personal data in an incorrect way, please contact us.Our Company reserves the right if your requests do not meet the requirements of the law, to either impose a corresponding fee taking into account, the time to perform the requested action, the employment costs for in-house information and the possible related If we are in doubt about the identity of the individual making the request, there is a possibility that we may request additional information to confirm the identity of the individual; possible denials of your request will be justified.

10. How do we safeguard your data?

We do our best to safeguard your Personal Data.We use secure protocols for communication and transfer of data and take all appropriate organisational, technical, physical, electronic and procedural security measures. Our security measures include data encryption, regular security assessments of the
cybersecurity safeguards from all service providers that may handle the
your personal data, security controls that protect the entire
our technology infrastructure from external attack and unauthorized access, and internal policies that define how to ensure
protection of your data and the training of our employees. Although
we try our best, we cannot guarantee the security
of the information. However, we promise to notify the appropriate authorities of any potential data breach. We will also notify you if there is a threat to your rights or interests. We will do everything possible to prevent a data breach and assist the authorities if there are any similar breaches. The company processes data exclusively by personnel appointed for this purpose and bound by strict obligations to maintain confidentiality.

11. Obligations of website users

By using the Sites and when providing your personal data, you acknowledge that you have the obligation to provide the true, accurate and complete information requested by our Company. At any time you may notify our Company of any changes to this information in order to keep it up to date and accurate. By using the Company's websites under the distinctive title "Vaya Vintage", you certify that you are over the age of sixteen. If you are under sixteen years of age you must refrain from any use of the Websites
and from any use of the Site and any disclosure of your personal data without your consent.
without the consent of the person exercising parental authority. The company is not liable for any
responsibility for any breach of the above obligations.
The Company may delete, cross-reference, supplement or modify the information you provide based on information lawfully collected by third parties, and will notify you accordingly.
You may unregister or withdraw your consent by
processes and operations that process your data at any time
you wish.

12. Do we use cookies?

Our website uses cookies to collect information. The information includes data on browsing and purchasing behaviour.The installation of cookies by us is only permitted with the user's consent and after appropriate information.You have the right to withdraw your consent at any time. Please note that if you withdraw your consent, you will not be able to access certain areas or functions of our website.

13. Why we use cookies

We use cookies to make your browsing experience easier and
enjoyable. Relevant Cookies when you browse the site may
cookies may be stored on your computer by third party services such as.
Cookies may be used by third party services such as cookies to monitor your use of the website, such as for statistical purposes regarding your traffic and browsing within the website.
You may use the website for statistical purposes (analytics), social media or other forms of internet marketing and promotion of the website on the internet (facebook, instagram, etc.), corporate promotion in the form of video playback (youtube, etc.), service of approaching the business of the website via a map (google maps, foursquare, etc.), updating data, corporate, financial, statistical or other forms (pdf, excel, word, txt, etc.).

14. Cookies we use 

Mandatory cookies : they are mandatory for you to make use of some
important actions on our website, such as logging in to it. These cookies
These cookies do not collect any personal information.
Functional cookies : offer functionality which make it possible to use the site for some of the following purposes
our services easier.
Analytics cookies : used to track the use and
efficiency of our website and services.
Advertising cookies: used to deliver advertisements which
related to you and your interests. In addition, they are used to
limit the number of times you see an advertisement. Often they are used to reduce the number of times you are shown a particular advertisement.
Targeted or advertising cookies are often linked to the functionality of the
website offered by the other organization.

15. Electronic forms

In the online forms on our site there are check boxes only for
acceptance of cookies and the Privacy Policy by the user.

16. Information Leakage
In the event that we detect a data breach, we will notify
We will notify within 72 hours the Data Protection Authority in accordance with the
We will notify the Data Protection Authority within 72 hours according to the provisions of the Data Protection Regulation.

17. Jurisdiction and applicable law

For the resolution of any dispute arising in relation to this data policy, the courts of Thessaloniki shall have jurisdiction and the applicable law shall be Greek law.

18. Can we modify this privacy policy?

We reserve the right to update or change the Privacy Policy at any time. You should check this Policy periodically. The latest version of the Privacy Policy is always available on our website. We will notify any material changes to the Privacy Policy, for example if they relate to the purpose for which we use your personal data, the identity of the controller or your rights.

19. Contact details

If you have questions about how we use your personal data that are not answered here or if you want to exercise your rights regarding your personal data, please email us at info@vayavintage.com