Menu
Your Cart

GDPR

We would like to inform you that respecting the personal data, " Nastas Apostolos ", owner company of the website www.planet-shop.gr keeps your personal information strictly confidential and inaccessible to any person not directly involved in the ordering and transaction process.

To enter the site www.planet-shop.gr you use two passwords, the Username (email) and the Code (Password). You are given the possibility to change the Password as often as you wish and we would recommend you, for security reasons, to change your password at regular intervals and to avoid using the same passwords.

PLANET-SHOP may not transfer said information to any third party (natural or legal person) for any reason with the exception of relevant provisions of the law and only to the competent authorities. The management and protection of the personal data of the visitor/user of its services www.planet-shop.gr is subject to the conditions of this section as well as the relevant provisions of the Greek Law (Law 2472/1997 on the protection of the individual from the protection of personal data as supplemented by the decisions of the President of the Personal Data Protection Committee, Law No. 207 /1998 and 79/2000 and article 8 of Law 2819/2000) and European law (directives 95/46/EC and 97/66/EC).

All payments made using a card are processed through the Eurobank electronic payment platform and use TLS 1.1 encryption with a 128-bit encryption protocol (Secure Sockets Layer - SSL).

Encryption is a way of encoding information until it reaches its intended recipient, who will be able to decode it using the appropriate key.

1. Identity of PLANET - SHOP

If you have any questions about our company's Privacy Policy, you can contact us using the details below.

PLANET SHOP - Networking & Communication
KOIMISEOS THEOTOKOU
DRYMOS THESSALONIKI
PO Box 57200
Phone: +30 231 231 5031
E-mail: gdpr_at_PLANET-SHOP.gr

You can submit questions about the protection of personal data, the protection of privacy and data security at gdpr_at_PLANET-SHOP.gr

2. What information do we collect?

You can browse our website anonymously.
If you choose to register on our website, the following categories of your account data will be processed:

“Account data”

When you create your personal account on our website, place an order, subscribe to our newsletter or respond to a survey, it is collected basic contact information such as email address, your name, company name, address, telephone number, VAT number, preferred system language, order number, email address of invoice recipients and credit card or bank account details.

 “System Generated Data”

The system automatically creates and stores metadata based on other types of data, e.g.:

  • Subscription data such as start date, last billing date and the result of a mandatory VAT number validation. Issued invoices are stored so that you can access any issued invoices from your service manager.

You will be informed by PLANET-SHOP about changes to the operation of the platform, such as the implementation of additional functions, by e-mail if you subscribe to the PLANET-SHOP newsletter from your account settings page.

3. How do we use the information from your data?

Any of the information we collect from you may be used for one or more of the following purposes:

3.1. To customize your experience (the information will help PLANET-SHOP better meet your individual needs).
3.2. To improve our website.
3.3. To identify you as a contracting party.
3.4. To log in to your account at www.planet-shop.gr
3.5. To contact you.
3.6. To allow PLANET-SHOP to issue valid invoices and receipts and process transactions (your information will not be sold, bartered, transferred or provided to any other company for any reason, without your consent, except as expressly purpose of delivering the requested service)
3.7. To enable automated handling of subscriptions.
3.8. To send periodic emails (The email address you provide for order processing may be used to send you information and updates about your order, in addition to receiving occasional company news (if accepted), updates, related product or service information etc.)

At any time you can unsubscribe from receiving informative emails or even delete your account on our website.

4. Legal basis

4.1. EU General Data Protection Regulation ( GDPR )

The processing of your data is either based on your consent or where the processing is necessary for the performance of a contract to which you are a party or to take steps at your behest before entering into of a contract, see GDPR art. 6(1)(a)-(b).

If the processing is based on your consent, you can withdraw your consent at any time by contacting us using the contact details set out in clause 1 or via our website.

In order to enter into a contract regarding the purchase of PLANET-SHOP products/services, you must provide us with the required personal data. If you do not provide us with all the required information, it will not be possible to transact with our company.

4.3. Children's electronic privacy protection

PLANET-SHOP complies with the requirements of the Children's Online Privacy Act. We do not knowingly collect information from persons under the age of 16. The website, products and services are directed to persons at least 16 years of age or older.

5. How do we protect your information?

PLANET-SHOP implements the following technical, physical and organizational measures to maintain the security of your personal data against accidental or unlawful destruction or accidental loss, alteration, unauthorized use, unauthorized modification, disclosure or access and against all other unlawful forms of processing.

5.1. Availability

The service uses the extensive capabilities of the cloud environment to ensure high availability, including full redundancy, load balancing, automatic capacity scaling, continuous data backup and geo-replication along with a traffic manager for automatic geo-failover in data layer disasters. All failure mechanisms are fully automated.

No personal data is permanently stored outside PLANET-SHOP's cloud platforms. Physical security is therefore maintained by PLANET-SHOP itself or PLANET-SHOP's contracted subcontractors, see Clause 7. PLANET-SHOP complies with industry standards such as ISO 27001 for physical security and availability, e.g. with two-factor access control using biometrics and card readers, barriers, fencing, security cameras and other measures.

5.2. Integrity

To ensure integrity, all data transits are encrypted to comply with best practices for protecting data confidentiality and integrity. B.C. all credit card information provided is transmitted via Secure Socket Layer (SSL) technology and then encrypted in our payment gateway provider's database to be accessible only by those authorized to access such systems and who are required to maintain confidentiality information.

5.3. Confidentiality

All staff are subject to complete confidentiality by signing a Confidentiality Statement and all subcontractors and subcontractors are required to sign a Confidentiality Statement if complete confidentiality is not part of the main agreement between the parties.

Access to personal data is only possible by authorized personnel and is possible only through an encrypted connection. Access to data in a database is only possible when the IP number of the person accessing the data has been authorized to gain access.

Devices that have the right to temporarily store personal data are always kept in a secure and locked place, except when in use and under constant supervision. Personal data is never stored on portable media such as USB flash drives or DVDs.

5.4. Transparency

PLANET-SHOP will inform you at all times of changes in privacy and data security procedures, including practices and policies. You can at any time request information about where and how data is stored, secured and used. PLANET-SHOP will also provide the summaries of the independent audits of the Service.

5.5. Isolation

Access to personal data is blocked by default using a zero-privilege policy. Access to personal data is limited to authorized personnel.

5.6. The possibility of intervention

PLANET-SHOP provides the rights of access, correction, deletion, blocking and objection, providing integrated data management functions on your account page on its website, offering the possibility to send instructions through the PLANET-SHOP helpdesk and updating and providing the customer with the possibility of objection when PLANET-SHOP intends to implement changes in the relevant practices and policies.

5.7. Monitoring

PLANET-SHOP uses security reports to monitor access patterns and to identify and limit potential threats. Administrative operations, including system access, are logged to provide information if unauthorized or accidental changes are detected.

System performance and availability are monitored by both internal and external monitoring services.

5.8. Personal data breach notification

In the event that your data is compromised, PLANET-SHOP will notify you and the relevant Supervisory Authorities within 72 hours, via email with information about the extent of the breach, the affected data, any impact on the service and PLANET-SHOP's action plan for taking measures to secure the data and to limit any adverse effects on the persons to whom the data refer.

"Personal data breach" means a breach of security that results in the accidental or unlawful destruction, loss, alteration, unauthorized disclosure or access to personal data transmitted, stored or otherwise processed in connection with the provision of the Service.

6. How do we use cookies ?

See PLANET-SHOP's Cookies Statement regarding the cookies we use on Cookies Policy

7. Do we report information to external bodies?

PLANET-SHOP does not sell, trade or in any other way transfer to third parties information about personally identifiable data.
These do not include trusted third parties or subcontractors who help us operate our website and business or serve you. These trusted parties may have access to personally identifiable information on a need-to-know basis and are required to sign a Confidentiality Statement and keep your information confidential and only for as long as necessary.

We may also disclose your data when we believe that doing so is in accordance with the law, or protects our or others' rights, property, or safety. In addition, non-personally identifiable information may be provided to third parties for advertising, marketing or other purposes.

7.1. Subcontractors / trusted third parties

PLANET-SHOP monitors the maintenance of standards and controls by subcontractors to ensure that data protection requirements are met.
Subcontractors also sign a confidentiality statement.

7.2 Legally Required Disclosure

PLANET-SHOP does not disclose customer data to law enforcement unless instructed by you or where required by law. When governments make a lawful demand for customer data from PLANET-SHOP, PLANET-SHOP limits disclosure. PLANET-SHOP will issue specific data only based on the relevant legal requirement.
If required to disclose your data, PLANET-SHOP will notify you immediately and provide you with a copy of the demand, unless prohibited by law.

8. Third party links

From time to time, at our discretion, we may include or offer third party products or services on our website. These third party sites have separate privacy policies. Therefore, we have no responsibility or liability for the content and activities of these linked websites. Nevertheless, we seek to protect the integrity of our website and welcome any comments regarding these websites.

9. Where do we store your personal data?

Your personal data will not be transferred, stored and/or retrieved by PLANET-SHOP, outside the European Union.

9.1. Location of personal data

All data is stored in databases and files on PLANET-SHOP's proprietary servers. The servers are located on PLANET-SHOP premises or in cloud vendors within Greece.
For the databases we take back up at regular intervals so that it is possible to restore within a reasonable time. Backups are stored in the same geographic location as the database.

9.2. Software Installation on Customer's System

No software installation is required to use the Service. The service is protected by a code entry system and is accessible through a standard web browser, automatically using an encrypted https connection for all communications between the browser and the PLANET-SHOP server, to protect any data in transit .

10. Access, data portability, migration and transfer assistance

You may at any time receive confirmation from PLANET-SHOP as to whether your personal data will be processed.

You can request a complete copy of data at any time, which you can transfer to another data controller. Your data will be delivered by PLANET-SHOP within 30 working days, as spreadsheet files in Microsoft Excel format.

Logical relationships between datasets will be maintained in the form of unique identifiers. You are required to pay €1,000 + VAT for each data copy order.

11. Request for correction, limitation or deletion of personal data

11.1. Correction

You may at any time request, without undue delay, correction of inaccurate personal data concerning you, see clause 5.6.

11.2. Restriction of the processing of personal data

You can at any time ask PLANET-SHOP to restrict the processing of personal data when one of the following applies:

  1. If you dispute the accuracy of the personal data and for a period until PLANET-SHOP verifies the accuracy of the personal data.
  2. If the processing is unlawful and you object to the deletion of the personal data and require the restriction of its use, or
  3. If PLANET-SHOP no longer needs the personal data for the purposes of the processing, but is required by you to establish, exercise or defend legal claims.


11.3. Deletion

You may request the deletion of personal data concerning you without undue delay, and PLANET-SHOP must delete the personal data without undue delay when one of the following applies:

  1. If the personal data is no longer necessary in relation to the purposes for which it was collected or otherwise processed
  2. If you withdraw your consent, on which the processing is based and where there is no other legal basis for the processing.
  3. If you object to the processing in case the processing is intended for direct marketing.
  4. If the personal data has been unlawfully processed, or
  5. If the personal data must be deleted to comply with a legal obligation under Community or national law.

12. Data retention

12.1. Data Retention Policy

Your account data subject to tax regulations will be retained for up to 5 years from the cancellation of your account in our system.
Settings data and system-generated data will be marked as inaccessible and retained in our system for 90 days after you delete your account on our website. After this period, they are deleted without notice.

12.2. Retention of data to comply with legal requirements

You may not ask PLANET-SHOP to change any of the predefined retention periods, except for the reasons for deletion in accordance with paragraph 11.3, but you may suggest changes to comply with specific laws and regulations.

12.3. Return of data and / or deletion of data

There will be no data other than the Account Data, after the termination of the contract. You can request a copy of your account data before expiration. You must not cancel the service account until the data copy has been delivered to you, as PLANET-SHOP will otherwise be unable to deliver the data copy to you.

13. Liability

PLANET-SHOP uses a wide range of integrated recording functions in its online platform. PLANET-SHOP records all system updates, settings and access changes so that it is fully aware of any unauthorized or accidental changes.
You can request an additional data protection audit from an independent third party, which is also acceptable to PLANET-SHOP. The fee is €5,000 + VAT for an audit request and an additional €200 for every hour that PLANET-SHOP spends in connection with the audit, as well as any other costs related to the audit, including the auditor.

14. Cooperation

PLANET-SHOP will cooperate with you to ensure compliance with applicable data protection provisions, e.g. so that you can effectively ensure the exercise of data subjects' rights (right of access, rectification, erasure, blocking, opposition) for incident management, including judicial analysis in the event of a security breach.

15. Terms of use

Please also visit the section of the Terms of Service that defines the use, disclaimers and limitations of liability governing the use of our website at www.planet-shop.gr

16. Your consent

By using our website, you agree with this Privacy Policy.

17. Changes to our privacy policy

If we decide to change our Privacy Policy, we will post those changes on this page and/or update the Privacy Policy modification date below.
This Privacy Policy was last modified on January 21, 2020.

18. Complaint

You can file a complaint at any time with a supervisory authority regarding the collection and processing of personal data by PLANET-SHOP. In Greece, you can file a complaint with the Personal Data Protection Authority http://www.dpa.gr