Privacy Policy

 

Privacy Policy & GDPR Compliance

NEMA Design Hotel & Spa (“the Company”) is committed to protecting your personal data and respecting your privacy.
This Privacy Policy explains how we collect, process, store, and protect your information when you use our website
www.nemacrete.com.

By browsing or using our website, you agree to the terms of this Policy.
We may update this Policy from time to time to reflect changes in legislation or operational needs.
We encourage you to review it periodically.

1. Collection & Use of Personal Data

We collect and process personal data only when it is necessary for the proper operation of our website and services.
We do not sell, rent, or disclose your data to third parties except where required for service provision or legal compliance.
If you are under the age of 16, parental consent is required before using our website.

2. Legal Framework

Our data practices comply with:

  • The EU General Data Protection Regulation (GDPR – Regulation 2016/679)
  • Applicable European and Greek privacy legislation

3. Data We Collect

a. Website Traffic & Analytics

We use Google Analytics to measure website traffic and improve our services. The information collected may include:

  • Device type
  • Browser type
  • Geographic region
  • Pages visited
  • Time spent on the website

The data is anonymous and cannot identify you personally. Your IP address is anonymised before being processed by Google.
You may disable Google Analytics cookies at any time.

b. Contact Forms & Email

If you contact us via our website forms or email, the information you provide (e.g., name, email address, message) is
transmitted securely to our team. We use TLS/SSL encryption for all email communications. Your information is not stored
on the website server.

4. Cookies

Cookies are small text files stored in your browser to enhance your browsing experience. We use:

  • Session cookies (temporary, deleted upon closing your browser)
  • Persistent cookies (to remember preferences)
  • Analytics cookies (Google Analytics)
  • Functional cookies for video and media playback

If you disable cookies, certain features of the website may not function correctly.

For more information on managing cookies, visit: www.aboutcookies.org

5. Data Security

Our website uses HTTPS and SSL encryption to protect your data during transmission. We take all reasonable technical and
organizational measures to safeguard your information.

6. Third-Party Processors

We work with trusted third-party partners who process data on our behalf in compliance with GDPR. These include:

  • Google (Analytics)
  • Email service providers
  • Hosting providers

All partners have been vetted for GDPR compliance.

7. Data Breaches

In the unlikely event of a data breach affecting personal information, we will notify:

  • The relevant authorities
  • Affected individuals

Notifications will be made within the legally required timeframe (up to 72 hours).

8. Your Rights

Under GDPR, you have the right to:

  • Access your personal data
  • Request correction or deletion
  • Restrict or object to processing
  • Withdraw consent
  • Request data portability

To exercise your rights or request further information about our data protection practices,
please contact us through the communication channels provided on our website.