Privacy Policy

1. Data Controller

Tavanita Villas (hereafter “the Company”) is committed to protecting the privacy and personal data of visitors and guests.
For the purposes of EU Regulation 2016/679 (General Data Protection Regulation - GDPR), the Company acts as the Data Controller.
For any privacy-related inquiries, you may contact us at:
[Insert official contact email]

2. What Personal Data We Collect

We may collect and process the following personal data:
• Full name

• Email address

• Telephone number

• Country of residence

• Booking details and stay information

• Any information voluntarily submitted via contact or booking forms
We do not collect sensitive personal data unless legally required for booking compliance.

3. Purpose of Processing

Your personal data is processed exclusively for the following purposes:
• Responding to inquiries

• Managing bookings and reservations

• Providing concierge services

• Communicating necessary information regarding your stay

• Legal and accounting compliance
If you explicitly consent, we may also use your contact details to:
• Send you updates or offers

• Share news or announcements related to Tavanita Villas
You may withdraw your consent at any time.

4. Legal Basis for Processing

We process personal data based on:
• Contractual necessity (booking management)

• Legitimate interest (customer service and communication)

• Legal obligations (tax and regulatory compliance)

• Explicit consent (marketing communication)

5. Data Sharing

We do not sell, rent, or trade personal data.
Personal data may only be shared with:
• Trusted service providers (payment processors, booking platforms)

• Legal or regulatory authorities when required by law
All third-party providers comply with applicable data protection regulations.

6. Data Retention

Personal data is retained only for as long as necessary to:
• Fulfill contractual obligations

• Comply with legal requirements

• Maintain proper accounting records
Marketing data is retained until consent is withdrawn.

7. Data Security

Our website operates in a secure SSL environment.
We implement appropriate technical and organizational measures to protect personal data from unauthorized access, loss, or misuse.

8. Your Rights

Under GDPR, you have the right to:
• Access your personal data

• Request correction of inaccurate data

• Request deletion (where legally possible)

• Restrict or object to processing

• Data portability

• Withdraw consent at any time
To exercise any of these rights, please contact us at [Insert contact email].

9. Cookies & Statistical Data

Our website may collect non-personal statistical data such as:
• Browser type

• Device information

• General geographic location

• Website usage data
This information is used solely to improve website functionality and user experience.

10. Minors

Our services are not directed to individuals under the age of 18.
We recommend that minors obtain parental consent before submitting any personal information.

11. Changes to This Policy

We reserve the right to update this Privacy Policy when necessary.
Any changes will be published on this page.

OPTIONAL SHORT CONSENT TEXT FOR CONTACT FORM

Add under contact form checkbox:
• I agree to the Privacy Policy and consent to the processing of my personal data in accordance with EU Regulation 2016/679.

If you would like, I can now:
• Review your Terms & Conditions text

• Create a legally aligned Cookie Policy

• Or draft a short but strong Booking Terms page
All three are important for trust and compliance.
Αποδοχή Cookies

Αυτός ο ιστότοπος χρησιμοποιεί τεχνικά cookies για να ορίσει τις προτιμήσεις απορρήτου σας και cookies τρίτων για λόγους στατιστικής ή marketing.
Με τη χρήση του ιστότοπου, αποδέχεστε την πολιτική μας για την Προστασία προσωπικών δεδομένων.