The protection of your personal data is important to us. This Privacy Policy (hereinafter referred to as the “Policy”) concerns the conditions of collection, storage and use of your personal information when you visit, register or use our website provided that you are a natural person. For any questions do not hesitate to contact us.

VIORYL is the Data Controller of the data processed. The contact details of the company are:

28th km National Road Athens – Lamia | 190 14 Afidnes | Attica | Greece
T: +30 22950 45100 | E: vioryl@vioryl.gr

If you wish to contact us regarding any issue related to the processing of your data and the exercise of your rights, you can contact the Data Protection Coordinator (DPC):
28th km National Road Athens – Lamia | 190 14 Afidnes | Attica | Greece
T: +30 22950 45100 | E: dpc@vioryl.gr


1. About the VIORYL website evioryl.gr
The evioryl.gr is the website of VIORYL S.A. (hereinafter referred to as the “Company”). The personal data you provide to us when you navigate our website or register as a user of our services (creation of user account) are processed and will be kept in a record under the responsibility of the company.

2. What is personal data?
The term “personal data”, as used in this policy, refers to information of natural persons, whether individuals or professionals, such as name, postal address, e-mail address, telephone number, etc., which can be used to determine the identity of a visitor to the website, hereinafter referred to as “personal data or data”.

3. What is personal data processing?
Personal data processing is the collection, recording, organization, storage, adaptation, alteration, retrieval, search for information, use, transmission to third parties (disclosure by transmission), dissemination, association, combination, restriction, erasure and destruction of personal data of natural persons.

4. What data do we collect?
When visiting and navigating our website:
– We collect your personal data that you choose to provide to us yourself during your browsing (e.g. by filling out the contact form of our website).
– We may also process any of your data collected from cookies that you have allowed to be used with your consent, which are detailed in the Cookies Policy.

5. Do we process data of minors?
In general, we do not process data relating to children under the age of 16 as the services of our website are not addressed to them. If we find that we have collected data of a child under the age of 16, without there being a legal basis for this, we will delete the data immediately. Otherwise, the provisions of Chapters 6 and 7 of this information document shall also apply to minors.

6. For what purpose do we process your data?
We collect your data exclusively for the purposes of the services provided by our company, as well as for the smooth operation of our website and in particular for a) the implementation of our commercial transaction, b) our communication with you using the information you provide on the contact page, and for your account registration, c) the monitoring of website traffic, d) the compliance with the obligations imposed by the applicable legislation and e) ensuring the information security of the website.

7. What is the legal basis for processing your data by the company?
The processing of website users’ data is either in the context of the services offered or is based on the user’s own consent. Specifically:

A) For the implementation of our commercial transaction (purpose a), our communication with you using the information you provide on the contact page and for your account registration, (purpose b), the monitoring of website traffic (purpose c) and ensuring the information security of the website (purpose e) the legal basis of the processing is the pursuit of legitimate interests of our company.

B) For your data related to the use of cookies, the lawfulness of their processing is based on your consent, which you provide us electronically. For more information on our Cookies Policy please visit https://www.evioryl.gr/cookies-policy/.

8. Who are the recipients of your data?
The recipients of your data are, as a rule, the necessary, in any case, personnel of VIORYL, who have been duly informed about the secure processing of your personal data. In addition, recipients of your data are: Natural and legal persons, to whom VIORYL entrusts the execution of specific tasks on its behalf, such as website management service providers or couriers. The associated persons, who act as processors of personal data, have been informed and committed in advance to respect the confidentiality of your data, are aware of and follow our instructions regarding the processing of personal data and take all appropriate measures to protect them.

9. How do we ensure that processors respect your personal data?
The processors have agreed and are contractually bound with the company:

  • to process your personal data exclusively in accordance with our instructions and orders;
  • to maintain confidentiality;
  • not to send data to third parties without the company’s permission;
  • to take appropriate security measures;
  • to comply with the legal framework for the protection of personal data and in particular the European Regulation GDPR.

10. Do we store your Data outside the European Union?
Our web server is located in Greece.

11. When do we delete your data?
We delete the data you have entered to your user account within 12 months of their entry, provided it is not related to any product order.
Any data entered for product order purposes will remain in our servers for as long as necessary according to the Tax Authorities requirements.
Any personal data held in our server’s security logs for information security purposes (e.g. IP) is deleted within 12 months.
We delete the data collected by cookies in accordance with our Cookies Policy.

12. Is your data safe?
We are committed to safeguarding your personal data. We have taken appropriate organizational and technical measures to secure and protect your data against any form of accidental or unlawful processing.
We use an Electronic Security Certificate (SSL – Secure Socket Layer) to ensure the secure exchange of data between the website and your browser.
These measures shall be reviewed and amended as necessary.

13. What are your rights?
You have the right to access your personal data.
This means that you have the right to be informed by us if we process your data. If we process your data, you can ask to be informed about the purpose of processing, the type of your data we keep, who we give it to, how long we store it, whether automated decision-making takes place, but also about your other rights, such as rectification, deletion of data, restriction of processing and lodging a complaint with the Personal Data Protection Authority.

You have the right to correct inaccurate personal data.
If you find that there is an error in your data, you can submit a request to us to correct it (e.g. correct your name or update your telephone number).

You have the right to erasure/right to be forgotten.
You can ask us to delete your data if it is no longer necessary for the above mentioned processing purposes or you wish to withdraw your consent in the event that it is used as the legal basis for processing.

You have the right to data portability.
You can ask us to receive the data you have provided in a readable form or ask us to transfer it to another controller, when the processing is based on your consent or is necessary for the execution of a contract between us.

You have the right to restrict processing.
You can ask us to restrict the processing of your data for as long as your processing objections are pending or if part of the processing is no longer required to fulfill the purposes for which your data was collected.

You have the right to object to the processing of your data.
You may object to the processing of your data when it is carried out in pursuit of our legitimate interests, and we will stop processing your data unless there are other compelling and legitimate reasons that prevail over your right.

You have the right to withdraw your consent.
In cases where the processing of your data for a specific purpose is based on your prior consent to the processing, you have the right to withdraw your consent so that the processing does not continue in the future.

14. How can you exercise your rights?
To exercise your rights, you can send us a relevant request either to the postal address of the company (28th km National Road Athens – Lamia, 190 14 Afidnes, Attica, Greece), or to the e-mail address dpc@vioryl.gr entitled “Exercise of right of access / rectification / deletion / portability / restriction / objection” and we will make sure to examine it and respond to you as soon as possible.

15. When do we respond to your requests?
We respond to your requests free of charge, without delay and in any case within (1) one month of receiving your request. However, if your request is complex or there is a large number of your requests, we will inform you within the month if we need to receive an extension of another (2) two months within which we will respond to you.

If your requests are manifestly unfounded or excessive, in particular due to their repetitive nature, the company may impose a reasonable fee, taking into account the administrative costs of providing the information or performing the requested action, or refuse to act on the request.

16. Right of termination
In the event that you consider that: a) your request has not been adequately and lawfully met or b) the right to the protection of your personal data is violated by any processing we carry out, you have the right to lodge a complaint with the Personal Data Protection Authority (postal address Kifissias 1-3, PC 115 23, Athens, Greece, https://www.dpa.gr/, tel. +30 210 6475600, e-mail: contact@dpa.gr).

17. How will you be informed of any changes to this policy?
We will update this policy whenever necessary. If there are significant changes to the policy or the way we use your personal data, we will notify you either by posting a notice in a prominent place before the changes take effect or by any other appropriate means. We encourage you to read this policy regularly to be aware of how your data is protected.

Date of last policy review: 15/04/24