Legal Information
GDPR & Data Protection
Last updated: July 26, 2026
At Nifty O.E. we are committed to protecting the personal data of every visitor and client. This page summarizes our compliance with the General Data Protection Regulation (EU) 2016/679 (GDPR) and Greek Law 4624/2019, and explains your rights in detail.
1. Our commitment
We process personal data lawfully, fairly, and transparently, collecting only what is necessary and keeping it only as long as needed. For us, data protection is not a mere obligation but a foundation of trust with our clients.
2. Data Controller
The controller is Nifty O.E.. For any data-protection matter you can contact us at info@restaurantguru.gr.
3. Legal framework
The processing of your data is governed by Regulation (EU) 2016/679 (GDPR), Law 4624/2019, and any other applicable national and European legislation on data protection and electronic communications.
4. Processing principles
In accordance with Article 5 GDPR, we uphold the following principles:
- lawfulness, fairness, and transparency,
- purpose limitation,
- data minimization,
- accuracy,
- storage limitation,
- integrity and confidentiality,
- accountability.
5. Legal bases
Every processing activity relies on at least one legal basis under Article 6 GDPR: your consent, the performance of a contract, compliance with a legal obligation, or our legitimate interest.
6. Your rights in detail
- Right to information and access (Art. 13-15): to know what data we process about you and to receive a copy.
- Right to rectification (Art. 16): to correct inaccurate or incomplete data.
- Right to erasure (Art. 17): to request deletion of your data under certain conditions.
- Right to restriction (Art. 18): to request that processing be restricted.
- Right to portability (Art. 20): to receive your data in a structured, commonly used format.
- Right to object (Art. 21): to object to processing based on legitimate interest.
- Rights regarding automated decisions (Art. 22): we do not make decisions based solely on automated processing that significantly affect you.
- Right to withdraw consent: wherever processing is based on consent, you may withdraw it at any time.
7. How to exercise your rights
Send your request to info@restaurantguru.gr. We will respond without undue delay and at the latest within one (1) month, extendable by a further two (2) months for complex requests. Exercising your rights is free of charge, unless the request is manifestly unfounded or excessive.
8. Data breaches
In the event of a data breach that may put your rights at risk, we will notify the competent supervisory authority within 72 hours and, where required, inform you without undue delay.
9. Processors and transfers
We work only with processors that provide sufficient guarantees of GDPR compliance. Transfers outside the EEA, if any, are covered by appropriate safeguards.
10. Supervisory Authority
You have the right to lodge a complaint with the Hellenic Data Protection Authority:
- 1-3 Kifisias Ave., 11523 Athens, Greece
- Phone: +30 210 6475600
- Website: www.dpa.gr
11. Contact
For any data-protection matter, contact us at info@restaurantguru.gr.