Privacy Policy
Last updated: January 8, 2026
Exo Santorini ("we", "us", "our") respects your privacy and is committed to protecting your personal data. This Privacy Policy explains what data we collect, why we collect it, how we use it, and what rights you have under the General Data Protection Regulation (GDPR).
The data controller for this website is Exo Santorini. To contact us regarding privacy matters or to exercise your rights, please reach us at phone number 6978787878 or email 787878@gmail.com.
When you visit our website, you may choose to contact us using a contact form, email, or phone. If you do so, we may receive personal data such as your name, email address, phone number, the content of your message, and information related to your rental request (such as dates or preferences). We use this information solely to respond to your inquiry, communicate with you, and manage rental requests.
When you browse our website, we may automatically collect limited technical data such as your IP address, browser type, device information, pages visited, and approximate location. This data is used to maintain website security and to improve performance and user experience. If analytics tools are used, this information may be collected through cookies and processed in aggregated form.
We process your personal data only when we have a legal basis to do so. This may include your consent (for example, when you send a message or accept cookies), a contractual or pre-contractual need (for example, when you inquire about availability or make a booking), a legitimate interest (for example, website security and improvement), or compliance with legal obligations.
We do not sell your personal data and do not share it with third parties unless necessary to operate the website, provide services to you, or comply with the law. This may include hosting providers, communication services, or analytics providers. When we use service providers, they process data only under our instructions and with appropriate safeguards in place.
We retain your data only for as long as necessary for the purpose for which it was collected. Messages and inquiries are generally kept for a reasonable period to manage communications and potential bookings. If a rental agreement is made and legal obligations apply, we may retain certain information for longer periods as required by law.
Under GDPR, you have rights including the right to request access to your personal data, correct it, request deletion, restrict processing, object to processing, request data portability, and withdraw consent where consent is the legal basis. To exercise these rights, please contact us at 787878@gmail.com.
We implement reasonable security measures to protect your personal data from unauthorized access, loss, or misuse. However, no online service can guarantee complete security.
This website is not intended for children under the age of 16, and we do not knowingly collect personal data from children.
We may update this Privacy Policy from time to time. The most current version will always be posted on this page with the updated date.