Last updated · September 2026
This Privacy Policy explains how Greek Property Check handles personal data when you use the website, run a property check, buy a report, create an account, use share links, or contact support.
Data controller: ArtisWeb Digital Agency. Data-protection enquiries: [email protected].
Registered address: 1043 BV, Amsterdam, Netherlands.
Chamber of Commerce (KvK) number: 93937423.
VAT identification number: NL005053046B42.
We collect account and contact data such as email address, name where provided, password credentials in hashed form, support messages, and communication preferences.
We collect check and report data such as the confirmed parcel identifier, its mapped area and boundary, the coordinates used to find it, optional address or property context, intended use, the selected plan, generated report facts, source metadata, share-link settings, and terms-acceptance records.
We collect payment and transaction data such as checkout email, Stripe customer/session/payment references, amount, currency, tax information where available, refund status, and invoice or receipt references. We do not store full payment-card numbers.
We collect technical data such as IP address, browser/device information, request logs, security events, cookie preferences, locale, and approximate timestamps needed to operate, secure, and troubleshoot the service.
We use personal data to provide the website, generate and deliver reports, process checkout, maintain accounts, remember report access, provide support, handle refunds, secure the service, prevent abuse, maintain audit records, and comply with legal obligations.
We may use aggregated or de-identified operational data to improve reliability, data coverage, product quality, and support workflows. We do not sell personal data.
Contract performance: to create accounts, process checkouts, generate reports, provide share-link access, and deliver support you request.
Legitimate interests: to secure the service, prevent fraud and abuse, debug incidents, improve reliability, and maintain limited business records, balanced against your rights.
Legal obligation: to retain records required for tax, accounting, consumer, dispute, regulatory, or compliance purposes.
Consent: where required for optional communications or non-essential cookies. You may withdraw consent where processing is based on consent.
We use service providers for hosting, database infrastructure, email delivery, payment processing, analytics or error monitoring where enabled, support tooling, and storage/backups. These providers process data on our behalf or as independent controllers where their own terms apply.
Payment processing is handled by Stripe. Stripe may process payment and fraud-prevention data under its own terms and privacy notices.
Audience statistics are handled by Umami Cloud only after you accept analytics. Until then the script does not load.
We may disclose data if required by law, court order, competent authority, payment dispute process, security investigation, or to protect the rights and safety of users, advisors, the service operator, or others.
Where personal data is transferred outside the European Economic Area, we rely on recognised safeguards such as adequacy decisions, Standard Contractual Clauses, provider transfer addenda, or another lawful transfer mechanism.
Protected share links expire after 90 days.
A report and the contact email stored with that check are kept for 24 months after the report is generated, unless you ask us to delete them sooner. Account data is kept while the account is open and for 24 months after it is closed.
Payment, invoice, and refund records are kept separately for the period required by Greek tax and accounting law. They are not used for marketing.
Application logs are kept for 90 days. Backups are overwritten on the backup schedule and are not a separate long-term archive.
Audience statistics are not collected unless you choose Accept analytics. Guests can ask for a copy or deletion of a check by emailing the checkout address and including the report reference. Deletion removes the report and contact email. It does not delete payment records that the law requires us to keep.
We use essential cookies and browser storage for session management, authentication, report access, security, locale preferences, and cookie-consent state.
For audience statistics we use Umami only after you choose Accept analytics. Until then the script does not load. Rejecting analytics leaves essential cookies for session, language, and security. We do not use advertising cookies. You can change this later from Cookie settings in the footer.
If non-essential marketing or error-tracking cookies are introduced in the future, they will be controlled through the cookie banner or another consent mechanism where required.
We apply technical and organisational measures designed to protect personal data, including access controls, hashed passwords, secure cookies for supported authentication flows, transport encryption, operational logging, and provider security controls.
No online service can guarantee absolute security. If you believe your account, report link, or personal data has been compromised, contact us promptly.
Subject to applicable law, you may request access, rectification, erasure, restriction, portability, objection to certain processing, or withdrawal of consent where processing is based on consent.
You may also lodge a complaint with the Hellenic Data Protection Authority or another competent supervisory authority. We may need to verify your identity before acting on a request.