- Purpose of this policy
Maritima Villas Resort (“Maritima”, “we”, “us” or “our”) takes the issue of safeguarding your privacy seriously. Our Privacy Notice describes what personal information we collect from or receive about you and the ways in which Maritima uses that information, to whom your data are disclosed, as well as your rights.
This Privacy Policy aims to transparently inform you on the processing of your personal data, however it may not include all our processing activities as these constantly evolve. In case that a new processing activity is added, we shall endeavor to update this Privacy Policy and, in any case, we will provide you with the necessary information before you provide us with your data.
For any information regarding the terms and conditions governing the provision of hospitality services within all Maritima’s premises and/or digital environments owned by Maritima or operated for Maritima, please refer to the relevant Terms and Conditions.
- Commitment statement
We at Maritima consider the protection of the privacy and data of our customers to be of the utmost importance and our Resort is committed to providing them with personalized services that meet their requirements in a manner that safeguards their privacy. Therefore, Maritima with respect to the applicable national and European legal framework about data protection, especially the new European General Data Protection Regulation 2016/679 (GDPR) and the Greek Law Nr. 4624/2019, provides you hereby with a lawful, fair and transparent policy in order to inform you about the personal data we collect, how we use it, and how the use of this information can benefit your experience while visiting our premises and/or our online platforms (website’s and mobile application).
The representatives and service providers of Maritima are required to keep your personal information private and not to use them for any purpose other than those serving the provision of specific services to us.
- Legal and regulatory framework
Maritima Villas Resort collects and processes personal data in order to carry out its competences, process its electronic services and perform its legal obligations. For the purposes hereof, Maritima shall be referred to as the “Controller” within the meaning of Article 4(7) of the General Data Protection Regulation.
- Categories of individuals whom personal data we collect
Maritima collects and handles the personal information of the following categories of individuals:
- Hotel and resort guests and patrons, renters and guests, as well as participants in other Maritima experiences (collectively referred to as “Guests”);
- Travel agents and preferred partners; and
- Visitors to Maritima website that post, refer or are otherwise subject to this Privacy Notice, and mobile App users. Such website and our mobile App are collectively referred to as our “Sites”.
- Personal data we collect
The term “personal data” refers to a natural person’s information, such as their full name, postal address, e-mail address, telephone number, etc. that establish or may establish your identity, hereinafter referred to as “Personal Data or Data”.
The personal information that we collect or receive about you could include the following categories of information:
- Identity information – such as name, age, gender, passport information or data from other government-issued identity cards or from your accounts created on our Sites;
- Contact information – such as your home address, zip/postal code, email address and phone number;
- Financial and payment information – such as your credit card details, itemized spending, billing address, and transaction history;
- Reservation information – such as the type and location of the rooms you reserve, restaurant and spa treatment reservations, experiences you book, other guests associated with your reservations, and the dates of your reservations;
- Contractual relationship Data – such as contractual documents, information and consent forms, electronic statements of intention.
- Health information – where provided to us and relevant to the provision of services;
- Preference information – including but not limited to preferred pillow type and mattress firmness, special requests, interests, and data related to past service issues;
- Purchase history – details of your purchases at our Properties and on our Sites and delivery address;
- Public information – such as when we review public platforms to understand more about you, or what you are saying about us or the hospitality industry;
- Technical information – such as information about the device you use to interact with us (including the hardware model, IP address, geo-location data, operating system and version, and, in the case of your use of our mobile App, mobile network information and unique device identifiers); and
- Correspondence information – when you contact us, such as to send an inquiry or make a request, any correspondence or application may be kept, and information derived from such correspondence may be added to your personal information.
We use IP (Internet Protocol) addresses to analyze trends in the use of Internet, manage the resources of our computers and our network, monitor any unauthorized illegal or malicious activity (attacks) and collect general demographic data (country of origin) for aggregate use.
When referring to the notions of “special categories of personal data” or “sensitive personal data”, they reflect the kind of personal information that reveal racial or ethnic origin, political opinions, religious or philosophical beliefs, trade union membership and genetic data, biometric data which allows to uniquely identify a natural person, health data and/or data regarding sexual orientation.
We do not collect or acquire any type of access to the above special categories of personal data, or data that concern criminal convictions and offences of our customers, with the exception health information that you voluntarily provide to us and that is reasonably necessary for us to provide you with the products and services that you request. For example, when booking a spa service or stay, or if you otherwise share with us such data, we may collect certain, limited information about your preferences (including for an accessible room), health conditions, diagnosis, and treatments (including procedures and medications).
We may share your Health Information, where permitted under applicable law with:
- agents, contractors or third party service providers of Maritima who provide services to Maritima or on our behalf, including as needed to better serve your needs as a Guest or Owner, or visitor to our Sites;
- our professional advisors;
- local or foreign regulators, governments, courts, health and safety authorities, law enforcement and relevant security authorities; and
- others with your consent or at your direction.
Where an agent, contractor or third party service provider engaged by Maritima processes Health Information on our behalf, Maritima takes steps to contractually require those parties to protect your Health Information in a manner consistent with the principles articulated in this Privacy Notice.
We may also disclose information as may be required by law or legal process, or if we reasonably believe such disclosure is necessary to comply with legal process or the reasonable requests of law enforcement or to exercise or protect the rights, property or personal safety of Maritima, our Guests or others.
- Purposes of use of personal data
For each of the categories of personal information described above, we use your personal information for the following purposes:
- if you create an account on our Site or become a Guest and we create an internal profile about you, to remember your information and preferences to personalize your experience and provide customer service;
- to help us recognize or identify you and any online accounts or internal profiles related to you, for instance as a visitor to our Site or as a Guest;
- to allow you to log-in to your account online or through our mobile App by sending a one-time passcode to your phone (via SMS) or email address depending on how you elect to receive such a passcode;
- to enable you to use our Site;
- to assist us in making reservations for you and providing the services you request at any of our Properties;
- to process transactions through our Sites (including taking payment for purchases you may make) and to assist in any inquiries about your transaction;
- for billing purposes in relation to your stays with us;
- to confirm prior transactions and reconcile statements or invoices;
- to consolidate your accounts on our Site;
- to contact you in relation to matters regarding your stays with us
- to send you newsletters or marketing communications regarding our Properties or products and to advise you of promotions or to inform you of offers or other information that may be of interest to you (if, where required by law, you separately provide your consent for us to do so);
- to conduct surveys or focus groups to obtain your views regarding our Properties and service delivery (if, where required by law, you separately provide your consent for us to do so);
- to respond to specific requests for information from you about one or more of our Properties and handle any other inquiries, correspondence, concerns or complaints you have raised;
- for marketing, advertising and promotional purposes, such as through one of our online promotions or on third party social networks, consistent with your preferences and applicable law;
- to analyze customer trends and insights;
- to operate our business, including for internal purposes such as auditing, data analysis, statistical and research purposes, and troubleshooting to help us improve our services;
- for other purposes disclosed at the time you provide your personal information or as otherwise set forth in this Privacy Notice; and
- for the establishment, exercise, or defense of legal claims or proceedings.
We will combine information from a number of our Guests as well as visitors to our Sites to better understand trends and your expectations. When this occurs, all identifiers are removed and the aggregated information cannot be linked to any specific individual or household and is therefore no longer personal information.
As regards the collection of personal data not conducted online through the websites owned by Maritima and concerning the processing of the personal data of employees, candidate employees, associates, contractors, suppliers, private citizens, customers and, generally speaking, natural persons, separate detailed notification is provided in writing to the data subjects during the collection of the above data, in line with the relevant requirement set forth in Articles 13 and 14 of the GDPR.
- Legal bases of use of personal data
We use your personal information on the following bases:
- to enter into agreements with you – we use your personal information to perform our agreement to provide services to you when you stay or otherwise engage with us, or to take steps at your request prior to entering into such an agreement;
- legitimate business purposes – using your personal information helps us to operate and improve our business and minimize any disruption to the services that we may offer to you. We may also use your personal information to make our communications with you more relevant and personalized, and to make your experience of our services more efficient and effective;
- consent – at times we may ask for your consent to allow us to use your personal information for one or more purposes, such as to send you marketing communications. See the below the section “Your rights regarding your personal data“ for more information about the rights that you have if we process your information on the basis of your consent;
- protection your vital interests – in certain circumstances we may need to use your personal information where it is essential to protect life, and where we may be unable to obtain your consent. For example, in health emergencies; and
- to comply with legal and regulatory obligations – such uses of your personal information may include financial reporting requirements imposed by government regulators or our auditors.
- Retention and storage of personal data
We at Maritima store your personal data solely for the time required to provide a service you requested or approved, without prejudice to any legal provisions to the contrary, as is the case with issues governed by commercial and/or taxation legislation, the various applicable provisions, etc. In any event, the personal data you provide us and which are recorded in written agreements, contracts and electronic correspondence concerning the execution of a contract or the execution of a commercial transaction are stored for a period of 20 years in a physical and electronic archive kept at the legal department, the sales/contracts department and the accounting department of Maritima or any other third party that directly or indirectly provides the above services or assists the departments in question in the discharge of their duties or provides management services to us.
Your data shall be erased on a case-by-case basis and always in accordance with the provisions laid down in the applicable legislation.
- Means of protection of personal data
We use a variety of physical, technical and organizational security measures and technologies to help preserve the integrity and security of your personal information, consistent with applicable data protection and privacy laws. Such measures include, but are not limited to, adopting monitoring and governance policies and processes, technical and physical access controls, use of encryption technologies, employee training, and the regular audit and maintenance of our systems.
We endeavor to protect the privacy of your online account and internal profile as well as other personal information that we hold in our records, but unfortunately, we cannot guarantee complete security. Unauthorized access or use, hardware or software failure, and other factors may compromise the security of user information. Also, while we endeavor to put adequate contractual protections in place, we cannot guarantee the security of any personal information in databases hosted by third parties.
It is important to note that any email communication is not secure. This is a risk inherent in the use of email. Please be aware of this when requesting information or sending forms to us by email (for example, from the “Contact Us” section of our Site). We recommend that you do not include any confidential information (such as credit card information) when using email.
- Transmission of personal data
Maritima does not transmit personal data to third parties unless it is required for legitimate purposes in order to respond to your requests and/or provided that it is required or permitted by law. In any case, access to your personal data is only allowed to authorized persons, who are required to have access to allow the attainment of their collection, use and processing, as hereby notified.
For each of the categories of personal information described above, we may share certain of your personal information with:
- agents, contractors or third party service providers of Maritima who provide services to Maritima or on our behalf, including as needed to better serve your needs as a Guest or Owner, or visitor to our Sites;
- escrow agents, third party lenders and loan-servicing agents;
- a prospective buyer, investor or other third party in the event that we are involved with a corporate business transaction, such as a merger, acquisition, joint venture, or financing or sale of any business or assets or similar business transaction;
- our professional advisors and auditors;
- local or foreign regulators, governments, courts, health and safety authorities, law enforcement and relevant security authorities;
- certain types of personal information to online advertising partners, and analytics and search engine providers that assist Maritima in the improvement and optimization of the Site, or for advertising, analytics, attribution or research purposes as described in the section titled “How do we use cookies and other similar technologies?” (see our Cookie Policy to learn more); and
- others with your consent or at your direction.
Where an agent, contractor or third party service provider engaged by Maritima processes personal information on our behalf, Maritima takes steps to contractually require those parties to respect and protect your personal information in a manner consistent with the principles articulated in this Privacy Policy. If Maritima suspects any unlawful activity is taking place, it may investigate and/or report its findings or suspicions to the police or other relevant law enforcement agency.
If you have chosen to join a subscription list, please note that such lists are only used for internal purposes and we do not sell or rent our subscription lists to third parties for their direct marketing purposes.
Your personal information may be processed by Maritima and its third party service providers anywhere in the world, including in countries where data privacy laws may not be equivalent to, or as protective as, the laws in your home country. We will implement appropriate measures to ensure that your personal information remains protected and secure when it is transferred outside of your home country. These measures include data transfer agreements implementing standard data protection clauses and transmitting data in accordance with applicable legal requirements. To request additional information regarding these data transfer agreements, please contact our operations team (see the “Contact us” section below).
- Your rights regarding your personal data
At Maritima we endeavor to protect and respect your rights, as set forth by General Data Protection Regulation, including more specifically:
- your right to be informed on the processing of your personal information (i.e. right of access) and to request and obtain further information on the processing applied;
- your right to request for correction of their inaccurate personal data;
- your right to request for deletion of personal information provided, unless prohibited by legitimate reasons;
- your right to request for limitation of processing;
- your right to request for portability of your personal information;
- your right to withdraw your consent to the processing of your personal information (where Maritima is processing your personal information based on your consent);
- your right to decline marketing communications. In this case you can send such a request via email to: info@maritimaresort.com You may unsubscribe from electronic marketing communications at any time by selecting the “unsubscribe” link included in such communications. Please note that you may not be able to opt-out of service-related communications (such as account verification emails, transactional communications, and technical and security notices); and
- your right to objection/opposition to further processing thereof.
If you object to the processing of your personal information, or if you have provided your consent to processing and you later choose to withdraw that consent, we will respect that choice in accordance with our legal obligations. However, Maritima reserves the right to decline a request to access, correct or delete your personal information under certain circumstances as permitted by applicable law. In particular, there may be a variety of legitimate business reasons or legal obligations that allow or require us to retain your personal information.
If at any time you wish to exercise any of these rights, you can do so by contacting us:
- via email at info@maritimaresort.com
- via telephone at +30 2374092555
- via letter at Maritima Resort, Paliouri, Chalkidiki, PC 63085, Greece.
Alternatively, you can contact our Chief Privacy Officer via the details in the “Contact us” section. If you make a request through an authorized agent (such as a lawyer, we may request evidence of their authority to act on your behalf.
- Update of this Policy
We will update this Privacy Policy from time to time. When we make changes to this Privacy Policy, we will change the “Last Updated” date at the end of this Privacy Notice and will provide any other form of notice as may be required by law. All changes shall be effective from the date of publication unless otherwise stated.
- Contact details
If you have any questions or concerns regarding this Privacy Policy or our handling of your personal information, please contact our Privacy Officer as follows:
- via email at info@maritimaresort.com
This Policy was updated on 07/05/2025