Privacy policy
Last Updated: February 20, 2025
Privacy Policy of Cardinal Cruises
Protecting your personal data is of utmost importance to us at Cardinal Cruises. We are committed to ensuring your privacy and fully complying with the General Data Protection Regulation (GDPR) and applicable Greek legislation.
1. Data Controller
Cardinal Cruises, located at Neaarchou Avenue, Heraklion, is the data controller of your personal data. For any inquiries regarding the processing of your data, you can contact us at info@cardinalcruises.gr.
2. Collection and Processing of Personal Data
We collect and process personal data that you voluntarily provide when contacting us or making a reservation through our website. This may include:
Full name
Email address
Phone number
Payment information (e.g., credit card details)
Preferences regarding our cruises
3. Purpose of Data Processing
Your personal data is used for the following purposes:
Processing reservations and providing our services
Communicating with you regarding your bookings or inquiries
Improving our services based on your preferences
Compliance with legal obligations
4. Legal Basis for Processing
The processing of your personal data is based on the following legal grounds:
Performance of a contract: To provide our services according to your bookings.
Legal obligation: To comply with legal requirements.
Legitimate interests: To improve our services and communicate with you.
5. Data Sharing with Third Parties
We do not share your personal data with third parties unless it is necessary for the performance of the contract (e.g., with service providers we collaborate with) or required by law. In any case, we ensure that third parties comply with data protection standards.
6. Data Security
We take all necessary technical and organizational measures to protect your personal data from unauthorized access, loss, or destruction. However, please note that data transmission over the Internet is not entirely secure, and we cannot guarantee absolute security for data transmitted through our website.
7. Data Subject Rights
Under GDPR, you have the following rights:
Right of access: To know what data we process about you and for what purpose.
Right to rectification: To request the correction of inaccurate or incomplete data.
Right to erasure: To request the deletion of your data under specific conditions.
Right to restrict processing: To request the restriction of the processing of your data.
Right to data portability: To receive your data in a structured, commonly used, and machine-readable format.
Right to object: To object to the processing of your data for specific purposes.
To exercise your rights, you can contact us at info@cardinalcruises.gr.
8. Data Retention Period
We retain your personal data only for as long as necessary to achieve the purposes for which it was collected or as required by law. After this period, the data is securely deleted.
9. Cookies
Our website uses cookies to enhance your browsing experience and collect anonymous statistical information regarding its usage. You can manage your cookie preferences through your browser settings. For more information, please refer to the Cookie Policy.
10. Changes to the Privacy Policy
Cardinal Cruises reserves the right to amend this Privacy Policy whenever necessary. Any changes will be posted on our website and will take effect upon publication. We encourage you to regularly check this page for updates.
11. Contact
If you have any questions or would like more information regarding this Privacy Policy, you can contact us.