Last updated: 4 October 2026
At One Of A Kind we respect your personal data. This page explains, in plain words, what we collect when you visit oneofakind.gr or contact us, why we need it, how long we keep it and what your rights are, under the General Data Protection Regulation (GDPR, Regulation (EU) 2016/679) and Greek Law 4624/2019.
1. Who we are
The data controller is One Of A Kind (oneofakind.gr). For anything about your data, email us at nvdigitalgrowth@gmail.com.
2. What we collect
- Contact form: your name, email, phone number (optional), the services you are interested in and your message.
- Intro call bookings: when you book through Google Calendar, your name, email, the time you chose and any notes you add.
- Email: whatever you send us if you write to us directly.
- Technical data: IP address, device and browser type, pages visited. Recorded automatically by the server to run and secure the website.
- Analytics and marketing cookies: only if you accept them in the cookie banner (see section 7).
We don’t ask for, and don’t want, special categories of data (such as health data). Please don’t include them in your message.
3. Why we use it, and on what legal basis
- To answer your enquiry, send you a quote and arrange our intro call: steps taken at your request before entering into a contract (GDPR Article 6(1)(b)).
- To carry out our work together, if you become a client: performance of a contract (Article 6(1)(b)).
- To meet tax and accounting obligations: legal obligation (Article 6(1)(c)).
- To keep the website secure and working: our legitimate interest (Article 6(1)(f)).
- For visitor statistics and ad measurement: only with your consent (Article 6(1)(a)), which you can withdraw at any time.
We don’t send you newsletters or marketing emails without your separate consent. We never sell or rent your data to anyone.
4. Who can see your data
Only we see your data. To run the website we work with trusted providers that process it on our behalf, with appropriate safeguards:
- Hostinger: website hosting.
- Google: Gmail (where form messages arrive), Google Calendar (for bookings) and, only with your consent, Google Analytics.
- Meta: Meta Pixel, only if enabled and only with your consent.
We may also share data with an accountant or public authorities where the law requires it.
5. Transfers outside the European Union
Some providers (such as Google and Meta) may process data outside the European Economic Area, mainly in the United States. Such transfers rely on the EU-US Data Privacy Framework or the European Commission’s Standard Contractual Clauses.
6. How long we keep data
- Enquiries that didn’t lead to working together: up to 24 months after our last contact, so we can pick up the conversation if you come back. Then they are deleted.
- Clients: for as long as we work together, and afterwards for as long as tax law requires.
- Statistics (Google Analytics): up to 14 months.
- Technical logs: for a limited period, as long as needed to keep the website secure.
7. Cookies
We use necessary cookies so the website works properly (for example, to remember your language and your cookie choices). Analytics or marketing cookies are set only if you accept them in the cookie banner. You can change or withdraw your choices at any time from the website’s cookie settings or your browser.
8. Your rights
You have the right to:
- find out what data we hold about you and get a copy (access),
- have anything wrong or incomplete corrected (rectification),
- ask us to delete it (erasure),
- ask us to restrict how we use it (restriction),
- receive it in a structured, electronic format (portability),
- object to processing based on our legitimate interest (objection),
- withdraw your consent at any time, without affecting the lawfulness of processing before that.
To use any of these rights, email us at nvdigitalgrowth@gmail.com. We reply free of charge and within one month at the latest.
If you believe the processing of your data breaks the law, you can complain to the Greek Hellenic Data Protection Authority (1-3 Kifisias Ave, 115 23 Athens, www.dpa.gr) or the authority in your EU country.
9. Security
The website uses an encrypted connection (HTTPS), we keep it updated, and access to data is limited to those who need it.
10. Children
Our services are for businesses and professionals. We do not knowingly collect data from children under 15.
11. Changes to this policy
We may update this policy when something changes in how we work or in the law. You will always find the current version on this page, with the date of the last update at the top.