1. Data Controller
The data controller responsible for your personal data is:
[Eidolion Essence]
Address: [Anapiron Polemou, Ano Mera, Mykonos, Greece]
Email: [info@eidolionessence.gr]
Phone: [+30 693 251 9629]
2. Personal Data We Collect
We may collect and process the following categories of personal data:
A. Information You Provide Directly
- Full name
- Email address
- Phone number
- Nationality
- Home address
- Booking details
- Number of guests
- Passport or ID information (when required by law)
- Payment details
- Special requests or preferences
- Communications with us
B. Information Collected Automatically
When you visit our website, we may automatically collect:
- IP address
- Browser type and version
- Device information
- Operating system
- Website usage data
- Cookies and tracking technologies
C. Information from Third Parties
We may receive information from:
- Booking platforms (e.g., Airbnb, Booking.com, Vrbo)
- Payment service providers
- Travel agencies
- Social media platforms
3. Purpose of Processing Personal Data
We process your personal data for the following purposes:
- To manage reservations and bookings
- To communicate with you regarding your stay
- To process payments and invoices
- To comply with legal obligations
- To provide customer support
- To improve our services and website
- To send booking confirmations and updates
- To maintain security and prevent fraud
- To send promotional communications (only with your consent where required)
4. Legal Basis for Processing
Under GDPR, we process personal data based on one or more of the following legal grounds:
- Performance of a contract
- Compliance with legal obligations
- Legitimate business interests
- Your consent
- Protection of vital interests
5. Sharing of Personal Data
We may share your personal data with:
- Payment processors
- Booking platforms
- IT and website service providers
- Accountants and legal advisors
- Government authorities where legally required
- Cleaning, maintenance, or concierge service providers when necessary for your stay
We do not sell your personal data to third parties.
6. International Data Transfers
If personal data is transferred outside the European Economic Area (EEA), we ensure appropriate safeguards are in place in accordance with GDPR requirements.
7. Data Retention
We retain personal data only for as long as necessary to:
- Fulfill booking and contractual obligations
- Comply with tax and legal requirements
- Resolve disputes
- Enforce agreements
When data is no longer necessary, it will be securely deleted or anonymized.
8. Your Rights Under GDPR
You have the following rights regarding your personal data:
- Right of access
- Right to rectification
- Right to erasure (“right to be forgotten”)
- Right to restrict processing
- Right to data portability
- Right to object to processing
- Right to withdraw consent at any time
- Right to lodge a complaint with the Hellenic Data Protection Authority
To exercise your rights, please contact us using the details provided above.
9. Cookies Policy
Our website may use cookies and similar technologies to improve user experience and analyze website traffic.
Cookies may include:
- Essential cookies
- Analytics cookies
- Functional cookies
- Marketing cookies
You can manage cookie preferences through your browser settings.
10. Security Measures
We implement appropriate technical and organizational measures to protect your personal data against:
- Unauthorized access
- Loss or theft
- Misuse
- Disclosure
- Alteration or destruction
However, no online transmission or storage system can be guaranteed to be completely secure.
11. Third-Party Links
Our website may contain links to third-party websites. We are not responsible for the privacy practices or content of such websites.
12. Children’s Privacy
Our services are not directed to children under the age of 18. We do not knowingly collect personal data from children without parental consent.
13. Mandatory Guest Registration
Under Greek law, accommodation providers may be required to collect and maintain guest registration records, including identity information, for tax, tourism, and public safety purposes.
14. Marketing Communications
If you opt in to receive marketing communications, we may send you updates, offers, and promotions related to our villa and services.
You may unsubscribe at any time by:
- Clicking the unsubscribe link in emails
- Contacting us directly
15. CCTV Surveillance (Optional Section)
[Include this section only if CCTV cameras are installed]
For security and property protection purposes, CCTV cameras may operate in outdoor/common areas of the property.
- Cameras are not installed in private areas such as bedrooms or bathrooms.
- Footage is retained only for a limited period unless required for legal reasons.
- Access to recordings is restricted to authorized personnel.
16. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. Any updates will be posted on this page with a revised “Last Updated” date.
17. Contact Information
If you have any questions about this Privacy Policy or your personal data, please contact:
[Villa Name / Legal Entity Name]
Email: [Contact Email]
Phone: [Phone Number]
Address: [Full Address in Mykonos, Greece]
18. Governing Law
This Privacy Policy shall be governed by and interpreted in accordance with the laws of Greece and applicable European Union regulations.
By using our website or booking a stay at our villa, you acknowledge that you have read and understood this Privacy Policy.

