Privacy Policy
Aristea Rethymnon Hotel
Last updated: 5th March 2026
1. Introduction
ΑΡΙΣΤΕΑ ΑΕΞΤΕ (“we”, “us”, “our”) is committed to protecting and respecting your privacy.
This Privacy Policy explains how we collect, use, store, and protect your personal data when you visit our website, make a reservation, contact us, or otherwise interact with us or use the services of Aristea Rethymnon Hotel.
We process personal data in accordance with the General Data Protection Regulation (EU) 2016/679 (GDPR) and applicable Greek data protection laws.
2. Data Controller
The data controller responsible for your personal data is:
ΑΡΙΣΤΕΑ ΑΕΞΤΕ
Ξενοδοχειακές & Τουριστικές Επιχειρήσεις
Registered Office:
Sgourafogianni 12, Perivolia, 74100 Rethymnon, Greece
Hotel Address:
110 Martyron, Misiria, 74100 Rethymnon, Greece
Telephone: +30 28310 35358
Mobile: +30 6977444544
Email: info@aristea.gr
3. Personal Data We Collect
A) Information You Provide to Us
-
Name and title
-
Email address
-
Telephone number
-
Postal address
-
Payment details (processed securely through third-party providers)
-
Reservation and booking information
-
Special requests or dietary requirements
-
Identification details where required by law
-
Information submitted via forms, email, or telephone
B) Information Collected Automatically
-
IP address
-
Browser type and version
-
Device type and operating system
-
Pages visited and time spent
-
Referral source
-
Cookies and similar technologies
Further details are provided in our Cookie Policy.
4. Source of Personal Data
We collect personal data directly from you and may also receive it from third-party booking platforms, travel agents, or distribution partners.
5. How We Use Your Personal Data
-
Manage reservations and services
-
Communicate with guests
-
Provide customer support
-
Process payments and prevent fraud
-
Comply with legal obligations
-
Improve services and user experience
-
Send marketing communications (with consent)
-
Create marketing audiences and improve advertising relevance (with consent)
6. Legal Bases for Processing
-
Contract performance
-
Legal obligation
-
Legitimate interests
-
Consent
You may withdraw consent at any time.
7. Provision of Personal Data
Providing certain data is necessary for bookings. Without it, we may not be able to provide services.
8. Marketing Communications
We may send marketing communications where you have opted in.
Emails may include tracking (e.g. opens and clicks) to improve content and relevance.
You may unsubscribe at any time or object to direct marketing processing.
9. Cookies
See Cookie Policy for full details.
10. Sharing Your Data
We may share data with:
-
Booking systems (e.g. SiteMinder, Bookscapia)
-
Property management systems
-
Payment providers
-
IT and marketing service providers
-
Email marketing platforms (e.g. Brevo)
-
Advertising platforms (e.g. Google, Meta)
-
Authorities where required
We may use data to create remarketing audiences where consent is given.
11. International Data Transfers
Transfers outside the EEA are protected using appropriate safeguards (e.g. SCCs).
12. Data Security
We implement security measures including access controls, encryption, and secure storage.
Payment data is processed securely via third parties.
Data breaches are handled in accordance with legal requirements.
13. Data Retention
Data is retained only as long as necessary, based on legal and operational requirements.
14. Children’s Data
Children’s data may be processed as part of family bookings.
15. Automated Decision-Making
We do not carry out automated decision-making with legal effects.
16. Your Rights
You have rights including access, correction, deletion, restriction, objection, portability, and withdrawal of consent.
17. Complaints
Hellenic Data Protection Authority (HDPA)
https://www.dpa.gr
18. Changes
We may update this policy periodically.
