Privacy Policy for PDG Transfer Kissamos
Last updated: 21 April 2026
At PDG Transfer Kissamos (“we”, “us”, “our”), we respect your privacy and are committed to protecting your personal data in accordance with the General Data Protection Regulation (EU) 2016/679 (“GDPR”) and applicable Greek data protection law. The GDPR requires organisations to provide transparent information about how personal data is collected and used, and to explain the rights of individuals.
This Privacy Policy explains how we collect, use, store, and protect personal data when you use our website or contact us for private transfer services.
1. Who we are
Trading name: PDG Transfer Kissamos
Address: Kasteli, Kissamos
Phone: +30 6972330863
Email: pdg.transfers@gmail.com
The website currently displays these contact details and offers communication via phone, email, Viber, and WhatsApp for bookings.
2. What personal data we collect
Depending on how you contact us or book a transfer, we may collect:
- your full name
- your phone number
- your email address
- pickup and drop-off locations
- travel date and time
- number of passengers
- luggage details, if relevant
- flight, ferry, or accommodation details, if needed for your booking
- the content of your message or enquiry
- any other information you choose to share with us
If you contact us through third-party messaging services such as WhatsApp or Viber, your communication may also be processed by those providers under their own privacy terms. The website currently links to Viber and WhatsApp as contact methods.
3. How we collect your data
We collect personal data when:
- you contact us by phone
- you send us an email
- you contact us via WhatsApp or Viber
- you request a quote
- you make a booking
- you communicate with us about an existing transfer
At the time of review, the live website appears to function mainly as a landing page with contact details rather than a full booking engine or detailed form.
4. Why we process your data
We process your personal data for the following purposes:
- to respond to enquiries
- to provide quotes
- to arrange and manage your booking
- to communicate with you before, during, or after your transfer
- to provide customer support
- to maintain business records
- to comply with legal, accounting, and tax obligations
- to protect our business against fraud, misuse, or unlawful activity
Under the GDPR, organisations must explain the purposes of processing and the legal basis relied upon.
5. Legal bases for processing
We process your personal data on one or more of the following legal bases under the GDPR:
- to take steps at your request before entering into a contract or to perform a contract with you, for example when you ask for a quote or book a transfer
- to comply with a legal obligation, for example tax or accounting recordkeeping
- for our legitimate interests, such as managing enquiries, preventing misuse, and operating our transport service efficiently, provided those interests are not overridden by your rights
- based on your consent, where consent is required, such as for optional cookies or certain marketing communications if these are ever used
The GDPR recognises legal bases including contract, legal obligation, legitimate interests, and consent.
6. Sharing your personal data
We do not sell your personal data.
We may share your data only where necessary with:
- IT or website service providers
- email or communications providers
- accounting, legal, or professional advisers
- payment or invoicing providers, if used
- public authorities, where required by law
- trusted partners or subcontractors only if needed to deliver your transfer service
If you use WhatsApp or Viber to contact us, those platforms may process your data independently under their own terms. The website currently provides links to both services.
7. International transfers
Some of our service providers or communications tools may process data outside the European Economic Area. Where this happens, we will take reasonable steps to ensure appropriate safeguards are in place as required by data protection law.
8. Data retention
We keep personal data only for as long as necessary for the purposes described in this Privacy Policy, including to:
- respond to your request
- complete and manage your booking
- keep records required by tax or accounting law
- resolve disputes
- establish, exercise, or defend legal claims
Suggested wording you can keep or adjust:
- Enquiry data: up to 12 months after the last contact
- Booking and transaction records: up to 5–10 years where required for accounting or legal purposes
- Routine communications: deleted earlier where no longer needed
The GDPR requires personal data to be kept no longer than necessary.
9. Your rights
Under the GDPR, you may have the right to:
- be informed about how your data is used
- access your personal data
- request correction of inaccurate data
- request deletion of your data in some cases
- request restriction of processing
- object to certain processing
- request data portability where applicable
- not be subject to a decision based solely on automated processing, where applicable
EU and data protection authority guidance confirms these rights under the GDPR.
To exercise any of your rights, please contact us at:
Email: pdg.transfers@gmail.com
Phone: +30 6972330863
10. Complaints
If you believe your personal data has been handled unlawfully, you have the right to lodge a complaint with the Hellenic Data Protection Authority (HDPA) through its official website. The HDPA is the Greek supervisory authority responsible for GDPR oversight.
11. Data security
We take appropriate technical and organisational measures to protect personal data against accidental or unlawful destruction, loss, alteration, unauthorised disclosure, or access. The GDPR requires controllers to implement appropriate security measures.
However, no internet transmission or storage system can be guaranteed to be 100% secure.
12. Third-party links and communication channels
Our website may contain links to third-party services, including messaging platforms. We are not responsible for the privacy practices of external websites or apps. Please review their own privacy notices before using them.
The site currently includes WhatsApp and Viber contact links.
13. Cookies and website data
Our website uses cookies and similar technologies to provide a better browsing experience, ensure proper website functionality, analyse traffic, and, where applicable, support marketing activities.
Cookies are small text files stored on your device when you visit a website. They help websites recognise your device and remember certain information about your visit.
The types of cookies we may use include:
- Necessary cookies, which are required for the operation, security, and core functionality of the website
- Preference cookies, which allow the website to remember your selected settings
- Analytics cookies, which help us understand website usage and improve performance
- Marketing cookies, which may be used by us or third parties to deliver relevant content or measure campaign effectiveness
Necessary cookies may be used without prior consent where permitted by law. All other non-essential cookies are used only after you provide your consent through our cookie consent banner.
You may accept, reject, or manage your cookie preferences at any time through the cookie settings available on the website. You can also control cookies through your browser settings. Please note that blocking some cookies may impact the functionality of the website.
Where third-party tools are used, those providers may set cookies and process data in accordance with their own privacy policies.
14. Children’s data
Our services are not directed at children, and we do not knowingly collect personal data from children except where information is provided by a parent or guardian as part of a family booking.
15. Changes to this Privacy Policy
We may update this Privacy Policy from time to time to reflect legal, technical, or business changes. The latest version will always be posted on this page with the updated date above.