Privacy Policy
Effective Date: Mon Jan 01 2024 00:00:00 GMT+0000 (Greenwich Mean Time)
Last Updated: 13/06/2025
1. Introduction
Nautilus Bar Restaurant Mykonos – a company founded in 1994, registered in Greece under registration number 034637130 – is committed to protecting your personal data and respecting your privacy. Our company, also known as Nautilus and trading as NAUTILUS, EIRINI GIGINI – VAS. THEODOROU O.E, operates various brands including Nautilus Mykonos, Nautilus, and Nautilus. We offer Restaurant and fine-dining experiences featuring authentic Greek/Mediterranean cuisine, fresh seafood, and crafted cocktails in the Hospitality – Restaurant & Bar industry (specifically within the Hospitality – Restaurant & Bar sector, with a focus on Greek Mediterranean cuisine and mixology) to our target audience of Tourists and local patrons seeking an authentic Greek dining experience in Mykonos Town.
This Privacy Notice explains how we collect, process, and share your personal data in accordance with applicable laws such as in Greece / European Union: GDPR (Regulation (EU) 2016/679) and Greek Data Protection Act 4624/2019, and EU E-Commerce Directive 2000/31/EC and Greek Law 2251/1994 on e-commerce and consumer protection. It also outlines your rights and our procedures regarding data protection.
2. Data Controller & Contact Information
Nautilus Bar Restaurant Mykonos is the data controller responsible for your personal data.
Primary Address:
Lakka 1, Chora
Mykonos, Greece – 84600
Phone: 30 22890 27100
General Email: info@nautilusmykonos.gr
Accessibility Inquiries: info@nautilusmykonos.gr
Privacy Inquiries (if different): info@nautilusmykonos.gr
For any questions regarding this Privacy Notice or our data practices, please contact our Site Editor: Nautilus.
3. Data Protection Officer (DPO)
Our Data Protection Office for Nautilus Mykonos is Nautilus and can be contacted at info@nautilusmykonos.gr.
4. Categories of Personal Data We Collect
Nautilus Mykonos and may collect, store and process the following types of personal data about you:
Information You Provide:
Data submitted through forms on Nautilus Mykonos (e.g., when you sign up, contact us, or request information via https://nautilusmykonos.gr). This may include your name, contact details, preferences, and any other information you choose to provide.Copies of Correspondence:
Emails, letters, and any other communications (by post, email, or through Nautilus Mykonos) that you send to us.Survey and Questionnaire Responses:
Responses provided if you participate in any surveys or questionnaires using Nautilus Mykonos.Website Usage Data:
Information about your visits to Nautilus Mykonos, including traffic data and details on how you interact with our content.Device Information:
Technical data such as your IP address, browser type and version, time zone setting, operating system, platform, and other technology-related details from the devices you use to access Nautilus Mykonos.
5. Provision of Personal Data
If you fail to provide the required personal data:
When Nautilus Mykonos and Nautilus Bar Restaurant Mykonos is legally obligated to collect certain data or need it to perform our contractual obligations, your failure to provide this data may prevent us from fulfilling the contract (for example, providing you with Restaurant and fine-dining experiences featuring authentic Greek/Mediterranean cuisine, fresh seafood, and crafted cocktails). In such cases, we may have to cancel the relevant service or product, and you will be notified accordingly.
6. Purposes and Legal Basis for Processing
Nautilus Mykonos process your personal data for the following purposes:
Ensure Optimal Presentation:
To display our website content on Nautilus Mykonos in the most effective manner for you and your device.Send Relevant Information:
To communicate details about our Restaurant and fine-dining experiences featuring authentic Greek/Mediterranean cuisine, fresh seafood, and crafted cocktails and offerings (such as Full-service restaurant and bar with Mediterranean dishes, fresh seafood specialties, and cocktails) that may be of interest.Contract Performance:
To fulfill our contractual obligations through Nautilus Mykonos and Nautilus Bar Restaurant Mykonos with you.Compliance with Legal Obligations:
To adhere to legal and regulatory requirements (including EU E-Commerce Directive 2000/31/EC and Greek Law 2251/1994 on e-commerce and consumer protection and Greek Consumer Code (Law 2251/1994)) and to satisfy Anti Money Laundering and Know Your Client requirements.Feature Access & Account Protection:
To enable you to access various features on Nautilus Mykonos and to secure your account.Third-Party Communications:
To allow third parties to contact you about relevant goods or services if you allow us to do so via Nautilus Mykonos.Service Providers:
To transfer your information to our designated “Service Providers” so that they can service your requirements on or through Nautilus Mykonos.Marketing Communications:
To send you marketing communications by electronic means (email or text) only if they relate to our Restaurant and fine-dining experiences featuring authentic Greek/Mediterranean cuisine, fresh seafood, and crafted cocktails or Nautilus Mykonos or offerings you have previously expressed interest in.Statistical Analysis:
To aggregate your information with that of other users to generate statistical data that does not personally identify you after using Nautilus Mykonos. This aggregated data may be shared with third parties we collaborate with through Nautilus Mykonos.
7. Global Privacy and Data Processing Standards
Nautilus Mykonos respects and adheres to global privacy laws, using the GDPR as our benchmark standard. We ensure that your personal data collected via Nautilus Mykonos is processed in accordance with the highest legal requirements worldwide. To achieve this, we rely on the following lawful bases for processing your personal data:
Performance of a Contract (GDPR Article 6(1)(b))
Nautilus Mykonos process your data as necessary to fulfil our contractual obligations to you—such as providing the goods or services you have requested.Legal Obligation (GDPR Article 6(1)(c))
Nautilus Mykonos may process your data when required by applicable laws or regulations. This ensures that our operations comply with legal and regulatory requirements in all jurisdictions.Legitimate Interests (GDPR Article 6(1)(f))
Nautilus Mykonos in certain instances, may process your data to pursue our legitimate interests. This includes optimizing content presentation, delivering relevant promotions, improving our services, and preventing fraud, provided that these interests do not override your rights and freedoms.Consent (GDPR Article 6(1)(a))
Where you have explicitly provided consent—such as for marketing communications or the use of non-essential cookies— Nautilus Mykonos processes your data based on your agreement. You may withdraw your consent at any time, and this withdrawal will not affect the lawfulness of any processing conducted before the consent was withdrawn.By following these standards, Nautilus Mykonos ensures that our global data processing practices meet or exceed stringent privacy requirements, providing you with consistent and reliable protection of your personal data wherever you are located.
8. Marketing Communications
Nautilus Mykonos and Nautilus Bar Restaurant Mykonos will only send you direct marketing communications by electronic means (email or text) if:
-
You have provided explicit consent to Nautilus Mykonos and Nautilus Bar Restaurant Mykonos.
-
You have previously interacted with the Nautilus Mykonos website or Nautilus Bar Restaurant Mykonos and the marketing relates to our Restaurant and fine-dining experiences featuring authentic Greek/Mediterranean cuisine, fresh seafood, and crafted cocktails or similar offerings.
-
You exercise your right to opt out of marketing communications. You can do this by contacting us at info@nautilusmykonos.gr or by unsubscribing via the link provided in our communications.
9. Sharing Your Personal Data
Nautilus Mykonos and Nautilus Bar Restaurant Mykonos may share your personal data with third parties only under the following circumstances:
Within Our Group:
With companies that are part of our corporate group.Service Providers:
With trusted third parties that assist in processing your requests or fulfilling contractual obligations using Nautilus Mykonos.Legitimate Interests:
When sharing is necessary for our legitimate business interests (or those of a third party), provided that your rights and interests do not override these interests.Business Transfers:
In connection with the sale, transfer, or merger of parts of Nautilus Mykonos business or assets.Legal or Regulatory Compliance:
When required to comply with applicable legal or regulatory obligations, including those set out in Greece / European Union and GDPR (Regulation (EU) 2016/679) and Greek Data Protection Act 4624/2019.All third parties receiving your data are contractually bound to process it only on our instructions and in compliance with applicable data protection laws.
10. Cookies
Cookies are small files placed on your device when you visit Nautilus Mykonos. We use cookies to:
Recognize you and store your preferences on Nautilus Mykonos.
Enhance the performance and functionality of Nautilus Mykonos.
Generate aggregated statistical data for Nautilus Mykonos.
Deliver targeted advertising relevant to your interests when visiting Nautilus Mykonos.
Categories of cookies include:
Strictly Necessary Cookies: Essential for the operation of Nautilus Mykonos.
Performance Cookies: Collect data on how visitors use Nautilus Mykonos to create anonymous aggregated data.
Functionality Cookies: Enable a personalized experience by remembering your preferences for Nautilus Mykonos.
Targeting/Advertising Cookies: Deliver adverts tailored to you.
Some cookies remain on your device between sessions. You may disable cookies by adjusting your browser settings; however, doing so may limit the functionality of Nautilus Mykonos.
We use cookies in compliance with applicable legal frameworks such as Greece / European Union (including the EU’s ePrivacy Directive and GDPR) and GDPR (Regulation (EU) 2016/679) and Greek Data Protection Act 4624/2019 (for example, the CCPA for California). A cookie consent banner is provided on our website, and you may adjust your preferences at any time via our https://nautilusmykonos.gr/cookies/.
11. Data Security
Nautilus Mykonos and Nautilus Bar Restaurant Mykonos have implemented robust security measures to prevent your personal data from being accidentally lost, used, or accessed in an unauthorized way, altered, or disclosed. Access is restricted to Nautilus Mykonos and Nautilus Bar Restaurant Mykonos employees, agents, contractors, and other third parties who require it for legitimate business purposes and who are bound by confidentiality obligations.
In addition, Nautilus Bar Restaurant Mykonos have established procedures to address any suspected data breach. If a breach occurs, we will promptly notify you and any applicable regulatory authorities, in accordance with Greece / European Union and GDPR (Regulation (EU) 2016/679) and Greek Data Protection Act 4624/2019. Our technical safeguards include encryption, regular security audits, and strict access controls.
For any security-related inquiries, please contact us at info@nautilusmykonos.gr.
12. Data Retention
Nautilus Bar Restaurant Mykonos will retain your personal data regarding Nautilus Mykonos only for as long as necessary to fulfil the purposes for which it was collected, including meeting any legal, regulatory, accounting, or reporting requirements, as defined by 1 Year.
To determine the appropriate retention period, Nautilus Bar Restaurant Mykonos consider the quantity, nature, and sensitivity of the data, the potential risk of harm from unauthorized use or disclosure, and the applicable legal requirements.
Once your data is no longer needed, it will be securely deleted or anonymized.
13. Your Data Protection Rights
This section explains your rights regarding how your personal data is processed by Nautilus Bar Restaurant Mykonos. If you wish to exercise any of these rights, please contact us using the details below.
Right to Withdraw Consent:
You may withdraw your consent at any time. This will not affect the lawfulness of any processing prior to your withdrawal but may limit our ability at Nautilus Bar Restaurant Mykonos to provide certain services.Right of Access:
You have the right to access the personal data Nautilus Bar Restaurant Mykonos holds about you, free of charge.Right to Rectification:
You have the right to request that we correct any inaccurate or incomplete personal data.Right to Erasure (“Right to be Forgotten”):
You may ask us to delete your personal data, subject to certain exceptions where retention is legally required.Right to Restrict Processing:
You can request that we limit the processing of your personal data.Right to Data Portability:
You have the right to receive your personal data in a structured, commonly used, machine-readable format or to have it transferred to another controller.Right to Object:
Under certain circumstances, you have the right to object to the processing of your personal data.Rights under CCPA/CPRA:
For California residents, this includes the right to know, the right to delete, and the right to opt out of the sale of personal information.Rights under PIPEDA:
For Canadian residents, this includes the right to access and correct your personal information.To exercise these rights, please contact us at info@nautilusmykonos.gr.
Representatives of Nautilus Bar Restaurant Mykonos will respond within the timeframe required by applicable law. We endevour to respond to all privacy requests within 30 days of receipt, ensuring prompt and effective compliance with global data protection regulations.
14. International Transfers of Personal Data
Your personal data may be transferred to and stored in destinations in and outside the European Economic Area (EEA) and processed by personnel operating outside the EEA.
Whenever we transfer your data, we ensure that a similar level of protection is maintained by implementing one or more of the following safeguards:
Adequacy Decisions:
Data is transferred only to countries deemed by the European Commission to provide an adequate level of protection.Standard Contractual Clauses (SCCs):
We use contracts (when requested) approved by the European Commission to safeguard your data.Privacy Shield (or Successor Frameworks):
Where applicable, for transfers involving US-based providers.Other Safeguards:
Such as Binding Corporate Rules (BCRs) or approved codes of conduct.
For further details on the specific mechanisms used for international transfers, please contact us at info@nautilusmykonos.gr.
15. Changes to This Privacy Notice
We may update this Privacy Notice from time to time to reflect changes in our data processing practices or legal obligations, including updates under EU E-Commerce Directive 2000/31/EC and Greek Law 2251/1994 on e-commerce and consumer protection or changes in Greece / European Union. All updates will be posted on this page with a revised “Effective Date” (Mon Jan 01 2024 00:00:00 GMT+0000 (Greenwich Mean Time)). Significant changes may also be communicated via website banners on https://nautilusmykonos.gr and notifications sent to info@nautilusmykonos.gr. Please review this page periodically to stay informed of any updates.
16. Complaints
If you believe that our handling of your personal data does not comply with applicable data protection laws under the GDPR (Regulation (EU) 2016/679) and Greek Data Protection Act 4624/2019 (including Greece / European Union), you have the right to lodge a complaint with the relevant supervisory authority eg: Hellenic Data Protection Authority (HDPA) or courts in Greek courts (Cyclades region). Alternatively, you may contact us directly to discuss your concerns at info@nautilusmykonos.gr or 30 22890 27100.
17. Contact Nautilus Mykonos
If you have any questions or concerns regarding this Privacy Notice or our data practices, please contact us at:
Full Legal Entity Name:
Nautilus Bar Restaurant Mykonos (a.k.a. Nautilus)
Trading as: NAUTILUS, EIRINI GIGINI – VAS. THEODOROU O.E
Operating under the brand(s): Nautilus Mykonos, Nautilus, and Nautilus
Address:
Lakka 1, Chora
Mykonos, Greece – 84600
Phone: 30 22890 27100
General Email: info@nautilusmykonos.gr
Privacy/Accessibility Inquiries: info@nautilusmykonos.gr / info@nautilusmykonos.gr