Social Food

This Privacy Policy explains how Social Food (hereinafter referred to as “the Company”, “we”, or “us”) collects, uses, stores, and protects personal data when you use our website, services, or communicate with us.

We are committed to protecting your personal data and ensuring transparency regarding how information is processed in accordance with applicable data protection laws, including the General Data Protection Regulation (EU) 2016/679 (GDPR).

By using this website, submitting information through our forms, or engaging with our services, you acknowledge that you have read and understood this Privacy Policy.

1. Who We Are

Social Food is a professional organization providing consulting, training, and educational services related to Food Safety Culture, organizational development, and professional capacity building.

For any questions regarding this Privacy Policy or the processing of personal data, you may contact us:

Email:
info@socialfood.gr

Phone:
6955586057

2. What Personal Data We Collect

We may collect and process personal data when you:

  • Visit our website
  • Submit a contact form
  • Request information about services
  • Register for training programs or seminars
  • Subscribe to newsletters or updates
  • Communicate with us by email or phone
  • Participate in professional engagements

The types of personal data we may collect include:

Identification Information

  • Full name
  • Job title
  • Company name
  • Professional role

Contact Information

  • Email address
  • Phone number
  • Business address

Professional Information

  • Industry sector
  • Organizational role
  • Training participation details
  • Certification information

Technical Data

  • IP address
  • Browser type
  • Device information
  • Website usage data
  • Cookies and analytics data

We do not intentionally collect sensitive personal data unless required for a specific service and explicitly agreed upon.

3. How We Use Personal Data

We process personal data only for legitimate business purposes.

These purposes may include:

  • Responding to inquiries
  • Providing consulting services
  • Delivering training programs
  • Managing professional relationships
  • Issuing certificates or documentation
  • Sending service-related communications
  • Improving website functionality
  • Ensuring security and system integrity
  • Complying with legal obligations

We do not sell personal data.

We do not use personal data for automated decision-making or profiling.

4. Legal Basis for Processing

We process personal data under one or more of the following legal bases:

Legitimate Interest

To operate our business and provide professional services.

Examples:

  • Responding to business inquiries
  • Maintaining communication with clients
  • Improving service delivery

Contractual Necessity

When processing is required to fulfill a service agreement.

Examples:

  • Training registration
  • Consulting engagement
  • Service delivery

Legal Obligation

When required to comply with applicable laws or regulatory requirements.

Examples:

  • Accounting records
  • Compliance documentation
  • Certification records

Consent

When you voluntarily provide consent.

Examples:

  • Newsletter subscription
  • Marketing communications
  • Optional data submission

You may withdraw consent at any time.

5. Data Retention

We retain personal data only for as long as necessary to fulfill the purposes described in this Privacy Policy or to comply with legal obligations.

Typical retention periods may include:

Service inquiries:
Up to 24 months

Client and training records:
Up to 10 years

Accounting and contractual records:
As required by applicable law

Website analytics data:
Typically 12–24 months

After the retention period expires, data is securely deleted or anonymized.

6. Data Sharing and Disclosure

We may share personal data only when necessary for legitimate business operations.

This may include:

  • IT service providers
  • Training platform providers
  • Payment processors
  • Professional advisors
  • Regulatory authorities
  • Certification bodies
  • Cloud hosting providers

All third-party providers are required to:

  • Maintain confidentiality
  • Implement appropriate security measures
  • Process data in compliance with GDPR

We do not sell or rent personal data to third parties.

7. International Data Transfers

Personal data may be processed or stored on secure servers located within the European Economic Area (EEA).

If data is transferred outside the EEA, appropriate safeguards will be implemented, including:

  • Standard Contractual Clauses
  • Secure hosting agreements
  • GDPR-compliant data protection mechanisms

8. Data Security

We implement appropriate technical and organizational measures to protect personal data from:

  • Unauthorized access
  • Data loss
  • Misuse
  • Alteration
  • Disclosure

Security measures may include:

  • Secure servers
  • Access controls
  • Data encryption
  • Backup procedures
  • Monitoring and system protection

Despite these measures, no system can be guaranteed to be completely secure.

9. Your Rights Under GDPR

Under the General Data Protection Regulation, you have the right to:

Access

Request a copy of your personal data.

Rectification

Request correction of inaccurate or incomplete data.

Erasure

Request deletion of personal data.

Restriction

Request limitation of data processing.

Data Portability

Receive your data in a structured format.

Objection

Object to processing based on legitimate interest.

Withdrawal of Consent

Withdraw consent at any time.

To exercise your rights, please contact us using the contact information provided in this policy.

10. Cookies and Website Analytics

Our website may use cookies and similar technologies to improve functionality, performance, and user experience.

Cookies may be used for:

  • Website functionality
  • Security
  • Analytics and performance monitoring
  • User preferences

Cookies do not typically identify individuals directly.

You can control or disable cookies through your browser settings.

More detailed information is available in the Cookie Policy.

11. Third-Party Services

Our website may use third-party services such as:

  • Website hosting providers
  • Analytics tools
  • Communication platforms
  • Training or learning management systems
  • Payment processing systems

These providers process data only as necessary to deliver services.

We are not responsible for the privacy practices of third-party websites.

12. Confidentiality of Communications

Information transmitted through the website or email may not always be secure.

Users should avoid sending:

  • Sensitive confidential information
  • Proprietary business data
  • Financial credentials

Unless secure communication channels are established.

13. Changes to This Privacy Policy

We may update this Privacy Policy periodically to reflect:

  • Legal requirements
  • Operational changes
  • Technology updates
  • Service improvements

The updated version will be published on this page with the revised date.

14. Contact Information

For any questions regarding this Privacy Policy or the processing of personal data, please contact:

Email:
info@socialfood.gr

Phone:
6955586057