Privacy Policy

This Privacy Policy explains how the “Ionian Route” portal collects, uses and protects visitors’ personal data, in accordance with the General Data Protection Regulation (EU) 2016/679 (GDPR) and Greek Law 4624/2019.

1. Data Controller

The data controller is the Contracting Authority of the project: [Region of Epirus / Regional Unit of Preveza — full legal name], [postal address]. For any matter regarding your personal data, contact the Data Protection Officer (DPO): [DPO name / email / phone].

2. What data we collect

  • Browsing data: technical information logged automatically by the server (anonymised IP address, browser type, pages visited, date/time).
  • Cookies: essential cookies for the site to function and, with your consent, third-party cookies (see the Cookie Policy).
  • Location data: if you enable location tracking on the map, your position is used only locally on your device to display it on the route. It is not stored or transmitted to our servers.

The portal does not require registration or an account to browse, and collects no identifying data without your explicit action.

3. Purposes and legal basis

  • Operation & security of the site — legal basis: legitimate interest (Art. 6(1)(f) GDPR).
  • Usage statistics to improve the service — legal basis: your consent (Art. 6(1)(a) GDPR), given via the cookie banner.

4. Recipients — Third parties

The interactive map uses Google Maps by Google Ireland Ltd. When the map loads, technical data may be transmitted to Google under the Google Privacy Policy. We do not share data with other third parties for commercial purposes.

5. Retention

Server logs are kept for a limited period for security reasons. Cookies are retained for the periods described in the Cookie Policy.

6. Your rights

You have the right of access, rectification, erasure, restriction, portability and objection, as well as the right to withdraw your consent at any time. To exercise them, contact the DPO. You also have the right to lodge a complaint with the Hellenic Data Protection Authority (dpa.gr).

7. Security

We apply appropriate technical and organisational measures (HTTPS encryption, access controls, regular security updates) to protect your data.

8. Changes

This policy may be updated. Any change is published on this page.

Last updated: 23 July 2026.