Last updated: [31/07/2026] v1.0
1. Who We Are
SOLARGON IKE (hereinafter “Solargon”, “we”, “us”, or “our”) is a private company (Ιδιωτική Κεφαλαιουχική Εταιρεία) registered in Greece, Tax Registration Number: EL998268399, with registered offices at Leoforos Andrea Syggrou 310, Kallithea, Athens, Greece.
We provide professional services in ICT infrastructure, networking, telecommunications, physical security systems, IoT solutions, and energy technologies to businesses and public sector organisations.
For all privacy-related matters, contact us at: dpo@solargon.gr
2. Scope of This Policy
This Privacy Policy explains how Solargon collects, uses, stores, and protects personal data in connection with:
- Your use of our website, solargon.gr
- Your business relationship with us as a prospective or existing client
- Our marketing and communication activities
This policy applies primarily to personal data of individuals acting in a business capacity (e.g., company representatives, procurement officers, technical contacts). It is not directed at consumers.
3. Data We Collect and Why
3.1 Contact Form Submissions
Data collected: Name, company name, email address, phone number, message content.
Purpose: To respond to your inquiry or request for quotation.
Legal basis: Legitimate interest (Article 6(1)(f) GDPR) — responding to inbound business inquiries.
3.2 Email Correspondence
Data collected: Name, email address, professional role, and any information included in your communications.
Purpose: Pre-contractual and contractual communication.
Legal basis: Contract performance (Article 6(1)(b) GDPR) and/or legitimate interest (Article 6(1)(f) GDPR).
3.3 Client and Project Data
Data collected: Business contact details, company information, project communications, invoicing data.
Purpose: Delivery of contracted services, invoicing, and legal compliance.
Legal basis: Contract performance (Article 6(1)(b) GDPR) and legal obligation (Article 6(1)(c) GDPR).
3.4 Marketing and Commercial Communications
3.4(a) Newsletter / Subscription Marketing
Data collected: Email address and name (optional).
Purpose: Sending updates about our services, industry news, and relevant information to subscribers.
Legal basis: Consent (Article 6(1)(a) GDPR).
You may withdraw your consent at any time by clicking “unsubscribe” in any newsletter email or by contacting us at dpo@solargon.gr. Withdrawal does not affect the lawfulness of processing prior to withdrawal.
3.4(b) Direct B2B Marketing Outreach
Data collected: Professional name, business email address, job title, company name — sourced from publicly available professional sources (e.g., company websites, LinkedIn, industry directories).
Purpose: Direct outreach to relevant professional decision-makers (e.g., IT managers, CTOs, procurement officers, facility managers) regarding Solargon services that may be relevant to their organisation.
Legal basis: Legitimate interest (Article 6(1)(f) GDPR). Solargon has assessed that direct outreach to relevant corporate titles regarding professional ICT and security services constitutes a legitimate interest that is not overridden by the interests, rights, or freedoms of the recipients, given the professional and B2B nature of the communication.
Right to object — absolute and unconditional: Under Article 21(2) GDPR, you have an absolute right to object to the processing of your personal data for direct marketing purposes at any time, without providing any justification. No balancing test applies. Upon receipt of your objection, Solargon will immediately and permanently cease processing your data for this purpose and will not contact you again for marketing. To exercise this right, contact us at dpo@solargon.gr or use the opt-out link included in all outreach communications.
3.5 Website Analytics
Data collected: Anonymized IP address, browser type, pages visited, session duration, geographic region.
Purpose: Understanding how visitors use our website and improving its content and performance.
Legal basis: Consent (obtained via our cookie consent banner).
3.6 Marketing Analytics (Meta Pixel)
Data collected: Browsing behaviour on our website, interaction with advertisements.
Purpose: Measuring the effectiveness of our advertising campaigns on Meta platforms (Facebook/Instagram).
Legal basis: Consent (obtained via our cookie consent banner).
3.7 CCTV Installation and Maintenance Activities
Context: Where Solargon provides CCTV camera and NVR installation, configuration, or maintenance services, our personnel may require temporary, task-specific access to live or recorded footage solely for the purposes of system setup, testing, calibration, or fault diagnosis.
Data accessed: Video footage captured by the Client’s CCTV system, accessed locally on-site or via secure remote connection during maintenance sessions only.
Purpose: Technical installation, commissioning, and maintenance of CCTV systems. Solargon does not retain, copy, or transmit any footage beyond what is strictly necessary for the technical task at hand.
Legal basis: Contract performance (Article 6(1)(b) GDPR), in our capacity as a data processor acting on behalf of the Client as data controller.
Retention: Solargon does not store CCTV footage. Any temporary local copies created for diagnostic purposes are deleted immediately upon task completion.
Role clarification: The Client is the Data Controller of the CCTV system and all footage captured by it. Solargon acts solely as a data processor for the duration and scope of the technical service. Where remote maintenance access to CCTV systems is required, a Data Processing Agreement (DPA) will be executed between Solargon and the Client before such access is activated.
3.8 IoT and Remote Monitoring Services
Context: Where Solargon provides IoT solutions, remote monitoring, or device management services, our systems may collect telemetry data from connected devices (e.g., sensors, controllers, gateways) and transmit it over secure communication channels (including SIM-based or IP-based connectivity) for the purposes of monitoring, alerting, and remote management.
Data collected: Device identifiers, operational status and telemetry readings, event logs, and network connectivity data. Where IoT systems are deployed in environments that may incidentally capture personal data (e.g., access control systems, occupancy sensors), this is noted in the relevant project scope.
Purpose: Remote monitoring, system health diagnostics, alerting, and technical support for IoT infrastructure operated by or on behalf of the Client.
Legal basis: Contract performance (Article 6(1)(b) GDPR), in our capacity as a data processor acting on behalf of the Client as data controller, where personal data is involved.
Role clarification: The Client is the Data Controller of any personal data collected by IoT systems deployed at their premises. Solargon acts as a data processor for the duration and scope of the technical service. Where ongoing remote access involves personal data, a Data Processing Agreement (DPA) will be executed between Solargon and the Client before such access is activated.
4. Third-Party Data Processors
Solargon uses the following third-party services which may process personal data on our behalf as data processors:
| Service | Purpose | Data Processed | Transfer Safeguards |
|---|---|---|---|
| Google Analytics (Google LLC) | Website analytics | Anonymized usage and behaviour data | EU-U.S. Data Privacy Framework (DPF); SCCs as fallback |
| Mailchimp (Intuit Inc.) | Newsletter and email marketing | Email address, name | EU-U.S. Data Privacy Framework (DPF); SCCs as fallback |
| Meta Pixel (Meta Platforms Inc.) | Advertising and campaign analytics | Browsing behaviour, interactions | EU-U.S. Data Privacy Framework (DPF); SCCs as fallback |
We may engage additional third-party processors as our digital services expand. In such cases, this Privacy Policy will be updated to reflect any material changes prior to new processing commencing. All processors are bound by data processing agreements ensuring GDPR compliance.
Transfers outside the EU/EEA: Where personal data is transferred to the United States, we rely primarily on the EU-U.S. Data Privacy Framework (DPF) adequacy decision adopted by the European Commission under GDPR Article 45, applicable to processors that are DPF-certified (including Google LLC, Meta Platforms Inc., and Intuit Inc.). Standard Contractual Clauses (SCCs) approved by the European Commission under Article 46(2)(c) GDPR are maintained as an additional and independent fallback safeguard in the event that the DPF adequacy decision is suspended, invalidated, or otherwise ceases to apply. For transfers to other third countries, we rely on SCCs or equivalent safeguards as applicable.
5. Data Retention
| Category | Retention Period |
|---|---|
| General email and website inquiries (no contract formed) | 3 years from last contact |
| Client and project correspondence (contract) | 5 years after project completion |
| Accounting and invoicing records | 5 years (Greek Law 4308/2014 and tax legislation), or for longer periods where required by tax authority order, audit obligation, or legal hold |
| Public procurement records | As required by applicable law (minimum 10 years) |
| Newsletter subscriber data | Until unsubscribe, then deleted within 30 days |
| Website analytics data | 14 months (Google Analytics standard retention) |
6. Your Rights Under GDPR
As a data subject, you have the following rights under Regulation (EU) 2016/679 (GDPR) and Greek Law 4624/2019:
- Right of access (Art. 15): Request a copy of the personal data we hold about you.
- Right to rectification (Art. 16): Request correction of inaccurate or incomplete data.
- Right to erasure (Art. 17): Request deletion of your data, subject to applicable legal retention obligations.
- Right to restriction of processing (Art. 18): Request that we limit processing of your data in certain circumstances.
- Right to data portability (Art. 20): Receive your data in a structured, commonly used, machine-readable format.
- Right to object (Art. 21): Object to processing based on legitimate interest, including direct marketing at any time.
To exercise any of these rights, contact us in writing at dpo@solargon.gr. We will respond within 30 calendar days. We may request proof of identity before actioning your request.
Right to lodge a complaint: You have the right to lodge a complaint with the Hellenic Data Protection Authority (ΑΠΔΠΧ):
- Website: www.dpa.gr
- Phone: +30 210 6475600
- Address: Kifisias 1-3, 11523 Athens, Greece
7. Data Security
We implement appropriate technical and organisational measures to protect personal data against unauthorised access, alteration, disclosure, or destruction. These include encrypted communications (SSL/TLS), restricted access controls, and regular security reviews aligned with our professional expertise in ICT security.
No method of electronic transmission or storage is 100% secure. We continuously work to improve our security practices and will notify affected individuals and the ΑΠΔΠΧ in the event of a personal data breach, in accordance with GDPR requirements.
8. Cookies
Our website uses cookies — small text files stored on your device when you visit solargon.gr. We use the following categories of cookies:
- Strictly necessary cookies: Required for the website to function (e.g., security, session management). These are placed without consent, as they are essential to the service you have requested.
- Analytics cookies (Google Analytics): Used to understand how visitors interact with our website (pages visited, session duration, geographic region). Placed only with your explicit consent.
- Marketing cookies (Meta Pixel): Used to measure the effectiveness of our advertising campaigns on Meta platforms (Facebook/Instagram). Placed only with your explicit consent.
When you first visit solargon.gr, a cookie consent banner is displayed. Non-essential cookies are not placed until you actively accept them via that banner. You may change or withdraw your cookie preferences at any time by clicking the cookie settings control available on our website. Withdrawal of consent does not affect the lawfulness of cookie processing prior to withdrawal.
9. Links to Third-Party Websites
Our website may contain links to external websites. Solargon is not responsible for the privacy practices of those sites and encourages you to review their respective privacy policies.
10. Changes to This Privacy Policy
We reserve the right to update this Privacy Policy at any time. The date of the latest revision is displayed at the top of this page. Material changes will be communicated via a notice on our website and, where required, directly to affected contacts by email. Where a change affects processing for which you provided consent, we will seek fresh consent before the new processing commences.
11. Contact
SOLARGON IKE
Leoforos Andrea Syggrou 310, Kallithea, Athens, Greece
Email: dpo@solargon.gr
Tel: +30 211 800 8550