Fanis Baboulas & Son Funeral Home (“we,” “us,” or “our”) is committed to protecting and respecting your personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your personal information when you visit our website at
https://baboulas.gr/ (including the English version at
https://baboulas.gr/en/) and when you interact with our services.This policy complies with the
General Data Protection Regulation (EU 2016/679 – GDPR) and relevant Greek national data protection laws (Law 4624/2019).
1. Data Controller Details
For the purposes of applicable data protection legislation, the
Data Controller responsible for your personal data is:
- Company Name: Fanis Baboulas & Son
- Headquarters/Main Address: 72 Vasileos Olgas Avenue, 55132 Thessaloniki, Greece
- Telephone: +30 2310 869 250 / +30 2310 841 530
- Email: [email protected]
2. Information We Collect
We collect personal information that you voluntarily provide to us when expressing interest in obtaining information or services, contacting us directly, or navigating our website.
A. Personal Information Provided by You
Depending on how you interact with us, we may collect:
- Contact Details: Full name, email address, telephone number(s), and residential address.
- Service-Related Information: Necessary details required to plan and execute funeral ceremonies, cremations, grave site design, or psychological support requests.
- Communications Data: Any messages, inquiries, feedback, or requests submitted via contact forms, email, or telephone.
B. Technical and Analytical Data
When you visit
baboulas.gr, our web servers automatically record standard internet logs and device info:
- IP address and general geographic location (city level).
- Browser type, operating system, device characteristics, and referrer URLs.
- Pages visited, time spent on specific pages, and interaction patterns.
3. Purpose & Legal Basis for Processing
We process your personal data under the following legal grounds:
| Purpose of Processing | Category of Data | Legal Basis (GDPR Art. 6) |
|---|
| Executing Funeral & Ceremony Services | Name, contact info, family/deceased details necessary for planning. | Contract Performance: Necessary to fulfill our agreement to provide requested services. |
| Customer Support & Inquiries | Name, telephone number, email address, message body. | Legitimate Interest / Pre-contractual steps: Responding to inquiries and providing support. |
| Live Streaming Services | Video/audio broadcast data (where live streaming of ceremonies is arranged). | Consent / Explicit Request: Provided upon authorization by the organizing family. |
| Legal & Tax Compliance | Billing/invoicing information, official certificates. | Legal Obligation: Compliance with Greek tax laws and administrative requirements. |
| Website Security & Analytics | IP address, session details, technical cookies. | Legitimate Interest: Maintaining site stability and security. |
4. Cookies and Tracking Technologies
baboulas.gr uses cookies and similar tracking technologies to improve navigation, analyze web traffic, and optimize site performance.
- Essential Cookies: Strictly necessary for the website to function properly.
- Analytical / Performance Cookies: Help us understand how visitors interact with the site (e.g., via Google Analytics) in an anonymized or pseudonymized form.
You can manage or disable cookie preferences directly through your web browser settings.
5. Sharing and Disclosure of Personal Data
We respect your privacy and
do not sell, rent, or trade your personal data to third parties. We may disclose personal data only under the following limited circumstances:
- Third-Party Service Providers: Authorized vendor partners who perform operational services on our behalf (e.g., hosting providers, IT support, cemetery authorities, municipal registry offices, cremation facilities, or streaming technology providers).
- Legal and Regulatory Authorities: When required by applicable law, judicial proceeding, court order, or governmental mandate under Greek or European law.
- Professional Advisors: Accountants, legal counsel, and insurers where necessary for legitimate business governance.
6. Data Transfers Outside the EEA
Your personal data is primary processed and stored within the
European Economic Area (EEA). If any data transfer outside the EEA becomes necessary (e.g., cloud service providers hosted in non-EEA countries), we ensure appropriate safeguards are implemented, such as EU Standard Contractual Clauses (SCCs).
7. Data Security
We implement appropriate technical, organizational, and physical security measures to protect your personal data against unauthorized access, alteration, disclosure, loss, or destruction. However, please note that no method of transmission over the Internet or electronic storage is 100% secure.
8. Data Retention
We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected, including legal, tax, accounting, or regulatory reporting requirements. Once the retention period expires or the purpose is fulfilled, data is securely deleted or anonymized.
9. Your GDPR Data Protection Rights
Under Chapter III of the GDPR, you have the following rights regarding your personal data:
- Right of Access: Request access to and a copy of the personal data we hold about you.
- Right to Rectification: Request correction of inaccurate or incomplete personal data.
- Right to Erasure (“Right to be Forgotten”): Request deletion of your personal data under certain legal conditions.
- Right to Restrict Processing: Request restriction of processing under applicable circumstances.
- Right to Data Portability: Request transfer of your data to yourself or another controller in a structured, machine-readable format.
- Right to Object: Object to data processing based on legitimate interests.
- Right to Withdraw Consent: Where processing is based on consent, you may withdraw it at any time without affecting prior lawful processing.
To exercise any of these rights, please submit your request to
[email protected].If you believe your data privacy rights have been infringed, you also have the right to lodge a complaint with the national supervisory authority:
- Hellenic Data Protection Authority (HDPA)
- Website: www.dpa.gr
- Address: 1-3 Kifissias Ave., 115 23 Athens, Greece
- Telephone: +30 210 6475600
10. Third-Party Links
Our website may contain links to external sites (such as social media pages like Facebook, Instagram, or LinkedIn). This Privacy Policy applies strictly to
baboulas.gr. We are not responsible for the privacy practices of external third-party websites.
11. Updates to This Policy
We reserve the right to modify or update this Privacy Policy at any time. Any changes will be posted on this page with an updated revision date.
12. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy, please reach out to us via:
- Email: [email protected]
- Phone: +30 2310 869 250 (Thessaloniki) | +30 210 33 88 802 (Athens) | +30 216 20 23 866 (Piraeus)
- Post: Fanis Baboulas & Son, 72 Vasileos Olgas Avenue, 55132 Thessaloniki, Greece