Effective Date: 12/02/2025
Welcome to rentautocorfu.com (the “Website”). The Website is operated by or on behalf of Eptanisiaki EPE, created by corfubycar.gr, to provide car rental services exclusively on the Greek island of Corfu. By continuing to use our Website or services, you agree to this Privacy Policy.
This Privacy Policy explains how we collect, use, disclose, and protect the personal data of users (“you,” “your,” or “customers”). If you do not agree with any part of this Privacy Policy, you should discontinue use of our Website and services.
1. Who We Are
- Data Controller: Eptanisiaki EPE
- Address: Leof. Eptanisou,Corfu City, 49 100, Ionian Islands, Greece
- Contact: For any privacy-related inquiries, please email us at admin@rentautocorfu.com.
2. What Data We Collect
We collect and process various types of personal data to provide and improve our car rental services. This includes:
- Contact Details
- Name
- Email address
- Phone number
- Billing address (street name, street number, city, state, country, zip code)
- Travel Details
- Flight number (if applicable)
- Hotel/accommodation details
- Identification Details
- ID number or passport number
- Driving license number
- Date of birth
- Payment Details
- Credit card details
- Third-party payment references (e.g., PayPal details or bank transfer info)
- Cookies & Usage Data
- Anonymous data collected via cookies about the dates, cars, and rate plans that customers view or prefer.
- These cookies are used internally to understand user preferences and improve our services and user experience.
3. Purpose of Collection
We collect and process your personal data for the following purposes:
- Managing Reservations: Processing bookings, confirming availability, and communicating about your rental.
- Customer Support: Responding to inquiries, providing assistance, and managing disputes or complaints.
- Identification and Verification: Ensuring you meet legal requirements for driving and renting a vehicle.
- Analytics: Using anonymized data from cookies and internal records to improve our services and the overall customer experience.
4. Legal Basis for Processing
We process your personal data in accordance with applicable data protection laws, including the GDPR where relevant. Our legal bases include:
- Contractual Necessity: To perform and fulfill the car rental agreement.
- Legitimate Interests: To improve our services, enhance customer experience, and maintain efficient internal operations.
- Legal Obligations: For insurance requirements, tax obligations, and record-keeping as mandated by Greek and EU law.
5. Data Sharing and Disclosure
We share your personal data only when necessary and in compliance with data protection laws:
- Payment Processors
- We use PayPal and Eurobank for processing payments (including bank transfers). Your payment details may be shared with these entities to complete transactions securely.
- Insurance Provider
- In cases of accidents or damage, we may share relevant personal data (e.g., driving license, rental details) with our insurance provider to process claims.
- Legal or Regulatory Requirements
- We may disclose data if required by law or when needed to protect your rights, our rights, or the rights of third parties (e.g., authorities, courts, or law enforcement).
Note: We do not sell or rent your personal data to third parties.
6. International Data Transfers
We do not transfer your personal data outside of Greece or the European Economic Area (EEA). If in the future such a transfer becomes necessary, we will ensure it is done in compliance with GDPR requirements and any other relevant data protection laws.
7. Cookies and Tracking Technologies
We use internal cookies to collect anonymous data about the dates, cars, and rate plans that customers view or choose. This helps us:
- Understand customer preferences
- Improve our service offerings
- Enhance the user experience
Most browsers allow you to manage or disable cookies. If you disable or refuse cookies, some features of our Website may be affected.
8. Data Retention
- We retain booking and related personal data for 7 years to meet legal, tax, and insurance obligations.
- After this period, data is manually deleted from our systems.
- We may keep anonymized or aggregated data (which does not identify you) for statistical purposes.
9. Data Security
We are committed to protecting your personal data:
- We host our Website on high-speed Greek servers that employ multiple layers of security.
- We use SSL (Secure Socket Layer) certification by Sectigo Limited to encrypt data transmissions.
- We maintain restricted access protocols, ensuring that only authorized personnel with a “need-to-know” basis can access personal data.
While we strive to protect your personal data, no system is 100% secure. We continuously update our security measures in line with industry best practices.
10. Your Rights
Under applicable data protection laws (including the GDPR where relevant), you have the following rights:
- Right of Access: Request a copy of your personal data.
- Right to Rectification: Correct inaccurate or incomplete personal data.
- Right to Erasure (Right to be Forgotten): Ask us to delete your data, subject to legal or contractual limitations.
- Right to Withdraw Consent: If processing is based on consent, you can withdraw it at any time by discontinuing use of our services or contacting us.
- Other Rights: Depending on your jurisdiction, you may have the right to restrict or object to certain processing, or request data portability.
To exercise any of these rights, please contact us at [Insert email address]. We will respond within a reasonable timeframe and in accordance with applicable laws.
11. Children’s Privacy
Our services are intended for adults aged 23 and above. We do not knowingly collect personal data from minors. If we discover that a minor has provided us with personal data:
- We will delete such data.
- If we have the guardian’s contact information, we may notify them of the incident.
12. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. When we make significant changes, we will place a prominent notice on our homepage for 7–10 days. The effective date at the top of this Policy indicates when the latest changes took effect.
13. Acceptance of This Policy
By accessing or using our Website and services, you acknowledge that you have read, understood, and agree to the terms of this Privacy Policy. If you do not agree, please discontinue use of our Website and services.
Contact Us
If you have any questions or concerns regarding this Privacy Policy or our data handling practices, please contact us:
- Email: admin@rentautocorfu.com
- Address: Leof. Eptanisou,Corfu City, 49 100, Ionian Islands, Greece
We will do our best to address and resolve your inquiries promptly.
Last Updated: 12/02/2025