Personal Data Protection & Confidentiality Policy
Please read the personal data protection and confidentiality policy and fill in the form!
1
Vision Rehabilitation | SEC
Vision Rehabilitation | SEC is a sole proprietorship providing:
• Vision rehabilitation for children, adults and older persons with Low Vision and Blindness, as well as
• Support, Education and Counseling.
The business is not a clinic or a medical, therapeutic or diagnostic entity and does not provide medical or therapeutic services. All services provided relate exclusively to information, education, counseling, training and guidance.
2
Personal Data Protection
Vision Rehabilitation | SEC fully complies with:
• the General Data Protection Regulation (EU 2016/679 – GDPR),
• Law 4624/2019 (Greece) and
• provisions concerning professional and medical confidentiality, insofar as they relate to health data, in accordance with applicable law.
All information collected during the provision of services (written or oral), including information related to vision, health, functionality and clients’ daily living, is considered strictly confidential.
3
Confidentiality & Non-Disclosure of Data
Vision Rehabilitation | SEC is a sole proprietorship and:
• All data are collected, stored and processed exclusively by the business owner, Georgia Pantazopoulou.
• Data are not disclosed, transferred or shared with third parties, professionals, institutions, or organizations.
• Data are not used for any purpose other than the education and support of clients.
An exception applies only where explicitly required by law or by court order.
4
Data Security, Storage and Retention
Appropriate technical and organizational measures are taken to ensure:
• confidentiality,
• data integrity and
• protection against unauthorized access, loss or destruction.
Data are processed and stored in accordance with the principles of necessity, data minimization and transparency, as defined by the GDPR.
Data Retention:
Personal and sensitive data are retained only for as long as necessary to provide services and fulfill legal or contractual obligations. In general, data will be securely deleted 6 months after the completion of services unless otherwise required by law. Clients may request earlier deletion at any time.
5
Clients' Rights
Clients or their legal guardians have the right to:
• access their personal data,
• request correction or updating,
• request restriction or deletion, where permitted and
• withdraw their consent at any time.
These rights may be exercised by contacting the business directly via email at viresec@gmail.com.

