Privacy Policy

Who we are

 

Kalfidis Personal & Precious, (Kalfidis Michail and CO) is a company established throughout Greece for creating exceptional jewelry. Find out more about our company or our long history.

This privacy policy applies to all visitors and customers using or accessing our website and the services that we provide, including kalfidis.com, kalfidis.gr, kosmio.com, dumonde.gr, ziito.gr. It also applies to human resources data of our employees and contractors.

Kalfidis Personal & Precious, (Kalfidis Michail and CO) is a registered corporation in Thessaloniki, Greece. Find out where our stores are located here.

Our mailing address is:
Kalfidis Michail and CO
6 VENIZELOU st., PANORAMA
Thessaloniki, 552 36 GR
Greece, T.+30 2310 331000

For any privacy-related questions, you can reach us at privacy@kalfidis.com.

 

Who We Share Your Data With

 

We use third-party services (data processors) across our sites. The extent to which your data is shared with these providers depends on your use of our services, and we list the specific third-parties in use (with links to their privacy policies) in the sections below.

Each third-party provider has been vetted by our security team to ensure that privacy policies and practices meet or exceed the same levels of compliance and standards that we follow. Where appropriate and available, we hold additional signed Data Privacy Agreements with these companies as an additional layer of accountability in order to help ensure your data is safe and secure.

We disclose personal and potentially personal data and information only to our employees, contractors, and affiliated organizations that (i) need to know that information in order to process it on our behalf or to provide services, and (ii) that have agreed, in writing, not to disclose it to others. Some of those employees, contractors and affiliated organizations may be located outside of your home country; by using our websites and services, you consent to the transfer of such information to them. We will not rent or sell personal and potentially personal data and information to anyone.

We may be required to disclose an individual’s personal information in response to a lawful request by public authorities, including to meet national security or law enforcement requirements.

If we ever were to engage in any onward transfers of your data with third parties for a purpose other than which it was originally collected or subsequently authorized, we would provide you with an opt-out choice to limit the use and disclosure of your personal data.

 

Cookies

 

A cookie is a string of information that a website stores on a visitor’s computer, and that the visitor’s browser provides to the website each time the visitor returns. We use cookies across our sites to help identify and track visitors, their usage of our services, and their website access preferences. We describe the specific cookies used in the sections below. Visitors who do not wish to have cookies placed on their computers should set their browsers to refuse cookies before using our websites, with the drawback that certain features may not function properly without the aid of cookies.

 

What Personal Data We Collect And Why We Collect It

 

Email/Chat/Contact Forms

  • We use Google/G Suite to process all internal email and communication with our customers. Google’s privacy policy is available here.
  • Customers that email us, or use any of the contact forms on our websites, will have their email address, IP address, and any data provided in the contact form or body of the email stored in G Suite archives and in our in-store software solution, Midas ERP. Midas is the product of the software development corporation Jewelsoft who provide modern innovations and effective solutions to business in the silver and goldsmithing industry. Their privacy policy is found here.
  • We keep all email and contact form communication indefinitely to help us provide support and improve our services. Individuals can request copies of any previously saved correspondence with us at any time.
  • Analytics
    • We use Google Analytics for tracking visitors anonymously and aggregating information about the traffic to our websites. The Google Analytics privacy policy can be found here. You can learn more about how to opt-out of tracking in Google Analytics here.
  • Marketing Campaigns
    • We may utilize social media and web advertising campaigns. These service providers use cookies on our sites and/or pixel tracking to serve ads across the different platforms.
      • We use MailChimp services for email marketing. Mailchimp’s privacy policy is found here.
      • Instagram privacy policy is found here.
      • Twitter privacy policy is found here.
      • Google AdWords & Doubleclick (privacy policy | opt out)
      • Facebook (privacy policy | opt out)
  • Hosting & Backups
    • All web servers and hosting are managed by our team on the A2 Hosting Web Services platform. This includes website hosting, web database, file storage, APIs, and log files. A2 Hosting privacy policy can be found here.
    • CloudFlare is a traffic optimization and distribution service provided by CloudFlare Inc.
      The way CloudFlare is integrated means that it filters all the traffic through this Website, i.e., communication between this Website and the User’s browser, while also allowing analytical data from this Website to be collected. CloudFlare privacy policy can be found here.
    • All backups are managed by our team and are stored on the Amazon Web Services platform located in different regions around the world. Amazon’s privacy policy can be found here.

 

What Rights You Have Over Your Data

 

You can request “to be forgotten” and we will erase any personally identifiable data we have about you. Of course, this excludes data we need for administrative or security purposes or if we are required by law to retain some of the data.

An individual who seeks access, or who seeks to correct, amend, or delete inaccurate data, should direct his/her query to privacy@kalfidis.com. We will respond within a reasonable timeframe, not to exceed one month.

 

How We Protect Your Data

 

The security and reliability of our service is our number one priority. We invest heavily in the training of our staff and our infrastructure to ensure that best practices are followed in everything that we do.

      • Prevention is best when it comes to security, and as a first step, we have an extensive internal review and Quality Assurance process in place specifically to prevent potential security vulnerabilities in our services.
      • Every employee and contractor goes through background checks and an onboarding process that includes a trial period where access to customer data is provided only when working directly under the supervision of another staff member.
      • All staff only have access to systems that are directly required to complete the functions of their job. We use dual factor authentication for all critical systems and communications services, and automatically log all staff activity using an internal logging tool, Midas log feature, Google ‘G’ Suite features, and Amazon Cloud Trail.
      • All staff (including any contractors) undergo initial training to ensure proper understanding of all security-related processes. Staff regularly attend industry conferences and otherwise stay informed of best practices and relevant trends. Staff review and agree, in writing, to all policies and procedures annually.
      • We only use third-party services, such as Amazon Web Services, that are fully vetted and adhere to the highest levels of privacy and security practices.

 

What Data Breach Procedures We Have In Place

 

Should any event occur where customer data has been lost, stolen, or potentially compromised, our policy is to alert our customers via email no later than 48 hours of our team becoming aware of the event. We will also report such incident to any required data protection authority.

 

Minors

 

The site is not intended for individuals under the age of consent.

 

Privacy Policy Changes

 

Although most changes are likely to be minor, we may change our Privacy Policy from time to time, at our sole discretion.

 

Date of last revision: 1 June 2018