Zestios

Privacy Policy (Datenschutzerklärung)

1. Data Controller

The data controller responsible for data processing on this website is:

Zestios Catering & Services
Email: general@zestios.com

2. Data Collection on Our Website

Server Log Files

Our hosting provider automatically collects and stores information in server log files, which your browser automatically transmits. This includes: browser type and version, operating system, referrer URL, hostname of the accessing computer, and time of the server request. This data cannot be attributed to specific individuals and is not merged with other data sources.

Contact Forms

When you submit a contact form or quote request on our website, the information you provide (name, email address, phone number, event details, and message) will be processed for the purpose of handling your inquiry. This data is sent to our email address (general@zestios.com) and stored only as long as necessary to process your request.

3. Legal Basis for Processing

We process personal data based on the following legal grounds under the GDPR:

  • Art. 6(1)(a) GDPR — Consent: When you voluntarily submit your data through our contact forms.
  • Art. 6(1)(b) GDPR — Contract performance: When processing is necessary for the performance of a contract or pre-contractual measures.
  • Art. 6(1)(f) GDPR — Legitimate interests: For the proper operation of our website and business.

4. Data Sharing

We do not sell, trade, or otherwise transfer your personal data to third parties. Data may be shared with:

  • Hosting providers (for website operation)
  • Email service providers (for processing contact form submissions)

All third-party service providers are contractually obligated to protect your data in accordance with GDPR requirements.

5. Cookies

This website uses only technically necessary cookies required for the proper functioning of the website. No tracking cookies or analytics cookies are used. Technically necessary cookies do not require consent under GDPR.

6. Your Rights

Under the GDPR, you have the following rights regarding your personal data:

  • Right of access (Art. 15 GDPR) — You may request information about your stored personal data.
  • Right to rectification (Art. 16 GDPR) — You may request correction of inaccurate data.
  • Right to erasure (Art. 17 GDPR) — You may request deletion of your data.
  • Right to restriction (Art. 18 GDPR) — You may request restriction of data processing.
  • Right to data portability (Art. 20 GDPR) — You may request your data in a machine-readable format.
  • Right to object (Art. 21 GDPR) — You may object to the processing of your data.

To exercise any of these rights, please contact us at general@zestios.com.

7. Data Retention

Personal data submitted through our contact forms is retained only for the duration necessary to process your inquiry and any subsequent business relationship. Data is deleted when it is no longer needed, unless legal retention obligations apply.

8. Data Security

We use SSL/TLS encryption on our website to protect data transmission. We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction.

9. Right to Lodge a Complaint

You have the right to lodge a complaint with a supervisory authority if you believe that the processing of your personal data violates the GDPR. You can contact the supervisory authority in the EU member state of your habitual residence, place of work, or the place of the alleged infringement.

10. Changes to This Policy

We reserve the right to update this privacy policy to reflect changes in our practices or legal requirements. Any updates will be posted on this page with a revised effective date.