Privacy Policy (Datenschutzerklärung)
1. Data Controller
The data controller responsible for data processing on this website is:
Zestios Catering & Services
Email: general@zestios.com
2. Data Collection on Our Website
Server Log Files
Our hosting provider automatically collects and stores information in server log files, which your browser automatically transmits. This includes: browser type and version, operating system, referrer URL, hostname of the accessing computer, and time of the server request. This data cannot be attributed to specific individuals and is not merged with other data sources.
Contact Forms
When you submit a contact form or quote request on our website, the information you provide (name, email address, phone number, event details, and message) will be processed for the purpose of handling your inquiry. This data is sent to our email address (general@zestios.com) and stored only as long as necessary to process your request.
3. Legal Basis for Processing
We process personal data based on the following legal grounds under the GDPR:
- Art. 6(1)(a) GDPR — Consent: When you voluntarily submit your data through our contact forms.
- Art. 6(1)(b) GDPR — Contract performance: When processing is necessary for the performance of a contract or pre-contractual measures.
- Art. 6(1)(f) GDPR — Legitimate interests: For the proper operation of our website and business.
4. Data Sharing
We do not sell, trade, or otherwise transfer your personal data to third parties. Data may be shared with:
- Hosting providers (for website operation)
- Email service providers (for processing contact form submissions)
All third-party service providers are contractually obligated to protect your data in accordance with GDPR requirements.
5. Cookies
This website uses only technically necessary cookies required for the proper functioning of the website. No tracking cookies or analytics cookies are used. Technically necessary cookies do not require consent under GDPR.
6. Your Rights
Under the GDPR, you have the following rights regarding your personal data:
- Right of access (Art. 15 GDPR) — You may request information about your stored personal data.
- Right to rectification (Art. 16 GDPR) — You may request correction of inaccurate data.
- Right to erasure (Art. 17 GDPR) — You may request deletion of your data.
- Right to restriction (Art. 18 GDPR) — You may request restriction of data processing.
- Right to data portability (Art. 20 GDPR) — You may request your data in a machine-readable format.
- Right to object (Art. 21 GDPR) — You may object to the processing of your data.
To exercise any of these rights, please contact us at general@zestios.com.
7. Data Retention
Personal data submitted through our contact forms is retained only for the duration necessary to process your inquiry and any subsequent business relationship. Data is deleted when it is no longer needed, unless legal retention obligations apply.
8. Data Security
We use SSL/TLS encryption on our website to protect data transmission. We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction.
9. Right to Lodge a Complaint
You have the right to lodge a complaint with a supervisory authority if you believe that the processing of your personal data violates the GDPR. You can contact the supervisory authority in the EU member state of your habitual residence, place of work, or the place of the alleged infringement.
10. Changes to This Policy
We reserve the right to update this privacy policy to reflect changes in our practices or legal requirements. Any updates will be posted on this page with a revised effective date.