Privacy Policy
Privacy & Personal Data Protection Policy
Last Updated: August 2026
At Hop in Sightseeing, we respect your privacy and are committed to protecting your personal data.
This Privacy & Personal Data Protection Policy explains what personal information we collect,
why we collect it, how we use and protect it, who may receive it, and the rights available to you.
This Policy applies when you visit www.hopin.gr, contact us, make a booking,
purchase a tour or other service, subscribe to communications, or otherwise interact with us.
1. Who Is Responsible for Your Personal Data?
The Data Controller responsible for the processing of personal data through this website is:
UNIQUE DESTINATION TRAVEL ΜΟΝΟΠΡΟΣΩΠΗ Ι.Κ.Ε.
Trading as: Hop in Sightseeing
44 Leof. Vasilissis Amalias
Athens 10558, Greece
Telephone: +30 210 4285500
Email: [email protected]
For questions concerning this Privacy Policy, the processing of your personal data,
or the exercise of your privacy rights, please contact us at
[email protected].
2. Applicable Data Protection Law
We process personal data in accordance with applicable Greek and European data protection legislation,
including:
- Regulation (EU) 2016/679 – General Data Protection Regulation (GDPR);
- Greek Law 4624/2019, as amended, concerning the implementation of the GDPR in Greece;
- Greek Law 3471/2006, as amended, concerning privacy and personal data in electronic communications; and
- other applicable Greek and European privacy and data protection legislation.
3. Personal Data We May Collect
The information we collect depends on how you interact with us and the service you request.
We may collect:
- Name and surname;
- Email address;
- Telephone number;
- Billing address and billing information;
- Country of residence, where required;
- Hotel, apartment or other accommodation details where required for pickup or drop-off;
- Booking details, including the tour, cruise, excursion or other service selected;
- Travel date and number of passengers;
- Passenger categories such as adults, children or infants where relevant;
- Special requests or information that you voluntarily provide;
- Payment and transaction information;
- Communications between you and Hop in Sightseeing;
- Technical information such as IP address, browser type, device information and website activity;
- Cookie and similar technology information, depending on your cookie preferences.
We aim to collect only the information reasonably necessary to provide the services you request
and to operate our business.
4. Information Required to Complete a Booking
Certain personal information is necessary for us to process and fulfil your booking.
This may include your name, contact information, travel date, number of passengers,
pickup information and payment details.
If information necessary for the performance of the booked service is not provided,
we may be unable to confirm or fulfil your booking.
5. How We Collect Personal Data
We may collect personal information:
- when you make a booking through our website;
- when you contact us by telephone, email or contact form;
- when you visit our office;
- when you subscribe to communications;
- when you interact with our website;
- through cookies and similar technologies, subject to your cookie choices;
- from travel agents, booking partners or other parties acting on your behalf, where applicable.
6. Why We Process Your Personal Data
We may use your personal data to:
- process, confirm and manage your booking;
- provide tours, cruises, excursions, transfers and other services you have purchased;
- arrange pickup and drop-off services;
- send your confirmation and booking voucher;
- provide meeting point, departure and pickup information;
- contact you regarding changes, delays or other matters affecting your booking;
- process payments and maintain transaction records;
- provide customer service and respond to enquiries;
- manage changes, cancellations, refunds and customer requests;
- comply with accounting, tax, regulatory and other legal obligations;
- protect our website, customers and business against fraud, misuse and security threats;
- maintain and improve our website and services;
- analyse website performance where permitted and subject to applicable cookie requirements;
- send marketing communications where permitted by law and, where required, with your consent.
7. Legal Bases for Processing
Under the GDPR, we process personal data only when there is a lawful basis for doing so.
Depending on the circumstances, the applicable legal basis may include:
Performance of a Contract
We process information necessary to take steps at your request before a booking is made
and to perform our contract with you after your booking is confirmed.
For example, we need certain information to confirm your reservation, arrange your service,
communicate meeting or pickup details and complete your booking.
Legal Obligation
We may process and retain information where necessary to comply with legal obligations,
including accounting, tax and regulatory requirements.
Legitimate Interests
Where permitted by law, we may process information where necessary for our legitimate business
interests, provided that these interests are not overridden by your rights and freedoms.
Examples include protecting our website against fraud or misuse, maintaining appropriate business
records, improving our services and handling customer enquiries or complaints.
Consent
Where processing requires your consent, such as certain marketing activities or optional cookies,
we will request your consent separately.
Where processing is based on consent, you may withdraw your consent at any time.
Withdrawal does not affect processing lawfully carried out before consent was withdrawn.
8. Booking and Service Communications
When you make a booking, we may contact you using the email address or telephone number you provide
when necessary to manage or fulfil your booking.
These communications may include:
- booking confirmations;
- booking vouchers;
- payment information;
- meeting point and departure instructions;
- hotel or accommodation pickup details;
- changes to departure times or locations;
- operational updates concerning your booked service;
- important safety or customer-service information.
These service-related communications are necessary for managing your booking and are separate
from promotional or marketing communications.
9. Marketing Communications
We may send information about tours, cruises, excursions, services or special offers where
permitted by applicable law.
Where consent is required, we will obtain it before sending marketing communications.
You may unsubscribe or withdraw your consent at any time.
To request that we stop sending marketing communications, please contact
[email protected]
or use any unsubscribe option provided in the communication.
Opting out of marketing will not prevent us from sending information necessary for an existing booking.
10. Payments and Transaction Security
Payments made through our website may be processed by banks, payment gateways and electronic
payment service providers.
Depending on the payment method selected, payment card or account information may be processed
directly by the relevant payment provider in accordance with its own privacy and security policies.
We may receive transaction information necessary to confirm and manage your payment,
such as the transaction status, transaction reference, payment method and amount.
We take appropriate technical and organisational measures designed to protect payment-related
and other personal information transmitted through our website.
11. Sharing Personal Data
We do not sell your personal data.
Where necessary to provide the service you have booked or to operate our business,
we may share relevant information with selected third parties, including:
- tour operators;
- cruise and boat operators;
- transportation and transfer providers;
- tour guides;
- hotels or accommodation providers where necessary for service arrangements;
- other travel suppliers directly involved in fulfilling your booking;
- banks and payment service providers;
- website hosting, IT and technical service providers;
- professional advisers such as accountants, auditors or lawyers;
- public, judicial, tax or regulatory authorities where disclosure is legally required.
We share only the information reasonably necessary for the relevant purpose.
Where a service provider processes personal data on our behalf, appropriate data protection
and confidentiality requirements apply where required by law.
12. Tour Operators, Suppliers and Transfer Providers
Some services sold through our website are provided or partly performed by third-party tour operators,
cruise companies, transfer companies or other travel suppliers.
To fulfil your booking, we may provide the relevant supplier with information such as your name,
number of passengers, hotel or pickup location, local telephone number and relevant booking information.
Where a third-party supplier processes your personal information independently for its own purposes,
that supplier may act as a separate Data Controller and its own privacy policy may apply.
13. International Transfers
Some technology, hosting, payment or other service providers may process or store personal data
outside Greece or outside the European Economic Area (EEA).
Where personal data are transferred outside the EEA, appropriate safeguards will be used where
required by the GDPR, such as an adequacy decision of the European Commission, contractual safeguards
or other legally recognised transfer mechanisms.
14. How Long We Keep Personal Data
We retain personal data only for as long as reasonably necessary for the purposes for which
it was collected and for any period required by applicable law.
Retention periods may vary depending on the type of information. For example:
- booking information may be retained to provide the service and handle subsequent enquiries, disputes or claims;
- financial and transaction records are retained for periods required by accounting and tax legislation;
- customer communications may be retained where necessary for customer service or legal purposes;
- marketing information may be retained until you unsubscribe, withdraw consent or it is no longer necessary;
- technical and security information may be retained for an appropriate period for operational and security purposes.
When personal data are no longer necessary and there is no legal requirement to retain them,
they will be deleted, anonymised or otherwise securely disposed of as appropriate.
15. Data Security
We implement appropriate technical and organisational measures designed to protect personal data
against accidental or unlawful destruction, loss, alteration, unauthorised disclosure,
unauthorised access and other unlawful processing.
Access to personal information is limited to authorised personnel and service providers who
require access for legitimate purposes.
While we take appropriate measures to protect your information, no method of internet transmission
or electronic storage can be guaranteed to be completely secure.
16. Cookies and Similar Technologies
Our website uses cookies and similar technologies for essential website functions and,
subject to your choices, other purposes such as analytics or marketing.
Strictly necessary cookies may be used where required for the operation of the website
or to provide a service you have requested.
Optional cookies are subject to the applicable consent requirements.
You may manage your choices through the cookie preference controls available on our website.
For detailed information about our use of cookies, please read our
Cookie Policy.
17. Your Data Protection Rights
Subject to the conditions and limitations established by applicable law, you may have the following rights:
- Right to be informed – to receive clear information about how your personal data are processed.
- Right of access – to request confirmation of whether we process your personal data
and obtain access to that information. - Right to rectification – to request correction of inaccurate or incomplete information.
- Right to erasure – to request deletion of your personal data where the legal conditions are satisfied.
- Right to restriction of processing – to request restriction of processing in certain circumstances.
- Right to data portability – where applicable, to receive certain personal data in a structured,
commonly used and machine-readable format or request its transfer to another controller. - Right to object – to object to certain processing based on legitimate interests
and to object to processing for direct marketing. - Right to withdraw consent – where processing is based on consent,
to withdraw that consent at any time. - Rights concerning automated decision-making – where applicable,
rights concerning certain decisions based solely on automated processing.
These rights are not absolute and may be subject to exceptions under applicable law.
For example, we may be legally required to retain certain financial or booking records
even after receiving an erasure request.
18. How to Exercise Your Rights
To exercise a data protection right or ask a question about your personal data, please contact:
Hop in Sightseeing – Privacy Request
Email: [email protected]
Telephone: +30 210 4285500
Address: 44 Leof. Vasilissis Amalias, Athens 10558, Greece
To protect your personal information, we may need to verify your identity before completing a request.
We will respond within the time limits required by applicable data protection law.
Under the GDPR, requests are normally answered within one month, although this period may be
extended where permitted by law depending on the complexity and number of requests.
19. Right to Lodge a Complaint
If you believe that your personal data have been processed in violation of applicable data protection law,
you have the right to lodge a complaint with the competent supervisory authority.
In Greece, the supervisory authority is:
Hellenic Data Protection Authority
1-3 Kifisias Avenue
115 23 Athens, Greece
Telephone: +30 210 6475600
Email: [email protected]
Website:
www.dpa.gr
20. Personal Data Concerning Children
Our tours and travel services may be booked for minors by a parent, legal guardian
or other authorised adult.
Where information concerning a minor is necessary to provide a booked service,
we ask that the information be provided by or with the authority of the child’s
parent or legal guardian.
We do not knowingly use children’s personal information for direct marketing without
an appropriate legal basis.
21. Third-Party Websites and Services
Our website may contain links to websites, maps, payment services or other services
operated by third parties.
Independent third-party websites and services have their own privacy practices and policies.
We encourage you to review those policies before providing personal information directly to them.
22. Changes to This Privacy Policy
We may update this Privacy & Personal Data Protection Policy from time to time to reflect
changes in our services, technologies, business practices or legal requirements.
The current version will be published on this page together with the date of the latest update.
23. Contact Us
If you have any questions regarding this Privacy Policy or the way we process your personal data,
please contact us:
UNIQUE DESTINATION TRAVEL ΜΟΝΟΠΡΟΣΩΠΗ Ι.Κ.Ε.
Trading as: Hop in Sightseeing
44 Leof. Vasilissis Amalias
Athens 10558, Greece
Telephone: +30 210 4285500
Email: [email protected]
PRIVACY AND PERSONAL DATA PROTECTION POLICY
INTRODUCTION
Privacy and protection of personal information and data are very important to us for all our customers.
Below, read how we process and protect your personal data, how we use your information and how we protect your privacy.
Any information which is provided by you to “Hop in Sightseeing” will be treated in accordance with the terms of the EU 2016/679 General Data Protection Regulation (GDP),
Data Protection Acts, Ν. 2472/1997 and Π.Δ. 207/1998 and 79/2000 art. 8 of Ν. 2819/2000 (Greek government) as well as the European Union directive 95/46/EU and 97/66/EU and/or
such amending or replacement legislation as may be adopted in Greece from time to time.
Personal Data Controller and Data Protection Officer
Tassopoulos Manos
44, Leof. Vas. Amalias – 10558 – Athens
+30210 4285500
[email protected]
PRIVACY, CONFIDENTIALITY, AND PERSONAL DATA PROTECTION
“Hop in Sightseeing” respects the personal data of our clients, partners, and employees. In the text that follows, we describe, in a simple and clear way, how we process your personal data which we either collect from you or you give to us.
Please read carefully the following information (hereinafter: “Declaration”) in order to get informed about the way that we collect, store, use, transfer and protect the personal data we receive from you:
In General:
1. “Hop in Sightseeing” collects and stores only and exclusively the personal data that you notify via insertion of the obligatory personal information in the relevant fields or/and via your answers within the framework of specific actions conducted by “Hop in Sightseeing”. You may participate voluntarily and the requested data are only the ones necessary for the company’s proper operation.
2. “Hop in Sightseeing” collects only the personal data that are offered voluntarily by you in order to serve you in the best possible way. When additional, optional data are requested, you will be informed accordingly at the time of their collection.
3. In view of our obligation to safeguard and protect its members’ and subscribers’ data, “Hop in Sightseeing” is bound to protect and use properly such data (hereinafter “personal data”) that are being collected through its Sites. During the process of your registration as a user and subscriber to our newsletter, we collect and process part or all the following personal data: Name – Surname, Gender, Age, Place of Birth, Place of Residence, Family Status, Studies, Professional Experience.
More specifically:
A. Collection of your personal data takes place only if you choose voluntarily to provide them – for example, in case you register to our Sites or our newsletter. Our ability to effectively communicate with you is necessary in order to obtain your written consent and continue sending you our newsletter. Consequently, it is necessary, during your registration, to provide us with the true personal data that will be requested of you. During your registration in the services offered via our Sites, you consent also to the storing and use of your personal data, in accordance with this Declaration. We are allowed to process your personal data, in order to offer personalized services, pursuant to law and according to our contractual obligations to you and the legitimate interests of our company (articles 6, lit. 1c, lit. 1b and lit. 1f) of Regulation (EU) 2016/679). Your personal data are not used for purposes other than the ones described in this Declaration, unless we receive your prior consent, or if such use is obligatory or permissible by law.
The purpose of the collection, use, and process of your personal data is (a) the offering of the services that you request through our Sites, for of receipt of which is required your data’s use or/and process (e.g. sending newsletter to your email), (b) your best update and facilitation in your browsing, through a listing of your personal preferences in your profile.
B. Your rights regarding the processing of your personal data
The personal data that you make known to “Hop in Sightseeing” through its Sites, either during your registration or at a later stage, are collected and used in accordance with the legislation in place, relating to the protection of personal data; more specifically, in accordance with the new European General Data Protection Regulation (EU) 2016/679 as well as the rest of the applicable legislation on personal data protection. More specifically, you have the following rights:
• Right to erasure of your personal data: Following your relevant request, we will erase the personal data that we have of you. However, some data will only be erased following a specific detention period, for example, in some instances, we are obliged by law to preserve the data or because such data are required for the completion of our contractual obligations towards you.
• Right to object against the processing of your data: You may, at any time, object against the processing of your personal data, for the future. If you object, we will stop processing your data, unless there are legitimate grounds for their further processing. Processing of your data for marketing reasons does not constitute a legitimate ground.
• Right to lodge a complaint with a supervisory authority.
• Right to ask for the restriction of the processing of your personal data.
• Right to be informed about your personal data: Following a relevant request from your end, we will provide you with information regarding the personal data we have of you.
• Right to rectification of your personal data: If you notify us accordingly, we will rectify any inaccurate personal data relevant to you. We will complete incomplete data since you inform us respectively, subject that this is necessary for the purposes of your data process.
• Right to revoke your consent: You may, at any time, revoke your consent for the process of your personal data in the future. The legality of processing your data prior to this point will not be affected by this.
If you exercise one of these rights, we will take all reasonable steps to satisfy your request within a reasonable time and at most within one (1) month from the submission of your request. We will inform you in writing about the course of your request, or the reasons why they may impede the exercise of the right in question, and/or the satisfaction of one or more of your rights, in accordance with the GDPR. Please note that in some cases it may not be possible to meet your relevant requests, such as when the fulfillment of the right is contrary to a legal obligation or impedes a contractual legal basis for processing your data.
However, if you believe that a right or a legal obligation of our Company regarding the protection of your Personal Data is violated, and having previously contacted the Data Protection Officer of our Company (DPO) for the matter, you have exercised your rights to the Company and or you did not receive a response within one month (extending the deadline to two months in case of a complex request), or you believe that the response you received from the Company is not satisfactory and your issue has not been resolved, you may lodge a complaint with the competent supervisory authority, Personal Data Protection Authority, 1-3 Kifissias Avenue, TK 115 23 Athens, email: [email protected], fax 2106475628.
C. Data Transfers
“Hop in Sightseeing” do not share or transfer your data to third parties, unless this is required for lawful professional purposes and business requirements, in order to respond to your requests and/if it is obliged to do so by law. In any case, access to your personal data is granted only to authorized personnel, in order to serve the purposes of their collection, use, and processing, as described in the present Declaration.
In certain instances, “Hop in Sightseeing” may share your data with some companies or service providers with whom it collaborates, in order to respond to your requests or to other data processors. In each instance, we will inform you in advance and whether required by law, ask for your consent. The people who will have access to your data in this respect will be bound by a contract or other legal act that provides all potential guarantees for the confidentiality, safety, and protection of your personal data.
“Hop in Sightseeing” reserve the right to use the data which you provide to us through our Sites for statistical, promotional, research, or advertising purposes, including by transferring it to authorized third parties, while ensuring that the identification or authentication of the individual concerned is not possible under such circumstances.
“Hop in Sightseeing” may transfer some personal data to processors outside Greece or store data in another EU country to the one where you are located. By providing your data through this site, you consent to this transfer/storage of your data abroad. “Hop in Sightseeing” may store your data in the cloud. This means that your data may be processed from a cloud service provider on behalf of “Hop in Sightseeing” and your data may be stored in locations throughout the world. Our Company’s activities do not require the transfer of your data to countries outside the EU, however, if we are required to do so, we will previously ask for your consent.
D. Data Security
“Hop in Sightseeing” implement appropriate technical and organizational measures in order to safeguard personal data and information from any accidental or unlawful destruction, loss, alteration, unauthorized disclosure, access, or bad use. Our associates, who support us in the maintenance of our Sites also adhere to these procedures. “Hop in Sightseeing” strives to retain your data only for as long as it is necessary for the purpose for which they were collected or until you request that they be erased unless it is required to retain them by law.
Use of Customer Information:
Visiting the “Hop in Sightseeing” website your information is collected when you request information from us, contact us or make a booking with us, our web server automatically recognizes and collects your IP address. We will update your information whenever we get the opportunity so that it is current, accurate, and complete. In order to purchase our products or services, it is necessary for you to disclose your contact information, including your name, address, email address, phone number, credit card details, and other identifying information in order to process orders and provide customer service. If you do not provide such information when purchasing one of our products or services, we cannot confirm your purchase or fulfill your booking. Any information obtained via this website will be used by “Hop in Sightseeing” to identify you as a customer, to process your booking, to verify credit or other charge card details, and to deliver relevant information to you in connection with your travel and any other ancillary services which you may wish to avail of. For these purposes, we may transfer your personal information to our own offices, authorized agents, other carriers and services providers, credit and charge card companies or banks, and data processing companies working on our behalf. Your personal information and any records relating to your travel will also be retained for audit functions.
We ask for your telephone number so that we can contact you urgently if there is a problem with your reservation. In some instances, we may also ask for personal demographic data such as your country of residence, gender, age, travel habits, etc. We ask for and store contact information about you when you create an account on the site, such as your name, email address, and signup location.
You can contribute to the site in several different ways, including writing reviews, uploading photos, filling out your public profile, and rating other users’ contributions. We may store these contributions (your “Content”), display them to other users, and use them for promotional purposes in accordance with the terms of the EU 2016/679 General Data Protection Regulation (GDP), Data Protection Acts, Ν. 2472/1997 and Π.Δ. 207/1998 and 79/2000 art. 8 of Ν. 2819/2000 (Greek government) as well as the European Union directive 95/46/EU and 97/66/EU and/or such amending or replacement legislation as may be adopted in Greece from time to time.
We only use your email address for sending you a confirmation of your bookings or to contact you for any reason directly linked to your booking, or occasionally to inform you of new features on, or offers through, “Hop in Sightseeing”.
How we use Cookies
“Cookies”, web cookie, or browser cookie, is usually a small piece of data sent from a website and stored in a user’s web browser while a user is browsing a website. When the user browses the same website in the future, the data stored in the cookie can be retrieved by the website to notify the website of the user’s previous activity. Cookies were designed to be a reliable mechanism for websites to remember the state of the website or activity the user had taken in the past. This can include clicking certain buttons, login in, or a record of which pages were visited by the user even months or years ago. Although cookies cannot carry viruses, and cannot install malware on the host computer, tracking cookies and especially third-party tracking cookies are commonly used as ways to compile long-term records of individuals’ browsing histories.
Cookies identify your computer and they do not personally identify you. At “Hop in Sightseeing” we make limited use of cookies to store your preferences, record session information, collect information on how you visit and access our websites, and to tailor our web pages to your needs. We also use cookies to analyze and measure the effectiveness of our email communications, website features and offerings, and advertisements. We also use third-party advertising companies to serve ads while you are visiting our websites and permit these companies to place and access their own cookies on your computer in the course of serving advertisements. Such advertisers do not have access to the information we collect through “Hop in Sightseeing” cookies. Our client may disable cookies from his computer but doing so he could not use our services.
How We Use Your Personal Information
If you make a purchase at our websites, we may send you information about new products, or ask your opinion about our websites, tours, excursion, etc., so that we may improve our service to you and other consumers. If you do not want “Hop in Sightseeing” to contact you in the future, please let us know by sending an email to [email protected]
If you subscribe to any of our email messages, we will use your personal information to send you the information you requested. You will always have the option to unsubscribe by sending an email. Some of the personal information we collect is shared with our service partners (e.g. tour operators, transfers) who are directly involved in fulfilling the purchases you have made from us.
We only provide our service providers with your name and your local contact details, if you provide them (e.g. your hotel name for pick-ups and drop-offs, your local phone number, etc.) We do not provide our service providers with any other personal information. If you decide to provide any personal information directly to a service provider, we recommend that you review the service provider’s Privacy and Personal Data Protection Policy.
Legal Disclosure of Your Information
We reserve the right to disclose your personally identifiable information as required by law and when we believe that disclosure is necessary to protect our rights and/or comply with a judicial proceeding, court order, or legal process served on our Web site.
Transaction Security
All transactions occur through our Secure Server. That means that we use encryption to secure information sent from your computer to our servers. In addition, credit card numbers and other sensitive information is encrypted in our bank database to provide a second layer of security for your private information. Our bank is ALPHA BANK S.A. and PIREOS BANK S.A. and PayPal (Europe) S.à r.l. et Cie
“Hop in Sightseeing” reserves the right to change its Privacy and Personal Data Protection Policy and post the changes on its website for your information. We will only use your personal information in accordance with the Privacy and Personal Data Protection Policy in effect at the time we collect your personal information.