The website pythia.apiron.ai is legally owned and provided by the company «APIRON HELLAS SINGLE MEMBER P.C.» and the distinctive title «APIRON HELLAS», which is seated in Pylaia, Thessaloniki, Georgikis Sholis 27, Postal Code 57001, Tax Identification Number 800932862, Hellenic Business Registry (ΓΕΜΗ) registration number 145234704000, lawfully represent, hereinafter referred to as the "Company".
The following terms pertain to the privacy policy and personal data protection policy that the Company applies with respect to Pythia’s services, which is a data science platform. The following terms are obligatory for all the users of Pythia’s services and for all the users of Pythia’s website, hereafter the "Clients". Not acceptance of the following terms grants the Clients no right to access Pythia’s services.
Pythia’s services are offered to persons above the age limit of 18 years old. If you are under the age of 18, we need the written and explicit consent of your legal guardian in order to offer you our services. We bear no responsibility in case of your false statement.
The legal framework for the protection of personal data within the European Union has changed. As from 25 May 2018 the General Data Protection Regulation (GDPR) is in place (EU) 2016/679, which rescinded the national legislations of the European Union’s Member - States and the Directive 95/46/EC.
Our company has already set in place procedures and policies in order to comply with this new legal framework by taking all the necessary organizational and technical measures for the protection of the subjects’ interests and the protection of their personal data. All the Company’s products and services are GDPR compliant and privacy friendly, applying all the international standards, best practices and guidelines for the protection of personal data. Privacy by design and by default are the basic privacy principles our Company strictly applies.
Pythia collects only the username of the user in an encrypted version. No other personal details of the user are collected.
The user’s username is collected in order to provide data analysis services to our Clients and generate data analysis reports.
The legal basis for the processing is the legitimate interest of our Company to provide data analysis services to our Clients.
We need the personal data only for the purposes we have already mentioned in a detailed manner above.
The processing of the personal has no impact on the data subjects, as we collect the minimum necessary data in order to provide Pythias’s services. Additionally, the personal data we process fall under the category of simple and not sensitive personal data.
All the personal data are treated as confidential. For their protection and in order to maintain confidentiality, we apply all the necessary organizational and technical measures. Strong encryption is applied as well.
We collect only the user’s username in a hashed version. We do not store it or engage in any other processing. This is necessary in order to give a unique identification number to the engagement sources, to distinguish the users among them and to know that it is the same user that made the specific comments, likes or any kind of interaction.
Only the Company’s authorized employees working on the Data Analysis department have access to the encrypted version of the personal data. We do not store any plain personal information. All the Company’s employees are bound by a Non-Disclosure Agreement. No other third parties have access to the personal data.
We do not share the personal data we collect. We only share with our Clients, the results of the engagement analysis, which contain no personal data.
The personal data are retained by our Company in an encrypted version for a period of five years in order to support the accuracy of the analysis results offered to our Clients.
For the protection of the personal data, we apply all the necessary organizational and technical measures that are prescribed by the national law, the European legislation and the international standards for the protection of personal data.
We encrypt the data and store them in a hashed format. Nobody has access to the encryption key besides the Management responsible for the data analysis department. This key is different per data source to achieve a higher level of security.
We apply Privacy Policy Guidelines to all the Company’s procedures.
We apply privacy friendly procedures and marketing policies.
We inform the data subjects for their personal data rights in a transparent manner and in simple language. We, also, provide them with all the necessary information with respect to the processing activities we perform, the respective purposes of the processing and the way they can simply and effectively exercise their rights as data subjects.
We bind our employees and external associates with confidentiality agreements in order to maintain confidentiality.
All our computers use antivirus and antimalware software of the latest technology.
All our computers are protected with Firewall.
We run all the necessary software and security updates for the software.
We keep regular security backups.
We use strong passwords to access our systems.
Data subjects have the following rights: right to be informed, right of access, right to rectification, right to erasure, right to restrict processing, right to data portability, right to object, rights in relation to automated decision making and profiling.
Data subjects can exercise their rights as data subjects by sending their relevant request to our e-mail info@apiron.ai. All the requests are replied in a prompt manner and within the time limits set by law.
In case you have an issue regarding the processing of your personal data and after having communication with our Company as Data Controller, you can then have recourse to the National Data Protection Authority. If you want to file a complaint or get more detailed information, you can visit the Authority’s official website at ico.org.uk.
This privacy policy is governed by and construed under the laws of UK and of the European Union on the protection of personal data (national data protection law and General Data Protection Regulation). Any dispute that may arise out of or in connection with this privacy policy shall be resolved by the UK Courts.