MYKONOSPLAN · WEBSITE INFORMATION
Privacy Policy
How we handle your information when you contact MykonosPlan about a property, project or management service.
Last updated: 1 October 2026
Who this privacy policy covers
This privacy policy explains how MykonosPlan handles personal information connected with this website and enquiries about construction, renovation, property maintenance and villa management in Mykonos. MykonosPlan is responsible for deciding how information received through its own enquiry channels is used.
For privacy questions or requests, email contact@mykonosplan.com or call +30 694 019 9851. MykonosPlan is the trading name of CAPJA EMANUEL ΜΟΝΟΠΡΟΣΩΠΗ Ι.Κ.Ε., the company operating this website and the data controller for the processing described in this notice.
Registered address: Platis Gialos, 84600, Mykonos, Greece.
G.E.MI. registration number: 184794538000.
Tax identification number (AFM): 802894639.
If we provide services for a property owner, the agreement may define a separate role for us when handling guest information on that owner’s instructions. That arrangement and any relevant guest notice apply alongside this website privacy policy.
Information you share with us
The contact form asks for your full name, email address, the service you are interested in and your message. Your telephone number and property location are optional. Without the required information, we may be unable to respond properly.
If you contact us by telephone, email or WhatsApp, we receive the details and correspondence you choose to share. For a property enquiry, these may include an address, photographs, plans, preferred timing and a description of the work. If we proceed to an agreement, additional contact, billing and project records may be needed.
Please provide only information relevant to your request. Do not send payment-card details, identity documents, passwords, alarm codes or private guest information through the general enquiry form. If you send information about someone else, make sure you have authority to share it and that they know why.
Why we use information
- Enquiries and proposals: to answer questions, assess a request and discuss a quotation. Where you request a service for yourself, the basis is taking steps towards a contract. For enquiries on behalf of a company or another owner, our legitimate interest is communicating with prospective clients and their representatives.
- Agreed services: to organise visits, coordinate work or management support and communicate about delivery, on the basis of the relevant contract or our legitimate interest in administering a business relationship.
- Administration: to keep invoices and other records required by tax, accounting or other applicable legal obligations.
- Security and disputes: to protect the website, prevent misuse and establish or defend legal claims, based on our legitimate interests in running a secure and accountable business.
- Optional marketing: a service enquiry is not permission to add you to a promotional mailing list. Any optional marketing must have an appropriate legal basis, including consent where required. You can object to direct marketing at any time.
Website technology and cookies
The website uses WordPress and Contact Form 7 for its enquiry form. Hosting, email and website-security services can process technical information such as an IP address, browser details, access times and security events when delivering or protecting the site.
The site also has tools for analytics and promotional features, including MonsterInsights, Jetpack and OptinMonster. The information processed depends on which features are enabled. An installed tool does not by itself mean that every feature is used.
Cookies and similar technologies may support essential functions, security, preferences and optional analytics. Strictly necessary technologies do not require cookie consent. Non-essential analytics and marketing technologies require prior consent where applicable; simply visiting the website is not consent.
Where cookie-preference controls are available, you can use them to accept, reject or change optional choices. Browser settings also let you remove or block cookies, although this may affect necessary functions. Contact us if you need information about the technologies used during your visit.
Who may receive information
Access is limited to people and providers who need information for the relevant purpose. Depending on your request, this can include our team, hosting and email providers, website support and security providers, and contractors or technicians involved in assessing or carrying out agreed work. Accountants, legal advisers and public authorities may receive information where required for administration, professional advice or legal obligations.
Only information relevant to the recipient’s role should be shared. A photograph or plan sent for a quotation is not permission for us to publish it in our portfolio or use it in advertising.
When you choose WhatsApp, your communications also involve WhatsApp/Meta under its own privacy terms. Other linked services operate under their own notices. You can contact us by email or telephone instead.
International processing
Some technology providers may process information outside Greece or the European Economic Area. Such transfers require a valid mechanism under data-protection law. Depending on the provider and destination, this may include an adequacy decision or contractual safeguards such as the European Commission’s Standard Contractual Clauses, with additional measures where required.
You can contact us for information about the providers and transfer safeguards relevant to your information.
How long information is kept
Retention depends on the purpose of the record. Enquiry correspondence is kept for as long as it is reasonably needed to answer the request and manage relevant follow-up. If an enquiry becomes a project or management agreement, necessary information forms part of that service record.
Contract, invoice and accounting records may need to be retained after a service ends to meet applicable statutory requirements. Records relevant to a complaint, dispute or legal claim may be kept while that matter and any applicable limitation period remain relevant. Security records and backups are subject to the retention arrangements of the systems used.
Information should be deleted or anonymised once it is no longer needed for these purposes. You can ask about the retention criteria for a specific record.
Your privacy rights
Depending on the circumstances, you may request access to your personal information, correction, erasure, restriction of use or a portable copy. You may also object to processing based on legitimate interests. Where processing relies on consent, you can withdraw that consent without affecting the lawfulness of earlier use.
Send requests to contact@mykonosplan.com. We may need proportionate information to confirm your identity. Requests are normally answered within one month. If a lawful extension is needed because of complexity or the number of requests, we will explain this within that first month. Rights are subject to applicable conditions; for example, some records must be kept to meet legal obligations.
You can complain to the Hellenic Data Protection Authority or another competent supervisory authority. You do not need to contact us first, although we welcome the opportunity to resolve a concern.
Security and updates
We use access controls and website-security tools to help protect information. No website, email system or messaging service can guarantee complete security. Please contact us promptly if you believe that information sent to us has been exposed or misused.
Our business enquiry services are intended for adults and are not directed at children. Please contact us if a child has submitted information that should be removed.
This privacy policy may be updated as the website, services or legal requirements change. The date above identifies the current version. A policy update does not itself provide consent for a new use of your information.
