Privacy Policy
1. Introduction
The company KP Photography (hereinafter “the Company”) respects the privacy of its visitors and customers and is committed to protecting their personal data, in accordance with the General Data Protection Regulation (GDPR – EU 2016/679).
This policy explains how we collect, use and protect your data when you use the website kpstudio.gr and our services.
3. What Data We Collect
Depending on your use of our website and services, we may collect:
3.1 Contact Information
- Full name
- Phone
3.2 Order Details
- Shipping address
- Pricing details
- Purchase history
3.3 Payment Data
Payments are made through third-party providers (e.g. Viva Payments, PayPal).
We do not store card details.
3.4 Photographic and Video Material
- Files you send us for printing or editing
- Material created in the context of collaboration (weddings, events, etc.)
3.5 Website Usage Data
- IP address
- Cookies
- Usage statistics (e.g. via Google Analytics)
4. Purposes of Processing
Τα δεδομένα σας χρησιμοποιούνται για:
- Order fulfillment and service provision
- Contact with you
- Invoicing and accounting management
- Improving services and user experience
- Marketing (only with consent, where required)
- Sending informative emails and automated communications (e.g. follow-up after a request or order)
5. Legal Basis for Processing
The data processing is based on:
- In the execution of a contract (e.g. order, photography)
- With your consent (e.g. newsletter, cookies)
- In the legitimate interest of the company (e.g. security, service improvement)
- In legal obligations (e.g. tax information)
- Consent to send marketing emails
6. Transfer of Data to Third Parties
Your data may be transferred to partners only when necessary:
Payment Providers
- Viva Payments
- PayPal
Content – Material Management Platforms
- SmugMug (for sending/delivering photos and videos)
Courier – Transport Companies
- Box Now
- Cooperating couriers
Service Providers
- Hosting providers
- Marketing tools (e.g. Meta, Google)
All partners comply with GDPR.
Email Marketing & Communication Providers
- Brevo (Sendinblue) for sending newsletters, automated emails and contact management
7. International Data Transfers
Some partners (e.g. SmugMug, Google, Meta, PayPal) may be located outside the European Union.
In these cases it is ensured that:
- Are there appropriate guarantees (e.g. Standard Contractual Clauses)?
- GDPR security standards are met
8. Data Retention Period
Data is retained:
- As required for the provision of services
- As required by tax legislation
- Until you request deletion (where permitted)
Photographic material may be retained for a reasonable period of time for backup and customer service purposes.
9. Data Security
We take appropriate technical and organizational measures to:
- Protection from unauthorized access
- Avoiding data loss or corruption
- Secure data transfer (SSL)
10. Your Rights
You have the right:
- Access to your data
- Correction
- Deletion (“right to be forgotten”)
- Restriction of processing
- Data portability
- Withdrawal of consent
You can exercise your rights by contacting:📧 [email protected]
11. Cookies
The website uses cookies to:
- Basic operation
- Statistics
- Marketing
For more information, see the Cookies Policy.
12. Use of Photos and Videos for Display
The Company may use photos and videos created in the context of collaboration (e.g. weddings, baptisms, professional shoots) for promotional purposes, such as:
- Publication on the website
- Social media posts (e.g. Instagram, Facebook, TikTok)
- Portfolio creation
- Advertising promotion of services
This use is only made with the customer’s consent, where required by law.
The customer has the right:
- To refuse to use the material
- To withdraw consent at any time
In the event of revocation, the Company will remove the material within a reasonable period of time, where technically feasible.
13. Changes to the Policy
The Company reserves the right to modify this policy.
The changes are published on this page.

