Privacy Policy

Last updated: March 2, 2026Version: GR-GA-2026.03

PolicyWallet processes personal data under GDPR and applicable Greek law.

This policy explains what we collect, why we collect it, and your rights.

1. Data Controller

PolicyWallet acts as data controller for core platform operations.

For privacy inquiries, contact [email protected].

2. Data Categories

We process account data, policy records, document metadata, and technical logs.

Data categories vary by user role and enabled product functionality.

3. Legal Bases

Processing is based on contract performance, legitimate interest, legal obligation, or consent.

Where consent is required (for example cookies), you can withdraw it at any time.

4. Processing Purposes

We use data to deliver services, maintain security, analyze policies, and provide support.

We do not sell personal data to third parties for independent commercial use.

5. Sharing and Processors

We use processors for infrastructure, payments, and communications under contractual safeguards.

Data sharing is limited to what is required and protected by suitable controls.

6. Retention

We retain data only as long as needed for service delivery, legal obligations, and security.

After retention periods, data is deleted or anonymized where legally permitted.

7. Data Subject Rights

You may request access, rectification, portability, restriction, or erasure of your data.

Export and deletion request workflows are available through GDPR endpoints.

8. Security and Transfers

We apply technical and organizational safeguards to protect personal data.

Where cross-border transfers occur, appropriate legal safeguards are applied.