Legal

    Privacy Policy

    Last updated: May 2, 2026

    1. Introduction

    DAY ONE Growth Igniters ("we", "us", "our") respects your privacy and is committed to protecting your personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website dayone.gr or engage our services, in accordance with the EU General Data Protection Regulation (GDPR) and applicable Greek and UK data protection laws.

    2. Data Controller

    The data controller responsible for your personal data is:

    • DAY ONE Growth Igniters
    • Athens Office: 4 Nakou, Athens, Greece, 117 43
    • London Office: 133 Chase Side, London, UK, N14 5HD
    • Email: hello@dayone.gr
    • Phone: +30 210 902 8789

    3. Information We Collect

    We may collect and process the following categories of personal data:

    • Identity Data: name, job title, company name.
    • Contact Data: email address, telephone number, billing and business address.
    • Technical Data: IP address, browser type and version, time zone, operating system, device information.
    • Usage Data: information about how you use our website and services.
    • Marketing Data: your preferences in receiving marketing communications from us.
    • Communications Data: content of messages you send via contact forms, email, or our booking system.

    4. How We Use Your Data

    We process your personal data for the following purposes and on the following legal bases:

    • Contract performance: to deliver agreed services and respond to your inquiries.
    • Legitimate interests: to operate, secure, and improve our website and services.
    • Consent: to send marketing communications and place non-essential cookies.
    • Legal obligation: to comply with tax, accounting, and regulatory requirements.

    5. Cookies and Tracking

    Our website uses cookies and similar technologies to ensure proper functionality, analyse traffic, and enhance your experience. You can manage your cookie preferences through your browser settings. Essential cookies are required for the site to function; analytics and marketing cookies are only set with your consent.

    6. Sharing Your Data

    We do not sell your personal data. We may share it with trusted third parties who process data on our behalf, including:

    • Cloud hosting and infrastructure providers.
    • Email, CRM, and analytics service providers.
    • Professional advisors (lawyers, accountants, auditors).
    • Public authorities, when legally required.

    All processors are bound by data processing agreements ensuring GDPR-compliant handling of your data.

    7. International Transfers

    Where personal data is transferred outside the European Economic Area (EEA), we ensure appropriate safeguards are in place, such as Standard Contractual Clauses approved by the European Commission, or transfers to countries with an adequacy decision.

    8. Data Retention

    We retain your personal data only for as long as necessary to fulfil the purposes for which it was collected, including legal, accounting, or reporting requirements. Marketing data is retained until you withdraw consent.

    9. Your Rights Under GDPR

    You have the following rights regarding your personal data:

    • Access: request a copy of the data we hold about you.
    • Rectification: ask us to correct inaccurate or incomplete data.
    • Erasure: request deletion of your data ("right to be forgotten").
    • Restriction: ask us to limit processing of your data.
    • Portability: receive your data in a structured, machine-readable format.
    • Objection: object to processing based on legitimate interests or direct marketing.
    • Withdraw consent: at any time, where processing is based on consent.
    • Lodge a complaint: with the Hellenic Data Protection Authority (dpa.gr) or the UK ICO.

    To exercise any of these rights, contact us at hello@dayone.gr.

    10. Data Security

    We implement appropriate technical and organisational measures to protect your personal data against unauthorised access, alteration, disclosure, or destruction. These include encryption in transit, access controls, and regular security reviews.

    11. Children's Privacy

    Our services are not directed to individuals under the age of 16, and we do not knowingly collect personal data from children.

    12. Changes to This Policy

    We may update this Privacy Policy from time to time. The "Last updated" date at the top of this page reflects the most recent revision. Material changes will be communicated via our website or by email where appropriate.

    13. Contact Us

    For questions about this Privacy Policy or our data practices, please contact us at hello@dayone.gr or via our contact page.