TopSearch Web · Data Protection

Privacy Policy

This Privacy Policy explains how TopSearch Web collects, uses, stores and protects personal data when you visit our website, contact us, request a quotation or purchase one of our services.

Last updated: 12 July 2026

We do not sell your data Personal data is used only for legitimate business, contractual, legal and website-operation purposes.
Secure online payments Card details are entered directly into Stripe’s secure payment environment and are not stored by TopSearch Web.
You remain in control You may request access, correction, restriction or deletion of your personal data where applicable.

1 Who we are

TopSearch Web provides website design, ecommerce development, search engine optimisation, advertising, social media, AI video production and other digital marketing services.

For the purposes of the General Data Protection Regulation (“GDPR”), TopSearch Web is the data controller responsible for personal data processed through this website and in connection with our services.

Website: topsearchweb.gr
Address: Dimitri Gounari 104, Patras, Greece
Email: george@topsearch.gr
Telephone: +30 698 390 6212

2 Scope of this Privacy Policy

This Privacy Policy applies when you:

  • Visit or interact with topsearchweb.gr.
  • Complete a contact, quotation or order form.
  • Purchase an AI Video Ads package or another service.
  • Communicate with us by email, telephone or online form.
  • Submit files, images, branding or project instructions.
  • Subscribe to marketing communications where offered.

This Policy does not govern the independent processing practices of third-party websites or services that you may access through external links.

3 Personal data we may collect

Depending on how you interact with us, we may collect:

  • Identity and contact data: name, company name, email address, telephone number and country.
  • Business and billing data: business details, billing address, VAT or tax information and invoice details.
  • Order and contract data: selected service or package, price, payment status, order date, accepted terms and related transaction details.
  • Project data: briefs, instructions, scripts, product information, logos, photographs, videos, voice recordings and other files submitted for the provision of a service.
  • Communication data: emails, form submissions, telephone notes, feedback, revision requests and other correspondence.
  • Technical data: IP address, browser type, device, operating system, referring page, website logs and security-related information.
  • Usage and analytics data: pages visited, session information, interactions and website performance information, subject to your cookie choices.

We do not intentionally request special-category personal data, such as health, religious, political or biometric information, unless it is strictly necessary, lawful and expressly agreed.

4 How we collect personal data

We may collect personal data:

  • Directly from you when you complete a form or contact us.
  • When you place an order or complete a Stripe payment.
  • When you provide project files or production instructions.
  • Automatically through cookies, analytics technologies and server logs.
  • From payment, hosting, security or communications providers involved in delivering our services.
  • From publicly available business sources where lawful and reasonably expected.

5 How and why we use your data

Purpose Data generally used Legal basis
Responding to enquiries and preparing quotations Identity, contact, business and communication data Steps requested before entering into a contract and our legitimate business interests
Processing orders and providing services Contact, billing, order, payment, project and communication data Performance of a contract
Processing payments and preventing fraud Transaction, payment status, contact, technical and order data Performance of a contract and legitimate interests in preventing fraud
Issuing invoices and keeping accounting records Identity, billing, transaction and tax data Compliance with legal obligations
Operating, protecting and improving the website Technical, usage, analytics and security data Legitimate interests and consent where non-essential cookies are involved
Handling disputes and protecting legal rights Order records, accepted terms, communications and delivery evidence Legitimate interests and legal claims
Sending optional marketing communications Name, email and marketing preferences Consent or another lawful basis where permitted

6 Contact forms and communications

When you submit a form, we may store the information contained in that form in our website systems, email systems or business records so that we can respond to your request and maintain an appropriate record of the communication.

Information submitted through a form may include your name, email, telephone number, business name, service request and any message or files you provide.

You should not submit confidential, sensitive or third-party personal data unless it is genuinely necessary and you have the legal right to provide it.

7 AI Video Ads and production files

When you purchase or request AI Video Ads, we may process the information and materials needed to produce the requested videos. This may include product photographs, logos, scripts, brand guidelines, offers, voice recordings and other creative assets.

Project materials may be processed using selected artificial intelligence, editing, cloud-storage, voice-generation and video production providers.

We use these materials only to manage, produce, review and deliver the requested service, maintain project records, resolve technical issues and protect our contractual rights.

The Client is responsible for ensuring that they have permission to provide and use all submitted logos, images, voices, personal data, trademarks and other materials.

8 Payments through Stripe

Online payments may be processed through Stripe. Payment card details are entered directly into Stripe’s secure payment environment.

TopSearch Web does not receive or store your full card number, card security code or complete payment credentials.

We may receive limited information from Stripe, such as:

  • Your name and billing contact details.
  • The amount, currency and date of payment.
  • The payment status and transaction reference.
  • Limited payment-method information.
  • Fraud, refund or payment-dispute information.

Stripe may process personal data for payment processing, fraud prevention, legal compliance and related financial services in accordance with its own privacy documentation.

You can review Stripe’s Privacy Policy at: stripe.com/privacy .

9 Cookies and analytics

Our website may use cookies and similar technologies to:

  • Provide essential website functionality.
  • Remember settings and preferences.
  • Protect forms and prevent spam or abuse.
  • Measure traffic and website performance.
  • Understand how visitors interact with our pages.
  • Measure advertising performance where applicable.

We may use services such as Google Analytics and Google Tag Manager. These services may collect technical and usage data, subject to the applicable cookie settings and consent requirements.

Where legally required, non-essential analytics or advertising cookies will be used only after you have made the relevant choice through the cookie banner.

10 Embedded and third-party content

Pages on our website may include content provided by third parties, such as YouTube videos, maps, social media content or external forms.

These providers may collect technical information, place cookies or record your interaction with their content, particularly where you are logged into an account with that provider.

Third-party services operate under their own privacy policies and are responsible for their independent processing activities.

11 Who we may share data with

We may share personal data only where reasonably necessary with:

  • Website hosting and technical-support providers.
  • Email, form and communication service providers.
  • Stripe and other authorised payment providers.
  • Analytics, security and anti-spam providers.
  • Cloud storage, file-transfer and backup providers.
  • AI, voice, image, editing and video production providers.
  • Accountants, legal advisers and professional consultants.
  • Public authorities, courts or regulators where required by law.
  • Business partners or subcontractors involved in delivering an agreed service, subject to appropriate confidentiality and data-protection obligations.

We do not sell or rent personal data to unrelated third parties.

12 International data transfers

Some technology, payment, analytics, hosting, cloud or AI service providers may process information outside Greece or outside the European Economic Area.

Where data is transferred internationally, we take reasonable steps to use providers and transfer mechanisms recognised under applicable data-protection law, such as adequacy decisions, Standard Contractual Clauses or other lawful safeguards.

13 How long we retain personal data

We retain personal data only for as long as reasonably necessary for the purpose for which it was collected, including contractual, legal, accounting, security and dispute-resolution purposes.

Our normal retention criteria include:

  • General enquiries and quotation requests may normally be kept for up to 24 months after the last meaningful communication.
  • Customer, order, project, acceptance and delivery records may normally be kept for up to five years after completion, or longer where necessary for a dispute or legal claim.
  • Invoices and accounting records are retained for the period required under applicable tax and accounting law.
  • Submitted project files may normally be retained for up to 12 months after delivery unless a different arrangement has been agreed or continued storage is reasonably necessary.
  • Marketing data is retained until consent is withdrawn or the information is no longer required.
  • Technical logs and backups may be retained for shorter rolling periods for security and disaster-recovery purposes.

Data may be retained longer where required by law or where necessary to establish, exercise or defend legal claims.

14 Data security

We use reasonable technical and organisational safeguards designed to protect personal data against unauthorised access, disclosure, alteration, loss or misuse.

These measures may include:

  • HTTPS encryption for website communications.
  • Access controls and account authentication.
  • Software, hosting and security updates.
  • Firewalls, anti-spam and abuse-prevention systems.
  • Restricted access to project and customer information.
  • Backups and technical monitoring where appropriate.

No online system can be guaranteed to be completely secure. Users should also take reasonable precautions when submitting or transmitting information online.

15 Your data-protection rights

Depending on the circumstances and applicable law, you may have the right to:

  • Request access to your personal data.
  • Request correction of inaccurate or incomplete information.
  • Request deletion of personal data.
  • Request restriction of processing.
  • Object to processing based on legitimate interests.
  • Receive certain data in a portable format.
  • Withdraw consent at any time where consent is the legal basis.
  • Lodge a complaint with a data-protection authority.

These rights are not absolute. We may need to retain certain information where required by law, for accounting purposes or to establish, exercise or defend legal claims.

To exercise a right, contact: george@topsearch.gr . We may need to verify your identity before completing a request.

16 Marketing communications

Where we offer email marketing or promotional communications, we will use personal data only where there is an appropriate lawful basis.

You may unsubscribe at any time by using the unsubscribe option in the message or by contacting us directly.

Withdrawing from marketing does not affect transactional, contractual or service-related communications that remain necessary.

17 Automated processing

TopSearch Web does not itself use personal data to make decisions based solely on automated processing that produce legal or similarly significant effects.

Payment, security and fraud-prevention providers may use automated systems to assess transactions or detect suspicious activity in accordance with their own legal obligations and privacy policies.

18 Children’s data

Our website and professional services are not directed at children. We do not knowingly collect personal data from children through our service-ordering processes.

If you believe that a child has provided personal data to us without appropriate authorisation, please contact us so that we can review and, where appropriate, remove the information.

19 Changes to this Privacy Policy

We may update this Privacy Policy when our services, technologies, legal obligations or data-processing activities change.

The latest version will be published on this page together with the date of the most recent update.

20 Complaints

We encourage you to contact us first if you have a concern about how your personal data has been handled.

You also have the right to submit a complaint to the Hellenic Data Protection Authority:

Hellenic Data Protection Authority
Kifissias 1–3, 115 23 Athens, Greece
Telephone: +30 210 6475600
Website: dpa.gr

Privacy contact

Business:
TopSearch Web

Email:
george@topsearch.gr

Address:
Dimitri Gounari 104, Patras, Greece

Telephone:
+30 698 390 6212