1. Who is responsible
National Ambassador Club Hellas, as organiser of the Ambassador NextGen initiative, is responsible for personal data submitted through www.ambassadornextgen.org. You can contact us at kostas.misialis@icloud.com.
2. Data we collect
When you use the contact form, we collect your name, email address, organisation or company if supplied, enquiry category, message, consent record and submission time. Essential technical logs may also be processed to keep the website secure and reliable.
3. Purposes and legal bases
We use this information to receive, assess and answer your enquiry; manage possible participation, speaking, volunteering, Innovation Challenge or partnership discussions; plan the summit; and protect the service from abuse. Depending on the enquiry, processing is based on steps you ask us to take before a possible arrangement, our legitimate interests in managing communications and security, and consent where specifically requested. Contact-form details are not added to a marketing list without separate consent.
4. Required information and automated decisions
Name, email, enquiry category, message and acceptance of this notice are required so that we can understand and answer the request. You may choose whether to provide an organisation. We do not make decisions producing legal or similarly significant effects solely by automated means.
5. Recipients and international processing
Access is limited to authorised members of the organising team and technical providers needed to host, secure and operate the website. We do not sell contact-form data. Where a provider processes data outside the European Economic Area, the transfer must rely on an applicable lawful safeguard.
6. Retention
Enquiries are kept only as long as reasonably needed to manage the communication and any related summit activity, normally no longer than 12 months after the relevant communication or activity has ended, unless a longer period is required by law or for legal claims.
7. Your rights
Subject to the conditions of the GDPR, you may request access, correction, deletion, restriction, portability or object to processing, and you may withdraw consent without affecting earlier lawful processing. You may also lodge a complaint with the Hellenic Data Protection Authority at dpa.gr. We may need to verify your identity before acting on a request.
8. Cookies and local storage
The public website does not use advertising or analytics cookies. Strictly necessary hosting and security technologies may be used to deliver and protect the service, while your language preference is stored locally in your browser. The private administration area may also use strictly necessary sign-in and security technologies; it is not linked from the public website.
9. Security and changes
We use proportionate organisational and technical measures to protect submitted information, although no internet service can guarantee absolute security. This policy may be updated when the website, event operations or legal requirements change; the revision date appears above.