Closed pilot · legal review required before public launch

Privacy Notice

Last updated: 28 August 2026

1. Data controller

Restork pilot operator — registration pending, at Athens, Greece — full address pending registration, is the controller of personal data processed for the Restork Athens pilot. Privacy enquiries can be sent to legal@restork.eu.

2. Data we process

  • Account and contact information, including name, email, phone and login identifiers.
  • Guest requests, dates, party size, preferences, offers, bookings, reviews and support history.
  • Host and property data, including address, photos, registration number, operator type and verification records.
  • Messages exchanged through the platform.
  • Technical, security and notification data such as session tokens, device information, IP logs and push subscriptions.

3. Why we use the data

We use data to create accounts, match urgent requests with verified properties, deliver offers and messages, confirm stays, provide support, prevent abuse, verify legal registration, comply with reporting duties, and improve the pilot.

The legal bases may include performance of the service contract, compliance with legal obligations, legitimate interests in operating and securing the marketplace, and consent where required for optional notifications or cookies.

4. Who receives data

Booking participants receive the information necessary to arrange the stay. Approved property registration numbers may be displayed where legally required. Registration details are otherwise limited to the host, authorised Restork reviewers and competent authorities.

We use service providers for hosting and database infrastructure, image storage, maps and address search, email, real-time messaging, push notifications and authentication. Providers process data under their own terms and our instructions where applicable.

5. International transfers

Some providers may process data outside Greece or the European Economic Area. Where required, transfers rely on an adequacy decision, Standard Contractual Clauses or another lawful safeguard.

6. Retention and security

We retain account data while the account is active. Booking, compliance and support records may be kept for up to five years where needed for legal obligations or claims. Messages may be retained for up to 24 months after a stay unless a dispute or legal duty requires longer retention. We delete or anonymise data when it is no longer needed.

We use access controls, encrypted transport, protected sessions and restricted administrative access. No online system can guarantee absolute security.

7. Your rights

Subject to applicable law, you may request access, correction, deletion, restriction, portability, or objection, and may withdraw consent. You may also complain to the Hellenic Data Protection Authority.

Send a request from your account email to legal@restork.eu. We may need to verify your identity before acting.

8. Cookies and notifications

Restork uses essential storage and cookies for authentication, security and language settings. Optional analytics or advertising cookies will require a separate consent choice before they are introduced. Browser push notifications are optional and can be disabled in account or browser settings.

9. Children and changes

Restork is not intended for people under 18. We may update this notice as the pilot, legal operator or service providers change, and will communicate material updates.