PRIVACY POLICY STUDIO SYNC
1. INTRODUCTION
This Privacy Policy ("Policy") describes how AstroCode E.E. ("Company", "we", "us") collects, uses, stores, and protects personal data received from users of the Studio Sync web platform ("Service"), which is available through the website https://studio-sync.app/ and related applications.
The protection of your personal data is extremely important to us. This Policy has been drafted in accordance with the EU General Data Protection Regulation (GDPR) and applicable Greek data protection legislation.
2. DATA CONTROLLER
The data controller of your personal data is AstroCode E.E., headquartered at Iasonos 16, 18757, Athens, Greece.
For any questions regarding this Policy or to exercise your rights, you can contact us at hey@studio-sync.app.
3. WHAT PERSONAL DATA WE COLLECT
We collect the following personal data:
Registration and account data:
-
Full name
-
Email address
-
Username and password
-
Professional capacity (trainer, employee, administrator)
-
Name and details of your gym/studio
Contact data from the contact form:
-
Full name
-
Email address
-
Message content
Usage data:
-
Information about how you use the Service
-
Log data
-
IP address
-
Browser type
-
Device information
-
Pages you visit
-
Time and date of visit
Data you enter into the platform:
-
Data of your gym/studio clients
-
Subscription information
-
Booking and scheduling data
4. HOW WE COLLECT YOUR PERSONAL DATA
We collect your personal data in the following ways:
-
Directly from you: When you create an account, fill out forms, communicate with us, or use the Service.
-
Automatically: When you use the Service, we automatically collect certain information through cookies and similar technologies.
-
From third parties: In some cases, we may receive information from third-party service providers, such as payment service providers.
5. PURPOSES OF PROCESSING AND LEGAL BASIS
We process your personal data for the following purposes and on the following legal bases:
Performance of a contract (Article 6(1)(b) GDPR):
-
To provide the Service and its functions
-
To manage your account
-
To process your payments
-
To provide customer support
Legitimate interest (Article 6(1)(f) GDPR):
-
To improve and develop the Service
-
To analyze the use of the Service
-
For the security of the Service and fraud prevention
-
To send updates about the Service
Consent (Article 6(1)(a) GDPR):
-
To send promotional messages and newsletters
-
For the use of cookies that are not necessary for the operation of the Service
Legal obligation (Article 6(1)(c) GDPR):
- To comply with our legal obligations, such as tax obligations
6. DATA RETENTION
We retain your personal data only for as long as necessary to fulfill the purposes for which they were collected, including compliance with legal, accounting, or reporting obligations.
Specifically:
-
Account data: We retain your account data for as long as you maintain an active account on the Service. After closing your account, we retain the data for a period of up to 6 months for security reasons and in case you wish to reactivate your account.
-
Contact data from the contact form: We retain emails and contact data received through the contact form for a period of 1 year from the date of receipt. After this period, the data is automatically deleted.
-
Usage data: Usage data is retained for a period of up to 2 years for analysis and improvement of the Service.
-
Data you enter into the platform: Data you enter into the platform (such as client data, subscriptions, etc.) is retained for as long as you maintain an active account and for a period of up to 6 months after closing your account.
According to Article 6 of Law 3917/2011, data that is generated or processed is stored on physical media within Greek territory and is retained for the purposes of legislation for a period not exceeding 12 months from the date of communication.
7. DISCLOSURE AND TRANSFER OF DATA
We may share your personal data with the following categories of recipients:
Service providers:
-
Hosting and cloud service providers
-
Payment service providers
-
Customer support service providers
-
Analytics service providers
Business partners:
- Partners who provide complementary services for our platform
Public authorities:
-
When required by law, court order, or other legal process
-
To protect the rights, property, or safety of the Company, our users, or the public
All service providers and business partners with whom we share your data are bound by contracts that require them to maintain confidentiality and protect your personal data in accordance with the law.
8. INTERNATIONAL DATA TRANSFERS
Your personal data is stored and processed within the European Union (EU). However, in some cases, we may transfer your data to service providers located outside the EU.
In case of data transfer outside the EU, we ensure that there are appropriate safeguards for the protection of your data, such as:
-
Adequacy decision by the European Commission for the destination country
-
Standard contractual clauses approved by the European Commission
-
Binding corporate rules
-
Other legal mechanisms permitted by the GDPR
9. DATA SECURITY
We take appropriate technical and organizational measures to protect your personal data from accidental or unlawful destruction, loss, alteration, unauthorized disclosure, or access.
The security measures we implement include:
-
Data encryption
-
Regular security testing
-
Limited access to personal data
-
Data breach incident response procedures
-
Staff training on data security and protection
10. YOUR RIGHTS
According to the GDPR, you have the following rights regarding your personal data:
-
Right of access: You have the right to receive confirmation as to whether we are processing your personal data and, if so, to access this data.
-
Right to rectification: You have the right to request the correction of inaccurate personal data concerning you.
-
Right to erasure ("right to be forgotten"): You have the right to request the deletion of your personal data under certain conditions.
-
Right to restriction of processing: You have the right to request the restriction of processing of your personal data under certain conditions.
-
Right to data portability: You have the right to receive your personal data in a structured, commonly used, and machine-readable format.
-
Right to object: You have the right to object to the processing of your personal data under certain conditions.
-
Right to withdraw consent: If processing is based on your consent, you have the right to withdraw your consent at any time.
To exercise any of the above rights, please contact us at hey@studio-sync.app. We will respond to your request within one month of receipt.
You also have the right to lodge a complaint with the Hellenic Data Protection Authority (www.dpa.gr) if you believe that the processing of your personal data violates the GDPR.
11. COOKIES AND SIMILAR TECHNOLOGIES
We use cookies and similar technologies to improve your experience on our Service. Cookies are small text files that are stored on your device when you visit our website.
We use the following types of cookies:
-
Necessary cookies: These are essential for the operation of the website and cannot be disabled.
-
Analytics/performance cookies: They allow us to recognize and count the number of visitors and see how visitors navigate our website.
-
Functionality cookies: They allow us to recognize you when you return to our website and to customize content for you.
-
Targeting cookies: They record your visit to our website, the pages you have visited, and the links you have followed.
You can set your browser to reject all cookies or to notify you when a cookie is sent. However, some features of the Service may not work properly if you disable cookies.
12. CHANGES TO THE PRIVACY POLICY
We may update the Privacy Policy from time to time to reflect changes in our practices or for other operational, legal, or regulatory reasons.
We will notify you of any material changes to the Privacy Policy through a notice on our website or via email. We encourage you to regularly check the Privacy Policy for any updates.
13. CONTACT
If you have any questions, comments, or concerns about this Privacy Policy or our practices regarding personal data, please contact us:
AstroCode E.E. Iasonos 16 18757, Athens, Greece Email: hey@studio-sync.app Phone: 698444900
Last updated: September 20, 2025