PRIVACY POLICY

GreenFit Project Website: https://greenfit-project.eu/

This Privacy Policy applies to GreenFit Project website and governs personal data collection and use by the website only. GreenFit Project is committed to being transparent and to ensuring your privacy is protected. By using our website, you consent to personal data practices described below. GreenFit Project Privacy Policy is effective from 30/01/2026. We reserve the right to update or change the policy at any time, therefore you may want to review it periodically.

  1. How we collect your personal data

We collect personal data both directly and indirectly:

Directly. We obtain personal data directly from individuals in a variety of ways, including but not limited to the following cases:

  • an individual subscribes to our newsletter/s;
  • an individual registers to attend in meetings and/or events (e.g. conferences, webinars, etc.) we host and during attendance at such events;
  • we establish cooperative relationships with an individual;
  • we provide professional services pursuant to our contract with the European Commission;
  • an individual participates in an interview or survey organised and performed by us.

Indirectly. We obtain personal data indirectly about individuals from a variety of sources, including:

  • our research partners;
  • our networks and contacts;
  • public and open data sources such as public registers, news articles and internet searches;
  • social and professional networking sites (e.g. LinkedIn).

 

  1. What types of data we collect?

We only collect the data that are necessary for the smooth implementation of our project. These data fall into the following categories:

  • contact details(name/ surname, e-mail address, street address, mobile phone number, land line phone number);
  • professional information(job title, organisation, field of expertise);
  • demographics(e.g. age, gender, nationality);
  • information about what a person knows or believes.
  • videos and photos(from people that attend our events).

 

  1. Bases of lawful processing

We process personal data on the following legal bases:

Legal obligations – for processing activities required for compliance both with applicable national and European legislation, as well as with the specific legal and regulatory framework of the Horizon Europe Framework Programme for Research and Innovation of the European Union.

Consent – for processing activities such as organisation of surveys and interviews, completing of questionnaires and dissemination of project’s results.

Contractual obligations – for processing activities such as reporting to the European Commission and complying with project’s publicity obligations.

 

  1. What we do with your personal data

We process your personal data with the purpose of:

  • Conducting research (e.g., interviews, surveys);
  • Disseminating our project’s results to different types of stakeholders;
  • Sending invitations and providing access to guests attending our events and webinars;
  • Administering, maintaining, and ensuring the security of our information systems, applications, and websites;
  • Processing online requests or queries, including responding to communications from individuals;
  • Complying with contractual, legal, and regulatory obligations.

 

  1. How we secure your personal data when we process it

We continuously apply a personal data risk assessment process to identify, analyse, and evaluate the security risks that may threat your personal data. Based on the results of this risk assessment, we define and apply a set of both technical and organisational measures to mitigate the above security risks, including but not limited to:

  • Data Protection Policies to guide our personnel when processing your data;
  • Written contracts with organisations that process personal data on our behalf;
  • Non-Disclosure Agreements with our personnel;
  • Back up process, antimalware protection, access control mechanisms, etc.
  • Some of/ all our partners have appointed a Data Protection Officer.

 

  1. Do we share personal data with third parties?

We may occasionally share personal data with trusted third parties to help us deliver efficient and quality services. When we do so, we ensure that recipients are contractually bound to safeguard the data we entrust to them before we share the data. We may engage with several or all the following categories of recipients:

  • Parties that support us as we provide our services (e.g., cloud-based software services such as Dropbox, Microsoft Teams, Google Drive);
  • Our professional advisers, including lawyers, auditors, and insurers;
  • Dissemination services providers (e.g., MailChimp);
  • Law enforcement or other government and regulatory agencies or other third parties as required by, and in accordance with applicable law or regulation;
  • The European Commission, according to our relevant contractual obligations.

 

  1. Do we transfer your personal data outside the European Economic Area?

We do not own file servers located outside the European Economic Area (EEA). However, some partners may use cloud and/or marketing services from reputable providers such as SharePoint, DropBox, MailChimp, Google, etc., situated both inside and outside the EEA. We always check that such providers comply with the relevant GDPR requirements before start using their services.

 

  1. Do we use cookies?

Our website uses cookies. A statement will be sent to your browser explaining the use of cookies. Cookies are small text files which are saved on your computer, mobile phone or tablet. They allow the website to remember your actions and preferences (such as login, language, font size and other display preferences) so you don’t have to keep re-entering them whenever you come back to the site. You can control and/ or delete cookies as you wish. If you do this, however, you may need to manually adjust your preferences every time you visit a site. For more information on how to manage cookies, please visit: https://www.aboutcookies.org/

We use tools like Google Analytics to better understand how visitors interact with our website. This provides us with important information to enable the site to work better. The information collected is not linked to your personal data. For more information on the cookies set by Google Analytics, please visit:

http://code.google.com/apis/analytics/docs/concepts/gaConceptsCookies.html

The following cookies are used by Google Analytics:

Name Typical content Cookie expires after
_ga Used to distinguish users 2 years
_gat Used to throttle request rate 1 minute
_gid Used to distinguish users 24 hours

 

  1. Your rights

You have the following rights regarding our processing of your personal data:

  • Right to withdraw consent– You can withdraw consent that you have previously given to one or more specified purposes to process your personal data. This will not affect the lawfulness of any processing carried out before you withdraw your consent.
  • Right of access– You can ask us to verify whether we are processing personal data about you and, if so, to have access to a copy of such data.
  • Right to rectification and erasure– You can ask us to correct our records if you believe they contain incorrect or incomplete information about you or ask us to erase your personal data after you withdraw your consent to processing or when we no longer need it for the purpose it was originally collected.
  • Right to restriction of processing– You can ask us to temporarily restrict our processing of your personal data if you contest the accuracy of your personal data, prefer to restrict its use rather than having us erase it, or need us to preserve it for you to establish, exercise or defend a legal claim. A temporary restriction may apply while verifying whether we have overriding legitimate grounds to process it. You can ask us to inform you before we lift that temporary processing restriction.
  • Right to data portability– In some circumstances, where you have provided personal data to us, you can ask us to transmit that personal data (in a structured, commonly used, and machine-readable format) directly to another entity.
  • Right to object– You can object to our use of your personal data for direct marketing purposes, including profiling or where processing has taken the form of automated decision-making. However, we may need to keep some minimal information (e.g., e-mail address) to comply with your request to cease marketing to you.
  • Right to make a complaint to your local Data Protection Authority (DPA) (see https://ec.europa.eu/justice/article-29/structure/data-protection-authorities/index_en.htm) regarding any concerns you may have about our data handling practices.

To ask us to do anything of the above, you can contact us by e-mail info@greenfit-project.eu. We will promptly examine your request against the relevant requirements of the laws and regulations governing privacy and personal data protection, and we will answer the latest within 30 days after receiving your request. We will ask you for some kind of identification (e.g. photocopy of your identity card or passport) to avoid non-authorised revealing your personal data. If, due to the complexity of the request or a multitude of requests, we are unable to respond promptly, we will notify you within 30 days of any delay, which in no case may exceed two months from the expiration of the 30-day deadline.

  1. How long do we retain personal data?

We retain personal data to provide our services, stay in contact with you and to comply with applicable laws, regulations, and contractual obligations to which we are subject. Please note that we are obliged to retain data concerning projects funded by the Horizon Europe Framework Programme for Research and Innovation of the European Union for up to five years after the project’s end (unless auditors request further retention). After the expiry of the retention period, and unless further legitimate grounds for retention arise, we will dispose of personal data securely.

  1. Disclaimer of liability for third party websites

Although our site may contain links to third-party sites, including the sites of the consortium partners, we are not responsible for the privacy practices or content of these sites and we expressly disclaim any liability for any loss or damage that may be caused by the use of these links. We do not monitor the privacy practices or the content of these sites. If you have any questions about the privacy practices of another site, you should contact the site’s responsible personnel. We suggest you read the privacy policy of each website you interact with, before allowing the collection and use of your personal data.

We may also provide social media features that allow you to share information on your social networks and interact with our project on various social media sites. The use of these social media features may result in the collection or sharing of information about you. We recommend that you check the privacy policies and regulations of the social networking sites you interact with, so that you can be sure that you understand what information may be collected, used and disclosed by these sites.

 

  1. Children

We do not knowingly collect, use, or disclose information from children under the age of 16. If we learn that we have collected the personal information of a child under 16 we will take steps to delete the information as soon as possible. Please immediately contact us if you become aware that a child under 16 has provided us with personal information.

 

  1. Revisions of this Privacy Policy

This Privacy Policy is valid from 30/01/2026 and replaces any other previous notifications that we had issued in the past regarding our personal data management practices. We reserve the right to revise this Policy at any time. The current version will always be uploaded to our website indicating the date of entry into force, so you know when the most recent revision took place. If there are critical changes in this Policy or our personal data practices change significantly in the future, we will notify you by posting the changes on our website.

 

COOKIES POLICY

Cookies Policy: https://greenfit-project.eu/

The present cookies policy aims to inform the users of the website https://greenfit-project.eu/ regarding its use of cookies in accordance with Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC (General Data Protection Regulation) and Directive 2002/58/EC of the European Parliament and of the Council of 12 July 2002 concerning the processing of personal data and the protection of privacy in the electronic communications sector (Directive on privacy and electronic communications) and the applicable national laws.

  1. What are Cookies?

Cookies are small text files of data that are stored on your computer or other devices when you visit a website. They are used to operate the website you are visiting and provide additional functionality (such as user identification, and remembering preferences).

  1. Why are cookies used on this website?

Our websites use cookies. Where cookies are used, a statement will be sent to your browser explaining the use of cookies. To learn more, please refer to our cookie policy.

Cookies are small text files that are saved on your computer, mobile phone, or tablet. They allow the website to remember your actions and preferences (such as login, language, font size, and other display preferences) so you don’t have to keep re-entering them whenever you come
back to the site. You can control and/ or delete cookies as you wish. If you do this, however, you may need to manually adjust your preferences every time you visit a site. For more information on how to manage cookies, please visit: http://www.aboutcookies.org/

We use tools like Google Analytics to better understand how visitors interact with our website. This provides us with important information to enable the site to work better. The information collected is not linked to your personal data. For more information on the cookies set by Google Analytics, please visit: http://code.google.com/apis/analytics/docs/concepts/gaConceptsCookies.html

We use tools like Google Analytics and Metricool to better understand how visitors interact with our website. This provides us with important information to enable the site to work better. The information collected is not linked to your personal data. For more information on the cookies set by Google Analytics, please visit: http://code.google.com/apis/analytics/docs/concepts/gaConceptsCookies.html

The following cookies are necessary and are always enabled:

Name Typical content Cookie expires after
wpEmojiSettingsSupports WordPress sets this cookie when a user interacts with emojis on a WordPress site. It helps determine if the user’s browser can display emojis properly. session
cookieyes-consent CookieYes sets this cookie to remember users’ consent preferences so that their preferences are respected on subsequent visits to this site. It does not collect or store any personal information about the site visitors. 1 year

The following cookies are used by Google Analytics:

Name Typical content Cookie expires after
_ga Used to distinguish users 2 years
_gat Used to throttle request rate 1 minute
_gid Used to distinguish users 24 hours

 

  1. Your rights

You have the following rights regarding our processing of your personal data:

  • Right to withdraw consent – You can withdraw consent that you have previously given to one or more specified purposes to process your personal data. This will not affect the lawfulness of any processing carried out before you withdraw your consent.
  • Right of access – You can ask us to verify whether we are processing personal data about you and, if so, to have access to a copy of such data.
  • Right to rectification and erasure – You can ask us to correct our records if you believe they contain incorrect or incomplete information about you or ask us to erase your personal data after you withdraw your consent to processing or when we no longer need it for the purpose it was originally collected.
  • Right to restriction of processing – You can ask us to temporarily restrict our processing of your personal data if you contest the accuracy of your personal data, prefer to restrict its use rather than having us erase it, or need us to preserve it for you to establish, exercise or defend a legal claim. A temporary restriction may apply while verifying whether we have overriding legitimate grounds to process it. You can ask us to inform you before we lift that temporary processing restriction.
  • Right to data portability – In some circumstances, where you have provided personal data to us, you can ask us to transmit that personal data (in a structured, commonly used, and machine-readable format) directly to another entity.
  • Right to object – You can object to our use of your personal data for direct marketing purposes, including profiling or where processing has taken the form of automated decision-making. However, we may need to keep some minimal information (e.g., e-mail address) to comply with your request to cease marketing to you.
  • Right to make a complaint to your local Data Protection Authority (DPA) (see https://ec.europa.eu/justice/article-29/structure/data-protection-authorities/index_en.htm) regarding any concerns you may have about our data handling practices.

To ask us to do anything of the above, you can contact us by e-mail info@greenfit-project.eu. We will promptly examine your request against the relevant requirements of the laws and regulations governing privacy and personal data protection, and we will answer the latest within 30 days after receiving your request. We will ask you for some kind of identification (e.g. photocopy of your identity card or passport) to avoid non-authorised revealing your personal data. If, due to the complexity of the request or a multitude of requests, we are unable to respond promptly, we will notify you within 30 days of any delay, which in no case may exceed two months from the expiration of the 30-day deadline.

  1. How can I control Cookies?

All web browsers allow you to manage cookies, and you can decide whether to delete cookies as soon as you complete your visit to the website or define your preferences before starting your navigation. Please note that if you choose to reject or delete cookies the website functionality may be impaired (e.g. some functions may not be fully available). You may find more information about your web browser at the following links:

  1. How can I control Cookies?

Further details about the use of Cookies, as well as about the way they are restricted or rejected, you may find in the websites below:

  1. What are your rights?

If personal data are collected through the use of cookies, you have a right to access, rectification, deletion, portability of data as well as the right to restrict and oppose the processing of your personal data, which can be addressed at: info@greenfit-project.eu

  1. What are your rights?

This policy may be modified at any time and the current one is always the most recent version. We suggest you regularly refer to this page, which is effective since 30/01/2026.