Privacy Policy
1. Introduction
The Greek Academy of Dental Education (“GADE”) respects your privacy. This policy explains what personal data we collect when you use our website, apply for a programme, or use the Student Portal, and how we handle it.
We process personal data in accordance with the EU General Data Protection Regulation (Regulation (EU) 2016/679, “GDPR”) and applicable Greek data protection law.
2. Controller & contact
GADE, based in Athens, Greece, is the controller of the personal data described in this policy. Data protection enquiries may be sent through our contact page marked for the attention of the Data Protection contact.
3. Data we collect
| Category | Examples |
|---|---|
| Identity & contact | Name, title, email address, telephone number, postal address, country of practice |
| Professional | Dental qualification, graduation year, registration or licence details, practice name, area of interest |
| Application | Information you provide in application and enquiry forms, including your stated goals and programme preference |
| Learning record | Enrolment details, attendance, module progress, submissions, assessment results, faculty feedback, certificates and CE credits |
| Financial | Invoices, fees paid and payment status. Card details are handled by our payment provider and are not stored by us |
| Technical | IP address, browser and device type, pages viewed and portal login records |
| Media | Photographs or recordings taken at teaching events, where you have been informed and, where required, have consented |
We do not seek special-category data. Where you volunteer health or accessibility information so that we can make arrangements for you, we process it on the basis of your explicit consent.
4. How we use it
- To respond to enquiries and process applications for our programmes.
- To administer enrolment, invoicing and payment.
- To deliver teaching, maintain your learning record and provide the Student Portal.
- To mark assessments, give feedback, and issue certificates and CE credit statements.
- To communicate essential information about your programme, including timetable changes.
- To send you news, course dates and other marketing where you have asked to hear from us.
- To improve our website, courses and services, and to keep our systems secure.
- To meet our legal, accounting, accreditation and regulatory obligations.
5. Legal bases
- Contract — to enrol you, deliver a programme you have booked and administer your learning record.
- Legitimate interests — to respond to enquiries, improve our programmes, protect our systems and maintain records of teaching delivered, balanced against your rights.
- Consent — for optional marketing, non-essential cookies, and use of photographs or recordings for promotional purposes. You may withdraw consent at any time.
- Legal obligation — to keep accounting records and comply with lawful requests.
6. Sharing your data
We do not sell your personal data. We share it only where necessary, with:
- service providers who host our website and portal, send our email, and process payments, acting under written instructions as processors;
- faculty and visiting faculty, so far as needed to teach, supervise and assess you;
- our accountants, auditors and professional advisers;
- accrediting or professional bodies, where a programme is accredited or where you ask us to verify your attendance;
- public authorities where we are legally required to disclose.
7. International transfers
Our participants and faculty are international, and some of our providers operate outside the European Economic Area. Where personal data is transferred outside the EEA, we rely on an adequacy decision of the European Commission or on Standard Contractual Clauses together with appropriate additional safeguards.
8. How long we keep it
- Enquiries that do not proceed — up to 24 months from last contact.
- Applications — up to 3 years, so that we can consider a later application in context.
- Learning records, certificates and CE credits — retained long term, so that we can verify your qualification and reissue certificates on request.
- Financial records — as required by Greek accounting and tax law.
- Marketing preferences — until you unsubscribe, plus a record of your objection.
9. Security
We use appropriate technical and organisational measures to protect personal data, including encrypted connections, access controls, individual portal accounts and staff confidentiality obligations. No transmission over the internet can be guaranteed completely secure; please keep your portal password confidential and tell us promptly of any suspected misuse.
10. Your rights
Subject to conditions in the GDPR, you have the right to:
- be informed about how we use your data, and to request access to a copy of it;
- have inaccurate data corrected, and incomplete data completed;
- request erasure, where we no longer have a lawful basis to keep it;
- restrict or object to processing, including profiling for marketing;
- receive your data in a portable format, where processing is based on contract or consent;
- withdraw consent at any time, without affecting processing already carried out.
To exercise any of these rights, contact us via the contact page. We will respond within one month. We may ask you to verify your identity first.
11. Marketing
We send programme news and course dates only where you have asked us to, or where you are an existing participant and the message concerns similar education. Every marketing email contains an unsubscribe link, and you may opt out at any time without affecting essential messages about a programme you are enrolled on.
12. Children
Our programmes are for qualified dental professionals. We do not knowingly collect personal data from anyone under 18. If you believe a minor has provided us with data, please contact us so we can delete it.
13. Changes
We may update this policy to reflect changes in our services or the law. The date at the top of this page shows when it was last revised, and material changes affecting enrolled participants will be notified through the Student Portal or by email.
14. Complaints
If you are concerned about how we handle your data, please contact us first so we can try to resolve it. You also have the right to lodge a complaint with the Hellenic Data Protection Authority (Aρχή Προστασίας Δεδομένων Προσωπικού Χαρακτήρα) in Athens, or with the supervisory authority in your own EU country of residence.