The Hellenic Gaming Commission (HGC), acting as a Data Controller, is committed to protecting the personal data of individuals who interact with its services. All processing activities are carried out in accordance with the General Data Protection Regulation (EU) 2016/679 (GDPR) and Law 4624/2019 (Government Gazette A’ 137).
As part of its statutory responsibilities, the HGC collects and processes only the personal data necessary for the fulfilment of specific and legitimate purposes. Depending on the service involved, this may include:
- Identification information (such as name and surname).
- Contact information (such as email address, telephone number, and postal address).
- Other information required for the processing of applications, complaints, reports, or regulatory procedures.
Personal data may be processed for purposes including, but not limited to:
- The management of licensing and suitability procedures.
- The handling of complaints and reports relating to gambling activities.
- The supervision and regulation of the gambling market.
- The administration of requests submitted by citizens.
- Communication with users and stakeholders.
- The provision of electronic services made available by the HGC.
The legal basis for processing personal data may be:
- The data subject’s explicit consent, where required (for example, newsletter subscriptions or similar communication services); and/or
- The performance of a task carried out in the public interest or in the exercise of official authority vested in the HGC under the applicable legal framework.
The HGC implements appropriate technical and organisational measures to ensure the security, confidentiality, and integrity of personal data and to safeguard the rights and freedoms of data subjects.
Further information regarding the processing of personal data, the rights of data subjects, and the HGC’s privacy practices is available in the Privacy Policy, which can be accessed here.