Skip to content
Mykonos Kart Raceland

Legal

Privacy policy

Last updated: 10 August 2026

This policy explains what personal data we collect when you visit this website or book a kart session, why we collect it, and what rights you have over it.

Who we are

This website, https://mykonoskart.com, is operated by GRYPARIS, trading as Raceland Mykonos — the go-kart track on the road to Ano Mera, Mykonos, Greece. In this policy “we”, “us” and “our” refer to GRYPARIS.

For any question about this policy or about your personal data, you can reach us at:

We are the data controller for the personal data described in this policy.

What data we collect

Information you give us. If you call, email or message us — for example to arrange a private race — we receive the contact details and the content of your message.

Booking information. Online bookings are handled by our booking provider, CaptainBook, on their own platform. When you book, you provide them with details such as your name, email address, phone number, session date and payment details. We receive the booking details we need to run your session; we do not receive or store your full card details.

Technical information. Like any website, our server processes basic technical data when a page is requested — IP address, browser type, device type, the page requested and the time. This is used for security and to keep the site working.

Cookies. We use cookies and similar storage as described in our cookie policy. Beyond what is strictly necessary, none of it runs until you consent.

We do not knowingly collect personal data from children. Bookings for drivers under 18 are made by a parent or guardian.

Why we use it, and our legal basis

  • To provide the service — taking and managing your booking, running your session, and answering your questions. Legal basis: performance of a contract, or steps taken at your request before entering one.
  • To keep the site secure and working — server logs, abuse prevention and error diagnosis. Legal basis: our legitimate interest in operating a safe, functioning website.
  • To meet legal obligations — accounting and tax records for transactions. Legal basis: legal obligation.
  • Analytics, performance and marketing cookies — only where you have given consent. Legal basis: consent, which you may withdraw at any time.

Who we share it with

We do not sell your personal data. We share it only with the providers we need to run the business, and only as far as necessary:

  • CaptainBook — our online booking and payments provider, which processes reservations made through our booking page. Their own privacy policy governs the data you enter there.
  • Vercel — our hosting provider, which serves this website and processes the technical request data described above.
  • Professional advisers and authorities — for example our accountant, or a public authority where the law requires disclosure.

Where a provider processes data outside the European Economic Area, we rely on an appropriate safeguard such as the European Commission’s standard contractual clauses.

How long we keep it

Booking and enquiry records are kept only as long as needed for the purpose they were collected for, and for as long as accounting and tax law requires us to keep transaction records. Server logs are kept for a short period for security purposes. Cookie consent choices are kept for up to 12 months, after which we ask again.

Your rights

Under the General Data Protection Regulation you have the right to:

  • Ask for a copy of the personal data we hold about you
  • Ask us to correct data that is inaccurate or incomplete
  • Ask us to erase your data, where there is no overriding reason for us to keep it
  • Ask us to restrict how we use your data, or object to our use of it
  • Ask us to transfer your data to you or another provider in a portable format
  • Withdraw consent at any time, where we rely on consent

To exercise any of these, email info@mykonoskart.com. We will respond within one month. If you are not satisfied with our response, you can complain to the Hellenic Data Protection Authority (dpa.gr) or to the supervisory authority in your country of residence.

Security

The site is served over an encrypted HTTPS connection, and we take reasonable technical and organisational measures to protect personal data against loss, misuse and unauthorised access. No method of transmission over the internet is completely secure, so we cannot guarantee absolute security.

Changes to this policy

We may update this policy from time to time. The date at the top of this page shows when it was last revised, and any material change will be reflected here.