Privacy policy
How we collect, use, and protect your personal information.
Last updated: August 2026
RHEA VENTURE PARTNERS VENTURE CAPITAL MANAGEMENT COMPANY SOCIETE ANONYME ("Rhea VC", "we", "our", or "us") respects your privacy and is committed to protecting your personal data.
This Privacy Policy explains how we collect, use, store, and protect personal information when you visit our website ("Website"), contact us, interact with our content, or otherwise engage with our services.
This Privacy Policy has been prepared in accordance with the requirements of the General Data Protection Regulation (EU) 2016/679 ("GDPR") and applicable Greek data protection legislation.
1. Data Controller
The data controller responsible for processing your personal data is:
Rhea VC
Greece
For any questions regarding the processing of your personal data, you may contact us through the contact details available on our Website.
2. Personal Data We Collect
Depending on how you interact with our Website, we may collect different categories of personal information, including:
Information you provide directly
When you contact us, submit an enquiry, subscribe to communications, or otherwise interact with us, we may collect:
- Full name
- Email address
- Company name
- Job title or professional role
- Contact details
- Information included in your message or enquiry
- Any other information you voluntarily provide
Information related to companies and investment enquiries
If you contact Rhea VC regarding a potential investment opportunity, partnership, or business collaboration, we may process information relating to:
- Company details
- Business activities
- Founders and team members
- Investment-related information
- Materials or documents voluntarily submitted to us
Technical information
When you visit our Website, we may automatically collect certain technical information, including:
- IP address
- Browser type and version
- Device information
- Operating system
- Pages visited
- Date and time of access
- Website usage information
This information helps us maintain, secure, and improve our Website.
3. How We Use Your Personal Data
We may process your personal data for the following purposes:
Responding to enquiries
We use information submitted through our contact channels to:
- respond to questions;
- communicate with founders, investors, partners, and other stakeholders;
- evaluate potential business opportunities.
Investment and business activities
Where relevant, we may use information provided to us in connection with:
- reviewing investment opportunities;
- communicating with founders and companies;
- conducting due diligence processes;
- managing relationships with portfolio companies and partners.
Website operation and improvement
We process technical information to:
- operate and maintain the Website;
- improve user experience;
- analyze website performance;
- protect against security threats.
Communications
Where you have provided consent or where permitted by applicable law, we may use your contact details to send relevant updates, news, or information about Rhea VC activities.
You may unsubscribe from communications at any time.
4. Legal Basis for Processing
Under the GDPR, we rely on the following legal bases when processing personal data:
Consent
Where you have provided consent, for example when subscribing to communications.
Legitimate interests
Where processing is necessary for our legitimate business interests, including:
- responding to enquiries;
- managing relationships with founders, investors, and partners;
- improving our Website;
- protecting the security of our systems.
Contractual or pre-contractual measures
Where processing is necessary to take steps requested by you before entering into a potential business relationship.
Legal obligations
Where processing is required to comply with applicable legal or regulatory requirements.
5. Cookies and Analytics
A cookie is a small text file that a website stores on your computer or mobile device when you visit the site. Cookies allow the website to recognise your device and remember certain information about your visit, such as your preferences or actions.
"First-party cookies" are set and controlled by the Rhea VC website. "Third-party cookies" are set by external services or providers whose content or functionality is embedded in the website and are subject to the respective provider's own policies.
Cookies may be "session cookies" (automatically deleted when you close your browser) or "persistent cookies" (which remain on your device for a defined period or until you delete them manually).
How we use cookies
Our Website may use cookies and similar technologies for the following purposes:
- Strictly necessary / technical cookies: These cookies are essential for the operation of the Website and its core functions. They do not require your consent. The legal basis is Article 4(5) of Greek Law 3471/2006, in combination with Article 6(1)(f) GDPR.
- Analytics / performance cookies: These cookies collect information about how visitors interact with our Website (e.g., pages visited, errors encountered) to improve its performance and usability.
- Functional / personalisation cookies: These cookies enable the Website to remember your preferences and choices (such as your cookie settings) to provide a more personalised experience.
- Advertising cookies: These cookies may be used, where implemented, to deliver advertisements relevant to you and to measure the effectiveness of advertising campaigns. At present, no advertising cookies are active on this Website.
Analytics and any other optional cookies are placed only with your prior consent, in accordance with Article 4(5) of Greek Law 3471/2006 and Article 6(1)(a) GDPR.
Cookie table
The table below sets out the cookies used on our Website, together with their category, purpose, retention period, and provider.
All cookies listed are first-party cookies set by or on behalf of Rhea VC. No third-party cookies are currently deployed on this website.
Consent management
When you first visit our Website, a cookie consent banner is displayed, allowing you to accept or reject non-essential cookies. Strictly necessary cookies are enabled by default. Through the consent banner, you may:
- accept or reject all non-essential cookies;
- select which categories of cookies you wish to allow; and
- change your preferences at any time via the Cookies Settings.
You may withdraw your consent at any time. Withdrawal does not affect the lawfulness of processing based on consent given before its withdrawal.
Managing cookies through your browser
Most web browsers also allow you to manage cookies through the browser's own settings. Restricting or disabling cookies may affect your user experience, as certain functionalities may no longer be available. Instructions for the most widely used browsers are available at:
For browsers not listed above, please refer to the documentation provided by the relevant browser manufacturer.
6. Third-Party Service Providers
We may use trusted third-party providers to support our Website operations and business activities.
These providers may process personal data on our behalf, including services related to:
- website hosting;
- analytics;
- communication tools;
- form submissions;
- newsletter management.
Such providers are selected carefully and are required to process personal data in accordance with applicable data protection laws.
7. Data Retention
We retain personal data only for as long as necessary for the purposes for which it was collected.
Retention periods may vary depending on:
- the nature of the relationship;
- legal obligations;
- regulatory requirements;
- legitimate business needs.
When personal data is no longer required, it will be securely deleted or anonymized.
8. Sharing of Personal Data
We do not sell or rent your personal data.
We may share personal information only where necessary, including with:
- service providers acting on our behalf;
- professional advisors, including legal, financial, or technical consultants;
- regulatory authorities where required by law;
- parties involved in legitimate business activities.
Any sharing of personal data is carried out in accordance with applicable data protection requirements.
9. International Transfers
While we do not, in principle, transfer or otherwise process personal data outside the European Economic Area (EEA), some of the service providers we use may process personal data outside the EEA. Where such transfers occur, we ensure that appropriate safeguards are in place. For transfers to countries not covered by an adequacy decision, we rely on the European Commission's Standard Contractual Clauses.
10. Your Data Protection Rights
Under the GDPR, you may have the following rights regarding your personal data:
- Right of access: request information about the personal data we hold about you.
- Right to rectification: request correction of inaccurate or incomplete data.
- Right to erasure: request deletion of your personal data in certain circumstances.
- Right to restriction: request limitation of processing.
- Right to data portability: request your data in a structured format where applicable.
- Right to object: object to certain processing activities.
- Right to withdraw consent: withdraw consent at any time where processing is based on consent.
To exercise any of these rights, please contact us using the details provided on this Website.
11. Security of Personal Data
We implement appropriate technical and organizational measures designed to protect personal data against:
- unauthorized access;
- accidental loss;
- alteration;
- disclosure;
- misuse.
However, no online transmission or storage system can be guaranteed to be completely secure.
12. Third-Party Websites
Our Website may contain links to external websites, including portfolio companies, partners, or other organizations.
We are not responsible for the privacy practices, content, or security of third-party websites.
We encourage you to review the privacy policies of any external websites you visit.
13. Children's Privacy
Our Website is intended for professional audiences and is not directed toward children.
We do not knowingly collect personal data from children without appropriate consent.
14. Changes to This Privacy Policy
We may update this Privacy Policy periodically to reflect changes in our practices, technology, legal requirements, or business operations.
Any updates will be published on this page with the revised date.
15. Supervisory Authority
If you believe that your personal data has been processed unlawfully, you have the right to lodge a complaint with the competent data protection authority.
In Greece, you may contact:
Hellenic Data Protection Authority (HDPA)
Website: https://www.dpa.gr/
16. Contact Us
If you have any questions regarding this Privacy Policy or the processing of your personal data, please contact Rhea VC through the contact details available on our Website.
Disclaimer:
This Privacy Policy is provided as a general framework and should be reviewed and approved by Rhea VC's legal advisors before publication to ensure it accurately reflects the company's structure, services, contractual obligations, and applicable legal requirements.