Privacy Policy

RIMA Language_Tech_Culture: privacy policy for www.rimahub.gr. Last updated: 8 September 2026.

1. Who we are

RIMA Language_Tech_Culture is a boutique language research and technology hub operating from Patras, Greece. The legal entity is ΡΙΜΑ Ε.Ε. / EMILIA DIAMANTOPOULOU & CO L.P., a limited partnership established in 2020, registered with the Greek General Commercial Registry under GEMI No. 154099816000, with VAT number EL801310597, and registered offices at 136 Karaiskaki Street, 26221 Patras, Greece.

For any privacy enquiry, write to info@rimahub.gr with subject line Privacy: your enquiry.

2. What this policy covers

This policy explains how we collect, use, store and protect personal data when you interact with www.rimahub.gr, when you commission services from us (machine translation post-editing, DTP and document reconstruction, linguistic quality assurance, terminology management, language-technology and AI-governance consultancy, prompt engineering, AI automations, language assets), or when you correspond with us by email, telephone or post.

It is written to meet the requirements of the EU General Data Protection Regulation (Regulation (EU) 2016/679, GDPR) and Greek Law 4624/2019. For data subjects in the United Kingdom, equivalent rights apply under the UK GDPR and the Data Protection Act 2018.

Translation, editing and interpreting services within the group are delivered by Rhyme&Reason Language Services (www.reason.gr), which maintains its own privacy policy. The annual Language_Tech Patras forum is organised by the civic non-profit RIMA AMKE; registration data for the forum is handled under the forum’s own registration notice.

3. What data we collect

From visitors to our website. Browsing www.rimahub.gr sets no analytics, advertising or tracking cookies. The only cookie the site sets is the one that remembers your language choice. We run no analytics package and no advertising pixels, so no profile of your visit is built and none of your browsing is shared with a third party.

From enquirers via the Make an enquiry form. Name, organisation, email, phone (optional), nature of enquiry, free-text message. We do not ask for, and you should not provide, special-category data (health, religion, political opinion, trade-union membership, sexual orientation, biometric, genetic) in the enquiry form. If your project involves such data, we will agree appropriate safeguards under a separate Data Processing Agreement before any material is shared.

From clients. Contact details of project sponsors and approvers; materials submitted for processing; any reference materials, translation memories or termbases you provide; invoicing and payment details (under separate financial-data handling).

4. Why we collect it and on what legal basis

Purpose Legal basis (GDPR Art. 6)
Responding to enquiries via the website form Pre-contractual measures at the data subject’s request (Art. 6(1)(b))
Delivering MTPE, DTP, LQA, terminology, consultancy or language-asset services under a client contract Performance of a contract (Art. 6(1)(b))
Issuing invoices, complying with tax and accounting obligations Legal obligation (Art. 6(1)(c))
Defending or pursuing legal claims Legitimate interest (Art. 6(1)(f))

We do not sell personal data, we do not transfer personal data to third countries for marketing purposes, and we do not engage in automated decision-making with legal or similarly significant effect under Art. 22 GDPR. Where AI-assisted processing is used in service delivery, it operates under our structured AI-governance framework with a human expert as the quality gate; client materials are not used to train third-party models.

5. Who we share data with

Personal data is shared only with:

  • Our in-house team and qualified freelance network, under universal Non-Disclosure Agreements covering every linguist and contractor.
  • Rhyme&Reason Language Services, our in-group language services studio, where your enquiry concerns translation, editing or interpreting.
  • EU-based cloud and infrastructure providers under GDPR-compliant data processing agreements (email, file storage, the proprietary R.I.M.A. translation management system, accounting software).
  • Public authorities where required by law (tax authorities, court orders, regulatory investigations).

We do not transfer personal data outside the EU/EEA without appropriate safeguards under Chapter V of the GDPR (Standard Contractual Clauses or an adequacy decision).

6. How long we keep it

Data category Retention period
Website enquiries that do not become contracts 12 months from last contact
Client project files 7 years from project completion, then archived or deleted
Invoices and accounting records 10 years (Greek tax law requirement)

On request, we will confirm precisely which categories of data we hold about you and for what retention period.

7. Your rights

Under the GDPR, you have the right to:

  • Access the personal data we hold about you (Art. 15).
  • Rectify inaccurate or incomplete data (Art. 16).
  • Erase your data (“right to be forgotten”) under defined circumstances (Art. 17).
  • Restrict processing under defined circumstances (Art. 18).
  • Data portability: receive your data in a structured, commonly used, machine-readable format (Art. 20).
  • Object to processing based on legitimate interest (Art. 21).
  • Withdraw consent at any time, where consent was the legal basis (Art. 7(3)).
  • Lodge a complaint with the Hellenic Data Protection Authority (Kifissias 1-3, 11523 Athens), or with the supervisory authority in your country of residence.

To exercise any of these rights, write to info@rimahub.gr. We will respond within 30 days.

8. Data security

We apply organisational and technical measures appropriate to the risk of the processing:

  • Universal Non-Disclosure Agreements across the freelance network.
  • Encrypted file transfer for client materials.
  • Access control on the R.I.M.A. translation management system on a need-to-know basis.
  • Regular backups with EU-based providers.
  • Multi-factor authentication on administrator accounts.
  • Periodic security and access reviews.

We will notify the Hellenic Data Protection Authority within 72 hours of becoming aware of a personal data breach likely to result in a risk to the rights and freedoms of data subjects, in line with Art. 33 GDPR, and we will notify affected data subjects without undue delay where Art. 34 applies.

9. Cookies

The site sets one cookie: a strictly necessary cookie that remembers your language preference. Strictly necessary cookies do not require consent, and because we set nothing else, the site carries no cookie banner: there is nothing to consent to.

We currently run no analytics cookies and no marketing cookies. If we introduce either, we will add a consent mechanism and update this policy before doing so.

10. Changes to this policy

We may update this policy from time to time. The Last updated date at the top reflects the most recent revision. Material changes will be communicated by a banner on the homepage.

11. Contact

For all questions about this policy or your personal data:

  • Email: info@rimahub.gr (subject line: Privacy)
  • Post: ΡΙΜΑ Ε.Ε., 136 Karaiskaki Street, 26221 Patras, Greece.
  • Phone: (+30) 2610 226 530.