Identity
Data controller
- Service / trading name
- FastVPS, a service of Support.Land
- Legal name
- Apostolos G. Kounis
- Legal form
- Sole proprietorship
- Registered address
- 27 Charavgis Street, Acharnes, Greece
- VAT number / tax office
- 140325603 · Attica Tax Service Centre (K.E.F.O.D.E.)
- Contact
- sales@fastvps.gr · +30 210 991 9675
Data
What we collect
- Contact: name, email, optional phone, selected service, message and indicative configuration.
- Order/account: identity and contact details, company, address, VAT ID, country, services, contracts and support history.
- Billing/payment: amount, currency, method, transaction/reference ID, status, time, limited payment-instrument details returned by the provider and invoice data.
- Technical/security: IP, time, URL, browser, logs, authentication events, abuse/incident data and pseudonymised anti-spam identifiers.
- Analytics: only after consent, GA4 device, approximate area, source and basic interaction data.
Do not send passwords, private keys, full card data or special-category data through the basic form. FastVPS does not store full card numbers or CVV.
Purposes and legal bases
We use the data to respond to requests, provide and support services, verify account and domain authority, invoice and reconcile payments, and manage renewal or expiry. Contractual necessity applies where the individual is a contracting party. For a company’s representatives and contacts, the relevant legitimate interest is arranging and servicing the business relationship, subject to their rights. Tax and other legally required records are processed to meet legal obligations.
Security, abuse prevention and evidence of authorized actions serve legitimate interests in protecting the service and resolving disputes. Optional analytics and marketing require their own applicable consent. Reading the privacy notice, authorizing a payment and opting into marketing are different actions. Operational notices are not a marketing subscription. Contact us for human review of a disputed payment or automated eligibility result.
Payments and optional saved cards
When you choose online payment or card saving, the payment provider receives card, transaction, device and security information directly in its secure environment. FastVPS sends the necessary amount, currency, order/customer reference and limited billing/contact information for the selected operation. We receive payment status, transaction references and the data needed for reconciliation or refunds. We do not receive or store the full card number or CVV.
If you expressly choose to save a card, we keep an encrypted reusable reference, card brand, last four digits and authorization status. Each domain’s automatic renewal also records your selected billing profile, maximum total and accepted terms. You may remove the saved card or disable future automatic renewal. The provider may retain transaction records for its own legal duties; removal from FastVPS does not erase those records or reverse a completed payment. Provider details and applicable information are shown in the payment or card-connection flow.
Recipients and processing roles
Access is limited to authorized FastVPS/Support.Land personnel and necessary infrastructure, network, email, support, payment, accounting and invoicing providers. Domain registration and management require transmission to the relevant registrar and registry, which may also act under their own registration rules and legal duties. Public WHOIS/RDAP disclosure follows the registry’s rules. AADE/VIES and authorities receive the data required for applicable verification or legal obligations. We do not sell personal data.
For content hosted for your business, processing roles and instructions are described in the DPA. A domain-account transfer gives the new authorized customer access to that domain’s management details, while previous personal notes and unrelated billing profiles are not transferred.
Transfers
EEA and third countries
Providers may process data outside Greece or the EEA. Where required, an adequacy decision, approved Standard Contractual Clauses or another valid mechanism is used with supplementary safeguards where necessary. Payment-provider notices describe their locations and safeguards.
Retention
How long we keep data
- Non-contract enquiry: up to 90 days after the last substantive contact unless longer retention is needed for security or a claim.
- Active relationship: for its duration and afterwards as required by tax, accounting and legal duties.
- Transactions: references and records for the statutory period; FastVPS does not keep full card data.
- Security logs: for a limited period proportionate to risk, incident and technical need.
- Cookie choice: 180 days; GA cookies up to 13 months under site settings.
Deletion may be placed on hold only for data relevant to an open dispute, incident or legal duty.
Rights
Access and choices
You may request access, correction, deletion, restriction, portability where applicable, objection or consent withdrawal at info@support.land. Reasonable identity verification may be required.
You may complain to the Hellenic Data Protection Authority ↗. Rights concerning data held directly by a payment provider may also require a request to the provider that handled the transaction.
Security
Measures and changes
We use TLS, rate limiting, anti-spam challenge, access control, monitoring, patching and incident response. No control removes every risk. This notice is updated when services, providers or legal duties change, and the version date appears above.
Alternate contact and notification choices
An alternate domain email is used only after verification and only for domains that do not host that address. It does not replace your sign-in or registry registrant email. Read state is stored for panel notices; acceptance by a mail server does not establish delivery or reading of an email. Card authorization, alternate-email verification and SMS preferences are separate choices. Security and service-critical communications remain necessary to manage your account and orders.
Account, domain and notification data
- Business billing profiles: company and contact details, country, tax identifier and tax-verification results. Available Greek registry details may be retrieved through AADE and EU VAT verification through VIES.
- Domain profiles: registrant and role-specific contacts, addresses, email, telephone and the additional identity or business-registration data required by the relevant extension. These profiles are separate from billing details.
- Optional profile photo and service notes: the avatar is resized and kept in the encrypted account profile; notes are encrypted and associated with the customer and service. They are not published as a public photo or note directory.
- Operational history: domain status and deadlines, notification content/stage, attempts and acceptance by the mail server, panel read state, verified alternate email, renewal consent, spending limit, accepted terms, administrative exceptions and refund evidence.
Optional data and transaction records
You can remove the current profile photo or service note and disable a saved card for future FastVPS use. Records of past payments, invoices, accepted terms, authorization, security events, disputes and refunds may need to remain for the applicable accounting/legal period or to resolve an open matter. Retention is limited to the relevant purpose and data. Copies in protected backups follow the backup lifecycle. Removing an optional field does not mean that every historical or legally required record is immediately erased.
Saved-card authorization and choices
Saving a card requires your separate acceptance and payment-provider verification. The stored reference and limited card identifiers are described under payments. Removing a card prevents future FastVPS use of that reference. Disabling a domain’s automatic renewal stops future authorized attempts; completed transactions and records required by law remain subject to the retention policy.
Contact form security
The contact form uses Cloudflare Turnstile to limit automated spam and abuse. The check loads when you interact with the form. Cloudflare processes technical connection and browser signals, including the IP address, to assess whether the request comes from a human. The form sends Cloudflare a temporary verification token; your name, email, phone and message are sent to FastVPS to answer your request, not included in our verification call.
The token expires after five minutes and can be validated once. We have not enabled Cloudflare pre-clearance cookies. If the check cannot finish, your text stays in the form and you can retry or use sales@fastvps.gr or +30 210 991 9675. See the Cloudflare Turnstile Privacy Addendum for the provider's processing and retention information.
Meta Pixel and advertising
Meta Pixel is enabled only after you choose Advertising. It sends page views and successful contact-request events to Meta Platforms Ireland Limited to measure and improve Facebook and Instagram advertising and create advertising audiences. Browser identifiers, visited page URLs, referrer, IP address and browser/device information may be processed. We do not include contact-form values in these events, and automatic advanced matching and automatic event detection are disabled. Withdraw permission at any time through Cookie settings; new events stop and the first-party Meta cookies are removed.
The _fbp cookie distinguishes browsers; _fbc can record an advertising click identifier when present. Their usual lifetime is up to 90 days, subject to browser limits. Consent is stored for 180 days. Meta may process data outside the EEA under the safeguards described in its policy. Meta Privacy Policy.