Privacy
Arthur

Privacy Policy

Last updated 21 July 2026

1 Who we are

Arthur is a business software product made by Tsagkaraki Broadworks ("we", "us"), based in Greece. This policy explains what personal data we handle when you use Arthur, why, and the choices you have.

For anything about your data, reach us at .

2 What we collect

We keep what we collect to what running the service actually needs:

  • Account details you give us: your name, email address, and a password (stored only as a secure, salted hash, never in plain text). Optionally a profile photo.
  • Workspace data you create inside Arthur: your business name and type, team members and their roles, your items and prices, inventory, orders, and daily totals.
  • Technical data from using the app: your IP address, device and browser type, and timestamps (for example, the time and IP of a login or a password-reset request, which we show you for your own security).
  • Messages you send us for support, and the emails we send you (sign-up, email confirmation, password reset).

We do not collect payment card details. Arthur never processes money. Payments happen through your own bank or card terminal, and that data never touches us.

3 How we use it

  • To run the service: your account, your workspaces, orders, stock, and team access.
  • To keep accounts secure: signing you in, spotting suspicious logins, and letting you reset a password.
  • To send you necessary emails about your account (confirmation, resets, important notices).
  • To answer your support requests.
  • To keep Arthur reliable and fix problems, using technical logs.

We do not sell your data, and we do not use it for advertising.

4 Our legal bases

Under the GDPR, we rely on:

  • Contract: to give you the service you signed up for.
  • Legitimate interests: to keep the service secure, reliable, and working, in a way that does not override your rights.
  • Legal obligation: where the law requires us to keep certain records.
  • Consent: for anything optional, which you can withdraw at any time.

5 Cookies

We use only what is needed to keep you signed in and the app working, for example a session token on your device. We do not use advertising or cross-site tracking cookies, and we do not run analytics on you. If that ever changes, we will say so here and give you a way to opt out.

6 Who we share it with

We share data only with the providers that help us run Arthur, and only as far as needed:

  • Our hosting provider, which stores the service and its data. We aim to keep this inside the European Union.
  • Our email provider, Google, which delivers your account emails.
  • Any tax or receipt connector you choose to switch on (for example Greek myDATA), and only then.
  • Authorities, if the law genuinely requires it.

These providers act on our instructions under agreements that protect your data. We never sell it.

7 How long we keep it

We keep your data while your account is active. If you close your account, we delete or anonymise your personal data within 30 days, and remove it from backups within 90 days. We may keep the minimum required by law (for example, tax records) for longer.

8 How we protect it

  • Data is encrypted in transit (HTTPS).
  • Passwords are salted and hashed, never stored in plain text.
  • Access is limited to what each person and each role needs.
  • Changing your password signs out other sessions, so a lost device can be locked out.

No system is perfect, but keeping your data safe is a core part of how we build.

9 Your rights

Under the GDPR you can ask us to:

  • See the data we hold about you.
  • Correct anything that is wrong.
  • Delete your data ("right to be forgotten").
  • Get a copy of your data to take elsewhere.
  • Limit or object to how we use it, and withdraw any consent.

Contact us at and we will respond within one month. You also have the right to complain to the Greek supervisory authority, the Hellenic Data Protection Authority (HDPA), at dpa.gr.

10 Where your data is held

We aim to keep your data within the European Economic Area. If a provider we use stores or processes data outside the EEA, we make sure appropriate safeguards are in place (such as the European Commission's standard contractual clauses).

11 Children

Arthur is a tool for businesses and is not intended for children. We do not knowingly collect data from anyone under 16.

12 Changes to this policy

If we change this policy, we will update the date at the top and, for important changes, let you know in the app or by email.

13 Contact us

Questions about your privacy? Write to and a real person will get back to you. We are here to help.