TOV-ENT Co., Ltd. (hereinafter referred to as the "Company") processes and safely manages personal information in compliance with the Personal Information Protection Act and related laws for the protection of members' freedom and rights. In addition, through the personal information processing policy, we inform you about how your personal information is being used and what protective measures are taken when using it. This personal information processing policy may change the contents of the law or to provide better services. In this case, it is notified through an app notice.
1. Items and objectives for collecting and using personal information
The personal information collected and used to use the company's membership service will not be used for any purpose other than the following purposes, and necessary measures, such as obtaining separate consent when changing the purpose, will be taken. The personal information of Decop members is collected as follows.
classification
|
items of collection and use
|
Purpose of use
|
join membership |
[Required] Name, ID (email), password, mobile phone number |
Identification of members, use of services, reply to inquiries, prevention of illegal use, use of services, etc. (It can be used as marketing information depending on the consent of the information subject) |
When modifying membership information |
[Optional] Password, mobile phone number (identification when modifying mobile phone number) |
Membership management |
mobile phone authentication |
Name, mobile phone number, and first digit of resident registration number |
Identification |
1:1 inquiry |
Name, Contact |
Check the contact person, respond to the inquiry, etc |
Information generated when using the service |
Last connection date |
Dormant account management |
2. consignment of the processing of personal information
The company entrusts the personal information processing work as follows for smooth personal information processing.
Outsourcing Service Provider
|
Entrusted Tasks
|
PASS |
Mobile phone identification and verification |
Toss Payments Co., Ltd |
an electronic payment agency |
Amazon Web Services, Inc (Amazon) |
Operate and manage cloud servers |
If the contents of the consignment work or the trustee changes, we will disclose it without delay through this personal information processing policy.
3. Period of retention and use of personal information
The company will retain the user’s personal information in accordance with the notified and agreed purposes, until the purpose of collection and use is fulfilled or until the user requests to withdraw from membership. However, in cases where storage is necessary for the following reasons, the information will be separated and stored in a separate database or table that is isolated from external access.
① The membership information collected for the provision of services will be managed until the user withdraws from membership.
② Users who have not used the service for one year will be stored and managed separately from the general user’s membership information in accordance with Article 39-6 of the Personal Information Protection Act (converted to a dormant account).
4. Destruction of Personal Information
① The personal information of the member will be destroyed without delay once the purpose of use is achieved.
② In accordance with the Personal Information Protection Act, members who have not used the service for one year will be stored separately from general members' membership information.
The company has designated a Personal Information Protection Officer responsible for overseeing all matters related to personal information processing, handling user complaints, and providing remedies for any damages related to personal information.
③ The separately stored personal information will be securely stored for 5 years, after which the member will be notified via email and the personal information will be destroyed.
④ Personal information printed on paper will be destroyed by shredding.
5. Member Rights
Members can check or modify their personal information at any time and withdraw consent for the use of their personal information through the membership withdrawal process.
6. Member's Obligations
① Members are responsible for protecting their personal information, and the company is not responsible for any issues arising from the member's negligence.
② Members have the obligation to input and maintain their personal information accurately and up to date. Any issues caused by inaccurate information input will be the responsibility of the member. Additionally, if a member uses another person’s personal information to register or use the service, their membership may be revoked and they may face legal consequences under applicable laws related to personal information.
③ Members must comply with laws related to personal information, such as the "Act on Promotion of Information and Communications Network Utilization and Information Protection" and the "Personal Information Protection Act."
7. Measures to Secure the Safety of Personal Information
The company has implemented the following measures to ensure the safety of members' personal information:
① Password Encryption
Members' passwords are encrypted and stored securely. Only the member can know their password, and personal information can only be accessed or modified by the member themselves. Therefore, members should take special care to prevent their password from being disclosed to others.
② Measures Against Hacking
The company uses necessary security measures to prevent the leakage or damage of members' personal information due to hacking or viruses and is continuously striving to implement advanced security measures.
③ Restriction of Personal Information Handlers and Regular Training
The company limits the number of employees handling personal information to a minimum and provides regular training to ensure compliance with this policy.
8. Personal Information Protection Officer
The company has designated a Personal Information Protection Officer responsible for overseeing all matters related to personal information processing, handling user complaints, and providing remedies for any damages related to personal information.
a person in charge of personal information protection
|
Customer Service Department
|
Name: Kang Jong-pil
Position: Executive Director
Contact: 070-8280-8261
Email: jpkang12@aintop.co.kr
|
Contact: 02-303-2326
Email: contact@aintop-ent.com
|
If you need to report or consult other personal information infringement, please contact the following agency.
① Personal Information Dispute Mediation Committee(www.kopico.go.kr/1833-6972)
② Personal Information Infringement Reporting Center (privacy.kisa.or.kr/ 118 without country code)
③ Cyber Investigation Division of Supreme Prosecutors' Office (www.spo.go.kr/ 1301 without country number)
④ Cybercrime reporting system of National Police Agency (www.police.go.kr/www/security/cyber.jsp/ 182 without country code)
9. Revision of the Personal Information Processing Policy and its announcement
This personal information processing policy may be subject to additional, deletion, or modification due to changes in related laws and guidelines or the needs of the company.
If the personal information processing policy is revised, it will be notified in advance on the website 7 days before its implementation.
This policy will take effect as of the effective date below.
Date of Announcement: April 24, 2024
Effective date: April 24, 2024