Privacy policy

Article 1. The rights and obligations of data subjects (customers), and how to exercise the rights

1. The data subject (customers) may exercise the rights related to personal information set forth in each of the following subparagraphs with respect to the Company any time.

① To request access to personal information

② To request correction of errors, etc. if any

③ To request deletion

④ To request stopping processing

2. The rights set forth in paragraph 1 above may be exercised in writing and by telephone, e-mail or fax, etc., and the Company shall take measures immediately after completing the user identification process.

Article 2. Procedure for and method of destroying personal information

In principle the Company shall destroy relevant information immediately after fulfilling the purpose of the collection and use of personal information or after the passage of the retention period. Procedure for and method of destroying it are as follows:

1. Destruction procedure

The Company shall determine personal information subject to destruction and destroy relevant personal information with the approval of the Privacy Officer.

2. Method of Deletion

The personal information printed in paper shall be destroyed with a shredder or by incineration and the personal information stored in an electronic file format shall be deleted by a technical method which makes it impossible to reproduce the records.

Article 3. Measures to ensure the safety of personal information

The Company takes technical and administrative measures necessary to ensure safety so that personal information is not lost, stolen, leaked, altered or damaged:

1. Encryption of personal information

Personal information is protected by a password, and important data is protected using security features such as encrypting files and transmitted data or using the file lock function.

2. Technical measures against illegal intrusion

The company always monitors customers’ personal information to prevent it from being leaked or damaged by hacking or computer viruses. We regularly maintain anti-virus programs to prevent personal information infringement.

3. Restrictions on Access to the Processing System of Personal Information

The Company is taking the necessary steps for a systematic database system that can process personal information.

4. Handling of personal information and training of employees

Personal information-related employees provide regular training for personnel on the acquisition of new security technologies and on their privacy obligations.

5. Managing personal passwords

In principle, a password is available only to the designated user. The Company is not liable for any issues arising from personal information (e.g. password) leakage caused by individual carelessness, or the general risks associated with the internet and online services. The Company urges users to have a strong awareness of security for their passwords, to frequently change their passwords, and to exercise caution when logging in to the services on public IP.