Legal / Privacy
Privacy Policy
GINMAKU Technology Co., Ltd. ("we") recognizes the protection of personal information as an important responsibility and handles it appropriately in accordance with the policy below.
Article 1
Definition of Personal Information
"Personal information" means information about a living individual as defined in Article 2(1) of the Act on the Protection of Personal Information ("APPI"), which can identify a specific individual by name, date of birth, address, telephone number, email address or other descriptions contained in it. Information containing individual identification codes (passport number, driver's license number, etc.) also constitutes personal information.
Article 2
How We Collect Personal Information
We collect personal information such as name, address, telephone number, email address and credit card details by lawful and fair means when users make inquiries, register as members, purchase products or subscribe to newsletters on this site. We may also automatically collect information on how this site is used (cookies, IP addresses, device information, access logs, etc.).
Article 3
Purposes of Use
We use the personal information we collect for the purposes below. If we change a purpose of use, we will do so within a scope reasonably deemed relevant to the purpose before the change, and will announce the change on this site.
(1) Operating and maintaining this site
(2) Performing transactions including shipment, payment settlement and after-sales service
(3) Responding to user inquiries and verifying identity
(4) Sending newsletters, campaigns and information on new services
(5) Analyzing site usage and producing statistical data to improve our services
(6) Responding to and preventing acts that violate our terms of use
(7) Other purposes for which individual consent has been obtained
Article 4
Provision to Third Parties
Except in the cases below, we will not provide personal information to third parties without the prior consent of the user.
(1) Where required by laws and regulations
(2) Where necessary to protect a person's life, body or property and it is difficult to obtain the consent of the individual
(3) Where specially necessary to improve public health or promote the sound growth of children and it is difficult to obtain the consent of the individual
(4) Where cooperation is needed for a national agency, local government or their delegate to perform statutory duties, and obtaining consent would impede those duties
(5) Where the business is succeeded due to merger, company split, business transfer or other reasons
Notwithstanding the preceding paragraph, when providing personal data to a third party we will create and retain records of the date, recipient and content of the provision for a set period, in accordance with the APPI.
Article 5
Provision to Third Parties Located Overseas
When providing users' personal data to third parties located in foreign countries, we will obtain the individual's prior consent regarding the matters below. This does not apply where the destination country is designated by the Personal Information Protection Commission as a country with a system meeting APPI standards, or where the recipient has established "equivalent measures" under the APPI.
• Name of the destination country
• Information on that country's personal information protection system
• Details of the security control measures taken by the recipient
Where the servers of cloud services we use are located overseas, personal data may be stored on those servers. Please use this site on the understanding that you agree to this.
Article 6
Joint Use
Our position on the joint use of personal data is set out below.
We do not currently engage in the joint use of personal data. Should we do so in the future, we will announce in advance on this site the scope of joint users, the items of personal data to be jointly used, the purposes of use and the party responsible for management.
Any change to the content of joint use will be announced on this site.
Article 7
Security Control Measures
We take necessary and appropriate measures to prevent the leakage, loss or damage of personal information and to otherwise manage it securely. Specifically:
• Establishing a basic policy (formulating and publishing this policy)
• Maintaining rules on handling personal data (rules for acquisition, use, storage, provision, deletion, etc.)
• Organizational measures (appointing a responsible person, establishing an incident reporting structure)
• Human measures (regular employee training, concluding confidentiality agreements)
• Physical measures (entry/exit control, theft prevention, restrictions on removal)
• Technical measures (access control, encryption, anti-virus software, etc.)
Established: January 1, 2026