The 'Appdo'(hereinafter referred to as the'Company') has the following processing policies to protect the user's personal information protection and interests in accordance with the Personal Information Protection Act and to smoothly handle the user's grievances related to personal information. In the event of amendment of the personal information processing policy, the company will notify it through the website announcement (or individual notice).
○ This policy will go into effect on May 1, 2020.
1. Personal information processing items Purpose of processing personal information The company processes personal information for the following purposes.
The processed personal information will not be used for purposes other than the following,
and prior consent will be sought when the purpose of use is changed.
1) Homepage membership registration and management
We process personal information for the purpose of Confirmation of membership intention, identification/certification by providing membership service, maintenance and management of membership, identification by following the limited
identification system, prevention of illegal use of service, confirmation of consent of legal representative when collecting personal information for children under 14, various notices/notifications, grievance handling, record retention for dispute settlement, and etc.
2) Processing civil petition
We process personal information for the purpose of verifying the identity of the civil petitioner, confirming the civil complaint, contacting and notifying for fact investigation, and notifying the result of processing.
3) Provision of goods or services
We process personal information for the purposes of service provision, content provision, personalized service provision, identity verification, and age verification.
4) Marketing and Advertising
We process personal information for the purposes of development of new services (products) and provision of customized services, provision of event and advertisement information and participation opportunities, provision of services and advertisements according to demographic characteristics, validation of services, access frequency, statistics of members' use of services, and etc.
5) Personal video information
We process personal information for the purposes of crime prevention and investigation, facility safety and fire prevention, traffic control, and collection, analysis and provision of traffic information.
2. Personal information file status
- Personal information items : Email, mobile phone number, name, company phone number, job title, department, company name, service usage record, access log, cookie, access IP information
3. Processing of personal information and retention period
① The Company handles and retains personal information within period of retention and use of personal information according to laws and regulations, or period of retention and use of personal information agreed upon when collecting personal information from information subject.
② Each personal information processing and retention period is as follows.
(1) <Processing civil petition>
Personal information related to <processing civil petition> is retained and used for the above purposes from the consent date for collection and use to 3 years.
- Grounds of retention : Personal Information Protection Act
- Related laws : records of consumer complaints or disputes : 3 years
- Exception :
4. Matters concerning the provision of personal information to third parties
① The company provides personal information to third parties only when it falls under Articles 17 and 18 of the Personal Information Protection Act, such as consent of the data subject and special provisions of the law.
② The company provides personal information to third parties as follows.
- Purpose of using personal information of the recipient : Email, mobile phone number, name, company phone number, job title, department, company name
- Retention and use period of the recipient : 3 years
5. Personal information processing consignment
① The company entrusts the following personal information processing tasks for smooth personal information processing.
- Consignee :
- Contents of consignment duties :
- Consignment period :
② When signing a consignment contract, the company contracts matters related to responsibilities such as prohibition of processing personal information, technical and administrative protection measures, restrictions on re-trust, management and supervision of consignee, and compensation for damages in accordance with Article 25 of the Personal Information Protection Act. It is specified in the document and supervises whether the consignee handles personal information safely.
③ If the contents of the consignment service or the consignee are changed, we will disclose it through this personal information processing policy without delay.
6. Rights and obligations of the information subject and legal representatives and how to exercise them the user can exercise the following rights as a personal information subject.
① The information subject can exercise the right to view, correct, delete, or stop processing personal information at any time for the company.
② The exercise of the rights pursuant to paragraph (1) may be made to the company through written, e-mail, fax transfer, etc. in accordance with Article 41 (1) of the Enforcement Decree of the Personal Information Protection Act, and the Company will take action without delay.
③ The exercise of rights pursuant to paragraph (1) may be made through a legal representative of the information subject or an agent such as a person who has been delegated. In this case, you must submit a power of attorney in accordance with Appendix 11 of the Enforcement Rules of the Personal Information Protection Act.
④ Requests for access to personal information and suspension of processing may be restricted in accordance with Article 35 (5) and Article 37 (2) of the Personal Information Protection Act.
⑤ Requests for correction and deletion of personal information cannot be requested if the personal information is specified for collection in other laws.
⑥ The company verifies whether the person who made the request, such as a request for viewing, request for correction/deletion, or request for suspension of processing according to the rights of the information subject, is the person or a legitimate agent.
7. Write items of personal information to be processed
① The company handles the following personal information items.
(1) <Processing civil petition>
- Critical items : Email, mobile phone number, name, company phone number, job title, department, company name
- Selection items : service usage record, access log, cookie, access IP information
8. Destruction of personal information
In principle, if the purpose of processing personal information is achieved, the company will destroy the personal information without delay. The procedure, deadline and method of destruction are as follows.
◎ Destruction procedure
The information entered by the user is transferred to a separate DB after achieving the purpose (separate documents in the case of paper) and stored for a certain period of time according to the internal policy and other related laws or immediately destroyed. At this time, personal information transferred to the DB will not be used for any other purpose unless required by law.
◎ Destruction deadline
If the personal information of the user is within 5 days from the end date of the retention period when the retention period of the personal information has elapsed, the personal information when the personal information becomes unnecessary, such as the achievement of the purpose of processing the personal information, the abolition of the service, and the termination of the business The personal information is destroyed within 5 days from the date when it is deemed unnecessary.
◎ Method of destruction
Personal information printed on paper is destroyed by shredding or incineration.
9. Matters concerning installation, operation and rejection of automatic personal information collection device
① In order to provide personalized service, the company uses 'cookies' that store and retrieve usage information from time to time.
② Cookies are a small amount of information sent by the server(http) used to operate the website to the user's computer browser and may be stored on the hard disk of the user's PC computer.
Purpose of Cookies : It is used to provide optimized information to users by grasping visit and use patterns, popular search terms, secure access status, etc. for each service and website visited by the user.
Installation, operation and refusal of cookies : You can refuse to save cookies by setting options in Tools>Internet Options>Privacy menu at the top of the web browser.
If you refuse to save cookies, you may have difficulty using customized services.
10. Personal information protection officer
① The company(‘www.appdo.co.kr’) is responsible for the handling of personal information, and has designated the person in charge of protection of personal information as follows to handle complaints and remedy of information subjects related to personal information processing.
<Personal information protection officer>
· neme : minji lee
· job title : Senior Researcher
· position : Senior Researcher
· phone number : 010-9462-3129
<Personal Information Protection Department>
· department : Solution Development Headquarters
· manager : minji lee
· phone number : 051-633-0515
② The information subject can inquire all personal information protection related inquiries, complaints, and damage relief while using the company's service (or business) to the person in charge of personal information protection and the department in charge. The company will respond and process information subject's inquiries without delay.
11. Change of personal information processing policy
The personal information processing policy will be applied from the effective date, and if there are any additions, deletions, or corrections of changes in accordance with laws, the notice will be notified through 7 days prior to the enforcement of the changes.
12. Measures to secure personal information safety
In accordance with Article 29 of the Personal Information Protection Act, the company is taking technical, administrative and physical measures necessary to ensure safety as follows.
Regular self-audit
In order to secure stability related to the handling of personal information, we conduct self-audit on a regular basis (once a quarter).
② Minimization and training of personal information handling staff
We are taking measures to manage personal information by designating and minimizing the number of employees who handle personal information.
③ Technical measures against hacking
The company installs security programs, periodically updates and checks, and installs systems in areas where access is controlled from outside, and technically and physically monitors and blocks them to prevent leakage or damage of personal information caused by hacking or computer viruses.
④ Storage of access records and prevention of forgery
We keep and manage records that have been accessed to the personal information processing system for at least 6 months, and use security functions to prevent access records from being forged, stolen, or lost.