KORUST
Co., Ltd.
Privacy
Policy
This privacy Policy (the "Policy") explains the way of treatment of the information which is provided or collected in the websites on which this Policy is posted. In addition the Policy also explains the information which is provided or collected in the course of using the applications of the Company which exist in the websites or platforms of other company.
Through this Policy, the Company regards personal information of the users as important and inform them of the purpose and method of Company's using the personal information provided by the users and the measures taken by the Company for protection of those personal information.
This Policy will be effective on the first day of August, 2016 and, in case of modification thereof, the Company will make public notice of it through posting it on the bulletin board of Company's website (or individual notice through sending mails, fax or e-mails).
1.
Information to
be collected and method of collection
(1)
Personal
information items to be collected
Personal information items to be collected by the Company are as follows:
·
Information
provided by the users
The Company may collect the information directly provided by the users.
Title of service |
Items to be collected |
Aftersales
Service |
Business Name, Name, Telephone number, Email address, Business Address, National information encoded identification information (CI) |
Order
products Service |
Business Name, Name, Telephone number, Email address, Business Address, National information encoded identification information (CI) , Delivery information including delivery address, name and contact information of recipient |
·
Information
collected while the users use services
Besides of information directly provided by the users, the Company may collect information in the course that the users use the service provided by the Company.
Lists |
Items to be collected |
Equipment
information |
· Equipment identifier, Equipment model,
Application version, Hardware version, Equipment use count,
Equipment working status, Equipment setup values · Cartridge identifier, Cartridge model, Cartridge national code, region code, Cartridge use count, Cartridge setup values |
Log
information |
·
Log data, internet protocol address,
cookie and web beacon |
Location
information |
· Information of device location including specific geographical location detected through GPS, Bluetooth or Wi-Fi (limited to the region permissible under the laws) |
(2)
Method of
collection
The Company collects the information of users in a way of the followings:
· webpage, written form, fax, telephone calling, e-mailing, tools for collection of created information, HIFU equipment
· provided by partner companies
2.
Use of collected
information
The Company uses the collected information of users for the following purposes:
· To detect and prevent using unauthorized devices and cartridges
· To response quickly for customer service, improvement of existing services, development of new services
· To order products and check manager
· Making notice of function of company sites or applications or matters on policy change
· To comply with applicable laws or legal obligation
The Company agrees that it will obtain consent from the users, if the Company desires to use the information other than those expressly stated in this Policy.
3.
Sharing
collected information
Except for the following cases, the Company will not share personal information with a 3rd party:
·
when the Company
shares the information with its affiliates, partners and service
providers;
- When the Company's affiliates, partners and service providers carry out services such as execution of orders, products delivery and dispute resolution(including disputes on delivery) for and on behalf of the Company
- When used in the Google maps service to determine device location
·
when the users
consent the sharing in advance;
- When the user selects to be provided by the information of products and services of certain companies by sharing his or her personal information with those companies
- Other cases where the user gives prior consent for sharing his or her personal information
·
when the sharing
is required by the laws;
-
If
required to be disclosed by the laws and regulations; or
-
If
required to be disclosed by the investigative agencies for detecting
crimes in accordance with the procedure and method as prescribed in
the laws and regulations
4.
Cookies, Beacons
and Similar Technologies
The Company may collect collective and impersonal information through 'cookies' or 'web beacons'.
Cookies are very small text files to be sent to the browser of the users by the server used for operation of the websites of the Company and will be stored in hard-disks(or SSD) of the users' computer.
Web beacon is a small quantity of code which exists on the websites and e-mails. By using web beacons, we may know whether a user has interacted with certain webs or the contents of email.
These functions are used for evaluating, improving services and setting-up users' experiences so that much improved services can be provided by the Company to the users
The items of cookies to be collected by the Company and the purpose of such collection are as follows:
Category |
Reasons for using cookies and
additional information |
Strictly necessary cookies |
This cookie is a kind of indispensable cookie for the users to use the functions of website of the Company. Unless the users allow this cookie, the services such as login or logout automatically. This cookie does not collect any information which may be used for marketing or memorizing the sites visited by the users
· Memorize the information entered in an order
form while searching other pages during web browser session
· Check whether login is made on website · Check whether the users are connected with correct services of the website of the Company while the Company changes the way of operating its website · Connect the users with certain application or server of the services
|
Performance cookies |
This cookie collects information how the users use the website of the Company such as the information of the pages which are visited by the users most. This data helps the Company to optimize its website so that the users can search that website more comfortably. This cookie does not collect any information of the users. Any and all the information collected by this cookie will be processed collectively and the anonymity will be guaranteed.
·
Management of error: measure an error
which may occur so as to give a help for improving website · Design testing: test other design of the website of Company |
Functionality cookies |
This cookie is used for memorizing the set-ups so that the Company provides services and improves visit of users. Any information collected by this cookie does not identify the users individually.
· Memorize set-ups applied such as layout, text size, basic set-up and colors |
The users have an option for cookie installation. So, they may either allow all cookies by setting option in web browser, make each cookie checked whenever it is saved, or refuses all cookies to be saved: Provided that, if the user rejects the installation of cookies, it may be difficult for that user to use the parts of services provided by the Company.
5.
Users' right to
access and option
The users or their legal representatives, as main agents of the information, may exercise the following options regarding the collection, use and sharing of personal information by the Company:
- Exercise right to access to personal information;
- Make corrections or deletion;
- Make temporary suspension of treatment of personal information; or
- Request the withdrawal of their consent provided before
If, in order to exercise the above options, you as an user, contact the Company by using representative telephone or sending a document or e-mails, or using telephone to the responsible department (or person in charge of management of personal information), the Company will take measures without delay: Provided that the Company may reject the request of you only to the extent that there exists either proper cause as prescribed in the laws or equivalent cause.
6.
Security
The Company regards the security of personal information of uses as very important. The company constructs the following security measures to protect the users' personal information from any unauthorized access, release, use or modification
·
Encryption of personal information
- Transmit users' personal information by using encrypted communication zone
- Store important information such as passwords after encrypting it
·
Countermeasures against hacking
- Install a system in the zone the external access to which is controlled so as to prevent leakage or damage of users' personal information by hacking or computer virus
·
Establish and execute internal management
plan
·
Install and operate access control system
·
Take measures to prevent forging or
alteration of access record
7.
Protection of
personal information of children
In principle, the Company does not collect any information from the children under 13 or equivalent minimum age as prescribed in the laws in relevant jurisdiction. The website, products and services of the Company are the ones to be provided to ordinary people or hospital staff, in principle. The website or application of the Company has function to work with equipment of the Company so that children cannot use it and the Company does not intentionally collect any personal information from children through that function.
However, if the Company collects any personal information from children under 13 or equivalent minimum age as prescribed in the laws in relevant jurisdiction for the services for unavoidable reason, the Company will go through the additional procedure of the followings for protecting that personal information of children:
- obtain consent from the parents or guardian of children so as to collect personal information of children or directly send the information of products and services of the Company
- give the parents or guardian of children a notice of Company's policy of privacy protection for children including the items, purpose and sharing of personal information collected
- grant to legal representatives of children a right to access to personal information of that children/correction or deletion of personal information/temporary suspension of treatment of personal information/ and request for withdrawal of their consent provided before
- limit the amount of personal information exceeding those necessary for participation in online activities
8.
Modification of
Privacy Protection Policy
The Company has the right to amend or modify this Policy from time to time and, in such case, the Company will make a public notice of it through bulletin board of its website (or through individual notice such as written document, fax or e-mail) and obtain consent from the users if required by relevant laws.
9.
Others
·
Data transmission
Considering
it engages in global businesses the Company may provide the users'
personal information to the companies located in other countries for
the purpose as expressly started in this Policy. For the places
where the personal information is transmitted, retained or
processed, the Company takes reasonable measures for protecting that
personal information.
In
addition, when the personal information obtained from the European
Union is used or disclosed, the Company may have to comply with safe
harbor principle as required by the Commerce Department of USA, take
other measures or obtain consent from users so far as those complies
with the regulations of EU so as to use a standardized agreement
provision approved by executing organizations of EU or securing
proper safe measures.
·
3rd party's sites and services
The
website, product or service of the Company may include the links to
the ones of a 3rd party and the privacy protection policy of the
site of 3rd party may be different. Thus, it is required for the
users to check additionally that policy of a 3rd party site linked
to the site of the Company.
·
Guide for users residing in California
If
the user resides in California, certain rights may be given. The
Company prepares preventive measures necessary for protecting
personal information of members so that the Company can comply with
online privacy protection laws of California.
In
case of leakage of personal information, a user may request the
Company to check the leakage. In addition, all the users in the
website of the Company, can modify their information at any time by
using the menu for changing information by connecting their personal
account.
Moreover,
the Company does not trace the visitors of its website nor use any
signals for 'tracing prevent'. The Company will not collect and
provide any personal identification information through ad services
without consent of users.
·
Guide for users residing in Korea
The
Company guides several additional matters to be disclosed as
required by the information network laws and personal information
protection laws in the Republic of Korea as follows:
(1)
Information
collected
The items collected by the Company are as
follows:
·
Required information
Title of service |
Items to be collected |
Aftersales
Service |
Business Name, Name, Telephone number, Email address, Business Address, National information encoded identification information (CI) |
Order
products Service |
Business Name, Name, Telephone number, Email address, Business Address, National information encoded identification information (CI) , Delivery information including delivery address, name and contact information of recipient |
In
the course of using services, the information as described below
may be created and collected:
·
Information of devices (Equipment
identifier, Equipment model, Application version, Hardware
version, Equipment use count, Equipment working status,
Equipment setup values)
·
Information of cartridges (Cartridge
identifier, Cartridge model, Cartridge national code, region
code, Cartridge use count, Cartridge setup values) · Log information (Log data, internet protocol address, cookie and web beacon) · Location information (Information of device location including specific geographical location detected through GPS, Bluetooth or Wi-Fi) · Other created information |
(2)
Commission for
collected personal information
The Company does not commission personal information to other companies.
(3)
Details of
provision of personal information to 3rd party
Except for the following cases, the Company does not disclose or provide personal information of the users to a 3rd party:
Recipients of information |
Purpose of use of recipient |
Items to be provided |
Period of retention and use of
recipient |
Selling
Agent |
Management of products, Execute an order, Delivery products |
Name, Business Name, Business Address, E-mail Address, Telephone number, Delivery information including delivery address, name and contact information of recipient |
Until the date when the purpose of use is achieved or period as required by the laws |
Google
Maps |
For location of product |
GPS location data |
Until the date when the purpose of use is achieved or period as required by the laws |
(4)
Period for
retention and use of personal information
In principle, the Company destructs personal information of users without delay when: the purpose of its collection and use has been achieved; the legal or management needs are satisfied; or users request: Provided that, if it is required to retain the information by relevant laws and regulations, the Company will retain member information for certain period as designated by relevant laws and regulations. The information to be retained as required by relevant laws and regulations are as follows:
·
Record on consumer complaint or dispute
treatment: 3 years (The Act on Consumer Protection in Electronic
Commerce)
·
Log record of users such as internet/data
detecting the place of user connection: 3 months (The Protection
of Communications Secrets Act) · Other data for checking communication facts: 12 months (The Protection of Communications Secrets Act) |
(5)
Procedure and
method of destruction of personal information
In principle, the Company destructs the information immediately after the purposes of its collection and use have been achieved without delay: Provided that, if any information is to be retained as required by relevant laws and regulations, the Company retain it for the period as required by those laws and regulations before destruction and, in such event, the personal information which is stored and managed separately will never be used for other purposes. The Company destructs: hard copies of personal information by shredding with a pulverizer or incinerating it; and delete personal information stored in the form of electric file by using technological method making that information not restored.
(6)
Technical,
managerial and physical measures for protection of personal
information
In order to prevent the loss, theft, leakage, alteration or damage of personal information of the users, the Company takes technical, managerial and physical measures for securing safety as follows:
Items |
Measures |
Technical
measures |
· Utilize security servers for transmitting encryption of personal information
· Take measures of encryption for confidential
information
· Install and operate access control device and
equipment · Establish and execute internal management plan |
Managerial
measures |
· Appoint a staff responsible for protecting
personal information
· Provide education and training for staffs
treating personal information
· Establish and execute internal management plan
· Establish rules for writing passwords which is
hard to be estimated
· Ensure safe storage of record of access to
personal information processing system · Classify the level of authority to access to personal information processing system |
Physical
measures |
· Establish and operate the procedure for access
control for the facilities for storing personal information · Store documents and backing storage containing personal information in safe places which have locking device |
(7) Staff responsible for managing personal information
The staff of the Company responsible for managing personal information is as follows:
·
Name of staff responsible for managing personal information: Soo
Hyun Kim
-
Dept.:
Customer Service Team
-
Tel.:
82-31-337-5959
-
Contact:
service@korust.com
10.
Responsible department of
Company
The Company designates the following department and person in charge of personal information in order to protect personal information of customers and deal with complaints from customers:
- Department responsible for privacy protection and customer service:
- Address: 716, B-Tower, KEUMKANG PENTERIUM IT Tower, 282, Hagui-ro, Dongan-gu, Anyang-si, Gyeonggi-do, KOREA
- Tel: 82-31-337-5959
- E-mail: service@korust.com
The latest update date: July, 2016