목차
제1조 (개인정보의 처리 목적)
회사는 다음의 목적을 위하여 개인정보를 처리합니다.
1. 서비스 이용 계약의 체결 및 이행
고객 식별 및 본인 확인 서비스 제공 및 계약 관리 이용료 결제 및 정산 서비스 이용 내역 관리
2. 서비스 개선 및 품질 향상
합성소비자 모델 정확도 향상을 위한 비식별 통계 분석 서비스 이용 패턴 분석 및 신규 기능 개발
3. 마케팅 및 광고 활용 (선택 동의 시)
신규 서비스 안내 및 이벤트 정보 제공 서비스 관련 설문조사 및 통계 분석
4. 법적 의무 이행
제2조 (처리하는 개인정보 항목)
1. 필수 항목
회사 정보: 법인명, 사업자등록번호, 대표자명, 사업장 주소 담당자 정보: 성명, 직위, 이메일, 연락처 결제 정보: 결제수단 정보, 청구 주소
2. 선택 항목
마케팅 수신 동의 여부, 관심 분야, 서비스 이용 피드백
3. 자동 수집 항목
서비스 이용 기록, 접속 로그, IP 주소, 쿠키, 브라우저 정보, 접속 기기 정보
제3조 (개인정보의 처리 및 보유 기간)
서비스 이용 계약 관련 정보: 계약 종료 후 5년 (상법) 결제 및 재화 공급 기록: 5년 (전자상거래법) 소비자 불만 또는 분쟁 처리 기록: 3년 (전자상거래법) 접속 로그 기록: 3개월 이상 (통신비밀보호법) 마케팅 관련 정보: 동의 철회 시까지
제4조 (개인정보의 제3자 제공)
회사는 원칙적으로 고객의 개인정보를 제3자에게 제공하지 않습니다. 다만, 다음의 경우에는 예외로 합니다.
고객이 사전에 동의한 경우 법령의 규정에 의하거나, 수사 목적으로 법령에 정해진 절차와 방법에 따라 수사기관의 요구가 있는 경우
제5조 (개인정보처리의 위탁)
클라우드 서비스 운영: AWS, Google Cloud Platform 등 결제 처리: 결제 대행(PG) 업체
제6조 (개인정보의 파기)
보유 기간 경과 또는 처리 목적 달성 시 지체 없이 파기합니다. 전자적 파일은 복구 불가능한 방법으로 삭제하며, 종이 문서는 분쇄 또는 소각합니다.
제7조 (고객의 권리·의무 및 행사 방법)
개인정보 열람 요구 오류 등이 있을 경우 정정 요구 삭제 요구 처리 정지 요구
제8조 (개인정보의 안전성 확보 조치)
관리적 조치: 내부 관리 계획 수립·시행, 정기적 직원 교육 기술적 조치: 개인정보 암호화, 접근 제어 시스템 운영, 보안 프로그램 설치 및 갱신 물리적 조치: 전산실 및 자료 보관실의 접근 통제
제9조 (개인정보 보호 책임자)
제10조 (개인정보 처리방침의 변경)
본 처리방침은 법령, 정책 또는 보안 기술의 변경에 따라 수정될 수 있으며, 변경사항은 시행 7일 전에 웹사이트를 통해 공지합니다.
제11조 (권익 침해 구제 방법)
개인정보 침해신고센터 (한국인터넷진흥원): 118 개인정보 분쟁조정위원회: 1833-6972 대검찰청 사이버수사과: 1301 경찰청 사이버수사국: 182
부칙
본 개인정보처리방침은 2026년 4월 23일부터 시행합니다.
Article 1 (Purpose of Personal Information Processing)
The Company processes personal information for the following purposes:
1. Conclusion and Performance of Service Agreements
Client identification and identity verification Service provision and contract management Fee payment and settlement Service usage history management
2. Service Improvement and Quality Enhancement
De-identified statistical analysis for improving synthetic consumer model accuracy Service usage pattern analysis and new feature development
3. Marketing and Advertising (with optional consent)
New service announcements and event information Service-related surveys and statistical analysis
4. Legal Obligation Compliance
Compliance with obligations under applicable laws and dispute resolution
Article 2 (Personal Information Items Processed)
1. Required Items
Company information: corporate name, business registration number, representative name, business address Contact person information: name, title, email, phone number Payment information: payment method details, billing address
2. Optional Items
Marketing consent status, areas of interest, service usage feedback
3. Automatically Collected Items
Service usage records, access logs, IP address, cookies, browser information, device information
Article 3 (Processing and Retention Period)
Service agreement information: 5 years after contract termination (Commercial Act) Payment and supply records: 5 years (E-Commerce Act) Consumer complaint or dispute records: 3 years (E-Commerce Act) Access log records: Minimum 3 months (Protection of Communications Secrets Act) Marketing information: Until consent is withdrawn
Article 4 (Provision of Personal Information to Third Parties)
The Company does not, in principle, provide Clients' personal information to third parties. However, exceptions are made in the following cases:
When the Client has given prior consent When required by law or when requested by investigative agencies following procedures prescribed by law for investigative purposes
Article 5 (Outsourcing of Personal Information Processing)
Cloud service operation: AWS, Google Cloud Platform, etc. Payment processing: Payment gateway (PG) companies
Article 6 (Destruction of Personal Information)
Personal information is destroyed without delay when the retention period expires or the processing purpose is achieved. Electronic files are deleted using methods that prevent recovery, and paper documents are shredded or incinerated.
Article 7 (Client Rights, Obligations, and Exercise Methods)
Right to request access to personal information Right to request correction of errors Right to request deletion Right to request suspension of processing
Article 8 (Measures to Ensure Personal Information Security)
Administrative measures: Establishment and implementation of internal management plans, regular employee training Technical measures: Personal information encryption, access control system operation, security program installation and updates Physical measures: Access control for computer rooms and data storage areas
Article 9 (Personal Information Protection Officer)
Article 10 (Changes to Privacy Policy)
This Privacy Policy may be amended in accordance with changes in laws, policies, or security technologies. Changes will be announced on the website at least 7 days before implementation.
Article 11 (Remedies for Rights Infringement)
Personal Information Infringement Report Center (KISA): 118 Personal Information Dispute Mediation Committee: 1833-6972 Supreme Prosecutors' Office Cyber Investigation Division: 1301 National Police Agency Cyber Bureau: 182
Supplementary Provisions
This Privacy Policy shall take effect from April 23, 2026.