Privacy Policy
CLYVE Plastic Surgery (hereinafter referred to as 'the Company') establishes and discloses the following personal information processing guidelines to protect the personal information of data subjects in accordance with Article 30 of the Personal Information Protection Act and to promptly and smoothly handle related grievances.
Article 1 (Purpose of Personal Information Processing)
The company processes personal information for the following purposes. The personal information being processed will not be used for purposes other than those specified, and if the purpose of use changes, necessary measures, such as obtaining separate consent in accordance with Article 18 of the Personal Information Protection Act, will be implemented.
1. Website Member Registration and Management
We process personal information for purposes such as confirming intent to register as a member, identifying and authenticating individuals for membership services, maintaining and managing membership qualifications, verifying identity in accordance with the limited identity verification system, preventing unauthorized use of services, confirming consent of legal guardians when processing personal information of children under 14, providing various notices, and handling grievances.
2. Provision of Goods or Services
Personal information is processed for purposes such as product delivery, service provision, sending contracts and invoices, content provision, customized service provision, identity verification, age verification, payment and settlement, and debt collection.
3. Grievance Handling
Personal information is processed for purposes such as identity verification of the complainant, confirmation of complaint details, contact and notification for factual investigation, and notification of processing results.
Article 2 (Processing and Retention Period of Personal Information)
① The company processes and retains personal information within the period of retention and use of personal information according to laws and regulations, or within the period of retention and use of personal information agreed upon when collecting personal information from the data subject.
② The processing and retention periods for each type of personal information are as follows.
1. Website Member Registration and Management: Until withdrawal from business/organization website
However, in the following cases, until that reason ends
1) In cases where investigations or inquiries are ongoing due to violations of relevant laws and regulations, until the completion of such investigations or inquiries.
2) If creditor and debtor relationships remain due to website usage, until the settlement of the respective creditor and debtor relationships.
Article 5 (Rights of users and legal representatives and methods of exercising them).
① The data subject may exercise the following personal information protection rights against the company at any time.
1. Request for Access to Personal Information
2. Request for correction in case of errors, etc.
3. Deletion Request
4. Request for Suspension of Processing
② Rights under Article 1 can be exercised in writing, by phone, email, or fax to the company, which will take prompt action.
③ If the data subject requests correction or deletion of personal information errors, the company will not use or provide the personal information until the correction or deletion is completed.
④ The exercise of rights under Paragraph 1 may be carried out through an agent, such as the data subject's legal representative or an authorized person. In this case, a power of attorney must be submitted in accordance with Annex Form No. 11 of the Enforcement Rule of the Personal Information Protection Act.
⑤ The data subject shall not infringe on their own or others' personal information and privacy processed by the company, in violation of relevant laws and regulations such as the Personal Information Protection Act.
Article 6 (Items of Personal Information Processed)
The company processes the following personal information items.
1. Website Member Registration and Management
Required items : <Name, Date of Birth, ID, Password, Address, Phone Number, Gender, Email Address, i-PIN Number>
Optional: <Areas of Interest>
2. Provision of Goods or Services
Required items: <Name, Date of Birth, ID, Password, Address, Phone Number, Email Address, i-PIN Number, Credit Card Number, Bank Account Information, etc. Payment Information>
Optional: <Areas of Interest>
3. During the use of internet services, the following personal information items may be automatically generated and collected.
IP address, cookies, MAC address, service usage history, visit history, improper usage history, etc.
Article 7 (Destruction of Personal Information)
① The company promptly destroys personal information when it becomes unnecessary, such as upon expiration of the retention period or achievement of the processing purpose.
② If the personal information retention period agreed upon by the data subject has expired, or the purpose of processing has been achieved, but the personal information must continue to be preserved according to other laws, the personal information will be moved to a separate database (DB) or preserved in a different storage location.
③ The procedures and methods for personal information destruction are as follows.
1. Destruction Procedure
The company selects personal information for which a reason for destruction has occurred and destroys it upon approval from the company's personal information protection officer.
2. Disposal Method
The company destroys personal information recorded and stored in electronic file format using methods such as Low Level Format to prevent data recovery, and personal information recorded and stored in paper documents is destroyed by shredding or incineration.
Article 8 (Measures to Ensure Personal Information Security)
The Company takes the following measures to ensure the security of personal information.
1. Administrative Measures: Establishment and implementation of internal management plans, regular employee training, etc.
2. Technical Measures : Access control management for personal information processing systems, installation of access control systems, unique identification information
Encryption, security program installation
3. Physical Measures: Access control for computer rooms, data storage rooms, etc.
Article 9 (Matters concerning the installation, operation, and refusal of automatic personal information collection devices).
① The Company uses 'cookies' to store and frequently retrieve user information to provide individualized customized services.
② Cookies are small pieces of information sent by the server (http) used to operate the website to the user's computer browser, and may be stored on the hard disk within the user's computer.
A. Purpose of Cookie Usage: Cookies are used to identify visit and usage patterns for each service and website visited by the user, popular search terms, secure connection status, etc., and to provide optimized information to the user.
B. Installation, Operation, and Refusal of Cookies: You can refuse to save cookies through the option settings in the Tools > Internet Options > Privacy menu at the top of your web browser.
C. If you refuse to store cookies, you may experience difficulties using personalized services.
Article 10 (Personal Information Protection Officer)
① The company is responsible for overseeing all personal information processing operations and designates a personal information protection officer as follows for handling data subjects' complaints and providing remedies related to personal information processing.
▶ Personal Information Protection Officer
Name : Song Kyung-ho
Position: Chief Director
Contact : <02-6212-8080>, <clyveps@naver.com>
※ You will be connected to the department responsible for personal information protection.
▶ Personal Information Protection Department
Department Name: Planning Team
Manager: Director Jeon Eun-sun
Contact : <02-6212-8080>, <clyveps@naver.com>
② Data subjects may inquire about all matters related to personal information protection, complaint handling, and damage relief arising from their use of the company's services (or business) with the personal information protection officer and relevant department. The company will respond to and process data subjects' inquiries without delay.
Article 11 (Request for Access to Personal Information)
Data subjects may request access to their personal information in accordance with Article 35 of the Personal Information Protection Act to the department below. The company will strive to ensure that data subjects' requests for access to personal information are processed promptly.
▶ Personal Information Access Request Reception and Processing Department
Department Name: Planning Team
Contact Person :
Contact : <02-6212-8080>, <clyveps@naver.com>
Article 12 (Methods for Redressing Rights Infringement)
Data subjects may inquire about relief for damages, consultations, etc., regarding personal information infringement with the institutions below.
▶ Personal Information Infringement Reporting Center (Operated by Korea Internet & Security Agency)
- Responsibilities: Reporting personal information infringement, consultation application
- Website: privacy.kisa.or.kr
- Phone: (No area code) 118
- Address: (58324) 3rd Floor, 9 Jinheung-gil, Naju-si, Jeollanam-do (Bitgaram-dong 301-2) Personal Information Infringement Reporting Center
▶ Personal Information Dispute Mediation Committee
- Responsibilities: Application for personal information dispute mediation, collective dispute mediation (civil resolution)
- Website : www.kopico.go.kr
- Phone: 1833-6972 (Toll-free)
- Address: (03171) 4th Floor, Government Complex Seoul, 209 Sejong-daero, Jongno-gu, Seoul
▶ Supreme Prosecutors' Office Cybercrime Investigation Division : 02-3480-3573 (www.spo.go.kr)
▶ National Police Agency Cyber Bureau : 182 (http://cyberbureau.police.go.kr)
Article 13 (Enforcement and Amendment of Personal Information Processing Policy)
This privacy policy applies from 2022.10.01.