Privacy Policy
Article 1 (Purpose)
NZiN (hereinafter referred to as the “Company”) establishes this Privacy Policy (hereinafter referred to as the “Policy”) in order to protect the personal information (hereinafter “Personal Information”) of individuals (hereinafter “Users” or “Individuals”) using the services provided by the Company (hereinafter the “Company Services”), to comply with the Personal Information Protection Act, the Act on Promotion of Information and Communications Network Utilization and Information Protection (hereinafter the “Information and Communications Network Act”), and other relevant laws, and to ensure the smooth handling of grievances related to the protection of personal information.
Article 2 (Principles of Personal Information Processing)
In accordance with applicable laws and this Policy, the Company may collect personal information of users. The collected information may be provided to third parties only with the user’s consent. However, in cases where provision is mandated by law, the Company may provide such information to third parties without prior consent.
Article 3 (Disclosure of the Policy)
The Company discloses this Policy on the main page or a linked page of its website to allow users easy access at any time.
The Company ensures that this Policy is displayed in a format easily recognizable by users, using font size, color, and other visual aids.
Article 4 (Changes to the Policy)
This Policy may be revised in accordance with changes in relevant laws, guidelines, notices, or changes in government or Company service policies.
If this Policy is amended, the Company shall notify users in one or more of the following ways:
Posting on the notice section of the homepage or via a separate window
Written notice, fax, email, or similar means
Such notice shall be provided at least 7 days before the effective date of the revised Policy. However, for changes significantly affecting users' rights, the Company shall notify at least 30 days in advance.
Article 5 (Information for Identity Verification)
The Company collects the following information for identity verification:
Required: CI, DI (identification values)
Optional: Location information
Article 6 (Information for Service Provision)
To provide its services, the Company collects:
Required: ID and email address
Article 7 (Information for Service Use and Fraud Detection)
To analyze service usage and detect fraudulent activity (e.g., repeated sign-ups after withdrawal, repeated cancellations, unauthorized use of coupons or promotions, identity theft, etc.), the Company collects:
Required: Cookies, access location, and device information
Article 8 (Methods of Collecting Personal Information)
The Company collects personal information through the following means:
User-entered information on the Company website
Information entered via applications or services other than the website
Automatically collected during app use
Article 9 (Use of Personal Information)
The Company uses personal information for the following purposes:
Delivery of notices related to operations
Responding to inquiries, complaints, and service improvement
Provision of Company Services
Restricting use for violations of terms, preventing and penalizing fraudulent behavior
Event notifications and marketing
Demographic analysis and usage statistics
Article 10 (Retention and Use Period of Personal Information)
Personal information is retained for the period necessary to fulfill its collection purpose.
However, for fraud prevention, records of misuse may be kept for up to 1 year after user withdrawal.
Article 11 (Retention under Laws and Regulations)
In accordance with relevant laws:
Contracts or withdrawal records: 5 years
Payment and supply records: 5 years
Complaints or dispute handling: 3 years
Advertising records: 6 months
Website access logs: 3 months (under the Protection of Communications Secrets Act)
Electronic transaction records: 5 years
Personal location data: 6 months
Article 12 (Destruction Principle)
When personal information is no longer needed, the Company destroys it without delay.
Article 13 (Destruction Procedure)
Information entered during registration is stored in a separate database and destroyed after the retention period based on internal policy and relevant laws.
All deletions are subject to approval by the Personal Information Protection Officer.
Article 14 (Destruction Method)
Electronically stored data: Deleted using irrecoverable technical methods
Paper records: Shredded or incinerated
Article 15 (Transmission of Promotional Information)
The Company obtains prior consent before sending marketing messages via electronic means. However, consent is not required in the following cases:
When the Company collects contact information through a transaction and sends marketing information within 6 months of the transaction
When a telemarketer verbally discloses the source of data during a call as per relevant law
The Company does not send messages after users opt-out or withdraw consent, and it informs users of the result.
Separate consent is required for messages sent between 9 PM and 8 AM.
Marketing messages must clearly indicate:
Company name and contact
Instructions on how to withdraw or refuse consent
The Company does not:
Interfere with withdrawal of consent
Auto-generate contact info
Auto-register contacts for promotions
Conceal sender identity
Deceive recipients to prompt replies
Article 16 (User Responsibilities)
Users must maintain up-to-date personal information.
Any issues caused by incorrect information are the user’s responsibility.
Using another person’s information may result in disqualification or legal penalties.
Users must safeguard their email and password and must not share or transfer them to third parties.
Article 17 (Cookies and Rejection Options)
The Company uses cookies for personalized services.
Cookies are small data files sent from servers to users’ browsers and stored locally.
Users can:
Accept all cookies
Choose to be notified each time
Reject all cookies
Note: rejecting cookies may hinder login-required services.
Article 18 (How to Manage Cookies in Browsers)
Edge: Settings > Cookies and site permissions > Manage and delete data
Chrome: Settings > Privacy and security > Cookies and other site data
Whale: Settings > Privacy > Cookies and other site data
Article 19 (Data Protection Officer)
Chief Privacy Officer: Yun Hanpil
Title: Information Security Officer
Phone: 070-8677-0067
Email: privacy@nzinent.com
Department: Information Security Office
Name: Yun Hanpil
Phone: 070-8677-0067
Email: privacy@nzinent.com
Article 20 (Remedies for Rights Infringement)
Data subjects may contact the following for dispute resolution or consultation:
Personal Information Dispute Mediation Committee: 1833-6972 (www.kopico.go.kr)
Personal Information Infringement Report Center: 118 (privacy.kisa.or.kr)
Supreme Prosecutors’ Office: 1301 (www.spo.go.kr)
National Police Agency: 182 (ecrm.cyber.go.kr)
Requests for access, correction, deletion, or suspension of personal data can be made under Articles 35–37 of the Personal Information Protection Act.
If rights are violated due to government inaction, users may appeal through the Central Administrative Appeals Commission: 110 (www.simpan.go.kr)
Supplementary Provision
This Policy shall be effective from June 1, 2025.