Graphic Privacy Policy

1. Privacy Policy

Graphic Co., Ltd. (hereinafter referred to as the "Company") complies with the Personal Information Protection Act and related laws to protect the freedom and rights of data subjects, processes personal information lawfully, and manages it securely. Accordingly, this Privacy Policy is established and disclosed to guide the procedures and standards for processing personal information and to ensure that related complaints can be handled promptly and smoothly.

This English version of the Privacy Policy has been prepared based on the original Korean version. In the event of a dispute, the original Korean version shall take precedence over the English version.

2. Items Collected and Purpose of Use

The Company processes the following personal information:

ServicePurposeItems Collected
SNS Easy Login (Apple, Kakao, Google)Providing service via SNS login[Required] Social account ID (email)
Mobile phone verificationIdentity registration or age verification[Required] CI, age, nationality status
Simple authenticationAccount recoveryComparison only, data not stored
Personalized informationPersonalized service, marketing use[Optional] Age (year of birth), gender
Marketing and Promotional CommunicationsProvision of marketing information such as events, benefits, and service updates[Optional] Consent to receive marketing communications
Children under 14 sign-upLegal guardian consent[Required] Guardian info (name, date of birth, relationship, phone number)
AI Translation FeatureProviding translation of text content such as comments[Processed Information] Text content such as comments written by the user

3. Retention and Use Period of Personal Information

1. In principle, the Company destroys users' personal information without delay when membership is withdrawn or the purpose of use is achieved. However, in the following cases, the Company safely retains personal information for the specified period:

  1. If separately agreed upon by the user for a specific retention period
  2. Authentication codes collected for identity/age verification: Retained for 1 year from verification date
  3. Guardian information (excluding submitted documents): Retained until service termination by the child or upon adulthood
  4. ID retention to prevent fraudulent use: Retained for 6 months after withdrawal
  5. Records of consent to receive marketing and promotional communications: Retained until membership withdrawal

2. In the following cases, information is retained until the end of the specified period:

Act on Consumer Protection in Electronic Commerce:

Protection of Communications Secrets Act:

International Contract Act, Corporate Tax Act:

4. Handling of Personal Information of Children Under 14

1. When collecting personal information of children under 14, the Company obtains consent from the legal guardian and collects only the minimum required information.

2. The Company may request minimal guardian information (name, contact, etc.) and verifies consent by one of the following methods:

5. Provision to Third Parties

1. The Company provides personal information to third parties only with consent, special provisions of law, or other legal grounds under Articles 17 and 18 of the Personal Information Protection Act.

2. The Company may provide personal information to investigative agencies without consent if required by law.

6. Outsourcing and Overseas Transfer

(1) For smooth personal information processing, the Company outsources operations to overseas providers as follows:

ItemDetails
ConsigneeAmazon Web Services Inc. (Privacy contact: aws-korea-privacy@amazon.com)
Purpose of outsourcingSystem operation and data storage
Items transferredAll personal information collected during service use
CountryUSA
Time & methodStored in AWS cloud upon user's service use
Retention periodUntil membership withdrawal or policy expiry / Until change in AWS contract

(2) The Company specifies responsibilities such as prohibition of use beyond scope, technical/administrative safeguards, restrictions on re-outsourcing, management/supervision, and compensation in contracts, and supervises safe processing.

(3) If the content of outsourced tasks or consignees change, the Company will disclose this through this Privacy Policy without delay.

(4) The Company may use third-party AI translation services or AI models to provide the AI translation feature. In this case, text content such as comments written by users may be transmitted to such services to the extent necessary for translation processing, and such information will be processed solely within the scope of providing the translation feature.

7. Data Processing Related to the AI Translation Feature

The Company may provide an AI translation feature to enhance users' convenience.

In the process of providing this feature, the following text information may be processed through automated means:

The AI translation feature is provided solely to facilitate Service use, and translation results are generated through automated systems.

The Company may utilize third-party artificial intelligence translation services for providing the AI translation feature, and text information may be transmitted to servers located outside the user's country to the extent necessary for translation processing.

8. Destruction of Personal Information

1. The Company destroys personal information without delay once retention period ends or purpose is achieved.

2. If retention is legally required, the information is moved to a separate DB or stored separately.

3. Destruction procedure and method:

9. Rights of Users and Legal Guardians

1. Users and guardians may request access, correction, deletion, suspension, etc. by written request, phone, or email. The Company will respond without delay, unless restricted by law.

2. Users may withdraw consent by terminating service or membership withdrawal at any time.

3. Requests can be made via representatives; the Company verifies requester identity or authority.

4. Users may withdraw their consent to receive marketing and promotional communications at any time through the service settings page or by using the methods provided by the Company.

10. Use of Cookies

The Company uses cookies to provide customized services. Cookies are small data sent from the server to the user's browser, stored on the user's device.

Purpose: Analyzing visits and behaviors for optimized information and ads.

Installation/Refusal: Users may refuse cookies via browser settings (methods vary by browser). Refusal may limit some login-required services.

11. Safeguards

The Company implements the following safeguards:

12. Privacy Officer

The Company appoints a Privacy Officer responsible for complaints and remedies.

Users may contact the Privacy Officer for inquiries, complaints, and remedies.

13. Remedies

Users may seek help from organizations such as the Personal Information Dispute Mediation Committee or KISA.

  1. Dispute Mediation Committee: 1833-6972 (www.kopico.go.kr)
  2. KISA Privacy Center: 118 (privacy.kisa.or.kr)
  3. Supreme Prosecutors' Office: 1301 (www.spo.go.kr)
  4. Korean National Police: 182 (ecrm.cyber.go.kr)

14. Policy Changes

This Policy may be updated due to government policy or company needs. Additions/deletions will be announced without delay.

Effective date: March 23, 2026