Loading...
Foreedom Inc. ("Company") establishes and discloses this Privacy Policy in accordance with the Personal Information Protection Act and the Act on Promotion of Information and Communications Network Utilization and Information Protection to protect users' personal information and to handle related complaints promptly and smoothly.
The Company collects and uses personal information for the following purposes. Collected personal information will not be used for purposes other than those specified below, and if the purpose of use changes, necessary measures such as obtaining separate consent will be taken.
Member Registration and Management
Verification of membership intent, identification/authentication for membership services, maintenance/management of membership status, prevention of fraudulent use, various notifications
Service Provision
University information provision, inquiry services, favorite university saving, personalized services
Administrator Member Management
Administrator identity verification, authorization for university information registration/management, university email verification
Marketing and Advertising
New service development and personalized services, event and promotional information (with separate consent), service usage statistics and analysis
Complaint Handling
Identity verification of complainant, confirmation of complaint details, contact/notification for fact-finding, notification of processing results
| Category | Collected Items |
|---|---|
| General Member (Required) | Email, password, name, nationality |
| General Member (Optional) | Contact number, universities of interest, preferred major |
| Administrator Member (Required) | Email (university email), password, name, affiliated university, department, contact number |
| Administrator Member (Optional) | None |
| Automatically Collected During Service Use | IP address, cookies, service usage records, visit records, access logs, device information (browser type, OS, etc.) |
The Company processes and retains personal information within the retention/use period specified by law or agreed upon when collecting personal information from the data subject.
| Retained Information | Retention Period | Legal Basis |
|---|---|---|
| Member Information | Until membership withdrawal | However, may be retained until the relevant period for dispute resolution or legal compliance even after withdrawal |
| Records on Contracts or Subscription Withdrawal | 5 years | Act on Consumer Protection in Electronic Commerce |
| Records on Payment and Supply of Goods | 5 years | Act on Consumer Protection in Electronic Commerce |
| Records on Consumer Complaints or Dispute Resolution | 3 years | Act on Consumer Protection in Electronic Commerce |
| Website Visit Records | 3 months | Protection of Communications Secrets Act |
In principle, the Company does not provide users' personal information to third parties. However, exceptions apply in the following cases:
※ Currently, UNIVijob does not provide personal information to third parties. If third-party provision becomes necessary in the future, separate consent will be obtained.
The Company entrusts personal information processing as follows for smooth service provision:
| Contractor | Contracted Tasks | Retention Period |
|---|---|---|
| Supabase Inc. | Cloud database and authentication service provision | Until termination of service agreement |
| Vercel Inc. | Web hosting and service infrastructure provision | Until termination of service agreement |
When entering entrustment contracts, the Company clearly specifies compliance with personal information protection regulations, confidentiality of personal information, prohibition of third-party provision, responsibility for incidents, and return or destruction of personal information upon termination, and supervises the processor to safely process personal information.
Personal information may be transferred overseas due to cloud service use:
| Recipient | Country | Transferred Items | Purpose | Retention Period |
|---|---|---|---|---|
| Supabase Inc. | United States | Member information (email, name, etc.) | Cloud database service provision | Until termination of service agreement |
These companies comply with international standards for personal information protection, and the Company transfers personal information following legitimate procedures.
The Company destroys personal information without delay when it becomes unnecessary due to expiration of retention period or achievement of processing purpose.
Information entered by users is transferred to a separate DB (or separate documents for paper) after achieving its purpose and stored for a certain period according to internal policies and relevant laws, or destroyed immediately.
Users (or legal representatives) may exercise the following personal information protection rights against the Company at any time:
The above rights can be exercised through written request, email, etc. to the Company, and the Company will take action without delay.
When a user requests correction or deletion of personal information errors, the Company will not use or provide such personal information until correction or deletion is completed.
The Company uses 'cookies' that store and retrieve usage information to provide personalized services to users.
Cookies are small pieces of information sent by the server operating the website to the user's computer browser and stored on the user's computer hard disk.
Users have the option to install cookies. You can allow all cookies, confirm each time cookies are saved, or refuse to save all cookies through web browser options.
However, if you refuse to save cookies, some services requiring login may be difficult to use.
The Company takes the following measures to ensure personal information security:
Administrative Measures
Establishment and implementation of internal management plans, regular employee training
Technical Measures
Access authority management for personal information processing systems, installation of access control systems, encryption of unique identification information, installation of security programs
Physical Measures
Access control to computer rooms and data storage facilities
Member passwords are encrypted for storage and management, so only the member can know them, and important data uses separate security functions such as file encryption and file locking for files and transmitted data.
The Company designates the following Personal Information Protection Officer to be responsible for personal information processing and to handle user complaints and damage relief related to personal information processing:
Users can contact the Personal Information Protection Officer for any inquiries, complaints, or damage relief related to personal information protection arising from using the Company's services. The Company will respond to and process user inquiries without delay.
Users may apply for dispute resolution or consultation with the following organizations for relief from personal information infringement:
This Privacy Policy is effective from September 1, 2025.
Effective Date: September 1, 2025