Effective date 07 13, 2018

[Previous Privacy Policies]

PRIVACY POLICY

Samil Pharm Co., Ltd. (www.samil-pharm.com, hereinafter the “Company”) complies with the privacy regulations of the relevant statutes, such as the “Act on Promotion of Information and Communications Network Utilization and Information Protection, Etc.” and the “Personal Information Protection Act” and has the following Privacy Policy to protect the personal information of users.

The Company informs users of the purpose and method of collecting and using their personal information and what actions the Company is taking to protect the personal information of users through the Privacy Policy.  This Privacy Policy is subject to change according to the revision of the relevant laws or the company policies and since the Company will notify its users of any change through its website, please make sure to check the website frequently.

1. Items of personal information processed

In order to protect the personal information of users and prevent information leakage, the Company prohibits the collection, use, and storage of the personal information of its members through membership subscription, and operates the company policy to destroy the personal information of members after the collection and use through separate collection and identity verification procedures only for the minimum information required for the use of the website service. 

A. Collected items
- Cookies and website usage records (access log)
B. Collection method
- Automatic collection through log analysis program

2. Matters on the purpose and refusal of automatic collection of personal information

The Company installs and operates a tool that automatically collects personal information (hereinafter referred to as “cookies, etc.”) such as ‘cookies’ that stores and retrieves user information at any time. Cookies are very small text files that are sent to your browser by the server used to run the website of Samil Pharm and are stored on your computer’s hard disk.

A. Purpose of using cookies, etc

  • To analyze the user’s frequency of access or time of stay, identify his/her preferences and interests, and use them to improve the service.

  • To track information on items visited on the website and trace of items viewed with interest and provide product information on user’s next visit to the website B. How to reject cookie settings

B. How to reject cookie settings

  • Users have an option on installing cookies. Therefore, you can choose the option on your web browser to reject the cookie settings to allow all cookies, enable confirmation to be made each time cookies are saved, or refuse all cookies from being saved.

  • Example of how to change settings (for web browsers): Tools at the top of the web browser >Internet Option > Change from Privacy. However, any user who refuses to install cookies may face difficulty with the service provision. 

  • The Company sets up the personal information processing system and the computer of the personal information handler to ensure that the personal information under processing is not disclosed to any unauthorized person through the Internet website, P2P, and sharing settings.

  • When collecting, using, and destroying personal information, the Company is required to leave grounds for collection under the standards recommended by the statutes (relevant statutes such as the Act on Promotion of Information and Communications Network Utilization and Information Protection, Etc., and the Personal Information Protection Act), and in this regard, internal policies and processes are prescribed and training is provided.

3. Matters on measures to secure the safety of personal information

The Company has prepared the following technical and administrative measures to secure safety so that personal information is not lost, stolen, leaked, altered or damaged in handling the personal information of its users.  

1) Technical protective measures

  • The user’s personal information is protected by a password and the Company has adopted a security device (SSL) that securely transmits the personal information on the network by using an encryption algorithm.

  • Each server controls unauthorized access from the outside by using access control solutions, etc., against any external intrusion such as hacking, and other technical devices are available to secure the system security so as to remain fully committed towards ensuring personal information security.  

  • Any information that verifies your identify, such as a password is saved after going through one-way encryption to prevent its decryption.  

  • The personal information processing system specifies the purpose of personal information (printing, screen display, file generation, etc.) and minimizes its output in line with the purpose.  

  • If the personal information handler wishes to print the personal information on paper or copy it to a portable storage media such as diskettes or compact discs, he/she will be required to obtain prior approval from the privacy policy officer. The same will apply for printing or copying the displayed or copied information.

2) Administrative protective measures

  • The access to the personal information of users is limited to a minimum number of people.

  • If the personal information handler becomes replaced due to personnel changes, such as transfer or retirement, the access authority for the personal information processing system will be changed or revoked without delay. In this case, the details of authorization, modification, or revocation will be recorded and kept for at least five years.

  • The Company sets up the personal information processing system and the computer of the personal information handler to ensure that the personal information under processing is not disclosed to any unauthorized person through the Internet website, P2P, and sharing settings.

  • When collecting, using, and destroying personal information, the Company is required to leave grounds for collection under the standards recommended by the statutes (relevant statutes such as the Act on Promotion of Information and Communications Network Utilization and Information Protection, Etc., and the Personal Information Protection Act), and in this regard, internal policies and processes are prescribed and training is provided.

  • The Company prevents the leakage of information by people in advance through the agreement on security requirements signed by all employees upon the commencement of their employment and has internal procedures to monitor the implementation of the Privacy Policy and compliance of employees.

  • The handler of business transfer of personal information is thoroughly carried out while security is maintained, and the company clearly manage the responsibility or privacy information accidents of company’s leaving or joining employee.

  • We do not keep personal information and general data together for storage as they are kept separately on different servers. 

  • The computer room and data storage room are set as special protected areas with access control.

  • The Company will not be held liable for any events caused by the mistake of a user or basic risks inherent on the Internet.

  • Where personal information is lost, leaked, altered, or damaged due to mistakes of internal managers or technical management accidents, the Company will immediately notify the users of the fact and seek appropriate measures and compensation.

4. Matters on the rights and duties of data subjects and the method to exercise them

Users and their legal representatives have the right to protect their personal information, as well as their duty to protect themselves and not to violate other people’s information. Please exercise caution not to leak their personal information and not to damage the personal information of others, including posts. If they fail to fulfill such duties and damage the information and dignity of others, they may be subject to punishment under the Act on Promotion of Information and Communications Network Utilization and Information Protection, Etc. and the Personal Information Protection Act.

1) Rights to request to access, correct, and delete personal information:

Users and their legal representatives have the rights to access, correct, or delete their personal information at any time. If you wish to access, correct, or delete your personal information, please contact the privacy officer and personnel by phone or e-mail and we will take action without delay.

2) Rights to withdraw consent to the collection, use, and provision of personal information:

Users and their legal representatives may withdraw their consent to the collection, use, and provision of personal information entered for service use. If you contact the privacy personnel by phone and email, we will take necessary measures such as deleting your personal information after verifying your identity.

5. Department that receives and processes requests to access personal information

In order to protect the personal information of users and process inquiries related to personal information, we operate the public inquiry call center as follows:
- Customer Service Department: Management Support Headquarters (customer counseling)
- Email: webmaster@samil-pharm.com
- Phone number: 080-520-3131
If you require additional counseling on personal information, you may contact the Privacy Infringement Report Center, the Internet Crime Investigation Division of the Supreme Prosecutors’ Office, or the Cyber Terror Response Center of the National Police Agency.

1) Privacy Infringement Report Center

Telephone: 118 (without area code)
URL: http://privacy.kisa.or.kr

2) Personal Information Dispute Mediation Committee

- Telephone: 1833-6972
- URL:http://www.kopico.go.kr

3) Internet Crime Investigation Division of the Supreme Prosecutors’ Office

Telephone: 1301 (without area code)
- URL: http://www.spo.go.kr

4) Cyber Security Bureau of the National Police Agency

Telephone: 182 (without area code)
URL: http://cyberbureau.police.go.kr

6. Privacy Officer

The Company designates a privacy officer as follows in order to protect the personal information of its customers and handle complaints related to personal information:

- Privacy personnel: Chung Se-hoon
- Phone number: 02-520-2711
- Email: shhs2684@samil-pharm.com

7. Linked websites

The Company may provide users with links to the websites or data of other companies. In this case, since the Company has no control over external websites and data, it cannot assume liability or make any guarantees for the utility of services or data provided therefrom. If you click on the link contained on the Company website and move another website page, the privacy policy of that website will be unrelated to the Company, and thus, please make sure to read the policy on the newly visited website.

8. Matters concerning any modification to the Privacy Policy

If any addition, deletion, or correction is made to this Privacy Policy due to a modification to the statutes, policies, or security technologies, you will be notified in the following manner in advance: - Announcement of corrections via notice column or on a separate window on the initial screen of the Internet website

Effective date 07 13, 2018

[Previous Privacy Policies]