Privacy Policy

This English version is an unofficial translation of the original Korean-language Privacy Policy, provided for the convenience of non-Korean-speaking users. In the event of any inconsistency or conflict between the Korean and English versions, the Korean version shall prevail.

Misto Holdings Corp. (hereinafter the "Company") establishes and discloses this Privacy Policy in accordance with Article 30 of the Personal Information Protection Act of the Republic of Korea, in order to protect the personal information of data subjects and to handle related grievances promptly and smoothly.

Article 1 (Purpose of Processing Personal Information)

  1. Stable operation and provision of the website
  2. Statistical analysis of website access and usage
  3. Prevention of fraudulent use and unauthorized access

Article 2 (Personal Information Items Processed and Retention Period)

Category Details
Automatically Collected Items IP address, access date/time, requested URL, response code, session cookie
Collection Method Automatically generated and collected as users access and use the website
Retention/Use Period 1 year from the date of collection (or the period prescribed by applicable laws and regulations, if any)

* The Company operates this website without a membership registration process and does not collect any personal information other than the items listed above.

Article 3 (Destruction of Personal Information)

Destruction Procedure Personal information is destroyed without delay once the retention period has elapsed or the processing purpose has been achieved and the information is no longer necessary.
Destruction Method Electronic files: permanently deleted using a method that prevents recovery or reproduction
Other records/documents: shredded or incinerated

Article 4 (Installation, Operation, and Refusal of Automatic Personal Information Collection Devices)

  1. The Company uses cookies for purposes such as maintaining user sessions in order to provide the website smoothly.
  2. A cookie is a small piece of data sent from the website server to the user's browser and may be stored on the user's device.
  3. Users may refuse to allow cookies to be stored by adjusting their browser settings. However, refusing cookies may limit the use of certain services.
Browser Setting Path
Chrome Settings > Privacy and security > Cookies and other site data
Edge Settings > Cookies and site permissions > Manage and delete cookies and site data
Safari Preferences > Privacy > Cookies and website data

Article 5 (Overseas Transfer of Personal Information)

The Company transfers personal information overseas as described below for the stable operation of the website (content delivery and security).

Recipient Cloudflare, Inc.
Country of Transfer United States and other countries where Cloudflare's global network operates
Items Transferred IP address, access date/time, request information, etc.
Time and Method of Transfer Transmitted over the network at the time the website is accessed
Purpose of Transfer Provision of content delivery network (CDN) and security services (e.g., DDoS protection)
Retention/Use Period In accordance with Cloudflare's own data processing policy
Method of Refusal This processing is essential and incidental to accessing the website. There is no separate method to refuse it; users may stop the transfer by discontinuing use of the website.

Article 6 (Measures to Ensure the Safety of Personal Information)

  1. Administrative measures: Establishment and implementation of an internal management plan, minimization and training of personnel with access
  2. Technical measures: Access authority management and access control for personal information processing systems, installation and updating of security programs
  3. Physical measures: Access control for computer rooms and data storage areas

Article 7 (Rights and Obligations of Data Subjects and Legal Representatives, and Method of Exercise)

  1. Data subjects may exercise their rights to access, correct, delete, or suspend processing of their personal information vis-à-vis the Company at any time.
  2. Such rights may be exercised in writing, by email, or through other equivalent means, and the Company will take action without delay.
  3. Rights may also be exercised through a data subject's legal representative or an authorized agent.

Article 8 (Chief Privacy Officer and Department Handling Requests)

Chief Privacy Officer Name: Ho Yeon Lee (Head of Division)
Department: Corporate Strategy Office
Contact: +82-1533-6400
Department in Charge Department: IT Strategy Office
Contact: +82-1533-6400
Email: [email protected]

Article 9 (Remedies for Infringement of Rights)

Organization Contact / Website
Personal Information Dispute Mediation Committee +82-1833-6972 (www.kopico.go.kr)
Privacy Infringement Report Center (Korea Internet & Security Agency) 118 (without area code, within Korea) (privacy.kisa.or.kr)
Cyber Bureau, Korean National Police Agency 182 (without area code, within Korea) (ecrm.police.go.kr)

* Please verify that the above contact details are current before publication.

Article 10 (Changes to this Privacy Policy)

This Privacy Policy is effective as of April 1, 2025. The Company may revise this Policy in response to changes in applicable laws, guidelines, or internal operating policies, and will announce any such changes through the notice section of the website.

Effective Date: April 1, 2025
Misto Holdings Corp.