Data and AI adoption — let's review it together

Tell us about your current systems and data, and we will help you find the right direction.

Topic
Tell us about your current environment, questions and preferred timeline.

N2M Privacy Policy

N2M Co., Ltd. complies with the Personal Information Protection Act of Korea and related laws to protect the rights of data subjects, and processes and manages personal information lawfully and securely. In accordance with Article 30 of the Act, we publish this policy to explain how personal information is processed and protected on our website (www.n2m.co.kr) and to handle related concerns promptly.

1. Purpose of processing

N2M Co., Ltd. ("the Company") processes personal information only for the purpose below. If the purpose changes, we will take the necessary steps, such as obtaining separate consent under Article 18 of the Act.

  • Receiving and handling website enquiries: reviewing enquiries, replying and consulting, providing requested materials and reporting results

2. Personal information we process

  • Required: Name, organisation, email, enquiry / Website enquiry form
  • Optional: Phone number / Website enquiry form
  • Automatic: IP address, time of submission / Recorded automatically when an enquiry is sent (to prevent abuse)

We do not collect personal information of children under 14, sensitive information or unique identifiers (such as resident registration numbers). We do not process pseudonymised information and do not make decisions affecting data subjects through fully automated processing.

3. Retention period

We keep personal information only within the retention period agreed when it was collected.

  • Website enquiries: one year after the enquiry is handled

However, if an investigation is under way for a breach of law, the information is kept until the investigation ends.

4. Deletion procedure and method

When personal information is no longer needed, for example because the retention period has passed or the purpose has been achieved, we delete it without delay.

  • Procedure: information due for deletion is identified and deleted after review by the department responsible for privacy.
  • Method: electronic files are deleted so they cannot be recovered; printed records are shredded or incinerated.

5. Provision to third parties

We process personal information only within the scope described in section 1 and provide it to third parties only where Articles 17 and 18 of the Act apply, such as with the data subject’s consent or under a specific legal provision. We currently do not provide personal information to any third party.

6. Outsourcing of processing

We outsource the following processing work.

  • Covision Co., Ltd.: Operating our business email system (Weharang) — receiving and storing enquiry emails

Under Article 26 of the Act, our outsourcing contract sets out a ban on processing beyond the outsourced purpose, technical and administrative safeguards, restrictions on re-outsourcing, supervision of the outsourcee and liability for damages, and we supervise that the outsourcee handles personal information securely. Any change in the outsourced work or outsourcee will be published in this policy without delay.

7. Overseas collection and transfer

We do not collect personal information overseas or transfer it outside Korea.

8. Security measures

We take the following measures to keep personal information secure.

  • Administrative: keeping the number of staff who handle personal information to a minimum and running a department responsible for privacy
  • Technical: encrypted transmission (HTTPS), access control for email accounts and other processing systems, and applying security updates. Enquiries are not stored on the website server; they are delivered only to the company mailbox.
  • Physical: access control for places where servers and other IT equipment are located

9. Automatic collection tools

Our website does not use cookies or similar tools that store and retrieve visitors’ information, and does not allow third parties to collect visitors’ behavioural information.

10. Rights of data subjects and how to exercise them

You may at any time request access to, correction or deletion of, or suspension of processing of your personal information, or withdraw your consent.

  • Requests can be made to the department responsible for privacy in writing, by phone or by email, and we will act on them without delay.
  • You may exercise your rights through a legal representative or an authorised agent, in which case a power of attorney must be submitted.
  • Deletion cannot be requested where other laws require the information to be collected, and access or suspension may be restricted where the law provides.
  • We verify that the person making the request is the data subject or a legitimate representative.

11. Department responsible for privacy

The following department oversees personal information processing and handles complaints and remedies related to it.

  • Management Support Team: +82-2-514-6123 / n2m@n2m.co.kr

Please contact this department with any privacy question, complaint or request for remedy. We will respond without delay.

12. Remedies for infringement

You may apply to the following organisations for dispute resolution or advice regarding infringement of personal information.

  • Personal Information Dispute Mediation Committee: 1833-6972 · www.kopico.go.kr
  • Personal Information Infringement Report Center: 118 · privacy.kisa.or.kr
  • Supreme Prosecutors’ Office: 1301 · www.spo.go.kr
  • Korean National Police Agency: 182 · ecrm.police.go.kr

13. Changes to this policy

This policy applies from 1 October 2026. If it changes, we will announce the effective date and changes on the website and keep previous versions available for review. The Korean version prevails in case of any difference.

Effective date: 1 October 2026