Sebone App Privacy Policy
KL Corporation Co., Ltd. (hereinafter the "Company") values the personal information of its users in providing the Sebone app (hereinafter the "Service") and complies with applicable laws, including the Personal Information Protection Act and the Act on the Protection and Use of Location Information of the Republic of Korea. This Privacy Policy explains what personal information the Company collects and how it is used, stored, and protected.
1. Personal Information Collected
The Company may collect the following personal information to provide the Service.
For sign-up and login, the Company collects your email address and either a password or a simplified-login identifier as required information. Your name or nickname, age group, and gender are collected only if you choose to provide them.
For product usage records, the Company collects the body area of use, date of use, duration of use, usage mode, and usage level as required information. Pre-use condition, post-use impression, satisfaction rating, and usage notes are collected optionally. For example, a record may take the form of "Knee / Power LV3 / 10 minutes / Satisfied after use."
For customer inquiries and support, the Company collects the content of your inquiry and a contact number or email address for our reply as required information. Product photos, place of purchase, and order numbers are collected only if you provide them.
In addition, certain information may be collected automatically while you install and use the app, including your device's Internet Protocol (IP) address, the app screens (pages) you visit, the date and time of your visits and the time spent on each screen, the total time spent in the app, your device type, operating system (OS) information, app version, access timestamps, error logs, and push notification opt-in status.
Only with your separate consent, the Company may collect your device's location information. Location data is used to provide location-based services such as personalized content and relevant recommendations, and, in aggregated and anonymized form, to analyze usage patterns and improve the app's performance and functionality. You can use the core features of the Service without consenting to location collection; only location-based features will be limited. You may withdraw your consent to location collection at any time through your device settings or the in-app settings.
The Company does not collect unique identification information such as resident registration numbers or passport numbers. As a matter of principle, the Company also does not collect sensitive health information such as disease names, diagnoses, or surgical history.
2. Purposes of Use of Personal Information
The Company uses the collected personal information for member management, including sign-up, login, user identification, and account management. It is also used to manage product usage records by storing usage history by body area, duration, and mode; to provide personalized usage guides based on the area of use and usage history; and to send usage-related notifications such as usage time reminders, rest recommendations, and gel replacement or repurchase reminders. Where you have separately consented to location collection, your information is also used to provide personalized content and recommendations based on your location.
In addition, the Company uses personal information for customer support such as product inquiries, usage guidance, and after-sales service; for service improvement such as fixing app errors, analyzing usage patterns, and improving content; and for delivering important service-related information and legally required notices.
Marketing communications regarding events, new products, gels, and other consumables are sent only with your separate consent, and you may withdraw this consent at any time.
3. Retention and Use Period of Personal Information
The Company retains personal information until the purpose of its collection and use has been achieved, and destroys it without delay when a user requests account deletion. Specifically, member information is retained until account deletion; usage records are retained until account deletion or until the user requests their removal. Automatically collected information is destroyed without delay once its purpose has been fulfilled; customer inquiry records are retained for three years after the inquiry has been resolved; and marketing consent records are retained until consent is withdrawn. However, where retention is required under applicable laws, the information may be kept for the period prescribed by those laws.
4. Provision of Personal Information to Third Parties
As a general rule, the Company does not provide users' personal information to external parties. Exceptions apply only in the following cases: when the user has given prior consent; when there is a lawful request from an investigative or public authority under applicable laws, such as a warrant, subpoena, or court order; when the Company believes in good faith that disclosure is necessary to protect the life or safety of the user or others, or to investigate fraud or misuse; and when processing tasks are entrusted to service providers to the extent necessary to provide the Service.
Where data is transmitted to external analytics or similar services, only aggregated and anonymized information that cannot identify individuals is transmitted.
5. Outsourcing of Personal Information Processing
The Company may outsource certain tasks to external providers to ensure stable service delivery. Member authentication, data storage, app notifications, and error analysis may be entrusted to Google Firebase and Google Cloud; the delivery of notifications, announcements, and customer communications to SMS/email service providers; product purchase, payment, and delivery processing to payment or online store operators; and the receipt and management of customer inquiries to customer support solution providers.
Entrusted providers may not use personal information independently beyond the scope of the entrusted tasks, and the Company manages and supervises them to ensure that personal information is handled securely.
6. Cross-Border Transfer of Personal Information
Where the app uses overseas cloud services such as Google Firebase and Google Cloud, personal information may be stored or processed on servers located outside of Korea. In such cases, the recipient of the personal information is Google LLC or its Google Cloud affiliates, and the destination countries are the United States and other countries where Google Cloud servers operate. The transferred items include member identification information, usage records, and app usage information, and the purposes of transfer are app service operation, data storage, notification delivery, and error analysis. Transferred information is retained until account deletion or termination of service use.
You may decline to consent to the cross-border transfer of your personal information; however, in that case, your use of member-based services may be limited.
7. Procedures and Methods for Destroying Personal Information
The Company destroys personal information without delay once its retention period has expired or the purpose of processing has been achieved. Personal information in electronic file form is deleted using methods that make recovery impossible, and any paper documents are shredded or incinerated.
8. User Rights and How to Stop Data Collection
You may at any time request access to, correction of, deletion of, or suspension of the processing of your personal information, and you may freely delete your account or withdraw your consent to receive marketing communications. Requests can be made through the in-app settings menu or by contacting customer support (email), and the Company will inform you of the outcome within a reasonable time.
You can also easily stop all collection of information through the app by uninstalling it, using the standard uninstall process available on your device or through the app marketplace. Please note, however, that uninstalling the app does not automatically delete information that has already been collected; if you wish to have your stored information deleted, please contact customer support.
9. Safeguards for the Protection of Personal Information
The Company implements physical, technical, and administrative safeguards to protect personal information. Access rights to personal information are minimized and administrator account access is restricted; passwords are stored in encrypted form and data transmission channels are encrypted. The Company also maintains access logs for personal information, applies security rules, and manages the accounts of departing employees and those whose access rights have changed. In particular, usage records are managed by member identifier rather than by name, reducing the risk of personal information exposure.
10. Restrictions on the Collection of Sensitive Information
This app is not intended for the diagnosis, treatment, or prevention of any disease and does not provide medical judgments. Accordingly, as a matter of principle, the Company does not collect sensitive information such as disease names, diagnoses, surgical history, prescription information, hospital medical records, disability information, or detailed health examination results. If a user voluntarily enters sensitive information during a customer inquiry, the Company reviews such information only within the scope necessary to handle the inquiry and may delete information that is not needed.
11. Protection of Children's Personal Information
The Service is not directed at children under the age of 14, and children under 14 may not use the Service without the consent of their legal guardian. The Company does not knowingly collect personal information from children and does not market to children. Parents and legal guardians are encouraged to monitor their children's Internet use and to instruct their children never to provide personal information without their permission. If you become aware that a child under 14 has provided personal information to the Company, please contact us using the details below, and we will take the necessary actions without delay.
12. Privacy Officer and Contact Information
The Company has designated a privacy officer to handle inquiries and complaints related to the processing of personal information. The privacy officer is Kim Young-geun of KL Corporation Co., Ltd., who can be reached by email at acellcare@naver.com. Customer center contact details and the company address will be provided at a later date.
If you need to report or seek counseling regarding a personal information infringement, you may also contact relevant authorities such as the Personal Information Infringement Report Center.
13. Changes to This Privacy Policy
This Privacy Policy may be revised in accordance with changes to applicable laws, Company policies, or the Service. Any changes will be announced through in-app notices or separate notifications at least 7 days before they take effect.
Effective date: 07-01-2026