Privacy Policy
Device Agency Co., Ltd. (the “Company”) establishes this Privacy Policy (the “Policy”) regarding the handling of personal information acquired in connection with the various services provided by the Company, including Luggage Dock (the “Service”), in compliance with the Act on the Protection of Personal Information of Japan (the “APPI”) and other applicable laws and regulations. Article 1. Definition of Personal Information In this Policy, “Personal Information” means personal information as defined under the APPI, namely information relating to a living individual that falls under any of the following items: Information that can identify a specific individual by name, date of birth, or other descriptions, including information that can be readily collated with other information and thereby identify a specific individual. Information that contains an individual identification code. Article 2. Scope of Application This Policy applies only to Personal Information acquired by the Company in connection with the Service. This Policy does not apply to Personal Information acquired or managed by external services linked from the Service, including login services such as Google, Facebook, and Apple. When using external services, please refer to the privacy policy of each external service. Article 3. Types of Personal Information Acquired The Company acquires the following Personal Information in providing the Service: Account information: Account information, such as email addresses, provided through login via external services including Google, Facebook, and Apple (the “External Services”). The scope of information provided by External Services is subject to the privacy policy of each External Service. Email address: Acquired when a user logs in or registers using an email address. Payment information: Processed through Stripe Checkout. Payment data such as credit card information is managed by Stripe, Inc., and is not retained by the Company. Usage history and log information: Usage date and time, location, usage duration, unlock logs, and similar information. Cookies and access logs: IP address, browser information, browsing history, operation history, and similar information within the Service web application. Article 4. Purposes of Use of Personal Information The Company uses acquired Personal Information for the following purposes: Provision, operation, maintenance, and improvement of the Service. Payment processing and billing management. Notifications and communications regarding usage overages and uncollected baggage. Responses to inquiries and customer support. Prevention and investigation of unauthorized use and security incidents. Delivery of notices and important information regarding the Service. Service improvement through usage statistics and analysis. Compliance with laws and regulations, and cooperation with administrative and judicial authorities. Article 5. Provision to Third Parties The Company will not provide acquired Personal Information to third parties except in the following cases: When the user has given consent. When required by laws and regulations, including legal requests from investigative or administrative authorities. When necessary to protect the life, body, or property of a person and it is difficult to obtain the user’s consent. When Personal Information is provided to contractors in connection with business outsourcing, as described in Article 6. When Personal Information is transferred due to business succession through merger, company split, business transfer, or other similar circumstances. In such cases, the Personal Information will be handled only within the scope necessary to achieve the purposes of use prior to the succession. Article 6. Outsourcing and Provision to External Services The Company may provide Personal Information to, or outsource the processing of Personal Information to, the following external services to the extent necessary to achieve the purposes of use. The Company will require its contractors to implement appropriate security management measures. Payment processing: Stripe, Inc. for processing credit card information through Stripe Checkout. Electronic contracts: Bengo4.com, Inc. for indemnification agreement procedures through CloudSign. Access analysis: Google LLC for analysis of usage status of the Service web application through Google Analytics. When logging in through External Services, information may be shared with such External Services, including Google, Facebook, and Apple. The handling of such information is subject to the privacy policy of each External Service. Article 7. Use of Cookies and Access Logs The Company acquires cookies and access logs in the Service web application. These are used for the purposes of improving service convenience, analyzing usage status, and ensuring security. Users may refuse cookies through their browser settings. However, if cookies are disabled, some functions of the Service may become unavailable. The Company uses Google Analytics to collect and analyze access information. Google Analytics uses cookies to collect traffic data, and the collected data is managed in accordance with Google’s privacy policy. Users who do not wish data to be collected by Google Analytics may use the Google Analytics Opt-out Browser Add-on at https://tools.google.com/dlpage/gaoptout . Article 8. Security Management of Personal Information The Company will implement necessary and appropriate measures to prevent leakage, loss, or damage of acquired Personal Information and to otherwise ensure its secure management. The Company will provide appropriate supervision and education to employees who handle Personal Information. When outsourcing the handling of Personal Information to an external party, the Company will appropriately select and manage the contractor. Article 9. Retention Period The Company retains Personal Information for the period necessary to achieve the purposes of use. If a retention period is required by laws and regulations, the Company will comply with such period. Personal Information for which the purposes of use have been achieved will be promptly deleted or anonymized. Article 10. Requests for Disclosure, Correction, Deletion, etc. Users may request disclosure, correction, addition, deletion, suspension of use, erasure, or suspension of provision to third parties of their own Personal Information held by the Company, in accordance with the APPI. Requests under the preceding paragraph should be made to the contact stated below. After verifying the identity of the requester, the Company will respond within a reasonable period to the extent required by laws and regulations. If any fee is charged for such request, the Company will notify the requester in advance. Article 11. Changes to the Privacy Policy The Company may change this Policy in response to amendments to laws and regulations, changes in the Service, or other circumstances. If the Company makes any material changes, it will notify users in advance by posting on the Service or by sending a notice to the registered email address. If a user continues to use the Service after the change, the user will be deemed to have agreed to the revised Policy. Article 12. Contact For inquiries regarding this Policy and requests for disclosure, correction, deletion, or other handling of Personal Information, please contact the following: Contact for Personal Information Company name: Device Agency Co., Ltd. Address: Harada Building 1F, 4-17-18 Minami-Horie, Nishi-ku, Osaka-shi, Osaka 550-0015, Japan TEL: 06-6585-9865 FAX: 06-6585-9875 Email: info@device-agency.co.jp Person in charge: Personal Information Protection Manager