Skip to main content

Privacy Policy

Last Modified: 2026-07-14

Beevelop (hereinafter "Company") establishes and discloses the following Privacy Policy to protect the personal information of data subjects and to promptly and smoothly handle related grievances in accordance with Article 30 of the Personal Information Protection Act.


Article 1 (Purpose of Processing Personal Information)

The Company processes personal information for the following purposes. Personal information being processed will not be used for purposes other than the following, and necessary measures such as obtaining separate consent will be taken in accordance with Article 18 of the Personal Information Protection Act if the purpose of use changes.

  1. Member registration and management: Member identification, identity verification, service provision
  2. Service provision and contract fulfillment: Case management system provision, online lecture provision, payment processing
  3. Marketing and advertising: Event announcements, statistical analysis for service improvement
  4. Operational notification delivery and read tracking: In-app delivery of service announcements and event notifications, per-member tracking of receipt, read, and dismissal status

Article 2 (Processing and Retention Period)

The Company processes and retains personal information within the retention and use period prescribed by law or agreed upon when collecting personal information from the data subject.

  1. Member registration and management: Until membership withdrawal
  2. Provision of goods or services: Until completion of service provision and payment settlement
  3. Retention under the Act on Consumer Protection in Electronic Commerce:
    • Records of contracts or withdrawal of subscriptions: 5 years
    • Records of payment and supply of goods: 5 years
    • Records of consumer complaints or dispute resolution: 3 years

Article 3 (Items and Methods of Collection)

The Company collects the following personal information for service provision:

  1. Collection items

    • Required items: Email address, name
    • Items collected during payment: Payment method information (card numbers are processed directly by PG companies)
    • Live workshop enrollment items: Date of birth, phone number, and how you heard about the workshop. Used only for sending enrollment/day-before/post-workshop notices (email and KakaoTalk) and identity verification, and viewable only by the enrolled member and administrators.
    • Automatically collected items: Access IP, browser/device information, access date/time, service usage records
    • Analytics tools automatic collection: The Company uses Google Analytics 4 and Microsoft Clarity to analyze service usage statistics and improve user experience. In this process, online identifiers stored in cookies, IP addresses, device/browser information, and usage behavior data (page visits, clicks, scrolls) are automatically collected. Users may refuse collection through browser settings or the methods described in Article 9 below.
    • Notification processing records: Timestamps for receipt, read, and dismissal of in-app announcements and notifications. Stored with member identifier (Clerk user ID) and used for inbox display and duplicate-prevention. Immediately cascade-deleted upon membership withdrawal.
  2. Collection methods

    • Website registration (collected through Clerk authentication service)
    • Automatic collection during service use

Article 4 (Provision of Personal Information to Third Parties)

The Company processes personal information only within the scope specified in Article 1 (Purpose of Processing Personal Information) and provides personal information to third parties only in cases falling under Articles 17 and 18 of the Personal Information Protection Act.

RecipientPurposeItems ProvidedRetention Period
PortOnePayment processing (domestic)Payment information5 years after payment
LemonSqueezyPayment processing (international)Payment information5 years after payment

Article 5 (Entrustment of Personal Information Processing)

The Company entrusts personal information processing as follows for smooth operations:

  1. Trustee: Clerk

    • Entrusted tasks: Member authentication and account management
  2. Trustee: PortOne

    • Entrusted tasks: Domestic payment processing service
  3. Trustee: LemonSqueezy

    • Entrusted tasks: International payment processing service
  4. Trustee: Solapi

    • Entrusted tasks: Sending KakaoTalk notification messages (informational, under the Act on Promotion of Information and Communications Network Utilization) related to live workshop enrollment and notices
  5. Trustee: SendGrid (Twilio SendGrid Inc.)

    • Entrusted tasks: Sending member notices, receipts, and live workshop enrollment-related emails

The Company specifies matters concerning responsibilities in contracts in accordance with Article 26 of the Personal Information Protection Act and supervises whether trustees process personal information safely.

Article 5-2 (Overseas Transfer of Personal Information)

The Company transfers personal information overseas (entrustment) as follows for service usage statistics analysis and user experience improvement. The legal basis for this overseas transfer is Article 28-8(1)3 of the Personal Information Protection Act (overseas entrustment/storage of personal information necessary for the performance of a contract with the data subject), and the following matters are disclosed pursuant to Article 28-8(2). Data subjects may refuse the overseas transfer using browser settings or the methods described in Article 9. Refusal excludes the user from usage statistics but does not restrict service use itself.

RecipientContactCountryItems TransferredTime and Method of TransferPurposeRetention Period
Google LLChttps://policies.google.com/privacyUSACookie-based online identifiers, IP address, device/browser information, usage records (pageviews, events)Transmitted over the network at the time of service useWebsite usage statistics and analysis via Google Analytics 4Up to 14 months from collection (Google Analytics data retention setting)
Microsoft Corporationhttps://privacy.microsoft.comUSACookie-based identifiers, IP address, device/browser information, page interaction records (clicks, scrolls, session recordings)Transmitted over the network at the time of service useUser behavior analysis and UX improvement via Microsoft ClarityUp to 13 months from collection (Microsoft Clarity data retention policy)

Article 6 (Rights and Obligations of Data Subjects)

Data subjects may exercise rights such as requesting access, correction, deletion, or suspension of processing of personal information at any time.

Rights may be exercised through written requests, email, etc., and the Company will take action without delay.

Article 7 (Destruction of Personal Information)

The Company destroys personal information without delay when it becomes unnecessary due to expiration of the retention period or achievement of the processing purpose.

  1. Destruction procedure: The Company selects personal information for which grounds for destruction have occurred and destroys it with approval from the personal information protection officer.
  2. Destruction method: Personal information stored in electronic file format is destroyed so that records cannot be reproduced, and personal information stored in paper documents is destroyed by shredding or incineration.

Article 8 (Measures to Ensure Safety)

The Company takes the following measures to ensure the safety of personal information:

  1. Administrative measures: Establishment and implementation of internal management plans, regular employee training
  2. Technical measures: Access control management for personal information processing systems, installation of access control systems, encryption of unique identification information, installation of security programs
  3. Physical measures: Access control for server rooms and data storage facilities

Article 9 (Cookie Installation, Operation, and Rejection)

The Company uses cookies to provide customized services to users.

  1. Purpose of cookie use: Understanding user visit and usage patterns, providing optimized services, service usage statistics analysis (Google Analytics 4, Microsoft Clarity)
  2. Cookie installation, operation, and rejection: Cookie storage can be rejected through web browser settings.
    • Chrome: Settings > Privacy and security > Cookies and other site data
    • Rejecting analytics cookies: Google Analytics can be blocked by installing the browser add-on (https://tools.google.com/dlpage/gaoptout).
  3. Rejecting cookie storage may cause difficulties in using customized services.

Article 10 (Personal Information Protection Officer)

The Company designates the following personal information protection officer to oversee personal information processing and handle complaints and damage relief related to personal information processing:

  • Personal Information Protection Officer

Article 11 (Request for Access to Personal Information)

Data subjects may request access to personal information in accordance with Article 35 of the Personal Information Protection Act to the following department:

  • Department for receiving and processing access requests
    • Department: Customer Center
    • Contact: Youngwon Choi
    • Contact: 070-4591-1369, [email protected]

Article 12 (Remedies for Rights Infringement)

Data subjects may apply for dispute resolution or consultation to the Personal Information Dispute Mediation Committee, Korea Internet & Security Agency, etc., for relief from personal information infringement.

  1. Personal Information Dispute Mediation Committee: 1833-6972 (www.kopico.go.kr)
  2. Personal Information Infringement Report Center: 118 (privacy.kisa.or.kr)
  3. Supreme Prosecutors' Office: 1301 (www.spo.go.kr)
  4. National Police Agency: 182 (ecrm.cyber.go.kr)

Article 13 (Credit Processing)

Member credit balances and event logs (earn / spend / expire / refund-restore) are stored in association with the member ID, and are processed solely for the purposes of viewing personal credit history, deduction at checkout, expiry handling, and refund restoration. Credits expire automatically 90 days from grant date; expired events are retained permanently for audit purposes.

Article 14 (Changes to Privacy Policy)

This Privacy Policy is effective from July 14, 2026.

Previous Privacy Policy effective date: July 7, 2026.