Privacy Policy

YIDO CLUBD HAEUNDAE Co., Ltd. (the “Company”) complies with the Personal Information Protection Act and other applicable laws to protect the freedom and rights of data subjects and processes and manages personal information lawfully and securely. Pursuant to Article 30 of the Act, the Company establishes and publishes this Privacy Policy to explain the procedures and standards for processing personal information and to promptly and effectively address related grievances.

Chapter 1. Purposes of Processing Personal Information

The Company processes personal information for the following purposes. It will not be used for any other purpose. If a purpose changes, the Company will take necessary measures, including obtaining separate consent under Article 18 of the Act.

1. Experience programs
Identification and authentication, prevention of misuse, notices, grievance handling, dispute resolution, and record retention for programs operated by the Company.

2. Mobile ticketing
Issuing QR-code mobile tickets by SMS or KakaoTalk.

3. Mobile gift-card reservation/delivery
System access required to reserve and deliver mobile gift cards.

4. Product exchange/refund
Processing and confirming customer-requested exchanges, refunds, and after-sales service.

5. Inquiries
Identity and request verification, contact and notification for fact-finding, and notification of results.

6. Provision of goods or services
Content use, event entry, purchases and payment, delivery of goods or bills, financial identity verification and services, and debt collection.

7. Marketing and advertising
Advertising information, prize delivery, development of new or customized services, demographic advertising, newsletters, and service-use statistics.

8. Reservations through external platforms
Receiving external-platform reservation data to confirm or change reservations and respond to customer inquiries.

Chapter 2. Items Collected and Retention/Use Periods

1. The Company processes the following personal information.

CategoryItems collectedRetention/use period
WebsiteCustomer inquiries[Required—online] Name, phone, email, ID
[Required—call center] Name, phone
[Optional—call center] Email, ID
3 years after provision
Marketing/advertising[Optional] Name, date of birth, gender, phone, email, addressUntil membership withdrawal
Automatically generated/collected[Required] Cookies, access logs, IP address, service-use records3 months after access
ReservationsPurchaser[Required] Name, phone, email5 years after reservation
Souvenirs, kits, prizes[Required] Address, name, phone
Valet/parking and field-trip products[Required] Name, phone, vehicle number
Period passes and experience programs[Required] Name, phone, date of birth, address
Partner-point redemption[Required] Card number, password
External platforms[Required] Name, phone, reservation information (product and use date supplied by the platform)
Exchange/refundMerchandise exchange/A/S[Required] Name, phone, address, card or account number3 years after provision
Merchandise refund[Required] Name, phone, card information or account number5 years after provision
EventsWebsite event[Required] Name, phone, email1 month after event
Invitation/preferential event[Required] Name, phone, work area, school, grade in charge, organization1 year after event
Goods/services[Required] Name, date of birth, gender, phone, email5 years after provision
Marketing/advertising[Optional] Name, date of birth, gender, phone, email, addressUntil membership withdrawal
Groups/rentalsGroup reservation/rental inquiry[Required] Name, contact information, ID, email, work area, school, company1 month after completion
Mobile ticketing[Required] Names and phones of event manager/participants, event information
Mobile gift card[Required] Reservation manager’s name and phone
Goods/services[Required] Name, date of birth, gender, phone, email5 years after provision
Marketing/advertising[Optional] Name, contact information, ID, email, work area, school, company1 year after consent

2. The Company retains the following records as required by law.

RecordLegal basisPeriod
Contracts or withdrawal of offersAct on Consumer Protection in Electronic Commerce5 years
Payment and supply of goods5 years
Electronic financial transactionsElectronic Financial Transactions Act5 years
Consumer complaints/disputesAct on Consumer Protection in Electronic Commerce3 years
Labeling/advertisingAct on Consumer Protection in Electronic Commerce6 months
Website visitsProtection of Communications Secrets Act3 months
Chapter 3. Provision to Third Parties

The Company does not disclose personal information externally in principle, except where the data subject has consented in advance; where required by law or unavoidable to comply with a legal obligation; or in an emergency involving disaster, infectious disease, imminent danger to life or body, or imminent property loss.

Chapter 4. Outsourcing of Processing

1. Processing is outsourced as follows.

ProcessorOutsourced work
Daeyang CIS Co., Ltd.Operation and management of ticketing, ordering, and settlement systems
KSNETPayment processing
Galaxia Moneytree Co., Ltd.Payment processing
LG TelecomSMS delivery
NAVER Cloud Corp.Server infrastructure
YIDO Estate Co., Ltd.Website operation

2. In accordance with Article 26 of the Act, outsourcing contracts specify prohibition of processing beyond the outsourced purpose, safeguards, restrictions on re-outsourcing, supervision, and liability for damages. The Company supervises processors’ secure handling.

3. Changes to outsourced work or processors will be disclosed through this Policy without delay.

Chapter 5. Destruction Procedures and Methods

Personal information is destroyed without delay when its retention period expires or its purpose is achieved.

1. Procedure: Information is destroyed after the purpose is achieved. If retention is legally required, it is moved to a separate database or filing cabinet, retained for the prescribed period, and not used for other purposes unless permitted by law.

2. Timing: Information is destroyed without delay when no longer necessary due to expiry, achievement of purpose, discontinuation of service, or termination of business.

3. Method: Paper is shredded or incinerated. Electronic files are destroyed using methods that prevent recovery.

Chapter 6. Rights of Data Subjects and Legal Representatives

Data subjects may request access, correction/deletion, suspension of processing, or withdrawal of consent. Requests may be made in writing, by email, or by fax using the prescribed form, and the Company will act without delay. When correction/deletion is requested, the information will not be used or provided until completion. Rights may be exercised through a legal representative or authorized agent upon submission of a power of attorney. A breach or leak will be notified without delay by email, website notice, or other means.

Chapter 7. Security Measures

The Company implements technical, administrative, and physical safeguards, including: regular internal audits; establishment and implementation of an internal management plan; encryption and security controls for legally protected important information; security software and monitoring against hacking and malware; database access control and firewalls; retention of system access logs for at least one year and prevention of tampering, theft, or loss; locked storage for documents and media; and access-control procedures for physical storage locations.

Chapter 8. Cookies

The Company uses cookies—small, non-executable data files stored on a user’s device—to provide personalized services. Cookies are used to analyze visit frequency and time, understand interests, track usage, and provide targeted marketing and customized services. Users may allow all cookies, request confirmation each time, or reject all cookies through browser settings.

  • Edge: Settings > Cookies and site permissions > Manage and delete cookies and site data
  • Chrome: Menu > Settings > Privacy and security > Clear browsing data
    Rejecting cookies may limit services that require login.
Chapter 9. Chief Privacy Officer and Contact

Requests and reports concerning access, correction/deletion, suspension, withdrawal of consent, complaints, or breaches may be submitted to:

  • Name: Hyun-so Yoo
  • Title: Director
  • Email: privacy@yidoestate.com
  • Phone: +82-1566-8007

Other assistance is available from:

Chapter 10. Changes to this Policy

Additions, deletions, or amendments will be announced on the website at least seven days before revision.

  • Announcement date: August 6, 2026
  • Effective date: August 13, 2026
Buy Tickets