Activity

Comprehensive Privacy Policy Upgrade: A Commitment to Maximizing Global Data Security

Comprehensive Privacy Policy Upgrade: A Commitment to Maximizing Global Data Security

In the digital era, safeguarding personal information and respecting user privacy is not only a mandatory legal obligation, but also a core value that affirms our company's integrity and transparency.

To comply with increasingly stringent international legal standards—especially the European Union’s General Data Protection Regulation (GDPR)—as well as regulatory requirements in key markets such as Japan, the United States, China, South Korea, and Thailand, the company hereby announces the Revision of our Privacy Policy.

The Shift from "General Principles" to a "Transparent, Detailed Governance Framework"

Previously, our policy focused primarily on broad principles and brief overviews. Following a comprehensive review across departments and group companies, conducted in close coordination with independent legal consultants, the 2026 version has been significantly expanded (growing from 1,311 characters to 9,657 characters) to accurately reflect actual data processing operations.

7 Key Updates in the New Privacy Policy:

  1. Clear Classification of 9 Data Subject Categories: The updated policy defines distinct scopes and rights for each group interacting with the company, including: customers, athletes, business partners, website visitors, individuals submitting inquiries/complaints, regulatory authorities, event attendees, job applicants/former employees, and shareholders.

  2. Specified Purposes and Legal Grounds: Every data collection activity (contract performance, marketing, product development & quality improvement, information security, recruitment, etc.) is defined with a clear operational purpose supported by a robust legal basis.

  3. Transparent Third-Party Disclosures: Clearly outlines the categories of service providers with whom data may be shared as necessary, including: logistics providers, payment gateways, IT & communications vendors, marketing agencies, distributors, independent consultants, and competent authorities.

  4. Standardized Cross-Border Data Transfer Protocols (Particularly for Europe): Establishes a transparent legal framework and procedures for transferring data outside the European Economic Area (EEA).

  5. Updated Collection Methods & Tracking Technologies: Clarifies data handling across diverse collection channels: direct collection, websites/systems, biometric identification data, social media, and online tracking tools (such as cookies).

  6. Enhanced Individual Data Rights: Users are granted full control over their personal data in alignment with GDPR standards, including: the right to data portability, the right to restrict processing, the right to withdraw consent, and the right to lodge a complaint with supervisory authorities.

  7. Clear Data Retention Criteria: Sets out specific criteria for retention periods, the rationale applied to determine these timeframes, and post-retention handling procedures.

    Governing Principle: This policy serves as the overarching standard framework for the entire group globally. In jurisdictions where local laws impose stricter requirements, the applicable local regulations will take precedence.

Effective Date and Full Policy Access: