Yoshiraku Corporation (hereinafter referred to as “the Company”) provides the following guidance (hereinafter referred to as “this Policy”) regarding the protection of personal information, including its purpose, scope of use, and handling. Contact for inquiries:

1. Definitions

The definitions of terms in this Policy shall follow those set forth in the “Act on the Protection of Personal Information” and related regulations (hereinafter collectively referred to as “Laws”).

2. Acquisition of Personal Information

(1) When acquiring personal information, the Company will do so within the scope necessary to achieve the purposes of use that have been publicly announced (including announcements on the Company’s website, and similar methods) in an appropriate and lawful manner.

(2) In acquiring sensitive personal information, the Company will, in principle, obtain the individual’s consent beforehand.

3. Use of Personal Information

The Company will acquire and use personal information within the scope of the following purposes:

(1) For registration to services and authentication of identity during service use, as well as for customer management.

(2) For delivery of products, provision of services, and after-sales service.

(3) For billing for products and services.

(4) For preventing and responding to fraudulent activities.

(5) For maintenance and management of services.

(6) For research and analysis of marketing data, and for planning and implementing marketing strategies.

(7) For providing, soliciting, and advertising the Company’s or third parties’ products and services tailored to customers’ interests and preferences, based on analysis of customers’ attributes and behavioral history in media of the Company or third parties.

(8) For conducting campaigns, prize contests, and surveys.

(9) For improvement of products and services, and for planning, researching, and developing new products and services.

(10) For responding to inquiries and contacting customers.

(11) For third-party provision as described in this Policy.

4. Management of Contractors

When outsourcing part of its operations related to personal information, the Company will select contractors that are recognized to have adequate protection of personal information. The Company will clarify the necessary obligations through contracts and will continuously supervise and audit the appropriate handling of personal information by the contractors.

5. Provision of Personal Data to Third Parties

Except in the following cases, the Company will not provide personal data entrusted to it to third parties:

(1) When prior consent has been obtained from the individual.

(2) When necessary for achieving the purposes of use and is outsourced.

(3) When provided to entities listed as joint users.

(4) When required by law.

(5) When necessary for the protection of life, body, or property of a person and it is difficult to obtain the consent of the individual.

(6) When particularly necessary for improving public health or promoting the sound growth of children and it is difficult to obtain the consent of the individual.

(7) When it is necessary to cooperate with a national institution or a local public entity, or a person entrusted by them, in executing the affairs prescribed by laws, and obtaining the consent of the individual might impede the execution of the affairs.

6. Safety Management Measures

The Company will implement appropriate safety management measures to prevent unauthorized access to, and the leakage, alteration, or loss of personal information.

The main contents of the safety management measures, which are specifically defined in separate internal regulations, are as follows:

(1) Organizational Safety Management Measures

(A) Appoint a person responsible for handling personal information and periodically verify the status of personal information handling by employees.

(B) The person responsible for handling personal information will regularly check and review the status of personal information handling.

(2) Human Safety Management Measures

(A) Under the leadership of the person responsible for handling personal information, conduct education and awareness activities for all officers, employees, and related parties to handle personal information appropriately.

(3) Physical Safety Management Measures

(A) Take measures to prevent unauthorized viewing of personal information by personnel other than the person in charge and the individual concerned.

(B) Take necessary measures to prevent theft or loss of devices, electronic media, and documents handling personal information in managed and handling areas.

(C) When employees carry electronic media or documents containing personal information, implement password settings and take measures to prevent information leakage.

(D) Confirm with the person in charge of handling personal information when deleting personal information or disposing of devices or electronic media containing personal information.

(4) Technical Safety Management Measures

(A) Clarify the devices that can handle personal information and the employees handling such devices to prevent unauthorized access.

(B) Identify and authenticate employees using information systems that handle personal information through user control functions (user account control) equipped in the devices.

(C) Take necessary measures to protect information systems from unauthorized access from outside and from malicious software.

(5) Understanding of External Environment

(A) Implement safety management measures based on the understanding of the systems for the protection of personal information in the foreign countries where the personal information is stored.

7. Disclosure, Correction, Deletion, Suspension of Use, and Suspension of Provision to Third Parties of Personal Data

For requests regarding the disclosure, correction, deletion, suspension of use, suspension of provision to third parties, and disclosure of records of third-party provision of personal data held by the Company, please contact the following inquiry point. After confirming that you are the person in question, we will respond in accordance with the laws.

8. Use of Cookies

(1) The Company’s website uses cookies (information stored on the user’s computer, transmitted from the server to the user’s browser to identify the user on the server side) to make the website more convenient for users.

(2) Users can choose to allow, deny, or be notified of the transmission and reception of cookies through their browser settings. Please note that if you choose to deny cookies, some services provided by the Company may not be available.

9. Compliance with Laws

The Company will comply with laws, guidelines, and other norms regarding the protection of personal information at the Company.

10. Inquiries

For inquiries regarding personal information, please contact the following:

Address: 430-10, Hashizume-Shiroyama-cho, Fushimi-ku, Kyoto City, 616-8305
Yoshiraku Corporation
Inquiry Contact
TEL: 075-874-4567
MAIL: meet@yoshiraku.jp

Established January 1, 2024
Yoshiraku Corporation
President and CEO Takayuki Yoshiraku