Privacy Policy

Healthhub Co. , Ltd. (" Healthhub ", "we", "us" or "our") provides the website of Healthhub , HPACS, HTeleRad , HRefer , AI Marketplace, HScan , HPMS, HBackUp , AIDA and boneage.io ("Website"). We own and operate the Websites, including but not limited to the above-mentioned websites. Through our websites, we offer a variety of online services through which website visitors ("you" or "user") can access information about our products and services.

 

Healthhub understands that privacy of information is very important to all users. Accordingly, we are committed to protecting your information by adhering to the following Privacy Policy ("Privacy Policy"). This personal information processing policy may be changed in accordance with relevant laws and regulations and Healthhub's internal operating policy, in which case the changes to this personal information processing policy will be disclosed in accordance with the method stipulated by the relevant laws and regulations.

 

1. Personal data we process

Healthhub processes the following personal information.

  1. Profile: Name , email address, phone number, occupation, country, organization/company name
  2. Our services: e- mail address, password, medical images, analysis reports (medical images are automatically anonymized and cannot be individually identified as soon as they are uploaded to the website).
  3. Product Inquiry: Name, phone number, country, position, institution/company name
  4. Information items that can be automatically generated and collected in the process of using other Internet services: IP address, cookie, MAC address, service use record, visit record, fraudulent use record

 

2. Purpose of processing personal information

Healthhub processes personal information for the following purposes: Your personal information processed by Healthhub will not be used for purposes other than the following, and if the purpose of use is changed, we will take necessary measures, such as obtaining separate consent in accordance with Article 18 of the Personal Information Protection Act.

  1. Member management

- Confirmation of intention to sign up for membership ; Identity verification and identity verification according to membership service provision ; maintenance and management of members ; Identity verification according to the implementation of the limited identity verification system ; Service fraud prevention notice; complaint handling; Confirmation of intent to withdraw from membership

  1. services
    - provision of
    website services ; Service use record and access frequency analysis ; service usage statistics; Maintenance and improvement of services
    - Establishment of a service use environment in which users can use the service with peace of mind in terms of security
    - Repair and support when performing contracts
    ; payment; Errors or failure to provide paid services
  2. Product Inquiry
    -
    Responding to product - related inquiries, receiving and supporting maintenance services, identifying complainants, confirming complaints, notifying facts, notifying processing results, reporting product safety information and quality complaints, evaluation and management

3. Cookies used on the website

A cookie is information that a web server sends to a web browser and stores it in the browser. This information is sent to the web server whenever the browser requests to open a page on the server. This allows web servers to identify and monitor web browsers.

  1. Required : Necessary cookies are absolutely necessary for the website to function properly. These cookies ensure that the basic and secure functions of the website are anonymous.
  2. Analytical/statistical : Analytical or statistical cookies are used to understand how visitors interact with our website by collecting and reporting anonymous information. These cookies help provide information about metrics such as number of visitors, bounce rate and traffic sources.
  3. Functionality : Functional cookies help us perform certain functions on social media platforms, such as sharing website content, collecting feedback and other third-party functions.
  4. Marketing : Marketing cookies are used to track website visitors. The intent is to display ads that are more valuable to publishers and third-party advertisers by making them relevant and engaging to individual users.
  5. Other : Uncategorized Other cookies are cookies that are being analyzed and have not yet been classified into a category.

Installation, use and rejection of cookies: You can refuse to save cookies by changing the settings in the [Tools] > [Internal Options] > [Personal Information] menu at the top of the web browser screen.

4. Personal information processing and retention period

1.     Healthhub processes and retains personal information only within the period of retention and use of personal information stipulated by relevant laws or the period agreed upon by each user when collecting user's personal information.

2.     of users' personal information is as follows.

                         i.          Membership management: Until membership withdrawal, except in the following cases

§  If the investigation is continued in violation of related laws, until the end of the investigation

§  If a credit/debt relationship remains due to the use of the site, until the credit/debt relationship is settled

                       ii.          Service provision: until completion of supply of goods or services, payment of charges, settlement of charges

§  Identification and authentication according to service use: Until membership withdrawal

§  Maintenance and improvement of service: Until purpose is achieved (only non-personally identifiable information is retained)
However, in the case of the following reasons, until the end of the service period

§  Records on transactions such as indications and advertisements under the Act on Consumer Protection in Electronic Commerce, Etc., and records on contract contents and performance

     Record on display or advertisement: 6 months

     Records on contract or subscription withdrawal: 5 years

     Records on payment and provision of goods or services: 5 years

     Records on consumer complaints or dispute handling: 3 years

§  Storage of communication confirmation data under Article 41 of the Protection of Communications Secrets Act

     Computer communication, Internet log record data, access location tracking data: 3 months

                      iii.          Product Inquiries: Up to 3 years after completion of complaint handling

                      iv.          Newsletter Subscription: Until membership withdrawal or withdrawal of consent to receive newsletters

5. Provision of personal information to third parties

Healthhub will not provide your personal information to third parties without your consent. However, Healthhub may provide personal information to a third party if it falls under Article 17 of the Personal Information Protection Act, such as when there are special provisions in the law or when legal obligations must be observed.

6. Destruction of personal information

  1. Healthhub destroys the user's personal information after the personal information retention period ends or the purpose of personal information processing is achieved.
  2. If Healthhub is required to retain personal information even after the personal information retention period has elapsed or the purpose of collection has been achieved according to relevant laws, the relevant personal information (or personal information file) must be moved to a separate DB or moved to another storage space . I'll do it.
  3. The destruction procedure, deadline and method are as follows.

                         i.          Destruction Procedure
Healthhub selects the personal information (or personal information file) to be destroyed and destroys it after obtaining approval from the person in charge of personal information protection.

                        ii.          Destruction method
Personal information stored in the form of an electronic file is deleted using a technical method that cannot reproduce the record. Personal information recorded and stored on paper is shredded with a shredder or destroyed by incineration.

7. Rights and obligations of information subject

  1. information subject may exercise the right to protect personal information in each of the following subparagraphs with respect to Healthhub at any time.

                         i.          Request to view personal information

                        ii.          If there are any errors, request corrections.

                      iii.          Deletion request

                      iv.          Request for suspension of processing

  1. The information subject can exercise the rights under Paragraph 1 in writing or via e-mail, and the company will take action without delay. Healthhub verifies whether the person requesting access, correction/deletion, or suspension of processing according to the rights of the information subject is the person or a legal representative.
  2. If a user requests correction or deletion of personal information, Healthhub will not use or disclose the personal information to a third party until the correction or deletion is completed.
  3. Users can exercise their rights through an agent, such as a legal representative or a person who has been delegated. In this case, you must submit a power of attorney in accordance with Attachment No. 11 of the Enforcement Rules of the Personal Information Protection Act.
  4. Users You must not invade the privacy of yourself or others that Healthhub has collected in violation of privacy laws .
  5. In accordance with Article 35 Paragraph 4 or Article 37 Paragraph 2 of the Personal Information Protection Act, the rights of the information subject may be restricted.
  6. If other laws specify that personal information is subject to collection, that personal information cannot be deleted even if you request deletion.

8. Measures to ensure the safety of personal information

Healthhub takes the following measures to ensure safety in accordance with Article 29 of the Personal Information Protection Act.

  1. Administrative measures: Establishment and execution of internal management plans, regular employee training, etc.
  2. Technical measures: Management of access rights to systems that process personal information, installation of access control systems, encryption of identification information, installation of security programs
  3. Physical measures: access control in computer room, data storage room, etc.

 

9. Personal Information of children under the age of 14

1.      Healthhub collects the minimum amount of personal information necessary to perform its services when collecting personal information from minors under 14 years of age, only after obtaining the consent of their legal guardian.

     Required items: name, relationship, and contact information of the legal guardian.

2.      Healthhub may ask minimal information such as the name and contact information of the legal guardian, and can verify that the legal guardian has given proper consent through one of the following methods:

     By informing the legal guardian of the consent through a text message after the personal information handler has confirmed the consent indication posted on the internet site that has published the consent contents.

     By obtaining the credit card or check card information of the legal guardian after having the legal guardian indicate their consent on the internet site that has published the consent contents.

     By confirming the identity of the legal guardian through the legal guardian's mobile phone personal identification after having the legal guardian indicate their consent on the internet site that has published the consent contents.

     Direct issuance of a written document containing the consent to the legal guardian or delivery through mail or fax with the legal guardian signing and submitting after confirming the content of the consent

     Obtaining the consent by sending an email containing the consent and receiving an email with the expression of consent signed by the legal guardian

     Informing the legal guardian of the content of the consent over the phone and obtaining the consent or guiding the legal guardian to a method of confirming the content of the consent through an internet address, and obtaining the consent through a subsequent phone call

     Any other method equivalent to the above for informing the legal guardian of the content of the consent and confirming the expression of consent.

 

3.      Healthhub considers the personal information of minors under 14 years old to have been agreed upon for collection, if there is consent from the legal guardian.

10. Personal Information Protection Officer

  1. Healthhub appoints the person in charge of personal information protection as follows for
    the coordination of all tasks related to personal information processing, complaint handling of information subjects related to personal information processing, and damage relief .
    Personal Information Protection Officer
    Personal Information Protection Officer

Name: Byun Si-seop

Department: Medical and Imaging Artificial Intelligence Center

Email: terry.byon@healthhub.kr

 

Personal information manager

Name : Shin Seung-joo

Department: Medical and Imaging Artificial Intelligence Center

Email: alex@healthhub.kr

  1. inquiries, complaints, damage relief, etc. related to personal information that occurred while using Healthhub's services, please contact the person in charge of personal information protection or the personal information manager. Healthhub will promptly respond to and process your inquiries.

10. Request to view personal information

Users may request Healthhub to view their personal information in accordance with Article 35 of the Personal Information Protection Act. Healthhub will endeavor to process such requests without delay.

Department in charge of reading personal information

Name: Byun Si-seop

Department: Medical and Imaging Artificial Intelligence Center

Email: terry.byon@healthhub.kr

11. Criteria for determining additional use or provision of personal information without the consent of the information subject

If Healthhub additionally uses personal information without the consent of the information subject, the criteria for judgment are as follows.

  1. If the purpose of additional use and provision is substantially related to the original purpose of personal information collection
  2. additional use and provision are expected in light of circumstances and practices
  3. If the additional use/provision does not unreasonably infringe on the interests of the information subject or a third party; and
  4. Even if personal information is pseudonymized, if the purpose of additional use and provision can be achieved, personal information must be pseudonymized.

12. Remedies for Infringement of Rights and Interests

If you need to report or consult about personal information infringement, please contact the organizations below.

 

- Personal Information Dispute Mediation Committee ( http://www.kopico.go.kr / (free) 1833-6972)

- Personal Information Infringement Report Center ( http://privacy.kisa.or.kr / (free) 118)

- Supreme Prosecutor’s Office Cyber Crime Investigation Team ( http://www.spo.go.kr / (toll-free) 1301)

- National Police Agency Cyber Terror Response Center ( http://cyberbureau.police.go.kr / (free) 182)

13. Changes in Privacy Policy

  1. Healthhub may amend its Privacy Policy to reflect changes in law or services. Healthhub will promptly notify you of any such changes in advance.
    Privacy Policy Version Number: v.2
    Privacy Policy Notice/Effective Date: 2023.01.20.
  2. Please find the previous version of our Privacy Policy below.
    2020. 06. 24 ~ 2023. 01. 13 . privacy policy

For residents of the European Economic Area ("EEA")

This section supplements the information contained in the Privacy Policy and applies only to users residing in the EEA. Healthhub complies with the General Data Protection Regulation (GDPR) and the national laws of each member state.

  1. If you are a resident of the EEA and your personal data is subject to the EU General Data Protection Regulation (“GDPR”), subject to the limitations and exceptions provided in that law, you agree to the provisions of Articles 15, 16, 17, 18, 20, You have the rights provided under Article 21.

        The right to obtain confirmation from Healthhub as to whether your personal data is being processed, and if so, the right to request access to your personal data

        Right to rectification of inaccurate personal data

        to request Healthhub to delete your personal data ;

        The right to restrict the processing of your personal data

        direct marketing or other reasons related to your particular situation

        The right to data portability (i.e. the right to receive your personal data in a structured, commonly used and machine-readable format and to transmit that data to another controller)

        Right to withdraw your consent where applicable. Withdrawal of consent does not affect the lawfulness of processing your personal data based on your consent provided prior to withdrawal. If you withdraw your consent, Healthhub may further process your personal data only if Healthhub has another legal basis to do so. and

        The right to lodge a complaint with the competent supervisory authority if you believe that our data processing violates the GDPR.

  1. International Transfers of Personal
    Data Personal Data collected by us may be transferred to servers located outside of states, provinces, countries or other jurisdictions
    where privacy laws may not be as protective as your location, pursuant to Articles 5 and 6 of our Privacy Policy; or Note that it can be transferred to and persisted in the database. By using this website, you agree that your personal data collected on this website may be managed in this way.