BIXPO_2025

privacy policy

뒤로가기
Privacy Policy



Article 1 (General Provisions)
1. Personal information refers to data about a living individual that allows for their identification through details such as name, residential registration number, etc. It also includes information that, although not identifying by itself, can readily be combined with other data to identify a specific individual.
2. Bitgaram International Expo of Electric Power Technology (hereinafter referred to as the ‘Secretariat’) values participants’ privacy and complies with the Personal Data Protection Act and the Standard Privacy Guidelines. The Secretariat strives to inform participants about how their personal information is used and the measures taken to ensure its security through the Privacy Policy.
3. The Secretariat has posted the Privacy Policy on the homepage of the BIXPO 2024 website to ensure participants' easy access.
4. The Privacy Policy helps participants verify the details of their personal information.
5. The Secretariat has established a procedure for revising the Privacy Policy to ensure its continuous improvement. Each revised policy will be assigned a version number for easy recognition.

[Major Personal Information Processing Notice]


Article 2 (Purpose)

1. The BIXPO website collects personal information for the following purposes, as outlined in the table below. The collected data will be used exclusively for the specified purposes. For any changes in the use of data, measures will be taken in accordance with Article 18 of the Personal Data Protection Act, including obtaining separate consent.


※ The Secretariat, in accordance with event policy, restricts membership registration and application for participation by children under the age of 14. If such a case is identified, immediate deletion and rejection will be enforced.

※ We kindly inform you that pre-registration is not available for children under the age of 14. However, on-site registration is possible with the consent of a legal guardian.

2. To verify personal information retained by the Korea Electric Power Company (KEPCO), visit here: http://www.privacy.go.kr/


Article 3 (Personal Information Processing and Retention Period)
The Secretariat retains and uses participants’ personal information only for the specified period. Personal information will be promptly destroyed upon a participant's request to withdraw their membership, or revoke their consent, or once the usage purpose has been fulfilled or the retention period has ended.


Article 4 (Provision of Personal Information to Third Parties)
1. In principle, the Secretariat shall process the personal information of the data subject within the explicitly stated purpose of collection and use. It shall not process this information beyond the scope of the original purpose or provide it to a third party without the prior consent of the data subject. However, there are exceptions, and sub-paragraphs 5) through 9) apply only to public institutions:
1) Separate consent from the data subject is obtained;
2) Provision is explicitly required by other laws;
3. 명백히 정보주체 또는 제3자의 급박한 생명, 신체, 재산의 이익을 위하여 필요하다고 인정되는 경우
3) The data subject or their legal guardian is unable to express their intent due to incapacity or an unknown address, and it is clearly deemed necessary for the urgent interests of the life, body, or property of the data subject or a third party;
4) Personal information is provided in a form that makes it difficult to identify a specific individual, as necessary for purposes such as statistical compilation and academic research;
5) The Company is unable to fulfill its duties prescribed by other laws unless it uses personal information for purposes other than the original purpose or provides it to a third party, which has been deliberated and resolved by the Protection Committee;
6) It is necessary to provide it to a foreign government or international organization for the implementation of a treaty or other international agreement;
7) It is necessary for the investigation of crimes and the filing and maintenance of prosecutions;
8) It is necessary for the performance of the court's judicial duties;
9) It is necessary for the execution of sentences, supervision, protective measures, etc.
2. The provision of personal information to third parties will be announced in the BIXPO website privacy policy and will be posted within 30 days, for a minimum of 10 days from the provision.
[Notice on the Out-of-Purpose Use and Provision of Personal Information to Third Parties]


Article 5 (Outsourcing of Personal Information Processing)
1. The Secretariat has outsourced the processing of personal information as follows to ensure the smooth handling of personal information.

2. When entering into an outsourcing contract, the Secretariat shall specify the following in documents such as contracts, as required by Article 26 of the Personal Information Protection Act: prohibition of processing personal information for purposes other than the outsourced tasks, implementation of technical and administrative protective measures, restrictions on re-outsourcing, management and supervision of outsourced parties, liability for damages, and other measures to ensure the safe handling of personal information by the outsourced parties.
3. If the contents of the outsourced work or the outsourcee change, such changes will be notified through this Privacy Policy.

Article 6 (Rights and Responsibilities of Data Subjects and Legal Guardians, and Methods of Exercising)
1. Participants have the right to view or correct their registered personal information at any time. Participants using the membership service can access "Edit Member Information" directly to make necessary changes. Alternatively, they may contact the personal information protection officer via letter, phone, or email for immediate assistance.
2. Participants wishing to request access, correction, deletion, or suspension of processing of their personal information must submit a request using the specified form in the Enforcement Rules of the Personal Information Protection Act, Form No. 8 [Request for Access, Correction/Deletion, and Suspension of Processing of Personal Information].
3. The rights of participants may be exercised by their legal guardians or authorized agents. In such cases, a power of attorney in accordance with Form No. 11 of the Enforcement Rules of the Personal Information Protection Act must be submitted to KEPCO [Power of Attorney].
4. Upon receiving a request for access, correction, deletion, or suspension of processing of personal information, the identity of the requester (the individual or their legitimate agent) shall be verified.
5. If a participant requests correction of errors in their personal information, the information shall not be used or provided until the correction, deletion, or suspension of processing is completed.
6. In cases where incorrect personal information has already been provided to a third party, the results of the correction, deletion, or suspension of processing shall be promptly notified to the third party, and appropriate actions shall be taken to effect the corrections.

Article 7 (Destruction of Personal Information)
In principle, the Secretariat destroys the information without delay after the purpose of collecting and using personal information has been achieved. Destruction procedures and methods are as follows.
1. Destruction procedure
(a) After the purpose is fulfilled, information provided by participants is either transferred to a separate database for storage according to internal policies and relevant laws (refer to retention and use periods) or promptly destroyed. Personal information transferred to the database will not be used for any other purpose unless required by law.
2. Destruction method
(a) Personal information printed on paper is destroyed by shredding or incineration.
(b) Personal information stored in electronic file format is deleted using technical methods that render the records unrecoverable.

Article 8 (Measures to Ensure the Security of Personal Information)
1. Establishing and implementing an internal management plan for the safe processing of personal information:
- KEPCO has developed and implemented an internal management plan dedicated to protecting personal information and ensuring its safe processing.
- Regular in-house and external training sessions are provided to employees handling personal information, covering new security technologies and obligations related to personal information protection.
- All employees must sign a security pledge upon joining the company, committing to prevent information leaks caused by human errors. Internal procedures are in place to audit the implementation of personal information processing policies and ensure employee compliance.
- Secure procedures are enforced during duty transfers among personal information handlers. Responsibilities for personal information incidents are clearly outlined for employees joining and leaving the company.
2. Measures to control access to personal information and limit access rights
The Secretariat employs the following technical measures to handle users' personal information, ensuring safety and preventing loss, theft, leakage, alteration, or damage:
- Security Measures: Intrusion prevention systems and vulnerability analysis systems are used for each server to defend against external threats such as hacking.
- Access Restrictions: Access to users' personal information is limited to a minimal number of individuals, including:
(a) Personnel directly involved in marketing tasks with users.
(b) Information controllers or personnel in charge of personal information management
(c) Other individuals who unavoidably handle personal information as part of their job responsibilities.
3. Application of encryption technology or equivalent measures for secure storage and transmission of personal information
- Participants' personal information is safeguarded by password protection, and critical data is further secured through methods such as file encryption, secure transmission protocols, or distinct lockdown features.
- The Secretariat employs a Secure Sockets Layer (SSL) security system that encrypts personal information during network transmission using advanced encryption algorithms.
4. Measures to record access and prevent forgery or alteration in response to personal information breaches
- Personal information and general data are stored separately on distinct servers.
5. Installation and updating of security programs for Personal Information
- The Secretariat utilizes antivirus programs to prevent damage from computer viruses. These programs are regularly updated, and immediate virus vaccines are deployed to protect personal information in case of sudden virus outbreaks.
6. Physical security measures for safe storage of personal information
- Special protection areas such as computer rooms, document storage rooms, and CCTV surveillance rooms have controlled access and are equipped with locking devices to ensure the secure storage of personal information.
7. User responsibilities and disclaimer
The Secretariat does not assume responsibility for incidents resulting from user errors or inherent internet risks. Participants are advised to manage their IDs and passwords carefully to protect personal information, and they are accountable for these actions.
8. Response to personal information incidents
In cases where personal information is lost, leaked, altered, or damaged due to internal managerial errors or technical accidents, the Secretariat promptly informs participants, takes corrective actions, and provides appropriate compensation.

Article 9 (Installation, Operation, and Refusal of Automatic Personal Information Collection Devices)
1. During the operation of the BIXPO website, the Secretariat utilizes 'cookies' to retrieve and store user information as necessary. A cookie is a small text file sent to the user's browser from the website's server and stored on the user's computer hard disk. Users have the option to allow or deny the collection of textual information via cookies through their web browser's security settings.
▶ Allowing/Blocking Cookies in Web Browsers
- Chrome: Browser Settings > Privacy and Security > Clear Browsing Data
- Edge: Browser Settings > Cookies and Site Permissions > Manage and Delete Cookies and Site Data
▶ Allowing/Blocking Cookies in Mobile Browsers
- Chrome: Mobile Browser Settings > Privacy and Security > Clear Browsing Data
- Safari: Device Settings > Safari > Advanced > Block All Cookies
- Samsung Internet: Mobile Browser Settings > Browsing History > Clear Browsing Data
2. The information collected by cookies and the purposes for using this information are as follows:
(a) Information to be Collected:
Service usage data such as ID, access IP, member classification, and content accessed.
(b) Usage Purpose:
- Providing personalized information based on individual interests.
- Analyzing access frequency and visit times of members and non-members to understand user preferences and interests, utilizing this data for targeted marketing or to enhance service delivery.

Article 10 (Personal Information Controller or Department Handling Personal Information Protection and Related Grievances)
The Secretariat prioritizes providing users with secure information. While the personal information controller assumes full responsibility for incidents contrary to the notified protection measures. The Secretariat does not accept liability for damages resulting from unexpected network risks such as hacking or disputes arising from user-generated content. The responsible departments and individuals handling users' personal information are as follows and they will promptly and diligently address inquiries related to personal information:

1. Responsible Department and Person in Charge by Field

2. Personal Information Controller and Person in Charge


Article 11 (Request for Access to Personal Information and Handling of Civil Complaints)
1. The Secretariat values user feedback and ensures that users have the right to receive prompt and sincere responses to their inquiries.
2. Communication Channels with the Secretariat:
(a) Department in charge of BIXPO
- Tel: 82-(0)61-345-7782~7785, 7787
(b) Department in Charge of Personal Information Protection
- Department: Personal Information Protection Manager, Information Security Office
- Email: biz-privacy@kepco.co.kr
- Tel: 82-(0)61-345-4921, 4923
- Address: Information Security Office, KEPCO, 55 Jeonjeon-ro, Naju-si, Jeollanam-do, 58322, Korea
3. Telephone consultations are available on weekdays from 9 AM to 6 PM.
4. Inquiries via email, fax, or mail will receive a response within 12 hours of receipt. However, inquiries submitted after working hours, on weekends, or public holidays will be processed on the next business day.


Article 12 (Relief Methods for Data Subject’s Rights and Interests Infringement)
1. Data subjects may seek dispute resolution or consultation from organizations such as the Personal Information Dispute Mediation Committee, Korea Internet & Security Agency Personal Information Infringement Reporting Center, etc. to address personal information infringement. For other personal information infringement reports and consultations, please contact the following organizations:
[Note. These organizations are independent of the BIXPO Secretariat. If you are dissatisfied with the handling or outcomes of personal information complaints and relief efforts on the BIXPO website, or need further assistance, please contact them.]
▶ Personal Information Infringement Report Center (operated by Korea Internet & Security Agency)
- Responsibilities: Reporting personal information infringement, requesting consultations
- Website: privacy.kisa.or.kr
- Tel: (without area code) 118
- Address: (58342) Korea Internet & Security Agency Personal Information Infringement Reporting Center, 9 Jinheung-gil, Naju-si, Jeollanam-do
▶ Personal Dispute Mediation Committee
- Responsibilities: Mediating personal information disputes, collective dispute resolutions (civil)
- Website: www.kopico.go.kr
- Tel: (without area code) 1833-6972
- Address: (03171) Personal Information Dispute Mediation Committee, 12th floor, Seoul Government Complex, 209 Sejong-daero, Jongno-gu, Seoul
▶ National Police Agency Cyber Safety Bureau (Cybercrime Reporting System, Electronic Cybercrime Report & Management System)
- Responsibilities: Inquiry and reporting of criminal cases related to personal information infringement
- Website: ecrm.cyber.go.kr
- Tel: (Civil Complaints Hotline, without area code) 182
- Address: (03739) 97 Tongil-ro, Seodaemun-gu, Seoul
▶ Supreme Prosecutors’ Office Cyber Investigation Division
- Website: www.spo.go.kr
- Tel: (main phone number, no area code) 1301
- Address: (06590) 157 Banpo-daero, Seocho-gu, Seoul
2. Any individual whose rights or interests have been infringed due to an action or omission on the BIXPO website in response to a request for viewing, correction, deletion, suspension of processing, objection to personal information, etc. may file an administrative appeal under the Administrative Appeals Act:
Central Administrative Appeals Commission
- Tel: (without area code) 110
- Website: www.simpan.go.kr

Article 13 (Changes to Personal Information Processing Policy)
The current personal information processing policy was revised on June 3, 2024. Any additions, deletions, or alterations to the content due to changes in government policy or security technology will be communicated through the BIXPO website.