1.Data controller
Kohwoon & Company Co., Ltd. (the "Company") is the data controller for the Ojakgyo service. The Company is located in the Republic of Korea, and all Service data is stored on a single server in Korea operated directly by the Company.
2.What we collect and how
We collect information that members enter during signup, profile writing and use, and information generated automatically while the Service is used.
- Account: email address, password (stored only as a one-way hash), language, email verification records, consent records for the terms, privacy policy and sensitive data (items, version, time, IP, browser)
- Profile: nickname, legal name (private), gender, date of birth, height, country/region/city, marital history, children, education and school, occupation and employer, income band (optional), introduction, ideal partner, values answers, preferences
- Faith information (sensitive data): baptism status and year, church name, conference or division, church role, Sabbath practice, diet, family faith background, Sahmyook school background
- Photos: server-normalized versions of uploaded photos, a blurred preview for locked cards, main-photo selection and order
- Documents: baptism certificate, membership letter or transfer letter; masked government ID; employment and education proofs (optional); file name, type and size; automated pre-check results; operator decision and notes
- Social links (optional): Instagram, Facebook, YouTube and similar account URLs
- Contact (optional): phone number, KakaoTalk ID, contact email
- Device and logs: IP address, browser and device information, access times, session identifiers, visitor cookie (hs_vid), usage events such as page views and button clicks
- Generated during use: request, accept, decline and withdraw records with messages; connections and conversation contents; whether contact was shared; blocks and reports; profile view records; notifications
3.Sensitive data: religious information
Information about religion and faith is sensitive personal data under Article 23 of the Korean Personal Information Protection Act. At signup the Company obtains consent to process it as a separate item, apart from consent to the terms and privacy policy, and records that consent together with the policy version.
- Purpose: introducing SDA members to each other for marriage, confirming church membership (document verification), calculating compatibility and filtering Discover by faith practice
- Items: baptism status and year, church name, conference or division, church role, Sabbath practice, diet, family faith background, Sahmyook background, faith-related values answers, baptism certificate or membership letter or transfer letter
- Disclosure: shown to other approved members within the visibility the member sets. Visitors see only the conference and baptism and Sabbath badges
- Refusal: because faith information is the essence of the Service, you cannot sign up without consenting. Consent can be withdrawn by deleting your account.
The Company does not use faith information for any other purpose, for advertising or marketing, or provide it to outside parties.
4.Purposes of processing
- Signup, identity confirmation, login and session management
- Writing, reviewing and publishing profiles, and presenting them to other members
- Document verification and badge display
- Requests, acceptance, connections, messaging and contact sharing
- Compatibility calculation and Discover filtering and sorting
- Notifications (in-app and email)
- Handling reports, blocking, preventing abuse, and sanctions
- Usage statistics (signups, submissions, approvals, requests, connections) and quality improvement
- Meeting legal obligations and handling disputes
5.Handling of government ID
- Members upload only a copy with unnecessary parts masked, such as the last digits of a national ID number or part of a driver's license or passport number. If an unmasked copy is uploaded, the Company may delete it without review and ask again.
- The operator only confirms that the name and date of birth match the profile.
- The ID image file is automatically destroyed within 3 days of the verification decision (verified or rejected).
- After destruction only text records remain: document type, decision, decision time and operator notes. These are used to display badges and handle disputes, and are deleted when you delete your account.
6.Disclosure to third parties
The Company does not disclose personal data to third parties except as follows.
- Showing your profile to other members (the essence of the Service): recipients are other members whose profile passed review; items are what you wrote in your profile, such as nickname, photos, age, location, faith information, education, occupation, introduction and values answers. It is shown only within the visibility you set (public, limited, hidden); visitors and members who have not submitted see only a blurred photo, age range, region, conference and badges. You consent to this separately at signup and confirm it again when submitting your profile.
- Legal name, contact details and social links: shown to one connected member only, and only after you press Share. The Company never reveals them on its own.
- Where required by law, or requested by a law-enforcement authority through due process
7.Processors
The Company currently does not outsource any processing of personal data. The server, database and file storage are all operated directly by the Company. If some tasks such as email delivery are outsourced in the future, the processor and the task will be listed in this policy and announced in advance.
8.International transfers
Personal data is not transferred outside Korea. All data is stored on a single server in the Republic of Korea, including the data of members living abroad.
9.Retention
When a member deletes their account, the account, profile, photos, documents, contact details and conversations are deleted without delay. The following are exceptions.
- Access logs (IP, time): 3 months under the Protection of Communications Secrets Act
- Abuse-prevention records (email hash, sanction reason and time): 1 year after deletion or termination, used only to block re-registration and handle disputes
- Consent records (items, version, time): 1 year after deletion, in case consent must be proven
- Government ID images: destroyed within 3 days of the verification decision regardless of account status
- Report records: 1 year after resolution, even if either party deletes their account
- Usage statistics events: kept under a visitor ID that does not identify a person
10.Destruction
Information whose retention period has ended is deleted by automated jobs. Database records are deleted by command; photo and document files are removed from storage so they cannot be recovered. Information retained under law is kept separately from other data and used for no other purpose.
11.Your rights
Members may at any time exercise the following rights over their personal data.
- Access: check what is stored and how other members see you from My profile and Preview.
- Correction: edit each profile field yourself. Edits are re-reviewed with the same rules.
- Deletion and suspension of processing: delete your account from Settings, or set visibility to Hidden to pause processing.
- Withdrawal of consent: deleting your account withdraws all consents.
- For requests you cannot handle yourself, email [email protected]. After confirming your identity we act within 10 days of receipt and let you know the result. A legal representative or an authorized person may also make a request.
13.Security measures
- Passwords stored only as an irreversible one-way hash (scrypt)
- All traffic encrypted with HTTPS; session cookies set HttpOnly and SameSite
- Photo and document files stored outside public paths and served only to authorized requests. Original photos are served only to approved members; visitors receive an unrecoverable blurred preview
- Legal names and documents viewable by the operator only, with every verification, suspension and report action recorded in the audit log
- Rate limits on login, signup, uploads, requests and messages
- Regular backups and least-privilege access
14.Privacy officer
Privacy officer: Joonseong Ko (CEO), Kohwoon & Company Co., Ltd. · Email [email protected] · Tel 070-4769-0213 · Address 7F, 110-1 Bucheon-ro, Wonmi-gu, Bucheon-si, Gyeonggi-do, Korea. Send privacy questions, complaints and remedy requests to this contact. We respond without delay.
15.Remedies
If you disagree with how the Company handles your data or have suffered harm, you may also consult or report to the following bodies in Korea.
- Personal Information Infringement Report Center (KISA): privacy.kisa.or.kr · 118
- Personal Information Dispute Mediation Committee: kopico.go.kr · 1833-6972
- Supreme Prosecutors' Office, Cyber Investigation: spo.go.kr · 1301
- Korean National Police Agency, Cyber Bureau: ecrm.police.go.kr · 182
16.Changes to this policy
When this policy changes, it is posted in the Service and sent by email at least 7 days before the effective date (30 days for significant changes such as new items, purposes or recipients). Changes that require new consent are presented for consent at your next login.
Current version: 2026-09-20