Privacy Policy
ORCA Privacy Policy
1. Controller and Scope
Team Everywhere Co., Ltd. (“Company”) follows applicable data-protection law and this Policy when processing personal information in connection with the ORCA MES B2B service. External linked services may apply their own privacy policies.
2. Information We Process
We process the minimum information necessary to provide the Service, manage accounts, process payments, provide support, and maintain security. Information is handled by purpose, including sign-up, inquiries, payment, Service use, and security logging. We do not collect data categories unrelated to the current Service, including ADID/IDFA, address-book data, or profile-sharing data.
3. Purposes and Legal Bases
We process information to enter into and perform contracts, manage Users, settle fees, handle inquiries, maintain security and service stability, and comply with legal obligations. Marketing processing is performed only where separate consent or another lawful basis under applicable law is available.
4. Collection Methods
We collect information as necessary through the website, applications, written forms, phone, email, support, event applications, and information generated while using the Service.
5. Landing Analytics Cookies and Online Behavioral Data
For landing performance measurement and service improvement, the Company may process first-party analytics data: hashed pseudonymous session and journey identifiers, page and event data, first-touch UTM parameters, device type, timestamps, and country/region/city-level estimated location. Analytics events do not include raw session values, raw IP addresses, precise location, inquiry text, email addresses, or telephone numbers.
The purpose, retention period, and third-party disclosure status are described in the Cookie & Analytics Policy. The current landing service provides no separate analytics-consent API or settings screen.
6. Retention and Deletion
Personal information is deleted without undue delay once its purpose is achieved, its retention period expires, or a valid deletion request is processed. Information may be retained separately where required by law or justified for dispute handling. Analytics raw events and pseudonymous identifiers are deleted or converted to de-identified aggregates when their purpose is achieved or the applicable internal retention standard is reached.
7. Customer Data, Processors, and Third-Party Disclosure
For personal information about employees, business contacts, or other individuals entered into the Service by a Customer, the Customer is responsible for obtaining the required authority and lawful basis. The Company processes that data only as necessary to provide, secure, and comply with legal obligations for the Service. Where the Company engages a processor, transfers information overseas, or discloses information to a third party, it will provide notice or obtain consent as required by applicable law.
8. Data Subject Rights
Users may request access, correction, deletion, restriction, withdrawal of consent, or termination as permitted by law. Requests for deletion or restriction may be submitted through the contact channel published below.
9. Security Measures
We apply reasonable technical and organizational safeguards, including access management, authentication controls, log management, encryption, security updates, and staff training.
10. Cookies and Browser Settings
Users can allow, block, or delete cookies through browser settings. Blocking essential cookies can limit some Service functions, and blocking browser storage may affect analytics collection.
11. Privacy Contact and Complaints
For privacy inquiries, contact Idahan / Development Team at developer@team-everywhere.com or +82-2-565-0224. Users may also contact the competent Korean data-protection or privacy-complaint authority.
12. Changes
We announce changes and effective dates in advance. Material changes receive additional notice where required.