
-
Korea University Privacy Policy
※ This is an AI translation provided for reference purposes only. In the event of any discrepancy between this translation and the original Korean document, the Korean original shall prevail.
All personal information handled by Korea University (hereinafter referred to as the "University") is collected, retained, and processed in compliance with personal information protection provisions under relevant laws and regulations, including the Personal Information Protection Act.
- In accordance with the Personal Information Protection Act, the University maintains the following Privacy Policy to protect the personal information and rights of users and to smoothly handle user grievances related to personal information.
- In particular, websites managed by the University that process personal information establish and operate their own separate Privacy Policies pursuant to Article 30, Paragraph 1 of the Personal Information Protection Act and Article 31, Paragraph 1 of its Enforcement Decree.
- When amending this Privacy Policy, the University will notify users of the effective date and the changes through website announcements (or individual notices) so that data subjects can easily review them.
CCTV Installation Notice
Please be advised that 24-hour CCTV surveillance is in operation across lobbies, elevators, and underground parking lots in each building on the Korea University campus for the purposes of crime prevention and facility safety.
- Administrative Manager: Safety Team, Korea University
- General Control Center: +82-2-3290-1919
Article 1 (Purposes of Processing Personal Information)
- The University collects the minimum necessary personal information for the purposes of providing educational services, handling civil petitions, and executing duties within its jurisdiction.
- Details regarding Paragraph 1 are posted on the respective websites operated by each department and institution to ensure data subjects can easily review them.
Article 2 (Processing and Retention Period of Personal Information)
- Personal information processed by the University is handled strictly within the scope specified for the purpose of collection and use, and is retained in accordance with retention periods prescribed by the Personal Information Protection Act and relevant laws and regulations.
- The list of personal information files collected and retained by the University is as follows. The registration status of other personal information files can be verified at the link below on the Personal Information Portal operated by the Personal Information Protection Commission.
※ Hyperlink : https://www.privacy.go.kr/front/wcp/dcl/per/personalInfoFileSrhList.doPersonal Information File Name Responsible Department Operational Purpose of Personal Information File Personal Information Items Processed Retention Period Seoul Campus Admissions Management Admissions Team Selection of Incoming Students Name: Required, Home Address: Required,Email: Required, Home Phone: Required, Mobile Phone: Required, Resident Registration Number: Required, Others(Personal Statement, Principal's Recommendation Letter, Photo, Nationality, High School Name, Graduation Year, Payment Information (Bank, Account Number),Academic Information (Highest Level of Education, Enrolled/Attended High School Name, Graduation/Expected Graduation Year, High School Phone Number), Curricular/Extracurricular Grades, CSAT Scores, Evaluation Calculation Details 10 Years Sejong Campus Admissions Management Team Admissions Team Execution of Admissions & Selection Duties Name: Required, Home Address: Required, Email: Required, Home Phone: Required, Mobile Phone: Required, Resident Registration Number : Required, Other (Personal Statement, Photo, Nationality, Gender, High School Attended, Graduation Year, Academic Background, Payment Information (Bank, Account Number), Student Record, CSAT Scores, Evaluation Calculation Details) 10 Years Academic Affairs Management Academic Affairs Team Management of University Academic Affairs Name: Required, Mobile Phone: Required, Date of Birth: Required, Resident Registration Number (RRN): Required, Student ID, College, Department/Division, English Name, Chinese Character Name, Gender, Major, Academic Status, Grade/Year, Early Graduation, Academic Advisor, Secondary Academic Advisor, Admission Category, Admission Type, Special Remarks, Admission Date, Admission Grade Level, Initial Admission Category, Readmission Date, Readmission Grade Level, English Proficiency Level, Intensive Major, Minor, Double Major, Interdisciplinary Major, Engineering Accreditation, Student-Designed Major, Dual Degree, Entry Date, First Major, Completion Date, Exchange University, Exchange Semester, Guardian Name, Relationship to Student, Guardian Occupation, Bank Code, Account Number, Account Holder, Nationality, Domicile of Origin, Email, OneID, Maximum Period of Attendance, Domestic Credit Exchange Student Name, Contact Information, Resident Registration Number (RRN), Affiliated University, Campus, Department (Major), Student ID, Completion Year, Completion Semester, Course Code, Section, Course Title, Course Category, General Education Area, Course Type, Credits, Score, Grade, Grade Point Average (GPA), Cancellation Status, Retake Year, Retake Semester, Retaken Course Code, Attempted Credits, Earned Credits, Total Grade Points, Grade Point Average, Converted Score, Class Rank Semi-Permanent Graduate Management Academic Affairs Team University Graduation Affairs Management Name: Required, Home Address: Required, Email: Required, Mobile Phone: Required, Date of Birth: Required, Resident Registration Number (RRN): Required, Other (Personal ID and Password, Gender, Household Member Information, Military Service Details, Nationality, Domicile of Origin / Place of Birth) Semi-Permanent Seoul Campus Scholarship Student Management Student Support Team Management of On-Campus and Off-Campus Scholarship Students Required: Name, Date of Birth, Home Address, Mobile Phone Number, Resident Registration Number (RRN), Gender, Affiliated Institution, Highest Level of Education, Academic Grades 5 Years Sejong Campus Scholarship Student Management Student Life Support Team Management of On-Campus and Off-Campus Scholarship Students Required: Name, Date of Birth, Home Address, Mobile Phone Number, Resident Registration Number (RRN), Gender, Affiliated Institution, Highest Level of Education, Academic Grades 5 Years International Student Admissions Management International Education Team Management of International Student Admissions Required: Name, Date of Birth, Home Address, Mobile Phone Number, Resident Registration Number (RRN), Alien Registration Number (ARN), Gender, Test Registration Number, High School Region, High School Name, Other (Copy of Passport) 10 Years Development Fund Management Development & External Affairs Team Business Processing for Development Fund Management Required: Name, Date of Birth, Home Address, Mobile Phone Number, Email, Resident Registration Number (RRN) Semi-Permanent - On the University's main website, the following personal information items are processed as follows
[Personal Information Items Processed Without Data Subject's Consent]Legal Basis Category Purpose of Processing Personal Information Items Processed Retention Period Article 15, Paragraph 1, Item 4 of the Personal Information Protection Act (Performance of Contract) External Users Identity Verification, Login, Post Creation Mobile Phone Number, Name, Date of Birth Until Request for Post Deletion
[Personal Information Items Processed with Data Subject's Consent]Category Purpose of Processing Personal Information Items Processed Retention Period External Users Identity Verification, Login, Post Creation Address, Email Until Request for Post Deletion
Article 3 (Items of Personal Information Processed)
The University processes only the minimum amount of personal information required for its designated duties and as prescribed by relevant laws and regulations. Detailed information is posted on the respective websites operated by each department to ensure that data subjects can easily review it.
Article 4 (Provision of Personal Information to Third Parties)
- n principle, the University processes personal information only within the scope specified for the purpose of collection and use, and does not provide it to third parties without the prior consent of the data subject. However, personal information may be provided to third parties in the following cases.
- Where separate consent is obtained from the data subject
- Where there are special provisions in other laws
- Where it is deemed explicitly necessary for the urgent life, body, or property interests of the data subject or a third party
- Where the designated duties prescribed by other laws cannot be performed without using personal information for purposes other than intended or providing it to a third party, and where it has undergone deliberation and resolution by the Personal Information Protection Commission
- Where it is necessary to provide information to a foreign government or international organization to fulfill a treaty or other international agreement
- Where it is necessary for the investigation of a crime and the institution and maintenance of prosecution
- Where it is necessary for the execution of court judicial duties
- Where it is necessary for the execution of sentences, custody, and protective dispositions
- Where it is urgently necessary for public health and other public safety and welfare
- The University provides personal information to third parties as follows.
Recipient Purpose of Use by Recipien Provided Personal Information Items Retention & Use Period by Recipient Korean Council for University Education Admissions Applicant Status and Violator Processing Name, Resident Registration Number (RRN), High School Attended, Graduation Year 5 Years Korea Student Aid Foundation Request for Material Submission Regarding National Scholarships Resident Registration Number (RRN), Name, Department Name, Grade/Year, Student ID, Support Amount 10 Years Ministry of Justice Management of International Students, etc. Name, Country of Birth, Date of Birth, Gender, Passport Number, Nationality, Email Semi-Permanent National Tax Service Preparation of Donation Receipt Issuance Details Name, Resident Registration Number (RRN), Address Semi-Permanent - Details regarding Paragraph 1 (excluding Paragraph 2) are posted on the respective websites operated by each department and institution so that data subjects can easily review them.
Article 5 (Consignment of Personal Information Processing)
- When consigning the processing of personal information, relevant details are posted on the respective websites operated by each department and institution so that data subjects can review them. Furthermore, to ensure the smooth handling of its designated duties, this website consigns personal information processing operations as follows
Trustee Details of Consigned Operations SCI Information Service, Inc. Identity Verification for Main WebsiteOperation and Maintenance of Main Website K2WebTech Co., Ltd. Maintenance of the Main Website - When entering into a consignment contract, the University clearly stipulates matters regarding compliance with personal information protection laws and regulations and retains the contract terms. In the event of a change in service providers, notification will be provided through announcements and the Privacy Policy.
Article 6 (Rights and Obligations of Data Subjects and Legal Representatives, and Methods of Exercise)
- Data subjects may exercise their rights to access, rectify, erase, or suspend the processing of their personal information at any time against the University.
- Request to Access Personal Information
- Request for Rectification (in case of errors, etc.)
- Request for Deletion
- Request for Suspension of Processing
- In accordance with Article 41, Paragraph 1 of the Enforcement Decree of the Personal Information Protection Act, requests may be submitted in writing, by email, or by facsimile (FAX) using Form No. 8 of the "Notice on Personal Information Processing Methods," and the University will take action without delay. * [Form No. 8] Download
- If a data subject requests the rectification or erasure of errors in personal information, the personal information will not be used or provided until the rectification or erasure is completed.
- The exercise of rights pursuant to Paragraph 1 may be conducted through a legal representative or a proxy delegated by the data subject. In such cases, a power of attorney in accordance with Form No. 11 of the "Notice on Personal Information Processing Methods" must be submitted. * [Form No. 11] Download
- The rights to access personal information and request suspension of processing may be restricted pursuant to Article 35, Paragraph 4 and Article 37, Paragraph 2 of the Personal Information Protection Act.
- A request for the rectification or erasure of personal information cannot be made if the personal information is specified as an item for collection under other laws and regulations.
- Upon receiving a request for access, rectification, erasure, or suspension of processing based on the rights of the data subject, the University verifies whether the person making the request is the data subject or a legitimate representative.
- The contact details for the department in charge of receiving and processing requests for access, rectification, erasure, and suspension of processing of personal information are as follows.
* Main Inquiries: Seoul Campus (+82) 02-3290-1145, Sejong Campus (+82) 044-860-1822
Article 7 (Procedures and Methods for Destruction of Personal Information)
- In principle, the University destroys personal information without delay once the purpose of processing has been achieved. However, this may not apply if preservation is required under other laws and regulations, and relevant details—including the governing laws, specific articles, and preserved personal information items—are posted on the respective websites operated by each department and institution for data subjects to review.
- The procedures, deadlines, and methods for destruction are as follows
- Destruction Procedure: Personal information is destroyed immediately after its purpose is achieved, or transferred to a separate storage location where it is retained for a certain period in accordance with internal policies and relevant laws before being destroyed. Personal information transferred to a separate location will not be used for any other purpose unless required by law.
- Destruction Deadline: Personal information is destroyed without delay when its retention period expires, when the processing purpose is achieved, or when the relevant operations are discontinued, rendering the personal information unnecessary.
- Destruction Method: Information in electronic file format is destroyed using technical methods that render the records unrecoverable. Personal information printed on paper is destroyed by shredding with a paper shredder or through incineration.
Article 8 (Measures to Ensure the Safety of Personal Information)
- The University takes the following measures to ensure the safety of personal information.
- Minimization and Training of Personal Information Handlers: Employees handling personal information are strictly designated and managed to the minimum extent necessary, and training is conducted for handlers to ensure safe management.
- Limitation of Access to Personal Information: Necessary measures are taken to control access to personal information by granting, altering, and revoking access rights to personal information processing systems, and unauthorized access from the outside is controlled using an intrusion prevention system.
- Retention and Anti-Tampering of Access Logs: Access logs to personal information processing systems are retained and managed for at least one year (or at least two years for systems processing personal information of 50,000 or more data subjects, or processing unique identification information or sensitive information), and are securely stored to prevent falsification or tampering.
- Installation and Periodic Maintenance of Security Programs: Security programs are installed and periodically updated and inspected to prevent the leakage and damage of personal information caused by hacking, computer viruses, etc.
- Access Control for Unauthorized Persons: Physical storage locations where personal information processing systems are kept are physically separated, and access control procedures are established and operated.
- Encryption of Personal Information: Personal information is securely stored and managed through encryption and other safety measures. In addition, separate security functions are utilized, such as encrypting important data during storage and transmission.
- Establishment and Implementation of Internal Management Plans: Internal management plans are established and implemented to ensure the secure processing of personal information.
Article 9 (Installation, Operation, and Refusal of Automatic Personal Information Collection Devices)
- The University uses "cookies" to store and retrieve usage information from time to time in order to provide individualized and customized services to users.
- A cookie is a small piece of information sent by the server used to operate a website to the user's computer browser, and it may also be stored on the hard drive of the user's terminal device (PC, mobile, etc.).
- Purpose of Use of Cookies
Cookies are used to provide optimized information to users by analyzing the visitation patterns, usage types, secure browsing status, and popular search terms across the respective websites and services accessed by users. - How to Deny Cookie Settings
▶ Chrome: Settings on the top right of the web browser > Privacy and security > Clear browsing data
▶ Edge: Settings on the top right of the web browser > Cookies and site permissions > Manage and delete cookies and site data
▶ Firefox: Click the three-line menu icon at the top right of the browser > Settings > Privacy & Security > Cookies and Site Data > Manage Exceptions... > Enter the address of the site you wish to block > Click Block > Save Changes
▶ Opera: Click the button in the top left corner of the browser > Menu > Settings > Advanced in the left sidebar > Privacy & security > Site Settings > Cookies and site data under Permissions > Toggle "Allow sites to save and read cookie data (recommended)" on or off - Refusing cookie storage may cause difficulties when using services that require a login.
- Purpose of Use of Cookies
Article 10 (Remedies for Rights Infringement)
- Data subjects may apply for dispute resolution or consultation with the Personal Information Dispute Mediation Committee, the Korea Internet & Security Agency (KISA) Personal Information Infringement Report Center, etc., in order to seek relief from damage caused by personal information infringements.
- Personal Information Dispute Mediation Committee: (+82) 1833-6972 (www.kopico.go.kr)
- Personal Information Infringement Report Center: 118 (without area code) (privacy.kisa.or.kr)
- Supreme Prosecutors' Office Cybercrime Investigation Division: (+82) 02-3480-3573 (cybercid@spo.go.kr) www.spo.go.kr
- National Police Agency Cyber Bureau: 182 (without area code) (ecrm.cyber.go.kr)
- In addition, any person whose rights or interests have been infringed upon due to a disposition or omission taken by the head of a public institution regarding a data subject's request for access, rectification, erasure, or suspension of processing of personal information may file an administrative appeal in accordance with the Administrative Appeals Act.
- Please refer to the telephone directory of the Central Administrative Appeals Commission(www.simpan.go.kr)
Article 11 (Privacy Officer and Responsible Department)
- The University designates a Chief Privacy Officer (CPO) and a responsible department as follows to oversee tasks related to personal information protection, handle data subjects' complaints and grievances, and manage damage relief
- Chief Privacy Officer (CPO): Vice President for Digital Information (or Director of the Office of Digital Information)
- Department Responsible for Personal Information Protection: Information Infrastructure Team, Office of Digital Information
- Inquiries / Contact: +82-2-3290-4191, +82-2-3290-4196, security@korea.ac.kr
Status of Revisions to the Privacy Policy
- This Privacy Policy shall take effect on November 13, 2024.
- If The University revises this privacy policy, will provide a shortcut below this selection so that you can riview the changes.