Confidentialité
Privacy Policy
Lounge in Between ("we") values your privacy. This policy explains what personal data we collect, why, how long we keep it, and your rights, in accordance with the Personal Information Protection Act of Korea (PIPA) and related laws.
Controller: Lounge in Between · Privacy officer: HAEJUN JUNG, loungeinbetween@gmail.com, +82 31-900-6226
1. Data We Collect
- Account (required): name, email, mobile number with country code, password (stored as a one-way hash). For Google/Apple sign-in: the account identifier and email provided by that service.
- Reservation & payment: reservation details (room, time, amount), confirmation number, payment provider transaction ID, refund records. Card numbers are processed by the payment provider (PortOne/Eximbay, PayPal) and are never stored on our servers.
- Service use: notification channel preference, door passcode delivery records, inquiry history, access logs (IP, timestamps), language/theme cookies, app push token.
2. Why We Use It
- Providing reservations, payment, and automatic door passcode delivery (push/email/WhatsApp/SMS)
- Sending reservation confirmations, check-in/check-out notices, and responding to inquiries
- Preventing fraud and unauthorized access; complying with legal obligations
3. Retention
- Account data: until membership withdrawal (deleted or irreversibly anonymized upon withdrawal)
- Under the Korean E-Commerce Act: contract/payment records 5 years, consumer complaint/dispute records 3 years, display/advertising records 6 months
- Access logs under the Protection of Communications Secrets Act: 3 months
4. Processors & International Transfer
We entrust limited data to the following processors solely to operate the Service:
- Payments: PortOne/Eximbay (card), PayPal (USD payments)
- Messaging: Meta Platforms (WhatsApp Business), SMS provider, email delivery
- Sign-in: Google LLC, Apple Inc. · Push notifications: Google Firebase (FCM)
- Hosting: Hostinger (server infrastructure)
Some providers process data outside Korea (e.g. Meta, PayPal, Google, Apple). Only the minimum data needed (e.g. phone number for WhatsApp delivery) is transferred, protected by each provider's safeguards.
5. Sharing
We do not sell personal data. We share it with third parties only with your consent or where required by law (e.g. lawful requests by authorities).
6. Your Rights
You may access, correct, or delete your data, and withdraw consent at any time. In My Page you can edit your profile, change notification settings, and delete your account. You may also contact the privacy officer above. Withdrawal of required consents may limit use of the Service.
7. Cookies
We use minimal cookies for session login, language, and light/dark theme preference. You can block cookies in your browser, but login may not work without session cookies.
8. Security
Passwords are one-way hashed; access to personal data is limited to authorized administrators; transmission is encrypted (HTTPS); door passcodes are issued per reservation and rotated.
9. Children
The Service does not knowingly collect data from children under 14.
10. Changes
Changes to this policy will be announced on the site at least 7 days before taking effect. Translations are for convenience; the English version prevails.
Effective date: 2026-07-22