BLOCKFESTA 2026
KO EN
Register

BLOCKFESTA 2026 Privacy Policy

Draft, pending legal review. Contact: contact@blockmedia.co.kr

Blockmedia (the "Company") establishes and discloses this Privacy Policy under Article 30 of the Personal Information Protection Act, in order to protect the personal information of data subjects and to handle related grievances promptly and effectively.

This Policy applies to the registration function of the BLOCKFESTA 2026 event website (blockfesta.com).

1. Personal information collected

We collect the following when you register.

Required
  • Full name
  • Email address
  • Contact number (mobile phone)
Optional — you can leave these blank
  • Organisation / company name
  • Job title or position
  • Area of interest
  • Referrer
Recorded automatically with the registration
  • IP address, timestamp, browser information, and the language of the page
  • The time each consent was given and the version of this policy

2. Purposes of collection and use

Receiving registrations and verifying attendees
Name, email, contact number
Event announcements, changes, and urgent contact on the day
Name, email, contact number
Understanding the audience and on-site registration
Organisation, job title, area of interest
Identifying who referred the registrant
Referrer
Preventing fraudulent registration
Access records

The Company does not use personal information for any purpose other than those stated above. Where the purpose changes, it will take the necessary measures, including obtaining separate consent, under Article 18 of the Act.

3. Retention and use period

The Company retains and uses the personal information collected until one year after the end of the event, and destroys it without delay once that period has elapsed.

Where retention is required under applicable law, the information is kept for the period prescribed by that law.

If a data subject requests deletion before the retention period expires, the Company destroys the information without delay unless there is a statutory obligation to retain it.

4. Provision to third parties

The Company does not provide personal information to third parties. The following are exceptions.

  1. Where the data subject has given prior, separate consent
  2. Where required by special provisions of law, or by an investigative agency following the procedures prescribed by law

5. Outsourcing of processing

The Company does not outsource the processing of personal information collected through registration.

Registrations are written directly to a web server operated by the Company, without passing through any external form service or customer-management tool.

Should outsourcing arise in future, the processor and the scope of the work will be disclosed in advance through this Policy.

6. Transfer overseas

The Company does not transfer personal information collected through registration overseas; it is stored and processed only on servers located in Korea.

7. Rights of data subjects and how to exercise them

Data subjects may exercise the following rights against the Company at any time.

  1. Request access to their personal information
  2. Request correction where there are errors
  3. Request deletion
  4. Request suspension of processing

Rights may be exercised in writing or by email to the Personal Information Protection Officer named in section 11, and the Company will act without delay.

Where correction is requested, the Company will neither use nor provide the information concerned until the correction is complete.

Rights may be exercised through a legal representative or an authorised agent, who must submit a power of attorney in the form prescribed by the Notice on Methods of Processing Personal Information (Annex 11).

8. Destruction of personal information

The Company destroys personal information without delay once it is no longer needed, whether because the retention period has elapsed or the purpose has been achieved.

  • Procedure: the information concerned is identified and destroyed with the approval of the Personal Information Protection Officer.
  • Method: registrations are held in a log file on the server and are deleted by means that make recovery impossible; paper records are shredded or incinerated.

9. Security measures

  • Administrative: an internal management plan, a minimal number of staff with access, and training
  • Technical: restricted access to the registration file, retention of web-server access logs, and encryption in transit (HTTPS)
  • Physical: access control to servers and storage areas

10. Automatic collection devices and how to refuse them

The Company sets no cookies on this website and installs no analytics or advertising trackers.

The site does, however, load its font files from an external content delivery network (jsDelivr, cdn.jsdelivr.net). In doing so your browser discloses your IP address to that network. The Company neither collects nor retains that information.

11. Personal Information Protection Officer

Name
[ ]
Position
[ ]
Contact
[email] / [phone]

Data subjects may direct any enquiry, complaint or request for remedy concerning personal information to the Officer, and the Company will respond without delay.

12. Remedies for infringement of rights

Data subjects may apply to the following bodies for dispute resolution or advice.

  • Personal Information Dispute Mediation Committee: 1833-6972 / www.kopico.go.kr
  • Privacy Infringement Report Centre: 118 / privacy.kisa.or.kr
  • Supreme Prosecutors' Office, Cyber Investigation: 1301 / www.spo.go.kr
  • National Police Agency, Cyber Bureau: 182 / ecrm.police.go.kr

13. Changes to this Policy

This Privacy Policy takes effect on [date].

Where additions, deletions or amendments are made in response to changes in law, policy or security technology, the reasons and content will be announced on the website at least seven days before they take effect.