Privacy Policy (GDPR Compliant) – EchoDeep Inc株式会社
Last Updated: 02 May 2026
Effective Date: 02 May 2026
This Privacy Policy applies to all website visitors and users located in the European Economic Area (EEA). It complies with the General Data Protection Regulation (GDPR) (EU) 2016/679. This document clearly explains how EchoDeep Inc株式会社 ("we", "us", "our") collects, uses, stores and protects personal data, and defines all legal rights of users.
By accessing and using this website, you acknowledge that you have read and understood this Privacy Policy. If you do not agree, please stop using our website immediately.
1. Data Controller Information
Company Name: EchoDeep Inc株式会社
Registered Address (Singapore): 大阪市東住吉区照ケ丘矢田二丁目7一2淘金ビル
Contact Email: echodeep126@outlook.com
Contact Form / Support Channel: Official website contact form
We are the sole data controller for all personal data collected through this website.
2. Legal Basis for Data Processing (GDPR Article 6)
We process personal data only based on the following lawful grounds:
- Your explicit consent (for marketing, optional cookies, and voluntary form submission);
- Performance of a contract or pre-contractual steps (business inquiry, service cooperation);
- Legitimate interest (website security, traffic analysis, anti-abuse protection, without overriding your privacy rights);
- Legal compliance if required by applicable laws.
3. Data We Collect
We follow data minimisation principle and collect only necessary data.
3.1 Data you voluntarily submit
When you contact us, submit inquiry forms, or communicate with us, we may collect: your name, email address, company information, contact information, and message content.
3.2 Automatically collected technical data
During website visits, we automatically collect anonymous technical information for website stability and security: IP address, browser type, device information, access time, visited pages, and interaction behaviours.
3.3 Sensitive Personal Data
We do not intentionally collect any special category personal data (race, religion, political opinion, health data, biometric data, criminal records). If such data is accidentally provided, we will delete it immediately.
4. Purposes of Processing
Your personal data is used only for the purposes stated below and will never be used beyond the original purpose:
- Respond to your business inquiries and communications;
- Provide requested services and follow-up support;
- Maintain website operation, security, and fault diagnosis;
- Analyse anonymous website traffic to optimise user experience;
- Comply with legal and regulatory obligations.
No unconditional profiling, no forced marketing, no automatic decision-making without explicit user consent.
5. Cookies and Similar Technologies
This website uses necessary cookies to guarantee basic browsing functions. Optional analytics cookies will only be enabled with your explicit consent.
You may disable or clear cookies anytime via your browser settings. Disabling cookies will not block basic website access.
6. Data Sharing and Disclosure
We will never sell, rent, or trade your personal data for commercial purposes.
We only share data in the following limited scenarios:
- You provide explicit written consent;
- Necessary third-party service providers (server hosting, security services) who sign GDPR-standard data protection agreements and only process data under our instructions;
- Required by law, court order, or official regulatory authority.
7. Data Storage and Retention
We store personal data only for the shortest necessary duration:
- Business inquiry data: retained for 24 months after final communication, then permanently deleted;
- Technical log data: retained for a maximum of 12 months;
- Data under legal obligation: retained according to statutory retention periods.
After the retention period expires, your data will be completely erased or anonymised.
8. Data Security Measures
We implement technical and organisational measures to protect personal data, including encryption transmission, access permission control, security monitoring, and regular system inspection, to prevent unauthorised access, leakage, tampering and loss.
9. GDPR User Rights (EEA Users)
As an EEA user, you have the following complete rights in accordance with GDPR:
- Right to Access: Request a copy of your personal data we store;
- Right to Rectification: Correct inaccurate or incomplete personal data;
- Right to Erasure (Right to be Forgotten): Request full deletion of your personal data;
- Right to Restriction of Processing: Restrict data processing under specific conditions;
- Right to Data Portability: Obtain your data in a machine-readable format;
- Right to Object: Object to data processing based on legitimate interests or marketing purposes;
- Right to Withdraw Consent: Withdraw any previous consent at any time (without affecting past lawful processing);
- Right to Lodge a Complaint: File a complaint with local data protection authority.
We will respond to all valid user requests within 30 calendar days.
10. International Data Transfer
Our company is registered in Singapore. User data may be transferred and stored outside the EEA. We ensure all cross-border data transfers comply with GDPR requirements, adopting standard contractual clauses (SCCs) and sufficient protection measures to safeguard your personal data.
11. Third-Party Websites
Our website may contain links to third-party platforms. We have no control over third-party privacy rules. You shall check their privacy policies independently. We assume no liability for third-party data processing behaviours.
12. Policy Updates
We may update this Privacy Policy to comply with legal changes. Updates will be published on this page with a revised date. Continued use of the website after updates means you accept the revised policy. Material changes will be notified prominently.
13. Contact & Inquiries
For any privacy requests, data rights exercise, or questions, please contact us via the official email or website contact form.
EchoDeep Inc株式会社
プライバシーポリシー(GDPR準拠)– EchoDeep Inc株式会社
最終更新日:2026年5月2日
発効日:2026年5月2日
本プライバシーポリシーは、欧州経済領域(EEA)に所在するすべてのウェブサイト訪問者およびユーザーに適用されます。本ポリシーは、一般データ保護規則(GDPR)(EU)2016/679に準拠しています。本書は、EchoDeep Inc株式会社(以下「当社」といいます)が個人データを収集・利用・保存・保護する方法を明確に説明し、ユーザーのすべての法的権利を定義するものです。
本ウェブサイトにアクセスし利用することにより、お客様は本プライバシーポリシーを読了し理解したことを確認したものとみなされます。同意いただけない場合は、直ちに本ウェブサイトの利用を中止してください。
1. データ管理者情報
会社名:EchoDeep Inc株式会社
登録住所(シンガポール):大阪市東住吉区照ケ丘矢田二丁目7一2淘金ビル
連絡先メール:echodeep126@outlook.com
お問い合わせフォーム / サポート窓口:公式ウェブサイトのお問い合わせフォーム
当社は、本ウェブサイトを通じて収集されるすべての個人データの唯一のデータ管理者です。
2. データ処理の法的根拠(GDPR第6条)
当社は、以下の正当な根拠に基づく場合にのみ個人データを処理します。
- お客様の明示的な同意(マーケティング、任意のCookie、自発的なフォーム送信)
- 契約の履行または契約前の措置(ビジネス問い合わせ、サービス協力)
- 正当な利益(ウェブサイトのセキュリティ、トラフィック分析、不正利用防止。お客様のプライバシー権利を侵害しない範囲)
- 法的コンプライアンス(適用される法令により要求される場合)
3. 収集するデータ
当社はデータ最小化の原則に従い、必要なデータのみを収集します。
3.1 お客様が自発的に送信するデータ
お問い合わせ、問い合わせフォームの送信、または当社との連絡の際に、氏名、メールアドレス、会社情報、連絡先情報、メッセージの内容を収集する場合があります。
3.2 自動的に収集される技術データ
ウェブサイト閲覧中、ウェブサイトの安定性とセキュリティのために、IPアドレス、ブラウザ種別、デバイス情報、アクセス時刻、閲覧ページ、操作行動などの匿名の技術情報を自動的に収集します。
3.3 センシティブな個人データ
当社は、特別なカテゴリーの個人データ(人種、宗教、政治的意見、健康データ、生体認証データ、犯罪歴)を意図的に収集することはありません。万一、誤って提供された場合には、直ちに削除いたします。
4. 処理の目的
お客様の個人データは、以下に記載する目的にのみ使用され、当初の目的を超えて使用されることはありません。
- ビジネスに関するお問い合わせ・連絡への対応
- ご要望のサービスの提供およびフォローアップサポート
- ウェブサイトの運用・セキュリティの維持および障害診断
- ユーザー体験を最適化するための匿名ウェブサイトトラフィックの分析
- 法令および規制上の義務の遵守
明示的なユーザー同意なしに、無条件のプロファイリング、強制的なマーケティング、自動的な意思決定は行いません。
5. Cookieおよび類似技術
本ウェブサイトは、基本的な閲覧機能を保証するために必要なCookieを使用します。任意の分析Cookieは、お客様の明示的な同意がある場合にのみ有効化されます。
ブラウザ設定により、いつでもCookieを無効化または削除できます。Cookieを無効化しても、基本的なウェブサイトへのアクセスは妨げられません。
6. データの共有および開示
当社は、商業目的でお客様の個人データを販売・賃貸・交換することは決してありません。
当社は、以下の限定的な状況でのみデータを共有します。
- お客様が明示的な書面による同意を提供した場合
- GDPR基準のデータ保護契約を締結し、当社の指示に基づいてのみデータを処理する必要な第三者サービスプロバイダー(サーバーホスティング、セキュリティサービス)
- 法令、裁判所命令、または公的規制当局によって要求される場合
7. データの保存および保持期間
当社は、個人データを必要最小限の期間のみ保存します。
- ビジネス問い合わせデータ:最終連絡から24か月間保持し、その後完全に削除
- 技術ログデータ:最大12か月間保持
- 法的義務に基づくデータ:法令で定められた保存期間に従って保持
保持期間の満了後、お客様のデータは完全に消去または匿名化されます。
8. データセキュリティ対策
当社は、個人データを保護するために、暗号化通信、アクセス権限の管理、セキュリティ監視、定期的なシステム点検などの技術的・組織的措置を実施し、不正アクセス、漏えい、改ざん、紛失を防止します。
9. GDPRに基づくユーザーの権利(EEAユーザー)
EEAユーザーとして、GDPRに基づき以下の完全な権利を有します。
- アクセス権:当社が保存する個人データの写しを請求する権利
- 訂正権:不正確または不完全な個人データを訂正する権利
- 消去権(忘れられる権利):個人データの完全な削除を請求する権利
- 処理制限権:特定の条件下でデータ処理を制限する権利
- データポータビリティ権:機械可読形式でデータを取得する権利
- 異議申立権:正当な利益またはマーケティング目的に基づくデータ処理に異議を申し立てる権利
- 同意撤回権:いつでも以前の同意を撤回する権利(過去の合法的な処理には影響しません)
- 苦情申立権:地域のデータ保護監督機関に苦情を申し立てる権利
当社は、すべての正当なユーザー請求に対し、30暦日以内に対応いたします。
10. 国際的なデータ移転
当社はシンガポールに登録されています。ユーザーデータはEEA域外に移転・保存される場合があります。当社は、標準契約条項(SCC)および十分な保護措置を採用し、すべての越境データ移転がGDPRの要件を遵守することを保証し、お客様の個人データを保護します。
11. 第三者のウェブサイト
本ウェブサイトには、第三者のプラットフォームへのリンクが含まれる場合があります。当社は第三者のプライバシー規則を管理することはできません。お客様ご自身で各社のプライバシーポリシーをご確認ください。当社は第三者のデータ処理行為について一切の責任を負いません。
12. ポリシーの更新
当社は、法的変更に対応するため、本プライバシーポリシーを更新する場合があります。更新内容は、改訂日とともに本ページに公開されます。更新後に本ウェブサイトを継続して利用した場合、改訂後のポリシーに同意したものとみなされます。重要な変更については、目立つ形でお知らせします。
13. お問い合わせ
プライバシーに関するご要望、データ権利の行使、ご質問がある場合は、公式メールまたはウェブサイトのお問い合わせフォームからご連絡ください。
EchoDeep Inc株式会社