Legal & Regulatory
EU GDPR Compliance & Data Subject Rights
How PKGroom (pkgroom.com) adheres to the European Union General Data Protection Regulation (GDPR) for global B2B users.
1. Commitment to GDPR Principles
PKGroom, operated by PLUS2LINK Co., Ltd., is committed to processing personal data in full compliance with Regulation (EU) 2016/679 (General Data Protection Regulation). We apply high standards of data security, transparency, and purpose limitation for all users accessing our platform from the European Economic Area (EEA) and worldwide.
2. Lawful Basis for Data Processing
- Performance of Contract (Article 6(1)(b)): Processing account credentials, RFQ quotations, sample order dispatches, and production contracts requested by brand clients or suppliers.
- Legitimate Interest (Article 6(1)(f)): Ensuring 3D Canvas security, preventing commercial fraud, maintaining quality verification logs, and improving B2B platform functionality.
- Consent (Article 6(1)(a)): Performance cookies, marketing notifications, and optional platform analytics.
3. Data Subject Rights under EU GDPR
- Right of Access (Article 15): Request a copy of all personal and commercial data stored on your PKGroom account.
- Right to Rectification (Article 16): Update incorrect business profile details or company contact information.
- Right to Erasure / Right to be Forgotten (Article 17): Request permanent deletion of your user account and associated personal identifiers.
- Right to Restriction & Object (Articles 18 & 21): Object to automated processing or request restricted handling of commercial inquiry data.
- Right to Data Portability (Article 20): Export your saved 3D specifications, RFQ histories, and sample orders in a structured format.
4. International Data Transfers (EU - Republic of Korea Adequacy)
The European Commission issued an Adequacy Decision for the Republic of Korea (December 2021), confirming that Korea provides an adequate level of protection for personal data transferred from the EU. Personal data transferred to PKGroom servers in South Korea is fully safeguarded under these recognized statutory frameworks.
5. Data Protection Officer (DPO) Contact
For any GDPR inquiries, data deletion requests, or data export requests, please contact our Data Protection Officer directly at pkgroom@pkgroom.com or write to PLUS2LINK Co., Ltd., Room 205, 9 Gangnam-ro, Giheung-gu, Yongin-si, Gyeonggi-do, Republic of Korea.
Submit GDPR Request to DPORelated Topics