Preminder Logo
Preminder
by PVP Inc.

Privacy Policy

Article 1 (Definitions)

Preminder (hereinafter referred to as This Application) and the services related to This Application (hereinafter referred to as This Service) is an application provided by PVP Co., Ltd. (+ SHIFT Shiba Daimon, 2-1-16 Shiba Daimon, Minato-ku, Tokyo, Japan - Representative Director Keiichi Ishida, hereinafter referred to as The Company). This Application’s Privacy Policy (hereinafter referred to as "Privacy Policy") stipulates the handling of information acquired.

Please read this Privacy Policy and understand its contents before using This Application and This Service. This Privacy Policy is posted when accessing This Application and is deemed to have been made public upon this posting. Users should read this Privacy Policy when installing This Application.

When acquiring the information described below, consent will be obtained before the acquisition of personal information. If consent is not obtained, This Application cannot be used.

Article 2 (Compliance with laws and regulations)

This Application and This Service comply with the Act on the Protection of Personal Information (Japan), the Telecommunications Business Act (Japan), Japanese related laws and regulations, guidelines, the European General Data Protection Regulation (GDPR), and this Privacy Policy regarding the acquisition, use, and other handling of information.

Article 3 (Children’s Privacy)

This Application and This Service are not intended for use by individuals who have not reached the age of majority in their country of residence. We do not knowingly collect or solicit personal information from minors. If we become aware that we have inadvertently collected personal information from a minor, we will take steps to delete such information promptly.

Article 4 (Security Management Measures)

We strive to keep the information handled by This Application and This Service accurate and up-to-date, and take necessary, appropriate, and commercially reasonable measures to protect them from unauthorized access, falsification, leakage, loss, and damage. We will take the following safety management measures.

Measure (1) Formulation of basic policy

In order to ensure the proper handling of personal data held by us, we have established a "Personal Information Protection Policy" that covers "compliance with relevant laws, regulations, guidelines, etc." and "contact point for questions and complaints."

Measure (2) Establishment of regulations regarding the handling of retained personal data

We have established personal information protection regulations that stipulate how personal data held by us will be handled, who will be responsible and who will play their roles, etc., at each stage of the process, such as acquisition, use, storage, provision, deletion, and disposal.

Measure (3) Organizational security control measures

① We have appointed a person in charge of handling retained personal data, clarified the employees who handle retained personal data and the scope of retained personal data handled by said employees, and established a reporting and contact system to the person in charge in the event of finding facts or signs of violation of laws or handling regulations.

② We regularly conduct self-inspections regarding the handling status of retained personal data, and conduct audits by other departments and external parties.

Measures (4) Personnel safety management measures

① We provide regular training to employees regarding important points regarding handling of retained personal data.

② All employees have submitted written pledges regarding confidentiality, including personal data held.

Measures (5) Physical safety control measures

① In areas where retained personal data is handled, we control the entry and exit of employees, restrict the devices they bring in, and take measures to prevent unauthorized persons from viewing retained personal data.

② We take measures to prevent theft or loss of devices, electronic media, documents, etc. that handle retained personal data, and take measures to prevent retained personal data from being easily identified when such devices, electronic media, etc. are carried, including when moving around the workplace.

Measures (6) Technical safety control measures

① We implement access control to limit the persons in charge and the scope of the personal information database, etc. that they handle.

② We have introduced a mechanism to protect information systems that handle retained personal data from unauthorized external access or software.

Article 5 (Data management)

Article 5-1 (Items of information to be acquired, purpose of use, and acquisition method)

When using This Application and This Service, the following information will be automatically acquired for the purposes outlined below:

  • Email: Used to identify the current user.
  • First and last name: Used for invoicing and display purposes.
  • Access token: Transferred to our backend server for authentication and deleted immediately after use.
  • Calendar Event Data: Periodically collected locally by the extension for the current day. This data ensures the proper functioning of This Application and This Service. This data includes event details, conference information, attendee details, and file attachments. Events data are processed locally and not sent to external servers. Past events data are cleared, and locally stored data are encrypted.
  • Drive File Metadata: We use event attachment IDs to fetch file’s thumbnail using Drive API.

The events data are checked locally by the extension against specified conditions based on event properties. If these conditions are met, it may open a new tab, or a separate window, with the meeting link. We do not send this Calendar event data to any external servers or third parties.

Article 5-2 (Information provided by third parties)

We share and receive personal information from third parties in specific situations to ensure the proper functioning and efficiency of This Application and This Service, and to answer our legal obligations.

Stripe: This application integrates with Stripe for payment processing. Data shared includes billing information, email address, and transaction identifiers. Stripe processes this data securely, adhering to its own privacy policies.

Your payment information is securely gathered and processed by Stripe. The only data we retain in our system is a unique ID linked to the transactions conducted through Stripe. We do not share your payment information with any other third parties.

Stripe only provides us with dashboards containing the minimum number of details necessary to manage your subscriptions, perform refunds, and detect fraudulent payment transactions, as per our legal obligations.

We strictly adhere to Stripe’s terms and all other applicable terms and policies. By using our application, you also agree to Stripe’s terms and conditions regarding payment processing.

For more details on how Stripes handles the information collected, please refer to the Stripes’ privacy policy and security page available at https://stripe.com/privacy and https://stripe.com/legal/dpa.

Article 5-3 API Permissions

To ensure the proper functioning of This Service and This Application, the following API permissions are required.

  • https://www.googleapis.com/auth/calendar.readonly: Used to read the calendar events the current user is invited to.
  • https://www.googleapis.com/auth/userinfo.email: Used to collect the current user's email for the purpose of displaying it as an indicator if multiple Google accounts are logged in. This is so that the current user can correctly identify which Google account to sign in with.
  • https://www.googleapis.com/auth/userinfo.profile: Used to collect the user’s first and last name for purpose of displaying it as indicator as well as for subscription invoicing.
  • https://www.googleapis.com/auth/drive.readonly: Used to collect the file name and thumbnails for the events’ attachments, for display purposes.

Article 5-4 (Transfers of personal data)

The events’ data collected by This Application is processed locally within your browser and is not transferred to any external services or entities outside of your area of residency. Your access token is the only information transmitted to our backend server located in Japan for authentication purposes. This access token is securely transferred and is not stored in our backend. It is immediately deleted after the intended usage is performed.

Personal data collected by Stripe and its affiliates may be transferred on a global basis as necessary to provide their services and answer their legal obligations. In particular, personal data may be transferred to SINC in the United States and to Stripe’s affiliates and sub-processors in other jurisdictions.

Article 5-4-1 Lawful basis for processing for residents of the EEA, UK Switzerland

Since 2019, the European Union has recognised Japan's data protection systems as equivalent to the security measures granted by the GDPR, allowing transfer of the data between the 2 countries without additional contractual clauses. Stripe’s global data transfer processes adhere to GDPR and APPI standards.

Article 5-5 (Regarding the security of your personal data)

The security of your personal data is important to us.

The data transferred between this extension and our backend is encrypted in transit using HTTPS. We also implemented advanced security measures, including AES encryption, to fortify the protection of your data within the extension. This encryption methodology ensures that your information remains secure during both transmission and storage processes. PVP Inc. does not have access to any of your login-related information, including your password.

All data collected by Stripes is encrypted in transit using the TLS 1.2 protocol. Data traversing Stripe’s internal production networks are encrypted using mTLS. Stripe encrypts all data at rest using industry standard encryption (AES-256).

While we strive to use commercially acceptable means to protect your personal data, please remember that no method of transmission over the internet, or method of electronic storage is 100% secure. Therefore, we cannot guarantee its absolute security.

Article 5-6 (Retention of Your Personal Data)

The Company will retain your personal data only for as long as is necessary for the purposes set out in this Privacy Policy. We will retain and use your personal data to the extent necessary to comply with our legal obligations, resolve disputes, and enforce our legal agreements and policies.

The Company will also retain usage data for internal analysis purposes. Usage data is generally retained as long as you continue to use our services or within the limit of a month after we receive the deletion request unless we are legally obligated to retain this data for longer time periods.

Article 5-7 (Cookies)

This Application does not directly utilize cookies. However, we employ Google APIs and Stripes APIs, which store cookies. Cookies are small data files that may include an anonymous unique identifier. These cookies are used by these services in various situations, including but not limited to:

  • Ensure that their services function properly.
  • Detect and prevent fraud and violations
  • Understand how visitors use and engage with their services
  • Advertise their products and services
  • Analyze and improve This Service

Article 6 (Method of user involvement)

In This Service, the user can stop acquiring, modifying, deleting, or suspending the use of all or part of the user's information by operation or request. Regarding handling such as suspension of acquisition of user information for advertising purposes, please refer to each company's application Privacy Policy listed in Article 4.

Article 7 (Termination of service and handling of information)

You have the right to delete the personal data that This Application and This Service have collected about you by opening the profile page and clicking on “Manage account > Delete Account”. Please refer to the user documentation for more information on how to delete your account.

Preminder retains personal information, such as email addresses as required by law and for business purposes like, preventing abuse, billing or account management.

Alternatively, you can also contact The Company to request access to, correct, or delete any personal information that you have provided to us.

Any deletion request submitted to our application is also transmitted to Stripe to request the deletion of the personal information collected by this 3rd party service. Please note; however, that we, or Stripe, may retain certain information when we have a legal obligation, a lawful basis to do so, or are bound by an agreement with our 3rd party providers to keep this information.

Article 8 (Link to personal information protection policy (Privacy Policy), etc.)

For our company's personal information protection policy (Privacy Policy), please see the end of this Privacy Policy.

Terms of use for This Application and This Service: “Information” page of This Application → Terms of Service or https://pvp.co.jp/security/

Application privacy policy of This Application: “Information” page of This Application → Privacy policy or https://preminder.jp/privacy_policy.html/

Article 9 (Disclosure and provision of information)

The Company will not disclose or provide information acquired and stored from users through This Application and This Service to third parties, other than those specified in this Privacy Policy, without obtaining the consent of the users. However, the following cases are excluded:

  • When based on laws and regulations.
  • When it is necessary to protect a person's life, body, or property, and it is difficult to obtain the consent of the person.
  • When cooperation with a national government agency, local government, or an entity commissioned by them is required by law, and obtaining the individual's consent would be likely to impede the performance of that purpose.

Article 10 (Inquiry)

For inquiries and consultation regarding the handling of user information in This Application and This Service, please contact the following contact point:

How to contact us: From the inquiry form below

Inquiry form: https://pvp.co.jp/contact/

For any other questions or support inquiries please contact the Preminder Support at preminder-support@pvp.co.jp.

Article 11 (Changes)

If there are changes or additions to the information collected, changes to the purposes of use, changes to the information shared with third parties, due to an upgrade of This Application, etc., we will notify you and obtain your consent again with an update notice. If you do not agree with the changes, you will be denied access to the service.