Privacy Policy
Last Updated: February 14, 2025
At fluxisenergy, we understand that your financial data is sensitive. This policy explains how we collect, use, and protect your information when you access our trading financial statements platform. We operate in accordance with South Korean privacy regulations, including the Personal Information Protection Act (PIPA).
We're not lawyers, and this isn't legal advice — but we do take your privacy seriously. If something here doesn't make sense, reach out.
Privacy Questions? Contact our data protection team at help@fluxisenergy.com or call +82 31 971 6655. Our office is located at 91-2 Gayang 2(i)-dong, Dong-gu, Daejeon, South Korea.
Information We Collect
Running a platform that handles trading financial statements means we need certain information. Here's what we collect and why:
Account Information
When you create an account, we ask for your name, email address, phone number, and payment details. This is pretty standard stuff — we need it to verify your identity and process transactions securely.
Financial Data You Upload
Our platform lets you analyze trading financial statements. Any documents or data you upload stay yours. We process them to provide the analysis you're looking for, but we don't sell or share your financial information with third parties for marketing purposes.
Usage Data
We collect information about how you interact with our platform — which features you use, how often you log in, what reports you generate. This helps us figure out what's working and what needs improvement.
- IP addresses and device information for security monitoring
- Browser type and operating system for compatibility testing
- Page views and navigation patterns to improve user experience
- Time spent on different sections to identify popular features
- Error logs when things don't work as expected
Important Note: We use cookies to keep you logged in and remember your preferences. Most of these are essential for the platform to function. You can control non-essential cookies through your browser settings, though some features may not work properly if you disable them.
How We Use Your Information
Your data serves specific purposes. We're not collecting information just for the sake of it. Here's how we actually use what we collect:
- Platform Operations: Processing your financial statements, generating reports, maintaining your account security, and providing customer support when you need it.
- Service Improvements: Analyzing usage patterns helps us identify bugs, develop new features, and make the platform more intuitive. For example, if lots of users struggle with a particular feature, we know we need to redesign it.
- Communication: Sending you important updates about your account, security alerts, service changes, and occasional educational content about financial analysis. You can opt out of non-essential emails anytime.
- Legal Compliance: Meeting our obligations under South Korean financial regulations, responding to valid legal requests, and preventing fraud or unauthorized access.
- Payment Processing: Working with payment processors to handle transactions securely. We don't store complete credit card numbers on our servers.
We don't use your financial data to build profiles for advertising. That's not our business model. Your trading statements stay confidential.
Data Sharing and Third Parties
We work with carefully selected partners to run our platform. Here's who sees your data and why:
| Partner Type | Purpose | Data Shared |
|---|---|---|
| Cloud Hosting Providers | Store and process platform data securely | All account and usage data (encrypted) |
| Payment Processors | Handle subscription payments and refunds | Billing information and transaction history |
| Email Service Providers | Send account notifications and updates | Email address and name only |
| Analytics Services | Understand platform usage and performance | Anonymized usage statistics |
| Customer Support Tools | Respond to your questions efficiently | Support tickets and related account info |
All our partners are bound by contracts that require them to protect your data and use it only for the specific purposes we've authorized. We don't sell your information to data brokers or advertisers. Period.
Legal Disclosures
Sometimes we're legally required to share information with authorities. This happens when we receive valid subpoenas, court orders, or official requests from South Korean regulatory bodies. We'll notify you about such requests unless we're legally prohibited from doing so.
Your Rights and Control
Under South Korean law (PIPA), you have specific rights regarding your personal information. Here's what you can do:
Access Your Data
Request a copy of all personal information we hold about you. We'll provide it in a readable format within 10 business days.
Correct Inaccuracies
Update wrong or outdated information in your account settings, or contact us for help with corrections.
Delete Your Account
Request complete deletion of your account and associated data. We'll remove everything except what we're legally required to retain.
Restrict Processing
Limit how we use your data in certain circumstances, such as while we verify its accuracy.
Data Portability
Download your data in a structured format that you can transfer to another service provider.
Withdraw Consent
Revoke permissions you've previously granted, such as marketing communications or optional data collection.
How to Exercise Your Rights
Send your request to help@fluxisenergy.com with "Data Rights Request" in the subject line. Include your account email and specify what you'd like us to do. We'll verify your identity and respond within 10 business days.
Some things to know: we may need to verify who you are before processing requests (for security reasons), certain legal obligations may prevent us from deleting specific records, and we can't recover data once it's been permanently deleted.
Data Security Measures
Financial data requires serious security. Here's what we do to protect your information:
- Encryption: All data transmitted between your browser and our servers uses TLS 1.3 encryption. Your financial documents are encrypted at rest using AES-256 encryption.
- Access Controls: Only authorized team members can access user data, and they only see what's necessary for their specific role. All access is logged and monitored.
- Regular Security Audits: We conduct quarterly security assessments and penetration testing to identify and fix vulnerabilities before they become problems.
- Secure Infrastructure: Our servers are hosted in certified data centers with physical security measures, redundant systems, and regular backups.
- Employee Training: Our team receives ongoing training about data protection, security protocols, and privacy best practices.
- Incident Response Plan: If a security breach occurs, we have procedures in place to respond quickly, contain the damage, and notify affected users within 72 hours.
Your Responsibility: Strong security is a partnership. Use a unique, complex password for your account. Enable two-factor authentication (we strongly recommend this). Don't share your login credentials. Log out when using shared devices. Report suspicious activity immediately.
No system is completely bulletproof, but we invest heavily in security because your trust matters. If we ever experience a data breach that affects your information, you'll hear about it from us directly — not from the news.
Data Retention and Deletion
We don't keep your information forever. Different types of data have different retention periods based on legal requirements and business needs:
Active Account Data
While your account is active, we retain all associated data to provide continuous service. You can delete specific documents or reports anytime through your account settings.
Closed Account Data
When you close your account, we begin the deletion process. Most data is removed within 30 days. However, some information must be retained longer for legal compliance:
- Financial transaction records: retained for 5 years per South Korean tax law
- Account registration information: retained for 3 years under PIPA requirements
- Customer support communications: retained for 3 years for quality and dispute resolution
- Security logs: retained for 1 year to investigate potential fraud or unauthorized access
Backup Systems
Deleted data may persist in backup systems for up to 90 days before being permanently removed. These backups are encrypted and inaccessible for normal operations — they're only used for disaster recovery.
After the applicable retention period expires, we permanently delete your information using secure deletion methods that prevent recovery.
International Data Transfers
Our primary operations are in South Korea, but we use some cloud services with servers in other countries. When your data is transferred internationally, we ensure adequate protection through:
- Standard contractual clauses approved by South Korean authorities
- Certification that foreign processors meet equivalent privacy standards
- Technical safeguards like encryption during transit and storage
- Legal agreements requiring foreign partners to comply with South Korean privacy principles
Most of our infrastructure is located within South Korea or in countries with adequate privacy protections. We don't transfer data to jurisdictions with weak privacy laws unless absolutely necessary and properly safeguarded.
Children's Privacy
Our platform is designed for adults managing financial statements. We don't knowingly collect information from anyone under 14 years old. If you're a parent and believe your child has provided us with personal information, contact us immediately at help@fluxisenergy.com and we'll delete it.
Changes to This Policy
Privacy practices evolve. When we make significant changes to this policy, we'll notify you by email at least 30 days before the changes take effect. Minor updates (like clarifying existing practices or fixing typos) won't trigger notifications, but we'll always update the "Last Updated" date at the top.
You can find previous versions of this policy by contacting us. If you disagree with policy changes, you can close your account before they take effect.
South Korea-Specific Provisions
As a company operating in South Korea, we comply with the Personal Information Protection Act (PIPA) and related regulations. This includes:
- Appointing a Chief Privacy Officer responsible for data protection compliance
- Registering with the Korea Internet & Security Agency (KISA) as required
- Following Korean standards for consent, notification, and data subject rights
- Cooperating with the Personal Information Protection Commission on investigations
- Maintaining records of processing activities as required by Korean law
If you have concerns about how we handle your data that we can't resolve directly, you have the right to file a complaint with the Personal Information Protection Commission or the Korea Internet & Security Agency.