PRIVACY NOTICE · AUGUST 2026
Privacy, kept practical.
K-Beauty Deal Match is operated by K-BEAUTY DEAL MATCH, a registered sole-proprietor information-service business in the Republic of Korea. Customer, accessibility and privacy inquiries can be sent to info@kbeautydealmatch.com or through our secure contact form. Retailer and affiliate inquiries can use the separate partnership contact form.
What we collect
When you use Sign in with ChatGPT, the identity service provides your verified email address and may provide your profile name. K-Beauty Deal Match does not receive or store your ChatGPT password or the credentials used with the sign-in provider.
We collect the email address you choose to provide, your signed-in account identifier, saved market, skin type, sensitivity, cosmetic concerns, ingredient exclusions, budget, routine preference, consent choices, saved items, recommendation snapshots, structured private recommendation feedback and alert-delivery history. If you previously used a repeat-product tool, its selected product, market, refill interval, optional purchase date and optional target total remain part of your account data until you delete them. Private shortlist records store only selected product references, market, expiry and revocation metadata; the secret link token is stored only as a one-way hash. Climate snapshots use the broad city or region you select, not precise GPS or a street address. We store that location code with country-specific budget and climate settings so the site can prepare one local daily plan without another click.
Retail partnership inquiries store the company, contact name, business email, optional website, markets, partnership category, message, consent and review outcome so we can assess and respond.
Contact requests store the name, email, selected market, topic, message, consent record and review outcome needed to respond. The retired beta questionnaire records are erased during migration and scheduled maintenance. Launch-waitlist signups are removed after 90 days unless a new, disclosed purpose and consent applies.
Catalog corrections and product requests store the market, product or retailer details you submit, a cleaned page URL when supplied, an optional reply email and the review outcome. URL query parameters and fragments are removed before storage. Scheduled maintenance deletes these records once they reach 730 days from submission, whether or not review has been resolved. Signed-in users can export or delete records tied to their verified email, and anonymous submitters may contact us.
What we do not request
This version does not request face photographs, biometric templates, medical diagnoses, prescriptions, payment-card details or government identifiers. This service does not currently request card details.
Why we use the data
We use it to maintain the alert you requested, send qualifying price-drop notices, create and save explainable cosmetic matches, screen sourced ingredient names against declared terms, maintain saved products, prevent duplicate delivery, maintain saved comparison settings, improve recommendation quality from structured private feedback, review partnership inquiries, measure aggregate retailer interest and respond to deletion requests. Weather providers receive only the coordinates of the broad saved city or region; they do not receive your account, skin type, ingredient exclusions, pregnancy or nursing choice.
To limit automated abuse, we keep a short-lived keyed digest derived from the network address seen by our hosting provider. We do not keep the raw address in that rate-limit table, and those records are removed after the short enforcement window. Operational error records are scrubbed for email addresses, secret links and provider credentials before storage or alert forwarding. Cleaned client-error diagnostics may include the route, an error summary or digest and a scrubbed browser user-agent for up to 90 days.
Optional sensitive profile fields
Ingredient exclusions or allergies and a pregnancy or nursing safety choice are optional private profile fields. We store and use them only after you make the separate choice shown beside those fields. Editing either field requires that choice again. You can withdraw it by clearing the fields and saving the profile, or by deleting the account. Clearing both fields also deletes prior recommendation snapshots and feedback that could contain sensitive-profile reasoning. A profile saved under an older or missing consent version is not used for those safety filters until you choose again.
First-party service analytics
We set a secure first-party random visitor cookie for up to one year and record the page route, selected launch market, referring hostname and visit time. We do not store the visitor’s IP address in this analytics table, and a browser Do Not Track or Global Privacy Control signal—or the choice below—disables the page record. Page-view records are removed after 400 days. Secret capability routes—including private shortlists, alert management, confirmation and retailer redirect tokens—are excluded from page-view tracking and their raw tokens are redacted from operational errors.
Your analytics choice
Turning analytics off also removes this browser’s random visitor cookie and its matching page-view rows.
Email alert confirmation
A new email price alert remains inactive until its confirmation link is deliberately approved. Opening the page alone does not activate an alert. Token records are stored as one-way hashes. Complete confirmation or management links exist only inside encrypted pending-delivery jobs, which are erased after delivery or cancellation. Confirmation links expire after 24 hours; management links expire after 90 days and are rotated after successful delivery. They are never used as advertising consent.
Service providers and data recipients
OpenAI Sites and its Cloudflare infrastructure provide the authentication dispatch, web hosting, database, object storage and private recovery-backup layers. Those services necessarily process ordinary request metadata and the application records stored for the purposes described above. Resend receives the destination address and message content only when an email is sent. Telegram receives a chat identifier and bot message when you choose Telegram delivery. Our workflow-monitoring provider receives pseudonymous event identifiers and scrubbed operational summaries used to monitor scheduled work; it does not receive profile answers.
These infrastructure and communications providers may process data outside the Republic of Korea. Contact us for privacy, transfer or complaint questions using the details at the top of this notice.
Sharing
Retailers receive information when you follow their link. Before a click, an approved retailer or product-image CDN may also receive the normal network address, browser information and request time when its product image loads; image requests suppress the page referrer and do not include your saved profile, email or alert data. We do not sell or send your skin questionnaire answers to retailers for advertising.
A private shortlist is accessible to anyone who has its secret link. It shows only public verified product information and the selected market—not your name, email, skin profile, allergies, pregnancy or nursing choice, budget, alerts or recommendation reasons. Links expire after 30 days and can be revoked immediately from the account. Do not post a private link where you do not want it redistributed.
Recommendation check-ins are private account records. This version does not publish customer star ratings, comments, profiles or a community feed.
Retention and requests
You can stop an alert without deleting the full account, remove saved records, revoke private links or request account deletion. Expired or revoked shortlist metadata is removed on the retention schedule. Scheduled maintenance deletes partnership, customer-contact, catalog-correction and product-request records once they reach 730 days from submission, regardless of review status. Transaction and operational logs may be retained where required for tax, disputes, security or audit.
Telegram alert users can send /stop to pause delivery or/delete to erase the stored Telegram chat identifier, deactivate Telegram alerts, and erase delivery references. The deactivated product, market and target preferences remain as minimal alert history. If the same subscriber record also has an independently verified email address, the Telegram command does not delete that email identity.
To exercise an access, correction, export or deletion request, use the account privacy controls, the contact form, or email info@kbeautydealmatch.com. We may need to verify that a request concerns your account before acting on it.
Encrypted backups are access-restricted and used only for service recovery. A deleted record may remain in a backup until that backup expires.
