Governance Privacy policy

illust
illust

Established on September 28, 2007
Revised on June 30, 2026

Ceres Inc.
Satoshi Takagi, President and Representative Director

Ceres Inc. (hereinafter "we") conducts business with the aim of becoming a company that "realizes a prosperous world through Internet marketing." In receiving personal information from customers in connection with our services, we are acutely aware of the importance of protecting personal information in today's advanced information society.

We will continuously provide thorough information security training to our officers and employees and strive to protect personal information.

In addition, we have defined the following items as our privacy policy. We declare that we will always pay attention to evolving social demands and make company-wide efforts to continually improve our personal information protection management system, etc.

Matters concerning the acquisition, use, and provision of personal information

  • (1) Personal information shall be acquired, used, and provided in an appropriate manner. Personal information acquired shall not be used for any purpose other than the intended purpose and measures shall be implemented to avoid its use for any other purpose.
  • (2) When outsourcing the handling of personal information, we will select a subcontractor that meets our personal information protection standards, conclude an outsourcing agreement to protect personal information, and thoroughly implement appropriate management and supervision of the subcontractor.

Matters concerning the safety of personal information

  • (1) We will implement reasonable safety measures to prevent accidents such as loss, damage, or leakage of personal information, and correct any problems.
  • (2) If a customer requests a notification of the purpose of use, disclosure, correction, addition or deletion, or refuses to provide or let us use their personal information, the person in charge will respond promptly. We will respond only after confirming the identity of the individual, and will prevent unauthorized falsification of personal information by third parties.

Matters concerning compliance with laws and regulations

  • (1) With regard to the handling of personal information, we will comply with Japanese laws and regulations, guidelines established by the government, and other rules concerning the protection of personal information.

Matters concerning the handling of complaints and consultations

  • (1) We will respond promptly to complaints and inquiries regarding personal information.

Matters concerning continuous improvement of the personal information protection management system

  • (1) Our personal information protection management system will continue to improve as relevant laws and regulations are revised and social conditions change.

Disclosure, Correction, Deletion, etc. of Personal Information

  • With respect to personal information managed by us, only the individual concerned may request notification of the purpose of use, disclosure, correction, addition or deletion, or refusal of use or provision. Please contact the person in charge at the contact information below.

Inquiries Regarding Personal Information

  • If you have any complaints, questions, or other inquiries concerning our handling of personal information, please contact the person in charge at the contact information below.

  • Shibuya Sakura Stage SHIBUYA Tower 21F, 1-1 Sakuragaokacho, Shibuya-ku, Tokyo 150-6221, Japan
    Person in Charge of Personal Information Consultation Desk
    privacy@ceres-inc.jp

>> Personal information handled by us

We are working to appropriately protect personal information in accordance with our privacy policy. We will notify you of the personal information we acquire or retain for the purpose of our business as follows.

(1) The name and address of the business operator handling personal information and, in the case of a juridical person, the name of its representative

  • Company name:
    Ceres Inc.
  • Representative Director:
    Satoshi Takagi
  • Address:
    Shibuya Sakura Stage SHIBUYA Tower, 21 Floor 1-1 Sakuragaokacho, Shibuya-ku, Tokyo 150-6221, Japan

(2) Name, title, affiliation, and contact address of the personal information protection manager (or his/her agent)

(3) Intended use of personal information

The purpose of use of personal information we handle in our business activities shall be as follows.

1) Retained personal data

Type of personal information

Purpose of use

Business partners' information

For business management, communication, billing and payment management

Employee information

For work related to employee management (business, labor, personnel management, payroll, welfare, etc.)

Information on applicants for employment

For recruitment-related work (providing information on recruitment, making decisions on recruitment, communications, etc.)

Information on retirees

For contacting retirees and responding to inquiries from retirees

Query person information

In response to inquiries

Information of an individual (requesting disclosure of information, etc.) or agent

In response to requests for disclosure

In addition, the purpose of use shall be as specified separately in documents.

2)Other personal information acquired

Type of personal information

Purpose of use

Personal information acquired through entrusted operations

For use in contracts and related communications, outsourced operations and after-sales support, etc.

Information acquired from recruiting sites

To judge and notify job applicants as to whether they will be hired

(4) Contact point for inquiries regarding personal information

For complaints, consultations, or inquiries regarding the handling of personal information, including matters concerning retained personal data, please contact the [Inquiry Desk] below.

(5) Name of the accredited personal information protection organization to which we belong and contact for filing complaints

* Only complaints regarding the handling of personal information are accepted.
JIPDEC (Japan Institute for Promotion of Digital Economy and Community)
Accredited Personal Information Protection Organization Administrative Office
Roppongi First Building, 1-9-9 Roppongi, Minato-ku, Tokyo 106-0032, Japan
0120-700-779

(6) Procedures for disclosure, etc.

With respect to retained personal data, we will promptly respond to requests by the individual for disclosure, etc. (notification of the purpose of use; disclosure; correction, addition or deletion of content; suspension of use; erasure; suspension of provision to third parties; and disclosure of records of provision to third parties). If you wish to make such a request, we will respond within a reasonable period and scope after confirming that the person making the request is the individual concerned or his/her agent.

(7) Method and contact point for requesting disclosure, etc.

For requests for disclosure, etc. regarding retained personal data, please contact the reception desk below. Upon receiving your inquiry, we will send you our prescribed "Request Form for Disclosure, etc. of Retained Personal Data" by postal mail, fax, e-mail, or other means. Please complete the form, enclose the required documents, and submit it by postal mail, e-mail, or other means. (The applicant is responsible for postage and other sending costs.)
After confirming that the applicant is the individual concerned (or his/her agent), we will respond using the requested method of disclosure.

(8) Measures taken for secure management of personal information

In order to handle personal information in a strict manner, we have formulated regulations concerning personal information based on a privacy policy that conforms to JIS Q 15001 and are operating the personal information protection management system.
In order to ensure the proper handling of personal information, we have taken safety management measures from four perspectives: organizational, human, physical, and technical.

Organizational Security Control Measures

  • • A person responsible for the handling of personal data is appointed; the employees who handle personal data and the scope of personal data handled by such employees are clearly defined; and a reporting and communication system to the responsible person is established for cases where facts or indications of violations of laws or handling rules are identified.
  • • Self-inspections of the status of personal data handling are conducted regularly, and audits are conducted by other departments or external parties.

Human Security Control Measures

  • • Employees receive regular training on points to be observed in the handling of personal data.
  • • Matters concerning confidentiality of personal data are stipulated in the work rules.

Physical Security Control Measures

  • • In areas where personal data is handled, employee access is controlled and restrictions are imposed on devices and other items brought into such areas, and measures are implemented to prevent persons without authority from viewing personal data.
  • • Measures are taken to prevent theft or loss of devices, electronic media, documents, and other items that handle personal data, and when such devices or electronic media are carried, including movement within business premises, measures are taken so that personal data cannot be readily identified.

Technical Security Control Measures

  • • Access controls are implemented to limit the personnel and the scope of personal information databases, etc. that may be handled.
  • • Mechanisms are introduced to protect information systems that handle personal data from unauthorized external access and malicious software.

Shibuya Sakura Stage SHIBUYA Tower 21 Floor 1-1 Sakuragaokacho, Shibuya-ku, Tokyo 150-6221, Japan
Person in Charge of Personal Information Consultation Desk
E-mail: privacy@ceres-inc.jp