LOREATEC K.K. — Starlink installation and IT-support services. This is a summary; the Japanese text above is the operative version.
Last updated: [ ] · Issued by LOREATEC K.K.
LOREATEC K.K. ("we") handles personal information in compliance with Japan's Act on the Protection of Personal Information ("APPI") and related guidelines, in providing the Starlink Installer Partner Platform and the IT Support Platform (together, the "Service").
The section below is a summary for convenience, not the policy itself. The Japanese text is the operative version and is the one that governs.
Summary of key points
Who this covers — one policy for both of our lines of business: Starlink installation partners, IT-support partners, the technicians those partners employ, end customers having Starlink installed, and the staff of client companies who commission IT-support work. What we collect, why, and who receives it differ by role — the sections below say which is which.
Data we collect — Partners (either line): name, entity type, address, phone, email, bank details including the bank and branch codes, business-verification documents (開業届 / registration), coverage/availability, performance score. Technicians employed by a partner: name, contact details, and qualification certificates, supplied to us by the partner. End customers: name, contact, installation address/postal code, survey notes/photos, on the scale needed to arrange installation — received from the SBPM/Starlink order system for Starlink-sourced jobs, or directly from the customer when they order the installation from us. Client-company contacts (IT support): name, department, contact details, site address, and the on-site contact for a given job. Access data: cookies, IP, logs, clickwrap consent records.
Purposes — partner vetting & account management; job routing, scheduling, completion & quality control; payment/billing/tax; scoring & service improvement; arranging installation using end-customer data and entrusting it to the assigned partner as necessary; arranging IT-support work for a client and passing what the assigned partner and technician need; providing the assigned partner's name and the technician's name, email and phone to the IT-support client so the visit can be arranged and the technician admitted to the site; legal compliance and support.
Third-party sharing / entrustment — We do not provide personal data to third parties without consent except as permitted by law. For Starlink-sourced jobs only, we receive customer data from the SBPM/Starlink order system and send order/progress/completion data back to it. Installations a customer orders from us directly, and all IT-support work, are never shared with SBPM or Starlink — the IT-support line is an unrelated business and neither party has access to its data. We entrust customer data to the assigned installer partner, and client and on-site contact data to the assigned IT-support partner, to perform the job — under a written data-handling agreement (confidentiality, purpose limitation, security, return/deletion on termination), with our supervision. Separately, and as a genuine provision to a third party rather than entrustment, we give the IT-support client the assigned partner's name and the technician's name, email and phone; partners consent to this at registration, we record what was provided to whom, and we limit it to what that job requires.
Cross-border — This applies to Starlink-sourced installation jobs only. For those, we may exchange order/completion data with a US-based SBPM entity as needed. Directly-ordered installations and IT-support data are not transferred outside Japan. Before providing personal data to a third party in a foreign country, APPI art. 28 requires us to first tell you the recipient's country, how that country protects personal data, and what safeguards the recipient has in place, and then obtain your consent to that specific foreign transfer (or, alternatively, put a compliant transfer framework in place with the recipient and say so here). (The recipient entity, country and basis are to be inserted once finalised; until then we make no such transfer.)
Security — organisational, personnel, physical and technical measures (access control, TLS, permissions, audit logs, supervision of entrusted parties).
Your rights — you may request notification of purpose, disclosure, correction, deletion, or suspension of use/provision of your retained personal data via the contact below.