ISEKI & CO.,LTD.

Global Privacy Policy

Last updated: September 1, 2026
Representative Director and President
ISEKI CO., LTD.

1. Introduction

ISEKI CO., LTD. (“ISEKI,” “we,” or “our”) processes the personal data of customers of ISEKI and ISEKI’s affiliates (including persons who access our websites and potential customers and persons who make inquiries or reports to, or otherwise provide information to, ISEKI; the same applies hereinafter), trading partners of ISEKI and ISEKI’s affiliates, such as retailers, distributors, and trading partners (including potential trading partners; the same applies hereinafter), officers and employees of ISEKI and ISEKI’s affiliates (the “Officers and Employees”), shareholders of ISEKI, and job applicants for ISEKI (for customers, trading partners, and shareholders that are companies, this includes the Officers and Employees, and the like of such companies; the same applies hereinafter; those persons whose personal data is subject to processing are collectively referred to as “you” unless specified otherwise) as follows.
This Privacy Policy (this “Policy”) explains the categories of personal data we collect from you, the purposes of data processing, how we process your personal data, persons with whom we share data, and your rights.  Please read this Policy carefully to understand it.
ISEKI may provide an addendum to this Policy to comply with data protection laws applicable to specific countries or regions.  If such addendum applies to you, this Policy and such addendum will apply together.  If this Policy conflicts with such addendum, then such addendum will prevail.

2. ISEKI’s information and contact details

For questions and inquiries regarding this Policy, or if you wish to exercise your rights, please contact us using the contact details below:

Address:
Personal Information Protection Consultation Desk, Legal and Compliance Department, ISEKI CO., LTD.
5-3-14, Nishi-Nippori, Arakawa-ku, Tokyo, Japan 116-8541

To contact us, please use the “Contact” form.

3. Categories of personal data we obtain

(1) Personal data of customers and trading partners

  • Personal identity and contact detail information.
    Name, address, name of the corporation or organization to which the customer or trading partner belongs, division of the corporation to which the customer or trading partner belongs, job type, job title, contact information, such as telephone number, fax number and e-mail address, and unique identifiers
  • Personal attribute information.
    Age, gender, date of birth, occupation, nationality, and other attribute information
  • Business transaction and contract information. Contract information, purchase history, details of transactions, sales negotiation histories, estimate information, order information, payment information, billing information, credit information, details of inquiries, response information, and other information related to business transactions
  • Product and service information.
    Owned product information, product registration information, warranty information, repair history, inspection history, maintenance history, service usage history, and other information related to the use of products and services
  • Technical information and machine-related information.
    Product identification information, machine operation information, diagnostic information, location information, communication logs, and other technical or machine-related information
  • Website and system usage information.
    IP addresses, cookie information, log information, access history, browsing history, information regarding the device and browser used, and other information related to the use of the website or system
    ISEKI may use cookies and other similar technologies.
    For the details of the use of cookies, etc. please see here.
  • Marketing and event information.
    Questionnaire responses, history of participation in seminars, trade shows and similar events, information regarding campaign entries, information regarding interests and preferences, and other information related to marketing activities
  • Security inquiry information.
    Details of reports regarding vulnerabilities and other security issues, information regarding the target products, software or services, attached materials, and histories of contacts with, and responses from, us

(2) Personal data of Officers and Employees

  • Personal identity and contact detail information.
    Name, address, telephone number, e-mail address, company to which the Officer or Employee belongs, division to which the Officer or Employee belongs, job title, employee number, and other information necessary for identity verification or business-related communications
  • Information regarding human resources, labor affairs, and employment management.
    Personnel information, attendance information, payroll information, employee benefits information, health information, education and training information, and other information related to human resources, labor affairs, and employment management
  • Operational and group management information.
    Job responsibilities, work history, business communications and reports, information regarding the organization and personnel, and other information necessary for the business operations, management, and support of ISEKI or ISEKI’s group

(3) Personal data of shareholders

  • Personal identity and contact detail information.
    Name, address, e-mail address, date of birth, nationality, and other information necessary for identity verification or communications
  • Share and shareholder management information.
    Information recorded in the shareholder register, number of shares owned, shareholder number, information regarding dividends, information regarding the exercise of voting rights, and other information necessary for shareholder management

(4) Personal data of job applicants

  • Personal identity and contact detail information.
    Name, address, telephone number, e-mail address, date of birth, age, and other information necessary for identity verification or communications
  • Screening information.
    Resume, work history, school history, job history, qualifications, facial portrait, reason for applying, screening records, interview results, and other information related to the recruitment or screening process
  • Website and recruitment system usage information.
    IP addresses, cookie information, log information, access history, information regarding the device and browser used, and other information related to the use of the recruitment website or system

4. Obligation to provide personal data and consequences of failure to do so

The provision of personal data may be required in cases where it is required by law, regulation, or contract, or where it is necessary to conclude a contract.  The specific details are as follows.

(1) Personal data of customers and trading partners

Certain personal data is necessary for concluding or performing a contract, providing our products or services, managing business relationships, or responding to your inquiries.  If you do not provide such personal data, we may be unable to provide the products or services you request, respond to your inquiries, conclude or perform a contract, or conduct other transactions.

(2) Personal data of Officers and Employees

Certain personal data is necessary for managing employment relationships, managing human resources or labor affairs, paying compensation, providing employee benefits, conducting business-related communications or coordination, managing our group, or performing obligations under laws and regulations.  If you do not provide such personal data, we may be unable to carry out these procedures, management tasks, or other necessary actions.

(3) Personal data of shareholders

Certain personal data is necessary for performing obligations under the Companies Act and other laws and regulations, conducting administrative work relating to shares or shareholders, and dealing with the exercise of rights by shareholders.  If you do not provide such personal data, we may be unable to deal with the exercise of rights by shareholders or carry out other necessary procedures.

(4) Personal data of job applicants

Certain personal data is required for accepting job applications, conducting screening, or, in the event of a job applicant being hired, concluding an employment contract and carrying out onboarding procedures.  If you do not provide such personal data, we may be unable to accept your job application, conduct screening, conclude an employment contract, or carry out other necessary procedures.

5. Purposes for which ISEKI processes personal data

ISEKI processes personal data we obtain for the following purposes.

(1) Purposes of processing personal data of customers and trading partners

  1. To conduct identity verification and personal authentication
  2. To provide the products and services, and to conclude and perform agreements relating thereto
  3. To deliver products, invoices, promotional giveaways, and other items
  4. To perform, verify, and record construction work, after-sales service, repairs, inspections, and maintenance, etc.
  5. To carry out communications, negotiations, meetings, and sales negotiations necessary for business operations
  6. To respond to inquiries and requests for materials
  7. To provide information regarding products and services through visits, catalog mailings, emails, and other means
  8. To manage and operate promotions, seminars, trade shows, and other events
  9. To conduct questionnaires, market research, and business analysis
  10. To conduct design, manufacturing, and quality control
  11. To develop new products and services, and to improve existing products and services
  12. To collect and analyze technical information
  13. To manage information regarding, and business relationships with, retailers, distributors, suppliers and trading partners
  14. To procure raw materials, parts, products, services, and other items
  15. To conduct credit decisions and debt management
  16. To receive, investigate, analyze, respond to, and address inquiries regarding vulnerabilities and other security matters
  17. To maintain and enhance the security of our products, services, and information systems
  18. To generate statistical information and other non-personally identifiable information
  19. To carry out audits, compliance, and risk management, and to prevent and deal with misconduct
  20. To perform obligations under laws and regulations
  21. To establish, exercise, and defend the rights of ISEKI or third parties

(2) Purposes of processing personal data of Officers and Employees

  1. To conduct communications necessary for business operations and operational management
  2. To conduct recruitment, placement, transfers, performance evaluations, education, training, and other human resources management
  3. To pay wages, bonuses, various allowances, and other compensation
  4. To manage attendance, labor affairs, and employment relationships
  5. To provide employee benefits, and to manage health, safety, and work environment
  6. To manage information systems, facilities, and information security
  7. To conduct business-related communications or coordination between ISEKI and ISEKI’s affiliates
  8. To manage, support, and report on business, organization, and operations of ISEKI’s group
  9. To carry out legal affairs, compliance, risk management, audits, accounting, finance, human resources, information systems, and other group management operations
  10. To perform tax, social security, and other legal obligations
  11. To perform obligations under laws and regulations
  12. To establish, exercise, and defend the rights of ISEKI, ISEKI’s affiliates, or third parties

(3) Purposes of processing personal data of shareholders

  1. To conduct administrative work relating to shares and shareholders
  2. To deal with the exercise of rights by shareholders and to perform our obligations
  3. To prepare and retain records and carry out various procedures under the Companies Act and other applicable laws and regulations
  4. To communicate with and provide information to shareholders
  5. To respond to legal claims
  6. To establish, exercise, and defend the rights of ISEKI or third parties

(4) Purposes of processing personal data of job applicants

  1. To conduct recruitment and screening
  2. To communicate with and provide information to job applicants
  3. To verify the identity, eligibility, background, suitability, and other matters of the job applicant
  4. To improve recruitment and screening
  5. To conclude an employment contract and carry out onboarding procedures in the event of a job applicant being hired
  6. To perform obligations under laws and regulations
  7. To establish, exercise, and defend the rights of ISEKI or third parties

6. Legal basis for processing

ISEKI processes your personal data on the following legal bases, to the extent required by and applicable under the applicable data protection laws.  If your consent is required under the applicable data protection laws, the legal basis for processing is your consent.  If the addendum for each country provides otherwise, the provisions of such addendum will prevail.

(1) Personal data of customers and trading partners

Purpose of processing Legal basis for processing
  1. To conduct identity verification and personal authentication
  2. To provide the products and services, and to conclude and perform agreements relating thereto
  3. To deliver products, invoices, promotional giveaways, and other items
  4. To perform, verify, and record construction work, after-sales service, repairs, inspections, and maintenance, etc.
  5. To carry out communications, negotiations, meetings, and sales negotiations necessary for business operations
  6. To respond to inquiries and requests for materials
  • Legitimate interests in providing services
  1. To provide information regarding products and services through visits, catalog mailings, emails, and other means
  2. To manage and operate promotions, seminars, trade shows, and other events
  • Legitimate interests in operating our business
  • Consent, where required by applicable laws and regulations, such as direct marketing regulations
  1. To conduct questionnaires, market research, and business analysis
  2. To conduct design, manufacturing, and quality control
  3. To develop new products and services, and to improve existing products and services
  4. To collect and analyze technical information
  5. To manage information regarding, and business relationships with, retailers, distributors, suppliers and trading partners
  6. To procure raw materials, parts, products, services, and other items
  7. To conduct credit decisions and debt management
  8. To receive, investigate, analyze, respond to, and address inquiries regarding vulnerabilities and other security matters
  9. To maintain and enhance the security of our products, services, and information systems
  10. To generate statistical information and other non-personally identifiable information
  • Legitimate interests in operating our business
  1. To carry out audits, compliance, and risk management, and to prevent and deal with misconduct
  2. To perform obligations under laws and regulations
  • Legal obligations
  • If processing based on a legal obligation to comply with foreign laws and regulations is not permitted under the applicable data protection laws, legitimate interests in complying with such laws and regulations
  1. To establish, exercise, and defend the rights of ISEKI or third parties
  • Legitimate interests in establishing, exercising, and defending the rights of ISEKI or third parties

(2) Personal data of Officers and Employees

Purpose of processing Legal basis for processing
  1. To conduct communications necessary for business operations and operational management
  2. To conduct recruitment, placement, transfers, performance evaluations, education, training, and other human resources management
  3. To pay wages, bonuses, various allowances, and other compensation
  4. To manage attendance, labor affairs, and employment relationships
  5. To provide employee benefits, and to manage health, safety, and work environment
  6. To manage information systems, facilities, and information security
  7. To conduct business-related communications or coordination between ISEKI and ISEKI’s affiliates
  8. To manage, support, and report on business, organization, and operations of ISEKI’s group
  9. To carry out legal affairs, compliance, risk management, audits, accounting, finance, human resources, information systems, and other group management operations
  • Legitimate interests in operating our business
  1. To perform tax, social security, and other legal obligations
  2. To perform obligations under laws and regulations
  • Legal obligations
  • If processing based on a legal obligation to comply with foreign laws and regulations is not permitted under the applicable data protection laws, legitimate interests in complying with such laws and regulations
  1. To establish, exercise, and defend the rights of ISEKI, ISEKI’s affiliates, or third parties

(3) Personal data of shareholders

Purpose of processing Legal basis for processing
  1. To conduct administrative work relating to shares and shareholders
  2. To deal with the exercise of rights by shareholders and to perform our obligations
  3. To prepare and retain records and carry out various procedures under the Companies Act and other applicable laws and regulations
  4. To communicate with and provide information to shareholders
  • Legal obligations
  • If processing based on a legal obligation is not permitted under the applicable data protection laws, legitimate interests in managing our business
  1. To respond to legal claims
  • Legal obligations
  • If processing based on a legal obligation to comply with foreign laws and regulations is not permitted under the applicable data protection laws, legitimate interests in complying with such laws and regulations
  1. To establish, exercise, and defend the rights of ISEKI or third parties
  • Legitimate interests in establishing, exercising, and defending the rights of ISEKI or third parties

(4) Personal data of job applicants for ISEKI

Purpose of processing Legal basis for processing
  1. To conduct recruitment and screening
  2. To communicate with and provide information to job applicants
  3. To verify the identity, eligibility, background, suitability, and other matters of the job applicant
  4. To improve recruitment and screening
  • Legitimate interests in conducting our recruitment process
  1. To conclude an employment contract and carry out onboarding procedures in the event of a job applicant being hired
  • Performance of contractual obligations and preparation for concluding a contract
  1. To perform obligations under laws and regulations
  • Legal obligations
  • If processing based on a legal obligation to comply with foreign laws and regulations is not permitted under the applicable data protection laws, legitimate interests in complying with such laws and regulations
  1. To establish, exercise, and defend the rights of ISEKI or third parties
  • Legitimate interests in establishing, exercising, and defending the rights of ISEKI or third parties

7. Sources and methods of obtaining personal data

ISEKI obtains your personal data from the following sources or by the following methods.

  1. Obtaining personal data directly from you
    ISEKI collects certain personal data directly from you when you use our website, use our products or services, or contact us.
  2. Information that we automatically obtain
    Our website automatically collects certain categories of data related to you when you browse our website. In addition, if permitted by your device settings, ISEKI collects equipment usage data (including location information) from your equipment, device or other similar services.
  3. Information obtained from a third party
    ISEKI collects some of your personal data from business partners such as our affiliates, retailers, distributors, and trading partners.
    In addition, ISEKI may obtain your personal data from public information or other information sources that are lawfully available.

8. Disclosure of personal data to third parties

ISEKI may disclose or share personal data with the following recipients or categories of recipients to the extent necessary for achieving the purposes of processing personal data set out in Section 4.

  1. ISEKI’s affiliates (listed here)
    ISEKI may share personal data with our affiliates for the purposes of group-wide business operations, customer service, provision of products, administrative operations, and other purposes set out in this Policy.
  2. Business partners
    ISEKI may share personal data with retailers, distributors, and other business partners for the purposes of selling products, handling warranty claims, providing repair and maintenance services, responding to inquiries, and other purposes set out in this Policy.
  3. Contractors
    ISEKI may outsource system operations, use of cloud services, delivery of products, response to inquiries, data analysis, and other operations to third parties, and ISEKI may share personal data to the extent necessary for performing such operations.
  4. Other third parties
    ISEKI may disclose personal data to third parties when required by laws and regulations, when requested by a court, regulatory authority, or other public agency, or when necessary to protect the rights, property, or safety of ISEKI or a third party. In addition, ISEKI may disclose or share personal data with third parties with your consent or when otherwise permitted by applicable data protection laws and regulations.
  5. Business restructuring
    ISEKI may disclose or transfer personal data in connection with mergers, corporate splits, business transfers, or other organizational restructurings or business succession.

9. International data transfer

For the purposes set out in this Policy, ISEKI may process your personal data outside the country where you reside, or transfer it to recipients described in the preceding Section that are located outside the country where you reside, or permit such recipients to access it.  In such cases, ISEKI will take necessary and appropriate measures in accordance with applicable data protection laws and regulations.  For details of the legal bases and safeguards applicable to cross-border transfers, please refer to the addendum applicable to you, if any.

10. Data retention period

ISEKI retains personal data for the period necessary to achieve the purposes for which it was obtained and processed.
The retention period is determined by taking into account the category of personal data, the purpose of processing, contractual relationships, retention obligations under laws and regulations, the need to address disputes, and other relevant circumstances.
Once the retention period has expired or the need for retention no longer exists, ISEKI will delete or anonymize the personal data in accordance with applicable laws and regulations.

11. Safety management measures

ISEKI will take necessary and appropriate measures such as countermeasures against unauthorized access and countermeasures against computer viruses to prevent loss, destruction, falsification, leaking, and the like of personal data.
In addition, ISEKI will exercise necessary and appropriate supervision over Officers and Employees, and contractors, etc. to protect personal data.

12. Your rights

You have certain legal rights regarding personal data held by ISEKI under the applicable data protection regulations.  For example, to the extent granted under the applicable data protection regulations, you may have rights such as the following: right to access; right to rectification; right to erasure; right to restriction of processing; right to objection to processing; right to withdraw consent (it may be granted if you have given consent regarding certain types of processing activities; however, your withdrawal of consent does not affect the lawfulness of processing conducted based on your consent before the withdrawal); right to data portability; and right not to be subject to automated decision-making. 
If you wish to exercise those rights, please contact us using the contact details stated in Section 2.

13. Amendment to this Policy

If ISEKI intends to amend this Policy, we may amend all or part of, or make an addition to, this Policy by publishing that amendment or addition on our websites, sending an e-mail to that effect to you, or giving notice by any other method that we deem appropriate.  In such a case, the post-amendment version of this Policy will be applied from the earlier of the date on which you use our product or service or access our websites for the first time after receiving such notice, or the date stated in such notice.


EEA and UK Privacy Addendum

Last Updated: September 1, 2026

1. Applicability

This Addendum applies to you to the extent the GDPR (including the UK GDPR; the same applies hereinafter), the data protection laws applies to you.

2. Purposes of processing and legal basis for processing

We process personal data set out in Section 3 of the Global Privacy Policy in order to achieve the purposes set out in Section 5 of the Global Privacy Policy on the legal basis prescribed in Section 6 of the Global Privacy Policy.
To clarify, the basis for compliance with EEA and UK laws is legal obligations, and the legal basis for compliance with other foreign laws and regulations is legitimate interests.
Additionally, regarding the balancing test for legitimate interests under the GDPR (Article 6.1(f) of the GDPR), please contact us using the contact details stated in Paragraph 2 of Section 11 of the Global Privacy Policy.

Furthermore, with respect to “(2) Personal data of Officers and Employees,” if we process health information or other special categories of personal data as set out in Article 9.1 of the GDPR, we will process such personal data, in addition to the legal bases described above, on the conditions of performing obligations or exercising rights in the field of employment, social security, or social protection (Article 9.2(b) of the GDPR) or where applicable, assessing occupational health or work capacity (Article 9.2(h) of the GDPR), or other applicable conditions set out in Article 9.2 of the GDPR.

3. Overseas transfer of personal data

If we transfer personal data to a country or region outside of the EEA or UK, then the following applies for that transfer.  (1) If it is to a country that offers an adequate level of data protection, such as Japan, an adequacy decision will be used as the basis for the transfer (click here for information regarding adequacy decisions for transfers to Japan, and click here for information regarding adequacy decisions for transfers to the UK).  Additionally, transfers from the UK to the EEA are permitted (click here for details).  (2) If it is to a country that does not offer an adequate level of data protection, we will establish appropriate safeguards through entering into, with the recipient of the personal data, standard contractual clauses approved by the European Commission (Articles 46.2(c) and 46.5 of the GDPR) and UK Addendums to those clauses approved by the UK government.  However, as an exception, (3) the basis might also fall under a specific situation described in Article 49 of the GDPR.  For further details regarding our justification of the transfer of your personal data, or for copies of relevant documents, please contact us using the contact details in Section 2 (ISEKI’s information and contact details) of the Global Privacy Policy.

4. Rights of Data Subjects

You have the right to do the following: ask us for a copy of your personal data; ask us to correct, delete, or restrict processing of your personal data; and request to acquire from us the personal data you provide in a structured, machine-readable format.  You also have the right to object where we are processing your data for direct marketing.
In addition, you can object to the processing of your personal data in some circumstances (in particular, where we don’t have to process the information to meet a contractual or other legal requirement).  Where we have asked for your consent, you may withdraw consent at any time.  If you ask to withdraw your consent to our processing of your data, this will not affect any processing which has already taken place at that time.  When you exercise your rights, we will ask for information to check your identity; this will only involve official ID documents if this is necessary given the risk posed by the information processed.
You may exercise these rights at any time by submitting a request via the contact form below.
To contact us, please use the “Contact” form.

These rights may be limited, for example if fulfilling your request would reveal personal data about another individual, or if you ask us to delete information which we are required by law or have compelling legitimate interests to keep.  If you have unresolved concerns, you have the right to complain to a data protection authority.  In the UK, this will be the ICO.  In the EEA, this will be the Data Protection Authority which can be found here.