Privacy Policy

Information Security Basic Policy

CRECON Group is aware that it is of the utmost importance that information assets of the group and its joint ventures (hereinafter referred to as 'Group Companies') remain secure. We aim to realize our mission of enhancing corporate value by protecting the security of the information assets in our possession against various internal and external threats, by fulfilling our social responsibilities, and by maintaining consistent, stable business operations through the delivery of reliability and assurance to our customers. CRECON Group hereby declares that we have established, and will implement and enhance the following policies as a unified group standard for ensuring information security.

  1. Comply with internal regulations and rules when collecting, utilizing, or providing information assets in doing businesses.
  2. Take appropriate measures for the prevention and correction of unauthorized access, loss, divulgence, falsification, or destruction of information assets.
  3. Comply with codes and other norms applicable to information security.
  4. Provide proactive education and training for all officers and personnel who are engaged in our business to ensure they recognize the importance of information security and are fully informed on the proper use of information assets.
  5. Inspect, assess, and periodically audit compliance with information security to maintain information security, and based on the results, shall continually review and improve the information security policy.

Please refer to the respective company websites for specific security policies that supplement CRECON Group Information Security Basic Policy

CRECON Group hereby declares that we have established and will implement and enhance the following policies for the protection of personal information in order to comply with laws, regulations and other norms applicable to the protection of personal information acquired and held by Group Companies through business operations:

  1. Group Companies collect personal information using legitimate and fair means, identify the purposes of use of specific personal information, and disclose required particulars on their respective websites.
  2. Group Companies ensure that officers, personnel (including employees, part-time workers, and temporary staff), contract vendors, and all other relevant persons are thoroughly trained and instructed in handling personal information properly.
  3. Group Companies take appropriate information security measures including measures against unauthorized access and computer viruses to prevent loss, destruction, falsification, and divulgence of personal information.
  4. Group Companies sufficiently investigate potential third parties to which they are going to outsource work/service that require the provision of personal information, conclude contracts with such third parties, and take other legally required measures.
  5. Group Companies use personal information within the scope of the purpose of use, and only personnel with specific authorization may use personal information, and such use will be limited to the extent required to perform their duties..
  6. Group Companies confirm data subjects have the right to disclose, correct, suspend the use of, and/or delete their own personal information, and shall respond appropriately to such requests from them after confirming that the requests to take such action have been made by the data subjects in question.

Privacy Policy

Group Companies comply with the Act on the Protection of Personal Information and other related laws, regulations, guidelines, and norms (collectively, "Applicable Laws and Regulations"), and handle personal information appropriately as follows.

1. Purpose of Use

Group Companies will use personal information only for the following stated purposes and will not use it for any other purposes without the consent of the individual concerned, except as permitted by law or where the purpose of use has been separately notified or made public.

(1) Personal Information of Business Partners and their Personnel

In connection with the businesses conducted by Group Companies, the information obtained from business partners may include the names, business addresses, and contact information of their officers and employees. When Group Companies obtain such personal information, it will be used to the extent necessary to achieve the purposes set forth below.

  • For identity verification required to provide products and services by Group Companies.
  • For business communication.
  • For the performance of transaction and contractual rights and obligations.
  • For billing and related purposes.
  • For credit management.
  • For the provision of notifications and information regarding products and services offered by Group Companies.
  • For the proper and smooth execution of other business operations.

(2) Other Personal Information

Any personal information Group Companies obtain, as listed below, will be used only to the extent necessary to achieve the following stated purposes.

  • (a)Personal Information of Individuals who made inquiries to Group Companies
    • to verify, respond to, and address inquiries and handle other related matters.
  • (b)Personal information provided to the recruitment contacts of CRECON Group and Group Companies to perform recruitment-related operations and communicate with candidates

2. Provision of Personal Information to Third Parties

Except as permitted by law, Group Companies will not provide personal information to third parties (excluding contractors) without the consent of the individual concerned.

3. Security Management Measures

Group Companies take necessary measures for the security management of personal information to prevent its loss, destruction, falsification, and divulgence. When entrusting the handling of personal information to third parties, Group Companies select contractors who meet their defined criteria, conclude a service agreement, and monitor how the personal information is handled by the contractors through methods such as receiving periodic reports. For specific details regarding Group Companies’ security management measures, please contact the inquiry desk listed in Section 5.

4. Requests for Notification of the Purpose of Use, Disclosure, Correction, Suspension of Use of Personal Information

When Group Companies receive requests from an individual regarding the personal information they hold, including requests for notification of the purpose of use, disclosure, correction, addition, deletion, suspension of use, erasure, or cessation of provision to third parties, they verify the identity of the requestor, and handle the requests appropriately in accordance with the applicable laws and regulations. For details, please contact the inquiry desk listed in Section 5.

5. Inquiry Desk

Please contact the inquiry desk of Group companies listed below for any questions or complaints regarding their handling of personal information, or for requests for the disclosure of personal information.

Name: CRECON Research & Consulting Inc.

Head Office Address: The Pharmaceutical Society of Japan, Nagai Memorial 12-15, Shibuya 2-chome, Shibuya-ku, Tokyo 150-0002

Name of Representative: Hitoshi Kimura

Contact Information: inquiry@crecon.co.jp

6. Changes to Handling Procedures

Group Companies shall be committed to the continuous improvement of their handling of personal information, and they may modify it as necessary. In such event, they will handle the personal information in accordance with the modified content from the date of its publication.

Enacted: February 2026

Cookie Policy

Group Companies use Cookies to collect certain information for analyzing site usage, enhancing user experience, and driving continuous improvement.

1. About Cookies

Cookies are files that the website server sends to the browser of user who visits the website. These files allow information regarding the user’s browsing activities to be stored on the user’s computer or mobile devices.
Cookies do not contain information that identifies specific individuals unless users input personal information on the website.

2. Use of Google Analytics

Group Companies use Google Analytics to analyze the usage of CRECON Group and Group Company websites, improve user convenience, and drive continuous improvement.
For details on how Google Analytics collects and processes information, please see the following URL.
https://policies.google.com/technologies/partner-sites?hl=en

The information collected by Google Analytics is managed in accordance with Google's Privacy Policy. For details on Google's Privacy Policy and Google Analytics Terms of Service, please see below.

Google's Privacy Policy
https://policies.google.com/privacy?hl=en

Google Analytics Terms of Service
https://marketingplatform.google.com/about/analytics/terms/us/

You may disable the information collection via Google Analytics by using the Google’s Opt-out Browser Add-on.
https://tools.google.com/dlpage/gaoptout?hl=en
Please note that no information collected by Google Analytics contains any information that can identify specific individuals.