Privacy Policy

Cornes & Company Limited, Insurance Group (hereinafter referred to as “Cornes or We”) recognizes the importance of personal information protection. To enhance the trust society places in the insurance industry, we comply with the laws concerning personal information protection (Personal Information Protection Act), the law regarding the use of specific identification numbers for administrative procedures (Number Law), and other related laws and regulations, as well as guidelines issued by relevant authorities, and guidelines on the appropriate handling of specific personal information. We handle personal information strictly and appropriately, and take necessary security measures for its management. Cornes ensures that personal information is handled properly through thorough education and guidance for our employees. We are committed to addressing any complaints or inquiries about the handling of personal information promptly. We will also review and improve the measures for the handling and security of personal information as necessary.

1. Collection and Use of Personal Information

Cornes collects and uses personal information (including personal numbers and specific personal information, as described in section 8 below) within the scope necessary for business purposes, and through lawful and fair means.

2. Purpose of Use of Personal Information

Cornes uses personal information (including personal numbers and specific personal information, as described in section 8 below) obtained through the delegation of insurance solicitation operations from insurance companies within the scope necessary for the execution of such operations. Cornes deals with multiple insurance companies and may use the obtained personal information to propose products and services from those insurance companies. The specific purposes for using personal information within Cornes are as follows, and the information will not be used for any other purposes.
“Provision of non-life insurance, life insurance, and related products and services handled by Cornes.”
If the purpose of use is to be changed, the change will be made within a scope that is reasonably considered related, and in such cases, the content of the change will be notified to the individual concerned, in principle, in writing (including electronic records) or published on Cornes’s website at http://www.cornes-insurance.jp.

The insurance companies that entrust us with insurance solicitation operations have their own purposes for using personal information, which are described on their respective websites (see below).

Non-Life Insurance Companies

Life Insurance Companies

3. Security Management of Personal Data

Cornes takes sufficient security measures, including establishing regulations and implementing systems for managing personal data (including personal numbers and specific personal information, as described in section 8 below), to prevent leakage, loss, or damage. We ensure the accuracy and timeliness necessary to achieve the intended purposes of use. In case of any issues, we will take prompt corrective actions.
We have established internal regulations for the security management of personal data, including the following measures:

1.Policy Establishment

We have formulated a basic policy for the appropriate handling of personal data, including compliance with relevant laws and guidelines, security management measures, and handling complaints.

2.Regulation of Security Management

Regulations are in place for each stage of personal data handling, including collection, use, storage, provision, and deletion.

3.Organizational Security Measures

Management responsibilities are assigned, and operational procedures are established for securing personal data, including audits and monitoring.

4.Human Security Measures

Employees sign non-disclosure agreements and undergo training on security measures.

5.Physical Security Measures

We implement measures to protect physical areas and prevent theft or leaks of data.

6.Technical Security Measures

Measures include user identification, access control, data encryption, and system monitoring.

7.Supervision of Outsourcing

When outsourcing data handling, we ensure that the outsourcing party complies with security requirements.

8.External Environment Awareness

We understand the personal data protection laws in foreign countries where data may be handled.

4. Handling of Information Overseas

Cornes will take appropriate security management measures when outsourcing personal data handling abroad and ensure that the outsourcing party complies with equivalent safety measures required by the Personal Information Protection Law.

5. Provision of Personal Data to Third Parties and Acquisition from Third Parties

Cornes does not provide personal data to third parties without prior consent, except in cases specified by law.

6. Provision of Personal-Related Information to Third Parties

Cornes does not provide personal-related information to third parties unless consent is obtained or required by law.

7. Handling of Sensitive Information

Cornes will not acquire, use, or provide sensitive information (e.g., race, religion, health conditions) except under specific conditions related to the insurance business.

8. Handling of Personal Numbers and Specific Personal Information

Cornes will not collect or use personal numbers or specific personal information for purposes other than those specifically authorized by law.

9. Disclosure, Correction, and Suspension of Use of Personal Data

Requests for disclosure, correction, or suspension of use of personal data will be processed after confirming the identity of the requester.

10. Inquiries to Cornes

For inquiries, please contact the following:
Cornes & Company Limited.
Address: 3-3-10 Shiba, Minato-ku, Tokyo, Cornes House 10F
Managing Director: Simon Wallington
Phone: 03-5730-1650
Business Hours: 9:00 AM – 5:30 PM (Monday to Friday, excluding holidays)
Website: https://www.cornes.co.jp