logo_mobile
Privacy PolicyLast Updated: August 4, 2026

Object Company Inc. (doing business as "Object-Tex", accessible at https://www.object-tex.com, hereinafter referred to as the "Company," "we," "us," or "our") respects your privacy and is committed to protecting your personal data.

This Global Privacy Policy (the "Policy") explains how we collect, use, disclose, transfer, and safeguard your personal data when you visit our website, utilize our B2B textile sourcing platform, book showroom/1:1 consultation services, or purchase fabrics and trimmings from us. This Policy is crafted in accordance with global data protection standards, including the European Union General Data Protection Regulation (EU GDPR), the United Kingdom GDPR (UK GDPR), the California Consumer Privacy Act as amended by the California Privacy Rights Act (CCPA/CPRA), and other applicable international privacy frameworks.

1. Data Controller and Applicability
1.1 Data Controller
Object Company Inc. is the primary data controller responsible for processing your personal data collected through Object-Tex.
  • Company Name: Object Company Inc. (d/b/a Object-Tex)
  • Website: https://www.object-tex.com
  • Data Protection Officer (DPO): Chanmin Park (+82-2-322-2126 / info@object-tex.com)
  • Privacy Operations Lead: Jin-kyung Bae (jk.bae@object-tex.com)

1.2 Scope
This Policy applies worldwide to all individuals who access our website, create an account, request swatches/samples, place orders, book showroom or virtual consultations, or otherwise interact with us.

2. Lawful Bases for Processing (GDPR / International Compliance)
We process your personal data only when we have a valid legal basis to do so under applicable law:
  • Performance of a Contract (Art. 6(1)(b) GDPR): Processing required to fulfill orders, ship products, process payments, manage B2B consultations, and deliver services requested by you.
  • Legitimate Interests (Art. 6(1)(f) GDPR): Processing necessary for operating, securing, and improving our B2B platform, preventing fraud, conducting commercial analytics, and maintaining customer relations.
  • Consent (Art. 6(1)(a) GDPR): Processing based on your explicit, affirmative opt-in consent, such as receiving direct promotional e-marketing, receiving customized recommendations, or setting optional cookies.
  • Legal Obligation (Art. 6(1)(c) GDPR): Processing required to comply with international trade, customs, tax, financial record-keeping, and legal compliance obligations.

3. Categories of Personal Data We Collect
We collect personal data directly from you, automatically through your device interactions, and from authorized third-party business partners.

3.1 Information You Provide Directly to Us
Categories of information collected directly from Users
CategorySpecific Data CollectedPurpose of Processing
Account & Profile DataFull name, work/personal email address, password, account preferences, job title, company name, business address.Account registration, authentication, business partner management, platform access.
Transaction & Order DataRecipient name, international shipping address, billing address, phone number, VAT/TAX registration number (where applicable), purchase history.Order fulfillment, international shipping, customs documentation, invoice issuance.
Payment & Financial InformationPayment method token, card type, billing contact, transaction IDs, refund bank account details (bank name, IBAN/SWIFT code, account holder name).Processing credit card or electronic payments, issuing receipts, executing refunds.
Showroom & Consultation DataName, business email, phone number, company/team affiliation, preferred dates, inquiry details, fabric preferences.Booking 1:1 swatch meetings, showroom visits, custom fabric quotation issuance.
Customer Service DataSupport ticket logs, communications, email correspondence, feedback, fabric swatch requests.Resolving customer inquiries, quality assurance, dispute resolution.
Marketing Preferences (Optional)Name, email address, phone number, subscription status, area of interest (e.g., apparel, interior textiles).Sending newsletters, promotional catalogs, swatch updates, targeted offers.

3.2 Information Collected Automatically
When you navigate our platform, we automatically collect technical data:
  • Device & Technical Data: IP address, browser type and version, operating system, device hardware parameters, language settings, screen resolution.
  • Usage & Analytics Data: Page interaction data, search queries, clickstream patterns, referral URLs, time spent on fabric categories, system error logs.
  • Location Data: Coarse geographical location derived from your IP address for currency, shipping, and tax localization.

3.3 Sensitive & Children's Data
We do not knowingly collect sensitive personal data (e.g., biometric data, health data, racial/ethnic origin, political opinions) or personal data from children under sixteen (16) years of age (or under 13 in the US). If we discover inadvertent collection of a minor's data without verifiable parental consent, it will be purged immediately.

4. Cookies and Tracking Technologies
We utilize cookies, web beacons, and local storage technologies to ensure platform functionality, personalize user experience, and analyze web traffic.

4.1 Categories of Cookies We Use
  1. Essential / Strictly Necessary Cookies: Required for basic site navigation, secure login, shopping cart maintenance, and checkout workflows. These cannot be disabled.
  2. Performance & Analytics Cookies: Help us understand how visitors interact with our catalog, measure traffic sources, and identify technical issues (e.g., Google Analytics).
  3. Functional Cookies: Remember your settings, such as language, preferred currency, and recent fabric searches.
  4. Targeting / Advertising Cookies: Used to display relevant textile promotions, catalog releases, or swatches across third-party ad networks.

4.2 Managing Your Cookie Settings
You can manage or opt out of non-essential cookies at any time:
  • Browser Settings: Adjust your browser controls (Chrome, Safari, Edge, Firefox) to refuse or clear cookies.
  • Global Privacy Control (GPC): Our platform recognizes GPC signals transmitted by compliant browsers.
  • Mobile Ad Identifiers: Reset your Advertising ID or disable ad tracking in your mobile device's privacy menu (Android Advertising ID / iOS IDFA).

5. How We Disclose and Share Personal Data
We do not sell, rent, or trade your personal data to third parties for monetary consideration. We share personal data only with trusted global service providers ("Data Processors") acting on our strict instructions, or when legally compelled.

5.1 Third-Party Service Providers (Data Processors)
Categories of service providers we share data with
CategoryService ProvidedCategories of Data Shared
Global Infrastructure & Cloud HostingAmazon Web Services (AWS)All system data, database backups, logs.
International Express LogisticsDHL Express, FedEx, UPS, regional postal partnersRecipient name, delivery address, phone number, customs invoice data.
Payment Gateways & ProcessingCredit Card Processors, PayPal, Apple Pay, StripeBilling address, transaction tokens, payment card details.
Customer Communications & MarketingGlobal ESPs, transactional email providers, CRM toolsName, email address, communication logs, preference tags.

5.2 Legal, Security, and Corporate Transfers
We may disclose personal data if required to do so by applicable law, court order, or international government regulation, or when disclosure is necessary to:
  • Protect our legal rights, property, or safety, or that of our users;
  • Detect, prevent, or address fraud, security breaches, or technical issues;
  • Complete a business structural change, such as a merger, acquisition, asset sale, or bankruptcy proceeding (where user data is transferred as a business asset following notice).

6. Cross-Border Data Transfers & Safeguards
Because Object-Tex operates an international textile platform, your personal data may be transferred to, stored, or processed in servers located outside your home jurisdiction (including South Korea and the United States).

6.1 Transfer Mechanisms
When transferring personal data originating from the European Economic Area (EEA), the UK, or Switzerland to countries that have not received an adequacy decision, we ensure an equivalent level of protection through:
  • EU Standard Contractual Clauses (SCCs): Incorporating approved controller-to-processor SCCs into contracts with cloud hosts and service partners.
  • Technical Safeguards: End-to-end data encryption in transit (TLS 1.3 / SSL) and AES-256 encryption at rest.

7. Data Retention and Deletion Policy
We retain your personal data only for the duration necessary to fulfill the operational purposes for which it was collected, or as mandated by global statutory retention requirements (such as international accounting, tax, and commercial laws).

7.1 Retention Schedule
Retention period by record category
Record CategoryRetention PeriodPrimary Purpose
Active Account DataUntil account termination or request for deletion.Continuous service provision and B2B management.
Order, Shipping & Invoicing Data5 to 7 Years (depending on applicable tax laws).Compliance with international trade, tax, and audit obligations.
Payment & Transaction Logs5 YearsFinancial record-keeping and anti-fraud auditing.
Customer Support & Inquiry Records3 YearsQuality assurance, claims, and warranty management.
Server Access Logs & Analytics6 to 12 MonthsInfrastructure security, DDoS protection, system debugging.
Marketing SubscriptionsUntil consent is withdrawn / unsubscribed.Promotional communications.

7.2 Permanence of Erasing Data
Upon expiry of the retention period or receipt of a valid erasure request:
  • Electronic Data: Permanently deleted using cryptographic erasure or zero-fill overwriting to render files unrecoverable.
  • Physical Documents: Shredded using cross-cut industrial shredders or incinerated.

8. Your Global Privacy Rights
Depending on your country or state of residence, you hold specific rights regarding your personal data.

8.1 European Union (EU) / United Kingdom (UK) Residents (GDPR)
  • Right to Access (Art. 15): Request confirmation and a copy of the personal data we hold about you.
  • Right to Rectification (Art. 16): Request correction of inaccurate or incomplete data.
  • Right to Erasure / "Right to be Forgotten" (Art. 17): Request deletion of your personal data where legal grounds apply.
  • Right to Restrict Processing (Art. 18): Limit how we process your personal data under certain conditions.
  • Right to Data Portability (Art. 20): Receive your data in a structured, machine-readable format.
  • Right to Object (Art. 21): Object to processing based on legitimate interests or direct marketing.

8.2 California & US State Residents (CCPA / CPRA)
  • Right to Know / Access: Request disclosure of categories and specific pieces of personal information collected, sources, and third parties shared with.
  • Right to Delete: Request deletion of personal information collected from you.
  • Right to Opt-Out of Sale / Sharing: We do not sell or share your personal information for cross-context behavioral advertising.
  • Right to Non-Discrimination: You will not receive discriminatory treatment for exercising your CCPA rights.

8.3 How to Exercise Your Rights
To submit a privacy request:
  1. Self-Service: Log in to your account at https://www.object-tex.com and manage preferences under [My Page → Account Settings].
  2. Email Request: Contact our Privacy Team directly at info@object-tex.com or jk.bae@object-tex.com.
  3. Verification: To protect your security, we will verify your identity (e.g., confirming your registered email address or order history) before fulfilling your request.

9. Technical and Organizational Security Measures (TOMs)
We implement robust administrative, technical, and physical security measures to protect personal data against unauthorized access, destruction, loss, or alteration:
  • Data Encryption: High-grade SSL/TLS transport encryption for all web communications and AES-256 database encryption for sensitive storage.
  • Access Governance: Strict role-based access control (RBAC), multi-factor authentication (MFA) for administrative tools, and automated session timeouts.
  • System Defense: Firewalls, Web Application Firewalls (WAF), continuous monitoring for anomalous traffic, and periodic vulnerability scanning.
  • Physical Controls: Cloud infrastructure hosted in ISO 27001 / SOC 2 certified data centers with 24/7 security personnel and biometric entry restrictions.

10. Direct Marketing and CAN-SPAM Compliance
We adhere to global anti-spam regulations (CAN-SPAM Act, ePrivacy Directive).
  • Opt-In: Marketing communications are sent only to users who have provided explicit opt-in consent or existing customers within permitted B2B commercial exceptions.
  • Opt-Out / Unsubscribe: Every promotional email includes a clear, automated "Unsubscribe" link at the footer. You may also update your preferences in your account settings or email us at info@object-tex.com.

11. Data Protection Officer & Contact Information
If you have any questions, complaints, or requests regarding this Privacy Policy or our data handling practices, please contact our Privacy Team:

Data Protection Officer (DPO)
  • Name: Chanmin Park
  • Title: Head of Management & Operations
  • Direct Phone: +82-2-322-2126
  • Email: info@object-tex.com

Privacy Operations Lead
  • Name: Jin-kyung Bae
  • Title: Privacy Operations Manager
  • Email: jk.bae@object-tex.com

Independent Regulatory Authorities
If you reside in the EEA or UK and believe our processing violates privacy laws, you have the right to lodge a complaint with your local Data Protection Authority (e.g., the ICO in the UK, or your home EU Member State Supervisory Authority).

12. Updates to This Policy
We reserve the right to amend this Policy to reflect updates in legal obligations, technology, or commercial practices.
  • Routine Changes: Any revised version will be published on our platform with an updated "Last Updated" date.
  • Material Changes: For major changes that significantly impact your rights, we will notify you at least 30 days in advance via direct email or a prominent pop-up notice on https://www.object-tex.com prior to the effective date.

Currency

Language

HomeCategoryScrapMy