Privacy

Privacy policy

How Ticketground collects, uses, and retains personal information processed while you use the service.

Personal data we collect

Ticketground collects the minimum personal data needed to provide the service, as follows.

  • Social login: the member identifier and profile name (nickname) supplied by Kakao, Naver or Google
  • Identity verification: the mobile phone number confirmed through NICE mobile identity verification (stored in masked form), a derived value used to detect duplicate accounts, and your date of birth (used only to confirm you are 14 or over; it is not stored and only the result is kept)
  • Booking and payment: booking records, payment method and status, transaction identifiers and amounts. Card details are handled directly by the payment provider and are not stored on Ticketground servers
  • CLEAN ticket transfers: transfer listing and purchase records, and the details needed for settlement
  • Customer inquiries: the subject and content of your inquiry and the reply history
  • Group booking and seller onboarding applications: organisation name, contact person's name, phone and email, and documents such as the business registration certificate needed for review
  • Automatically generated during use: access IP address (to prevent abuse), service usage records

How we use personal data

We use the data collected only for the purposes below. If the purpose changes, we obtain separate consent.

  • Identifying members and maintaining login sessions
  • Booking, issuing and admitting tickets, and processing cancellations and refunds
  • Preventing fraudulent booking, bot abuse and resale abuse, and enforcing per-person purchase limits
  • Brokering and settling CLEAN official ticket transfers
  • Responding to inquiries and sending notices and booking-related alerts
  • Reviewing group booking and seller onboarding applications and performing the resulting contracts

Sharing with third parties

Ticketground does not share your personal data with third parties. If sharing ever becomes necessary, we will tell you who receives it, why, which items are shared and for how long they are kept, and we will ask for your separate consent first.

  • There is currently no personal data that we share with a third party under consent
  • Data may be provided where a law expressly requires it, or where an investigative authority requests it through the procedure that the law prescribes

Processing carried out on our behalf

We entrust the work below to the companies named. They may not use personal data beyond the work we entrust to them, and we will announce any change through this policy.

  • TossPayments: payment authorisation, cancellation and refund processing (items passed on — order identifier, amount, and for a refund the bank, account number and account holder name of the receiving account)
  • Card numbers and other payment credentials are collected by the payment provider on its own screen and never pass through Ticketground servers
  • Mobile identity verification is carried out by NICE Information Service as a licensed verification agency, which takes your consent on its own screen; Ticketground only receives the result

Automated decisions

To prevent fraudulent booking and ticket touting, we calculate a trust score for each account automatically and may ask for extra checks at admission based on that score. Because no person is involved in that step, we publish its criteria and procedure below.

  • Basis: the account's trust score. It falls automatically when a policy breach is confirmed, such as attempting a transfer outside the official resale flow
  • An account whose score falls below a set level is moved to a watch state automatically
  • At admission, a lower score means progressively stronger checks: an additional one-time verification, a short wait, then an on-site check before entry
  • A hold at admission is never finalised automatically - a member of staff reviews it
  • You may ask us to explain an automated decision, or ask us not to apply one. Contact support and we will re-examine it with a person once we have confirmed your identity

Retention and destruction

Personal data is destroyed without delay once the purpose of collection has been achieved. Where a law such as the Act on Consumer Protection in Electronic Commerce requires a longer period, the data is kept for that period.

  • Records of contracts and withdrawal of subscription: 5 years
  • Records of payment and supply of goods: 5 years
  • Records of consumer complaints and dispute resolution: 3 years
  • Records of labelling and advertising: 6 months

How personal data is destroyed

Personal data is destroyed without delay once its retention period ends or its purpose has been met. Data that a law requires us to keep is stored separately from other data for that period and then destroyed.

  • Procedure: we identify the data that has become due for destruction and destroy it once the data protection officer has confirmed it
  • Timing: within five days of the retention period ending or the purpose being met
  • Electronic files: erased permanently by a method that makes recovery impossible
  • Paper documents: shredded or incinerated
  • Account deletion: you can ask for destruction yourself from My page > Delete account. Your account details and identity-verification record are destroyed on the spot, and anything the law requires us to keep is pseudonymised and stored separately

Cookies and similar technologies

We use cookies and browser storage to keep you signed in and to remember display settings. We do not use advertising or behavioural analytics trackers.

  • Purposes: keeping a sign-in session, showing which login method you used last, remembering the display theme, identifying a payment request
  • How to refuse: you can block cookies in your browser settings. Blocking the cookies needed to stay signed in will make signing in and booking unavailable
  • The sign-in and payment screens load scripts from Google and TossPayments, and your connection details may reach those companies as a result

Children under 14

Ticketground does not accept sign-ups or bookings from children under 14. Even for a show a child will attend, the booking must be made from the account of a legal guardian or another person aged 14 or over.

  • You confirm you are 14 or over when you sign up, and at the NICE phone identity-verification step we check your date of birth to confirm it for real
  • The date of birth used for that check is not stored. Only the result - that you are 14 or over - and the moment of the check are kept
  • If the check shows you are under 14, identity verification is refused and that account cannot proceed to book
  • If we learn that a child under 14's personal data was collected without a legal guardian's consent, we destroy it without delay
  • If you become aware of such a case, please tell us through a 1:1 support inquiry

Your rights and how to exercise them

You may at any time request access to, correction of, deletion of, or suspension of processing of your personal data. You can delete your account yourself from My page > Delete account; for anything else, submit a 1:1 inquiry to our support team and we verify your identity, act on the request and tell you the outcome. Data covered by the retention periods above is destroyed once that statutory period ends.

Security measures

To keep personal data safe, Ticketground limits access to the smallest number of staff whose work requires it, and stores sensitive values such as passwords and identity-verification identifiers in a form that cannot be reversed rather than as plain text. Values that staff must be able to read again for their work, such as the settlement account number on a seller application, are stored encrypted and seen only by the staff handling settlement. Payment details are handled directly by the payment provider, and traffic to the service is encrypted.

Data protection officer and access requests

Ticketground appoints a data protection officer to oversee how personal data is handled and to deal with your questions and complaints. Requests to access, correct, delete or suspend the processing of your data also go to the contact below, and we act on them without delay and tell you the result.

  • Data protection officer: Yun Jin-Young, representative (Ticketground)
  • Contact: [email protected]
  • Department handling access requests: customer support (KakaoTalk chat or the address above)

Where to turn for help

If you need help with a privacy matter, the bodies below offer advice and dispute mediation. They are independent of Ticketground - please use them if our own answer does not resolve the matter or you need further assistance. They serve Korean residents.

  • Personal Information Dispute Mediation Committee: +82-1833-6972 (www.kopico.go.kr)
  • Privacy Infringement Report Centre: 118 within Korea (privacy.kisa.or.kr)
  • Supreme Prosecutors' Office, cyber investigation: 1301 within Korea (www.spo.go.kr)
  • National Police Agency, cyber bureau: 182 within Korea (ecrm.police.go.kr)

Changes to this policy

This privacy policy applies from 6 September 2026. If a change in the law or in our service means this policy must change, we will post the change and the date it takes effect at least seven days beforehand, and at least thirty days beforehand where the change is to your disadvantage.

  • Effective 6 September 2026 — account deletion was added as a way to request destruction, and the sections on exercising your rights and on destruction were revised accordingly.
  • Effective 4 September 2026 — third-party provision and processing consignment were separated, and sections on automated decisions, cookies, children under 14, the data protection officer and remedies were added.
1:1 inquiry