GranovaQ
L / Privacy2026

How we handle

your data.

Privacy Policy.

GranovaQ® Inside is operated in compliance with Japan's Act on the Protection of Personal Information (APPI), the GDPR and China's PIPL. This Policy sets out the information we collect when you use this website, the purposes of use, provision to third parties, cross-border transfers, retention periods and the contact point for disclosure requests.

This English version is provided for reference only. If there is any difference between this English version and the Japanese version, the Japanese version prevails. Read the Japanese version.

  1. Section 01

    Business operator

    This Policy sets out how the operating company of the GranovaQ Inside brand (the “Service”) handles personal information that it obtains through this website and related business activities.

    • Operating company and contact point: J.C. Technology Co., Ltd. (2F, 7-9-17 Fukushima, Fukushima-ku, Osaka 553-0003, Japan) — the operator that plans, manufactures and sells GranovaQ-brand materials and products

    J.C. Technology (Personal Information Protection Manager) is responsible for the management of personal information relating to this website.

  2. Section 02

    Personal information we collect

    When you use the Apply for Inside form or any of our inquiry channels, we collect the following items.

    • Company name, department and job title
    • Name and email address of the person in charge
    • Industry / stage of consideration / desired tier / planned launch timing / desired particle-size grade / expected MOQ and order volume / current suppliers / intended use / formulation approach / product form (the items that apply to each type of form)
    • Details of your inquiry (free text)
    • Cookies and access logs when you browse the site (IP address, browser information, referrer, date and time of access, pages viewed)
  3. Section 03

    Purposes of use

    We use the personal information we collect only within the scope of the following purposes.

    • Initial handling of Inside Program inquiries, formulation review, sample supply, and scheduling through to qualification
    • Concluding NDAs, logo license agreements and adopting-brand agreements
    • Responding to inquiries and other necessary communication
    • Information about the Service, new products, trade shows, press releases and similar (only if you have requested it)
    • Analysis of how this website is used and improvement of its quality (including statistical processing that does not identify individuals)
  4. Section 04

    Provision to third parties and outsourcing of processing

    We do not provide personal information to third parties without your consent, except where required by law or where we outsource processing, to the extent necessary, to the following service providers and affiliated companies.

    • Our own sites: sharing for work related to manufacturing and R&D (our R&D and manufacturing site in China).
    • Service providers: hosting (Vercel Inc., USA), form submission processing and CRM (HubSpot, Inc., USA — when integrated), web analytics (Google LLC, USA — Google Analytics 4), and email delivery providers.

    With every recipient, we conclude appropriate agreements on the protection of personal information and take necessary and sufficient security control measures.

  5. Section 05

    Cross-border transfers

    In operating the Service, we may handle personal information on servers or at sites located in the following countries and regions.

    • United States (hosting and CRM service providers)
    • Other countries and regions where necessary to carry out our business, depending on where our customers of the Service are located

    For cross-border transfers, we provide information on the level of protection in the destination and take the required measures in accordance with applicable laws, including Article 28 of Japan’s Act on the Protection of Personal Information (APPI), Article 44 et seq. of the EU General Data Protection Regulation (GDPR), and Article 38 of the Personal Information Protection Law of the People’s Republic of China (PIPL).

  6. Section 06

    Retention period

    We retain personal information only for the period necessary to achieve the purposes of use, and delete or anonymize it without delay once those purposes are achieved.

    • Apply for Inside applications: 3 years from the date of last contact
    • After an NDA or agreement is concluded: the retention period set out in that agreement
    • Access logs: 6 months from the date of collection
  7. Section 07

    Cookies and similar technologies

    This website uses the minimum necessary cookies to understand how the site is used and to improve the user experience. You can disable cookies in your browser settings; if you do, some features may not be available.

    This website uses Google Analytics 4 to understand how the site is used. GA4 uses first-party cookies to measure sessions, traffic sources and similar information, and IP addresses are anonymized on Google’s side (IP anonymization is the default behavior of GA4). You can disable cookies in your browser settings or with the opt-out browser add-on provided by Google (tools.google.com/dlpage/gaoptout).

    This website does not use the Google Fonts CDN. Fonts are self-hosted at build time, so no IP address or other data is sent to third parties to load fonts.

  8. Section 08

    Requests for disclosure, correction and suspension of use

    If you or your agent request disclosure, correction, addition, deletion, suspension of use, suspension of provision to third parties or similar action concerning retained personal data, we will respond within a reasonable period. Please contact the contact point below.

    Contact point for personal information:
    J.C. Technology, Personal Information Protection Manager
    Please email sotoguchi-e@granovaq.com with the subject “Personal information inquiry”.

  9. Section 09

    Security control measures

    To prevent unauthorized access to, and leakage, loss or damage of, personal information, we take the following measures.

    • Encryption of communications by HTTPS, and HTTP security headers such as CSP and HSTS
    • Limiting the persons who handle personal information, and access control
    • Selection criteria for, and supervision of, service providers
    • In-house training led by the Personal Information Protection Manager
    • Regular vulnerability reviews
  10. Section 10

    Revisions

    This Policy may be revised in response to changes in laws and regulations, changes in the Service, or other reasons. If it is revised, we will publish the latest version on this page.

    Last revised: May 5, 2026 / Added a statement on the use of GA4