Republic of Korea: Personal Information Protection Commission fined Temu KRW 1.369 billion for violations of Personal Information Protection Act

Description

Personal Information Protection Commission fined Temu KRW 1.369 billion for violations of Personal Information Protection Act

On 14 May 2025, the Personal Information Protection Commission (PIPC) imposed a fine of KRW 1.369 billion on the e-commerce platform Temu for violations of the Personal Information Protection Act. The PIPC found that Temu had transferred personal data abroad without notifying users and had failed to appoint a domestic agent as required by law. Additional penalties were imposed due to the complexity of Temu’s membership withdrawal process and the improper handling of resident registration numbers during seller verification. The PIPC also issued corrective orders to ensure compliance with regulations, emphasising the need for stronger oversight and improved protection of personal information.

Original source

Scope

Policy Area
Data governance
Policy Instrument
Cross-border data transfer regulation
Regulated Economic Activity
platform intermediary: e-commerce
Implementation Level
national
Government Branch
executive
Government Body
data protection authority

Complete timeline of this policy change

Hide details
2025-05-14
in force

On 14 May 2025, the Personal Information Protection Commission (PIPC) imposed a fine of KRW 1.369 b…