Platform Operators (e-commerce marketplaces + classified ad platforms + auction sites + matchmaking platforms) face specific ASCT obligations beyond seller-level requirements + a complex cross-cutting compliance regime intersecting multiple Japanese statutes. (1) Platform Operator Definition: (a) e-commerce marketplaces (Amazon Japan + Rakuten Ichiba + Yahoo! Shopping + Mercari + ZOZO + Qoo10); (b) classified ad platforms (Jimoty + Mercari) (c) auction sites (Yahoo! Auctions); (d) matchmaking platforms (Pairs + Omiai); (e) subscription aggregators; (f) B2B platforms (Alibaba Japan + Lansa). (2) Platform Operator Specific Obligations per 2021 + 2023 Amendments: (a) Seller Verification - business registration check + tax ID + bank account verification before listing; (b) Listing Content Moderation - prohibited items + price accuracy + warranty terms; (c) Suspect Activity Reporting to CAA; (d) Suspect Listing Removal upon CAA notice (typically within 24-48 hours); (e) Repeat-Offender Seller De-Listing; (f) Consumer Complaint Handling + escalation to CAA; (g) Records of seller transactions for 5 years; (h) Cooperation with CAA investigations. (3) Article 14-2 Mail-Order Sales Platform Operator Obligations (2021): (a) seller identification verification before listing; (b) prohibited misleading representation removal; (c) cooperation with consumer complaints + CAA; (d) safe harbour for operators acting on notice. (4) APPI Integration (Cross-Cutting Personal Data): (a) Article 15-2 + 15-3 ASCT personal information notice; (b) APPI Act on Protection of Personal Information (Amended 2022 effective April 2023); (c) opt-in consent for sensitive data; (d) opt-out for direct marketing; (e) data breach notification; (f) PIPC Personal Information Protection Commission as APPI regulator; (g) Joint CAA + PIPC enforcement for cross-cutting violations; (h) Cross-border data transfer (APPI Article 24); (i) APPI Cookie Rules (similar to GDPR cookie banner). (5) Specified Email Act (Tokutei Denshimerii Ho 特定電子メール法) - Anti-Spam: (a) opt-in required for marketing email (Article 3); (b) opt-out method in every email (Article 4); (c) sender identification (Article 6); (d) penalties up to JPY 30M + 1 year (Article 35); (e) administered by Ministry of Internal Affairs and Communications + CAA. (6) Premiums and Representations Act (Keihinhyouji Ho 景品表示法): (a) false advertising prohibition (Article 5); (b) excessive premium offers limit; (c) Stealth Marketing Regulation (effective 1 October 2023) - undisclosed paid content prohibited; (d) administered by CAA Premium and Representations Bureau; (e) penalties + administrative orders. (7) Anti-Money Laundering / Counter-Financing of Terrorism (AML/CFT): (a) Crime Proceeds Transfer Prevention Act 2007; (b) Designated Business Operator obligations - identification (KYC) + record-keeping; (c) Suspicious Transaction Reporting to Japan Financial Intelligence Center (JAFIC); (d) Customer Due Diligence (CDD); (e) Enhanced Due Diligence for higher-risk (PEPs + non-residents + high-value transactions); (f) High-value gold + jewellery transactions reporting threshold JPY 2M; (g) Cryptocurrency exchange JFSA + AML obligations. (8) JFTC Japan Fair Trade Commission Coordination: (a) competition law overlap with consumer protection; (b) Antimonopoly Act enforcement; (c) Unfair Competition Prevention Act + Trademark dilution + false origin claims; (d) JFTC + CAA joint enforcement actions; (e) cartel + abuse of dominance for platforms. (9) Electronic Contracts Act (Denshi Keiyaku Ho): (a) electronic signature validity; (b) timestamping; (c) Long-Term Validation; (d) e-Seal for organisational signatures; (e) JIPDEC certification authority; (f) coordination with ASCT documentation obligations. (10) Industry Self-Regulation: (a) Japan Direct Marketing Association (JADMA) - mail order + e-commerce; (b) Japan Federation of Direct Selling - door-to-door + telemarketing; (c) Japan Internet Advertising Association (JIAA); (d) Japan e-Commerce Council + Japan E-commerce Promotion Council; (e) Stealth Marketing Self-Regulation; (f) Cookie Banner Self-Regulation; (g) Influencer Marketing Self-Regulation. (11) International Compliance Considerations: (a) EU EU AI Act + DSA + GDPR cross-applicability; (b) US California CCPA + State privacy laws; (c) UK Online Safety Act; (d) China Personal Information Protection Law (PIPL); (e) Korea Personal Information Protection Act (PIPA); (f) Singapore PDPA. (12) Cross-Border Enforcement Coordination: (a) ICPEN + OECD networks; (b) Bilateral arrangements with FTC + UK CMA + EU; (c) Multi-jurisdictional enforcement against international platforms; (d) Mutual Legal Assistance Treaties for criminal cases. Coordinates with APPI + Specified Email Act + Premiums and Representations Act + Crime Proceeds Transfer Prevention Act + JFTC Antimonopoly Act + Unfair Competition Prevention Act + Electronic Contracts Act + Telecommunications Business Act + JIPDEC + JADMA + JIAA + Japan E-commerce Promotion Council + PIPC Personal Information Protection Commission + Ministry of Economy Trade and Industry (METI) + Ministry of Internal Affairs and Communications (MIC) + Ministry of Justice + Japan Financial Intelligence Center (JAFIC) + JFSA Financial Services Agency + Police Cyber Crime Division + ICPEN + OECD Consumer Policy Committee + EU EDPB + US FTC. Japan ASCT Platform Operator + Cross-Cutting applies.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.