Privacy Policy
Notice: This is a starting template. Before launch it should be reviewed by a Singapore-qualified lawyer to ensure it reflects your actual data practices.
1. Who We Are
Aethra Labs Pte. Ltd. (UEN 202622953G), 11 Collyer Quay, #17-88, The Arcade, Singapore 049317 ("we", "us"). This Privacy Policy explains how we collect, use, share, and protect personal data when you visit our website or engage our services.
2. Personal Data We Collect
- Information you provide: name, email, company, phone, and any message content you send via our contact form or email.
- Information collected automatically: we use Plausible Analytics, a privacy-friendly tool that does not set cookies or track individuals.
- Engagement data: if we work together, we process contact information of your authorized representatives strictly to deliver services.
3. How We Use Your Data
- Respond to enquiries and proposals you submit.
- Deliver, support, and improve our services to clients.
- Comply with legal, accounting, and regulatory obligations in Singapore.
4. Legal Basis (Singapore PDPA)
We process personal data on the bases of your consent, contractual necessity, our legitimate interests in running our business, and our legal obligations under Singapore law.
5. Sharing
We do not sell personal data. We may share data with: (a) service providers under contract (email, hosting, CRM); (b) regulators and authorities when legally required; (c) acquirers or successors in the event of a corporate transaction. Where data is transferred outside Singapore we ensure comparable protection consistent with the PDPA Transfer Limitation Obligation.
6. Retention
We retain personal data only for as long as needed for the purposes set out above, or as required by law (typically 5 years for business records under Singapore tax and accounting rules).
7. Security
We apply reasonable technical and organizational measures including TLS encryption in transit, encryption at rest for backups, least-privilege access controls, security awareness training, and incident response procedures.
8. Your Rights
You may request access to, correction of, or withdrawal of consent for our processing of your personal data by emailing our Data Protection Officer at [email protected]. We respond within 30 days as required by the PDPA.
9. Contact
For any questions about this policy or your personal data: [email protected].