§ 01
Introduction
Tepi Technologies ("we," "us," or "our") operates from 71 Robinson Road, #14-01, Singapore 068895. We are the data controller for personal information collected through this website and our professional engagements.
This policy applies to all personal data we process and is governed by Singapore's Personal Data Protection Act 2012 (PDPA). By using our website or engaging our services, you acknowledge that we may handle personal data in the ways described here.
§ 02
Data We Collect
We collect personal data only where it is necessary for the provision of our services or to respond to your enquiries.
Information you provide directly
- Name and job title (where provided)
- Business email address
- Telephone number (where provided)
- Organisation name and industry
- Content of enquiry messages submitted via our contact form
Information collected automatically
- IP address and general geographic region
- Browser type and operating system
- Pages visited and time spent on each page
- Referring website, where applicable
- Cookie data (see Section 5)
Legal basis for processing
- Your consent, given when submitting our contact form
- Our legitimate interest in operating and improving our website
- Performance of a contract or pre-contractual steps at your request
Data is retained for up to 3 years following last contact, unless a longer period is required by law.
§ 03
How We Use Your Data
We use personal data only for the purposes for which it was collected:
- Responding to enquiries and scheduling consultations
- Delivering the agreed scope of our professional services
- Sending written notes, session summaries, and reports as part of an active engagement
- Sending service-related communications (not promotional messages) where you have given consent
- Understanding how visitors use our website to improve its clarity and usefulness
- Fulfilling legal and regulatory obligations
We do not sell personal data to third parties. We do not use personal data for automated decision-making.
Third-party service providers
We may share data with carefully selected processors (such as website hosting providers and analytics services) who assist us in operating our website. These parties are bound by data processing agreements and may not use your data for any other purpose.
§ 04
How We Protect Your Data
We take reasonable technical and organisational measures to protect personal data from unauthorised access, loss, or disclosure:
- All data in transit is protected by TLS encryption
- Access to client data is restricted to personnel directly involved in the relevant engagement
- Internal systems are subject to access controls and regular review
- Paper records containing personal data are stored securely and disposed of responsibly
In the event of a data breach that is likely to result in harm to affected individuals, we will notify the Personal Data Protection Commission (PDPC) and affected parties as required by the PDPA's Mandatory Data Breach Notification obligation.
§ 06
Your Rights
Under the PDPA, you have the right to:
- Access — request a copy of the personal data we hold about you
- Correction — ask us to correct inaccurate or incomplete data
- Withdrawal of consent — withdraw consent to processing at any time (this will not affect the lawfulness of processing carried out before withdrawal)
- Data portability — receive your data in a structured, commonly used format, where technically feasible
- Erasure — request deletion of your data where there is no longer a legitimate basis for its retention
To exercise any of these rights, please write to us at [email protected]. We will acknowledge your request within five working days and respond fully within 30 days.
You may also lodge a complaint with the Personal Data Protection Commission (PDPC) at www.pdpc.gov.sg if you believe your data has been handled unlawfully.
§ 07
Third-Party Links
Our website may contain links to external resources or reference materials. We are not responsible for the privacy practices of those sites and encourage you to review their policies independently. The presence of a link does not constitute an endorsement.
§ 08
Children's Privacy
Our services are directed at business professionals and are not intended for individuals under the age of 18. We do not knowingly collect personal data from minors. If you believe a minor has submitted data to us, please contact us and we will arrange for its deletion without delay.
§ 09
Policy Updates
We may update this policy from time to time to reflect changes in our practices or applicable law. When we do, we will revise the "Last updated" date at the top of this page. If changes are material, we will place a short notice on our website. Continued use of our website following any update constitutes acceptance of the revised policy.
§ 10
Contact
For any questions or concerns regarding this policy, or to exercise your data rights, please contact our data controller: