Introduction
UIMS OMEGA PTE. LTD. ("we", "us", "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website.
This policy complies with the Personal Data Protection Act (PDPA) of Singapore. For users in the European Union, we also respect the principles of the General Data Protection Regulation (GDPR).
Data We Collect
We may collect the following types of information:
- Email address (when you subscribe to our newsletter or contact us)
- Name (when you contact us or leave a comment)
- Usage data (pages visited, time spent, referring URL)
- Technical data (IP address, browser type, device information)
Legal Basis for Processing
Under the Personal Data Protection Act (PDPA) of Singapore, we process your data based on:
- Consent - When you subscribe to our newsletter or submit a contact form
- Contractual necessity - When you purchase a product and we need to deliver it
- Legitimate interests - For website security, fraud prevention, and service improvement
How We Use Your Data
We use your information to:
- Send you our newsletter (if you subscribed)
- Respond to your inquiries and contact requests
- Process your purchases and deliver digital products
- Improve our website and content
- Analyze website traffic and usage patterns
- Comply with legal obligations
Third-Party Services
We use the following third-party services that may collect data:
- Stripe - Payment processing and billing
- Resend - Email marketing and newsletter delivery
- Bunny.net - Video hosting and content delivery
- Cloudflare - Security, CDN, and captcha verification
- Google Analytics - Website analytics (anonymized)
Each of these services has their own privacy policy governing how they handle your data.
International Data Transfers
Some of our third-party service providers are located outside of Singapore, including in the United States and European Union. By using our services, you consent to the transfer of your data to these countries.
We ensure that such transfers are protected by appropriate safeguards, including Standard Contractual Clauses approved by relevant data protection authorities, and that our service providers maintain adequate data protection standards.
Cookies
We use different types of cookies:
Essential Cookies (Required)
- Session management and authentication
- Language preference
- Security features (CSRF protection)
Analytics Cookies (Optional)
- Google Analytics - website traffic analysis
- Anonymized usage patterns
You can control non-essential cookies through your browser settings or our cookie banner. Disabling essential cookies may affect website functionality.
Your Rights
Under applicable data protection laws (PDPA and GDPR), you have the right to:
- Access your personal data
- Correct inaccurate data
- Request deletion of your data
- Withdraw consent at any time
- Unsubscribe from our newsletter
- Data portability - receive your data in a structured format (GDPR)
- Object to processing based on legitimate interests (GDPR)
- Not be subject to automated decision-making (GDPR)
To exercise these rights, please contact us via our contact page. We will respond within 30 days.
EU Representative
For users in the European Union: if you require a designated EU representative for data protection matters, please contact us and we will provide the relevant contact details upon request.
Right to Complain
If you believe your data protection rights have been violated, you have the right to lodge a complaint with a supervisory authority. For Singapore residents, contact the Personal Data Protection Commission (PDPC). For EU residents, contact your local Data Protection Authority (e.g., CNIL in France, ICO in the UK).
Data Retention
We retain your personal data only as long as necessary to fulfill the purposes for which it was collected, or as required by law. Newsletter subscriber data is retained until you unsubscribe. Contact form data is retained for up to 2 years.
Security
We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction. All data transmission is encrypted using SSL/TLS.
Data Breach Notification
If we become aware of a data breach that is likely to result in significant harm to affected individuals, we will notify the relevant authorities and affected individuals. For EU residents, notification will occur within 72 hours as required by GDPR. For other users, notification will occur within 3 business days as required by PDPA. We will provide information about the nature of the breach, the data affected, and steps you can take to protect yourself.
Contact
For any questions about this Privacy Policy or to exercise your rights, please use our contact page .
Changes to This Policy
We may update this Privacy Policy from time to time. Any changes will be posted on this page with an updated revision date. We encourage you to review this page periodically.