Legal & privacy
Privacy Policy
Effective date: 8 August 2026
Scope and responsibility
Sino Ventures Group Pte. Ltd. (SVG, we, us or our) explains in this Privacy Policy how we collect, use, disclose, protect and retain personal data in connection with the SVG website, enquiries, registered member accounts, premium-insight access and related communications. Where we decide the purposes and means of handling personal data, we are the organisation responsible for that data under Singapore's Personal Data Protection Act 2012 (PDPA).
If SVG provides services under a written engagement, the engagement and any agreed data-protection terms govern client materials and personal data processed for that client. A client may control the purposes and instructions for its own data; this Policy continues to apply to the personal data SVG independently controls, including website, enquiry, account, security and business-administration records.
Personal data we collect
When you submit an enquiry, request information or apply for access to premium insights, we may collect your name, organisation, business email address, telephone number, country, selected area of interest, message, preferred contact method and consent choice. We collect the information you include in correspondence, meetings or materials you choose to submit.
When you register for an account, we collect your name and email address and store your password only in cryptographically hashed form. We also keep account, sign-in and session information needed to administer access and protect the account.
Our website and security controls may receive ordinary technical and security information, including IP address, user agent, session or CSRF cookie identifiers, requested paths, timestamps, referring page, error records and events generated when security controls detect suspected automation or misuse. We do not ask you to send sensitive, confidential or third-party personal data unless it is necessary for the specific purpose and you are authorised to provide it.
Why we use personal data
We use personal data to receive, assess and respond to enquiries; understand the business objective you choose to describe; communicate about a requested conversation or potential engagement; create and administer member accounts and premium-insight access; protect the website, accounts, personnel and information; investigate spam, fraud, misuse or security incidents; keep appropriate business and legal records; establish, exercise or defend legal claims; comply with law; and produce aggregated or anonymised operational information.
An enquiry, account registration or consent to this Policy does not by itself subscribe you to marketing communications.
Consent and other permitted processing
Where the PDPA requires consent, we provide notice of the purpose and seek consent, or rely on deemed consent only where the law permits. We may also collect, use or disclose personal data without consent where the PDPA or another applicable law permits or requires this, including for legitimate interests after considering safeguards and likely effects, legal claims, investigations, security, emergencies and compliance.
You may withdraw consent on reasonable notice through the Privacy / Data Protection channel described below. Withdrawal applies prospectively. It does not invalidate processing already carried out lawfully, and it may mean we cannot continue a requested communication, account feature or service where the relevant data is reasonably necessary.
Cookies, accounts and online tools
SVG uses essential cookies and similar technical controls to maintain a session, protect forms against cross-site request forgery, keep an account signed in and maintain website security. Blocking essential cookies may prevent the contact form, registration, login or premium content from working.
This Policy does not state that SVG uses optional analytics, advertising, retargeting or social-media tracking cookies. If SVG introduces an optional tool that changes the personal data collected through this website, we will update this Policy and obtain any notice or consent required by law before using it.
Disclosure and overseas transfers
We disclose personal data only where reasonably necessary to providers performing a defined function for us, such as hosting, database, email, communications, security, support or professional-advisory providers. We may disclose information to a client where it is necessary to administer that client's engagement, and to a buyer or successor in a genuine business transaction, subject to appropriate safeguards. We may also disclose information to police, regulators, cybersecurity authorities, courts, insurers, auditors or professional advisers where permitted or required by law, or reasonably necessary to investigate and respond to a threat or claim.
We do not sell personal data for payment. Some service providers may process personal data outside Singapore. Before an overseas transfer, we use measures appropriate to the circumstances, such as vendor assessment, data minimisation, access controls and contractual obligations requiring a standard of protection comparable to that required by the PDPA, unless another lawful transfer basis applies.
Security, retention and incidents
We use reasonable administrative, technical and physical safeguards appropriate to the nature of the personal data and the context, including access controls, authentication, environment separation, security monitoring, updates and encryption in transit where supported. No internet transmission or storage system is completely secure and we cannot guarantee absolute security.
We retain personal data only while a business or legal purpose continues. Retention depends on the data's nature, the enquiry or account lifecycle, security and backup needs, contractual requirements, limitation periods, an active dispute or investigation and legal obligations. We securely delete, destroy or anonymise data when retention is no longer necessary, subject to lawful holds and proportionate backup cycles.
We assess suspected data incidents, take reasonable steps to contain and remediate them, and determine whether notification is required. Where a breach is notifiable under applicable law, we will notify the relevant authority and affected individuals as required.
Access, correction and privacy requests
You may request access to personal data SVG controls about you, information about how it was used or disclosed where the PDPA requires this, correction of an error or omission, or withdrawal of consent. Deletion and restriction requests are assessed case by case; they are not absolute rights where SVG has a lawful reason to retain or continue using the data. We may verify your identity, authority and the request's scope. Statutory exceptions and a reasonable access fee may apply.
Use the site's contact channel and mark the request Privacy / Data Protection. We will respond as soon as reasonably practicable and, if we cannot respond within the period required by law, provide the update required by law.
Marketing and changes
We send marketing only where you have chosen it or another lawful basis applies. Each applicable marketing message provides a practical way to opt out. We will honour withdrawal and unsubscribe requests within a reasonable period and comply with applicable Do Not Call requirements for marketing sent to Singapore telephone numbers.
We may update this Policy prospectively when our practices, services, providers or legal obligations change. The effective date identifies the current version. We will provide proportionate notice of a material change and seek a fresh acknowledgement where required; an update does not retrospectively make an earlier use lawful.
生效日期:2026 年 8 月 8 日
适用范围与责任
Sino Ventures Group Pte. Ltd.(简称 SVG、我们或本公司)通过本隐私政策说明,我们如何就 SVG 网站、咨询请求、注册会员账户、高级商业洞察访问权限及相关通信收集、使用、披露、保护和保留个人资料。当我们决定个人资料的处理目的与方式时,我们是新加坡《2012 年个人资料保护法》(PDPA)所指、对该资料负责的组织。
如果 SVG 根据书面委托提供服务,相关委托文件及双方商定的数据保护条款将规管为该客户处理的客户材料与个人资料。客户可能控制其自身资料的处理目的与指示;本政策继续适用于 SVG 独立控制的个人资料,包括网站、咨询、账户、安全及业务行政记录。
我们收集的个人资料
当您提交咨询、索取资料或申请访问高级商业洞察时,我们可能收集您的姓名、机构、商务电邮地址、电话号码、国家或地区、所选关注领域、留言、首选联络方式及同意选择。我们也会收集您在通信、会议或自愿提交的材料中提供的信息。
当您注册账户时,我们会收集姓名与电邮地址,并仅以密码学哈希形式储存密码。我们也会保留管理访问权限和保护账户所需的账户、登录及会话信息。
我们的网站及安全控制可能接收一般技术与安全信息,包括 IP 地址、用户代理、会话或 CSRF Cookie 标识符、所请求路径、时间戳、来源页面、错误记录,以及安全控制检测到疑似自动化或滥用时产生的事件。除非特定目的确有需要且您获授权提供,否则我们不会要求您发送敏感、机密或属于第三方的个人资料。
我们使用个人资料的原因
我们使用个人资料以接收、评估及回应咨询;了解您选择描述的业务目标;就您要求的对话或潜在合作进行通信;建立和管理会员账户及高级商业洞察访问权限;保护网站、账户、人员与信息;调查垃圾信息、欺诈、滥用或安全事件;保留适当的业务与法律记录;确立、行使或抗辩法律权利;遵守法律;以及制作汇总或匿名化的运营信息。
提交咨询、注册账户或同意本政策,本身并不表示您订阅了营销通信。
同意及法律允许的其他处理方式
在 PDPA 要求同意的情况下,我们会告知相关目的并征求同意;只有在法律允许时,才会依据推定同意。PDPA 或其他适用法律允许或要求时,我们也可能在没有同意的情况下收集、使用或披露个人资料,包括在考虑保障措施及可能影响后基于合法利益进行处理,以及为法律申索、调查、安全、紧急情况或合规而处理。
您可以通过下述“隐私/数据保护”渠道,在给予合理通知后撤回同意。撤回只对之后的处理生效,不会令此前依法进行的处理失效。如果相关资料是继续提供所请求通信、账户功能或服务的合理必要条件,撤回同意可能导致我们无法继续提供这些项目。
Cookie、账户与线上工具
SVG 使用必要 Cookie 及类似技术控制,以维持会话、防止跨站请求伪造、保持账户登录状态及维护网站安全。阻止必要 Cookie 可能导致联系表格、注册、登录或高级内容无法正常运作。
本政策并未表示 SVG 使用可选的分析、广告、再营销或社交媒体追踪 Cookie。如果 SVG 日后引入会改变本网站个人资料收集方式的可选工具,我们会在使用前更新本政策,并提供法律要求的通知或取得所需同意。
披露与境外传输
只有在合理必要时,我们才会向代表我们履行明确职能的服务提供商披露个人资料,例如托管、数据库、电邮、通信、安全、支持或专业顾问服务商。为管理客户委托而有必要时,我们可能向该客户披露信息;在真实商业交易中,也可能在采取适当保障措施的前提下向买方或承继者披露。法律允许或要求时,或为调查和回应威胁或申索而合理必要时,我们也可能向警方、监管机构、网络安全主管机关、法院、保险公司、审计师或专业顾问披露信息。
我们不会以收取款项为目的出售个人资料。部分服务提供商可能在新加坡境外处理个人资料。进行境外传输前,我们会根据实际情况采取适当措施,例如供应商评估、数据最小化、访问控制,以及通过合约要求提供与 PDPA 相当的保护标准;若适用其他合法传输依据,则按该依据处理。
安全、保留与事件
我们会根据个人资料的性质与处理环境,采用合理的行政、技术与实体保障措施,包括访问控制、身份验证、环境隔离、安全监控、更新,以及在技术支持时对传输进行加密。任何互联网传输或储存系统都不可能绝对安全,因此我们无法保证完全安全。
我们只会在业务或法律目的持续存在期间保留个人资料。保留期限取决于资料性质、咨询或账户生命周期、安全与备份需要、合约要求、法定时效、正在进行的争议或调查,以及法律义务。保留不再必要时,我们会安全删除、销毁或匿名化资料,但仍须遵守合法保留要求与适度的备份周期。
我们会评估疑似数据事件,采取合理步骤控制与修复,并判断是否需要通知。如果根据适用法律属于须通报的数据泄露,我们会按要求通知有关主管机构及受影响个人。
查阅、更正与隐私请求
您可以要求查阅 SVG 控制的、与您有关的个人资料;在 PDPA 要求时,了解资料如何被使用或披露;更正错误或遗漏;或撤回同意。删除与限制处理请求会按个别情况评估;当 SVG 有合法理由保留或继续使用资料时,这些请求并非绝对权利。我们可能核实您的身份、授权及请求范围。法定例外及合理的查阅费用可能适用。
请使用网站的联系渠道,并把请求标注为 隐私/数据保护。我们会在合理可行的情况下尽快回应;如果无法在法律规定期限内答复,也会按法律要求提供进度说明。
营销与政策变更
只有在您主动选择接收营销,或存在其他合法依据时,我们才会发送营销通信。每则适用的营销信息都会提供实际可用的退出方式。我们会在合理期限内执行撤回与退订请求,并遵守向新加坡电话号码发送营销信息所适用的“谢绝来电”规定。
当我们的做法、服务、供应商或法律义务发生变化时,我们可能以前瞻方式更新本政策。生效日期标明当前版本。若变更重大,我们会提供与其重要程度相称的通知,并在法律要求时重新取得确认;政策更新不会追溯使此前不合法的使用变为合法。