Privacy Policy

Last Updated: February 2025

Our Commitment to Privacy

serenistygars is committed to protecting your personal data and your privacy. This Privacy Policy explains how we collect, use, and protect information when you visit our website or use our care services.

As a provider of senior care services, we process both general website data and sensitive health data of our residents. We strictly adhere to Singapore's Personal Data Protection Act (PDPA) and international standards.

Data Controller: serenistygars, 1 Orchard Boulevard, Singapore 248649
Contact: [email protected] | +65 6193 9517

What Data We Collect

1. Website Data

  • Contact form submissions (Name, email address, phone number, message)
  • IP address and browser information
  • Time and duration of your visit to our website
  • Pages visited and interactions
  • Cookie data according to your settings

2. Care and Health Data

For the professional care of our residents, we collect:

  • Personal details (Name, date of birth, address, emergency contacts)
  • Health information and medical history
  • Medication and treatment data
  • Care documentation and progress reports
  • Insurance information
  • Biographical data for individualised care

3. Next-of-Kin Data

  • Contact details of family members and related persons
  • Communication preferences
  • Powers of attorney and legal representation

How We Use Your Data

Care Services

  • Planning and providing individualised care
  • Medical care and monitoring
  • Coordination with doctors and therapists
  • Emergency management and crisis intervention
  • Quality assurance and documentation

Communication and Service

  • Responding to inquiries and providing advice
  • Appointment scheduling and coordination
  • Regular updates to next-of-kin
  • Improving our services
  • Website optimisation and user experience

Legal Bases for Data Processing

Consent:

For marketing communications and optional services

Performance of Contract:

To provide our care services

Legal Obligation:

For documentation and reporting duties

How We Protect Your Data

Technical Security Measures

  • SSL Encryption

    Secure data transmission between your browser and our server

  • Data Encryption

    Health data is stored encrypted on secure servers in Singapore

  • Firewall Protection

    Multi-layered protection against unauthorised access and cyberattacks

Organisational Measures

  • Access Controls

    Only authorised personnel have access to resident data

  • Staff Training

    Regular training on data protection and confidentiality

  • Regular Audits

    Continuous review and improvement of our data protection measures

Data Protection Standards

ISO 27001

Information Security

PDPA Compliant

Singapore Law

Best Practices

Industry Standards

Data Retention and Storage

Data Type Retention Period Basis / Purpose
Contact Form Data 3 Years Consultation and client service
Care Documentation 10 Years Legal retention obligation
Medical Data As per healthcare regulations Ministry of Health guidelines
Financial Records 7 Years Accounting & Corporate Law
Website Analytics 26 Months Legitimate interest
Marketing Data Until withdrawal of consent Consent

After the retention periods expire, data is securely deleted or anonymised. For ongoing care relationships, only data necessary for current care is retained.

Your Rights

Your PDPA Rights

  • Right to Access

    Request information about your personal data and how it is used

  • Right to Correction

    Correct any inaccurate or incomplete data we hold

  • Right to Withdraw Consent

    Withdraw consent for the collection, use, and disclosure of your data

Additional Rights

  • Right to Erasure

    Request deletion of your data, subject to legal obligations

  • Right to Data Portability

    Receive your data in a structured, machine-readable format

How to Exercise Your Rights

To exercise your rights, please contact our Data Protection Officer (DPO) in writing at:

Mail:

serenistygars
Data Protection Officer
1 Orchard Boulevard
Singapore 248649

We will process your request within 30 days. If we cannot meet this deadline, we will notify you accordingly.

Third-Party Services and International Transfers

External Service Providers

We work with carefully selected service providers who support us in delivering our services:

IT Infrastructure

  • • Hosting Provider (Singapore)
  • • Backup Services (Singapore)
  • • IT Maintenance and Support
  • • Cybersecurity Services

Medical Partners

  • • General Practitioners and Specialists
  • • Physiotherapy Practices
  • • Pharmacies
  • • Laboratories

Website Services

  • • Google Analytics (anonymised)
  • • Google Fonts
  • • Font Awesome
  • • SSL Certificate Provider

Administration

  • • Insurance Partners
  • • Legal Counsel
  • • Accounting Services
  • • Quality Auditing

Data Protection Standards for Partners

  • All partners are bound by data processing agreements
  • Regular data protection audits and reviews
  • Processing is carried out only according to our instructions
  • Preference for Singapore-based and PDPA-compliant providers

Changes and Contact

Changes to This Policy

We may occasionally update this Privacy Policy to reflect changes in our practices or applicable laws. For significant changes, we will inform you via email or through our website.

The current version of this policy is always available on our website. The date of the last update can be found at the top of this document.

Data Protection Contact

Phone

+65 6193 9517

Mailing Address

serenistygars
Data Protection Officer
1 Orchard Boulevard
Singapore 248649

Right to Complain

If you believe that the processing of your data violates applicable data protection law, you have the right to lodge a complaint with the relevant supervisory authority:

Personal Data Protection Commission (PDPC)
10 Pasir Panjang Road, #03-01 Mapletree Business City
Singapore 117438
Website: www.pdpc.gov.sg