Privacy Policy
Last Updated: October 2025
Our Commitment to Privacy
At Velocity AI, we recognize that privacy is fundamental to maintaining trust with our clients and website visitors. This Privacy Policy explains how we collect, use, protect, and share personal data in connection with our AI integration services and website operations.
We comply with Singapore's Personal Data Protection Act 2012 (PDPA) and international data protection standards. This policy applies to all personal data we collect through our website, services, and business interactions.
Data We Collect
Information You Provide
We collect personal data you voluntarily provide when:
- Contact Forms: Name, email address, phone number, company name, and message content
- Service Inquiries: Business requirements, technical specifications, project details
- Client Engagements: Contract information, billing details, communication records
- Newsletter Subscriptions: Email address and communication preferences
Automatically Collected Information
We automatically collect certain information when you visit our website:
- Usage Data: Pages visited, time spent, navigation patterns, referring websites
- Device Information: Browser type, operating system, device identifiers, screen resolution
- Location Data: IP address, approximate geographic location based on IP
- Cookies: As described in our Cookie Policy, for analytics and website functionality
Information from Third Parties
We may receive data from:
- Business partners and referral sources
- Publicly available sources such as business directories
- Professional networking platforms with your consent
- Analytics and advertising service providers
How We Use Your Data
Service Delivery
- Responding to inquiries and providing requested information
- Delivering AI integration services and technical support
- Managing client relationships and service agreements
- Processing payments and maintaining financial records
Communication
- Sending service updates and technical notifications
- Providing customer support and addressing concerns
- Sharing relevant industry insights and thought leadership
- Marketing communications (with consent, easily unsubscribable)
Website Improvement
- Analyzing website usage to enhance user experience
- Identifying technical issues and improving performance
- Developing new features based on user behavior
- Conducting security monitoring and fraud prevention
Legal Compliance
- Meeting regulatory and legal obligations
- Responding to legal processes and government requests
- Protecting our rights and preventing misuse
- Maintaining records for tax and accounting purposes
Legal Basis for Processing
We process personal data based on the following legal grounds:
- Consent: When you provide explicit consent for specific purposes such as marketing communications or newsletter subscriptions. You may withdraw consent at any time.
- Contract Performance: When processing is necessary to fulfill service agreements or respond to service inquiries you have initiated.
- Legitimate Interest: For business operations such as improving our services, preventing fraud, and ensuring network security, provided your rights are not overridden.
- Legal Obligation: When we must process data to comply with legal requirements, such as tax regulations or responding to lawful requests from authorities.
Data Security Measures
We implement comprehensive security measures to protect personal data against unauthorized access, disclosure, alteration, or destruction:
- Encryption: Data transmitted to and from our website uses SSL/TLS encryption. Sensitive data at rest is encrypted using industry-standard protocols.
- Access Controls: Personal data access is restricted to authorized personnel only, with role-based permissions and multi-factor authentication.
- Security Monitoring: Continuous monitoring for security threats and suspicious activities with automated alerting systems.
- Regular Audits: Periodic security assessments and penetration testing to identify and address vulnerabilities.
- Employee Training: Regular training for staff on data protection practices and security protocols.
- Vendor Management: Third-party service providers undergo security assessments and are bound by confidentiality agreements.
Data Breach Notification: In the unlikely event of a data breach affecting your personal data, we will notify affected individuals and relevant authorities within 72 hours as required by PDPA, providing details of the breach and our response measures.
Data Sharing and Disclosure
We do not sell personal data. We may share data with:
Service Providers
Third-party vendors performing services on our behalf:
- Cloud hosting and infrastructure providers
- Email and communication platforms
- Analytics and monitoring services
- Payment processing services
- Customer relationship management systems
Business Partners
With your consent, we may share limited information with:
- Technology partners supporting service delivery
- Professional advisors (legal, accounting, consulting)
- Business entities involved in corporate transactions
Legal Requirements
We may disclose data when required by law or to:
- Comply with legal processes or government requests
- Enforce our terms and conditions
- Protect our rights, property, or safety
- Prevent fraud or security threats
Data Retention
We retain personal data only as long as necessary for the purposes outlined in this policy or as required by law:
- Contact Form Submissions: 3 years from last contact
- Client Service Records: 5 years following service completion
- Financial Records: 7 years as required by tax regulations
- Marketing Communications: Until consent is withdrawn or 2 years of inactivity
- Website Analytics: 26 months maximum (Google Analytics standard)
After retention periods expire, we securely delete or anonymize data to prevent identification. Anonymized data may be retained for statistical and research purposes.
Your Privacy Rights
Under Singapore's PDPA and international data protection laws, you have the following rights:
Right to Access
Request copies of personal data we hold about you. We will provide this information within 30 days of verification.
Right to Correction
Request correction of inaccurate or incomplete personal data. We will update records promptly upon verification.
Right to Erasure
Request deletion of personal data where there is no compelling reason for continued processing, subject to legal retention requirements.
Right to Data Portability
Receive personal data in a structured, commonly used format for transmission to another data controller where technically feasible.
Right to Object
Object to data processing based on legitimate interests. We will cease processing unless we demonstrate compelling legitimate grounds.
Right to Withdraw Consent
Withdraw previously given consent at any time. This will not affect the lawfulness of processing based on consent before withdrawal.
Right to Lodge Complaints
File complaints with the Personal Data Protection Commission (PDPC) in Singapore regarding our data handling practices.
Exercising Your Rights: To exercise any of these rights, please contact us at [email protected]. We will respond within 30 days after verifying your identity.
International Data Transfers
Our primary operations are in Singapore. However, some service providers may process data outside Singapore. When transferring data internationally, we ensure:
- Transfers only to countries with adequate data protection standards
- Use of standard contractual clauses approved by relevant authorities
- Implementation of additional safeguards where necessary
- Compliance with cross-border data transfer requirements under PDPA
Children's Privacy
Our services are intended for businesses and professional audiences. We do not knowingly collect personal data from individuals under 18 years of age. If we become aware that we have collected data from a minor without appropriate consent, we will take steps to delete such information promptly.
Changes to This Privacy Policy
We may update this Privacy Policy periodically to reflect changes in our practices, technology, legal requirements, or business operations. When we make material changes, we will:
- Update the "Last Updated" date at the top of this policy
- Notify active clients via email when changes significantly affect their data
- Provide notice on our website for a reasonable period
- Obtain new consent where required by law
We encourage you to review this policy regularly to stay informed about how we protect your privacy.
Contact Information
For questions about this Privacy Policy, to exercise your rights, or to discuss privacy concerns, please contact us:
Velocity AI
79 Anson Road
Singapore 079906
Email: [email protected]
Phone: +65 6394 8275
We aim to respond to all privacy inquiries within 30 days. For urgent matters, please indicate this in your communication.