Personal Data Protection Act 2012 (Singapore)
The Personal Data Protection Act 2012 (PDPA) is Singapore’s primary data protection legislation governing the collection, use, disclosure, storage, and protection of personal data by organisations. The Act establishes obligations for organisations, including consent requirements, purpose limitation, accountability, protection of personal data, data breach notification, and cross-border transfer safeguards. It also establishes the Personal Data Protection Commission (PDPC) as the regulatory authority responsible for enforcement and compliance. The PDPA applies to organisations handling personal data in Singapore and sets out individual rights, organisational responsibilities, and penalties for non-compliance.
Get new templates by email
A short, useful update whenever a new privacy template guide, knowledge-base resource or guide is published. No spam. Unsubscribe anytime.