Privacy Policy
Last updated: 28 August 2026
North Signal Pro ("we", "our", or "us") is committed to protecting personal data in compliance with the Personal Data Protection Act 2012 (PDPA) of Singapore. This Privacy Policy describes how we collect, use, disclose, and safeguard information when you visit northsignalpro.life or engage our public relations services.
1. Organisation details
North Signal Pro operates from 182 Cecil Street, #12-01, Frasers Tower, Singapore 069547. Privacy enquiries: hello@northsignalpro.life, +65 6228 3915.
We are a professional services organisation providing public relations counsel. Personal data is processed only for legitimate business purposes related to enquiries, client service, and website operation.
2. Application
This policy covers personal data processed through our website contact form, email and telephone communications, in-person meetings at our Frasers Tower office, and client service delivery. Third-party websites linked from our pages are governed by their own policies.
If you interact with us on professional networking platforms or at industry events, those interactions may also involve personal data processing governed by this policy when information is transferred to our client relationship systems.
3. Categories of personal data
3.1 Data you provide
Contact form submissions may include name, email, phone number, company, and message content. Client engagements may additionally involve billing contacts, authorised representatives, and project-related correspondence.
We may record meeting notes from consultations that reference your role and organisation. These notes support proposal development and are stored with the same protections as other enquiry data.
3.2 Automatically collected data
Hosting servers may log IP addresses, browser identifiers, request timestamps, and referring URLs. We do not operate advertising trackers or third-party analytics on this website.
3.3 Third-party sources
Where you register for events or are referred by partners who have obtained your consent, we may receive contact details which we verify before processing.
3.4 Sensitive data
We do not intentionally collect sensitive personal data such as national identification numbers, health records, or financial account credentials through our website. If such information appears inadvertently in a message you send, we delete it from active systems once the enquiry is resolved unless retention is required by law.
4. Purposes of use
- Responding to enquiries and scheduling consultations
- Performing contracted PR and communications services
- Administrative functions including invoicing and account management
- Legal compliance and professional record-keeping
- Website security and technical maintenance
- Improving service quality through aggregated, non-identifying analysis
We do not sell personal data. Marketing communications are sent only with your consent or where permitted under applicable law.
Where we prepare press materials naming your executives or employees, we process their professional details solely for the agreed communications activity and retain copies only as long as needed for that purpose or as required by professional record-keeping standards.
5. Legal grounds
Processing is based on consent (contact submissions), contractual necessity (service delivery), legal obligations, and legitimate interests such as fraud prevention and business record maintenance, balanced against your rights.
When we rely on legitimate interests, we assess whether those interests are overridden by your privacy rights. For example, maintaining contact logs for security purposes is necessary to protect both our systems and visitors from abuse.
6. Sharing with third parties
We may disclose data to email and hosting providers under confidentiality agreements, professional advisers when necessary, authorities when legally required, and media contacts only with your explicit approval for agreed PR activities.
Before sharing spokesperson contact details with journalists, we obtain client approval specifying which individuals may be approached and for which topics. Unapproved outreach is not permitted.
We maintain an internal register of categories of recipients and review it when service providers change.
7. Cross-border transfers
Primary processing occurs in Singapore. Transfers abroad for regional media coordination or cloud services are protected through contractual safeguards ensuring comparable PDPA standards.
Examples include email routing through global providers, cloud document storage with regional redundancy, or sharing spokesperson biographies with international journalists as part of agreed outreach. We document transfer mechanisms available under PDPA guidance.
8. Retention
Enquiries: up to 24 months unless a client relationship forms. Client records: duration of engagement plus seven years. Server logs: approximately 90 days. Expired data is deleted or anonymised securely.
Retention periods reflect professional services standards in Singapore, including the need to maintain correspondence that may relate to contractual disputes, regulatory inquiries, or tax record requirements. When data is no longer required, we use secure deletion methods for electronic records and confidential disposal for printed materials where applicable.
If you request deletion of enquiry data before the standard retention period ends, we will comply unless a legal or legitimate business need requires continued storage.
9. Security
We employ access controls, HTTPS encryption, restricted data directories, and staff confidentiality policies. While we implement reasonable safeguards, no electronic transmission is entirely risk-free.
Staff receive guidance on handling sensitive client information, recognising phishing attempts, and securing devices used for remote work. Contact form submissions are stored in directories blocked from public web access via server configuration. We review our practices periodically and adjust controls when technology or threat landscapes change.
Physical documents created for client meetings at our Frasers Tower office are stored in locked cabinets when not in use and shredded when no longer required.
10. Your PDPA rights
Subject to exceptions under Singapore law, you have the right to request access to personal data we hold about you, request correction of inaccurate or incomplete data, withdraw consent for processing that relies on consent where applicable, and request information about how your data has been used or disclosed within the past year.
To exercise these rights, email hello@northsignalpro.life with sufficient detail to identify your request. We respond within thirty days unless an extension is permitted by law. We may charge a reasonable fee for manifestly unfounded or excessive requests.
Correction requests should specify the inaccurate field and provide the correct information. We update records promptly after verifying your identity.
11. Consent withdrawal
Withdrawing consent does not affect prior lawful processing. Certain records may be retained where required by law or legitimate business needs.
By submitting our contact form, you consent to processing for the purpose of responding to your enquiry. You may withdraw that consent by emailing us; we will stop further outreach except where another legal basis applies.
12. Minors
Our services target business professionals. We do not knowingly collect data from persons under 18.
If you are a parent or guardian and believe your child has submitted personal data through our contact form, please contact us and we will delete the information promptly.
13. Breach notification
Significant breaches are assessed promptly and reported to the Personal Data Protection Commission and affected individuals as PDPA requires.
Our internal procedure includes containment, impact assessment, notification decisions, and post-incident review to strengthen controls. Clients whose data may be affected receive direct communication without undue delay when legally required.
We document lessons learned after incidents and update security controls where gaps are identified.
14. External links
We are not responsible for privacy practices on linked external websites.
Links to journalist profiles, industry publications, or professional associations are provided for context when discussing media relations services. Those destinations operate under their own privacy terms.
15. Policy updates
Changes appear on this page with an updated date. Material revisions may be highlighted on our website or communicated to active clients.
We recommend reviewing this policy periodically if you maintain an ongoing relationship with us or subscribe to service updates.
Previous versions are not maintained on the Website. Contact us if you require historical policy text for compliance documentation.
Continued use of our services after an update constitutes acknowledgement of the revised policy where permitted by law.
16. Data protection contact
Our team handles privacy enquiries directly rather than routing them through generic inboxes. Include "Privacy request" in your subject line to help us prioritise PDPA-related correspondence.
We aim to acknowledge privacy requests within five business days even when full responses require the full statutory period.
17. Accuracy of personal data
We take reasonable steps to ensure personal data is accurate and complete for the purposes for which it is used. Please notify us promptly if your contact details change so we can update our records.
Clients should review press materials and spokesperson biographies before publication to confirm accuracy of titles, tenure, and factual claims.
18. Complaints handling
If you believe we have handled your personal data improperly, contact us with details of your concern. We investigate complaints fairly and document outcomes. Unresolved matters may be referred to the Personal Data Protection Commission.
We maintain internal records of privacy complaints and resolutions to identify recurring issues and improve our practices. You may request confirmation that your complaint was received and an estimated timeline for response.
19. Contact
North Signal Pro — Privacy
182 Cecil Street, #12-01, Frasers Tower, Singapore 069547
If you are not satisfied with our response to a privacy enquiry, you may contact the Personal Data Protection Commission of Singapore for further guidance.
We treat privacy enquiries with the same confidentiality standards applied to client communications.
Response times may vary during peak periods; we prioritise matters relating to active client engagements and regulatory deadlines.