logo

Database

PDPA

Last updated: 2023/09/18
logo

Singapore's Personal Data Protection Act (PDPA) regulates the collection, use and disclosure of personal data in Singapore by giving enforceable rights to users, placing the responsibility of lawful data processing on the shoulders of websites, companies and organizations. The version used in this section is PDPA 2020.

Control-Requirement Mapping

DefinitionRequirements
3_12. Policies and practices
4_13. Consent required
4_14. Provision of consent
4_16. Withdrawal of consent
4_20. Notification of purpose
5_21. Access to personal data
5_22. Correction of personal data
6_24. Protection of personal data
6_25. Retention of personal data
6A_26B. Notifiable data breaches
6A_26D. Duty to notify occurrence of notifiable data breach
6A_26E. Obligations of data intermediary of public agency
9B_48D. Unauthorized disclosure of personal data
9B_48E. Improper use of personal data
9B_48F. Unauthorized re‑identification of anonymized information