Undertaking by Jade E-Services

The Organisation did not have sufficiently robust retention policies. Background  The Personal Data Protection Commission (the “Commission”) received a data breach notification on 11 September 2021 from Jade E-Services Singapore Pte. Ltd. (“Organisation”) following an incident where a marketing email was wrongly sent, because of an employee’s lapse. The marketing…

Read More

Investigations into Yoshi Mobile for suspected cheating offences

Neo was also suspected to have abused the computer systems holding the customers’ personal data. The Personal Data Protection Commission (“PDPC”) has imposed a financial penalty of $US21,000 on Neo Yong Xiang (“Neo”), the sole proprietor of mobile phone retailer Yoshi Mobile. Neo had used customers’ details to register pre-paid…

Read More

PDPC fines Singapore hotel bookings platform for data breach

Database containing 5M customer records had been accessed and exfiltrated. The Personal Data Protection Commission (“the Commission”) received a data breach notification from Commeasure Pte Ltd (“the Organisation”) that its database containing 5,892,843 customer records had been accessed and exfiltrated (“the Incident”). The Organisation first found out about the data…

Read More

PDPC fines SAP Asia for breach of the protection obligation

A financial penalty of S$13,500 was imposed. The Personal Data Protection Commission Singapore has imposed a fine on SAP Asia for failing to put in place reasonable security arrangements to protect personal data of its former employees. This resulted in an unauthorised disclosure of the personal data to unintended recipients.…

Read More

Developing the MVP for AI governance

Testing Framework aims to help AI system-owners and or developers . Singapore’s Infocomm Media Development Authority (IMDA) and the PDPC are working with like-minded partners to develop a credible Minimum Viable Product (MVP) that will allow industry to achieve greater transparency around AI systems, and enable organisations to deploy AI…

Read More

PDPC fines Tripartite Alliance for failure to secure its database

Unauthorised access of approximately 20,000 individuals’ and companies’ was preventable. Singapore’s Personal Data Protection Commission (PDPC) has fined Tripartite Alliance SG$29,000. According to the PDPC Tripartite failed to put in place reasonable security arrangements to prevent the unauthorised access of approximately 20,000 individuals’ and companies’ data stored in its customer relationship…

Read More