Privacy Policy

Last Updated: January 2025

Welcome to our Privacy Policy. Tenadue (UEN: 201996652X), registered with the Accounting and Corporate Regulatory Authority (ACRA) of Singapore, is committed to protecting your personal data and respecting your privacy rights. This policy explains how we collect, use, share, and protect your information when you use our corporate catering and event services website.

We comply with the Singapore Personal Data Protection Act (PDPA) 2012 and the European Union General Data Protection Regulation (GDPR) to ensure your data is handled with the highest standards of care and security.

1. Information We Collect

1.1 Personal Data

We collect personal information that you voluntarily provide to us when you:

  • Fill out contact forms: Name, email address, phone number, company name, event details, and any message or inquiry you submit
  • Request quotes: Event specifications, guest count, dietary requirements, budget information
  • Subscribe to newsletters: Email address and communication preferences
  • Book services: Billing information, delivery addresses, event venue details

1.2 Usage Data

We automatically collect certain information when you visit our website:

  • IP address and geographic location
  • Browser type and version
  • Device information (type, operating system)
  • Pages viewed and time spent on pages
  • Referring website addresses
  • Date and time of visits
  • Clickstream data and navigation patterns

1.3 Cookies and Tracking Data

We use cookies and similar tracking technologies to monitor activity on our website and store certain information. This includes session cookies, preference cookies, and analytics cookies.

2. How We Use Your Information

We process your personal data based on the following legal grounds:

Legitimate Business Purposes:

  • Service Delivery: To respond to your inquiries, provide quotes, and deliver corporate catering services
  • Customer Communication: To send confirmations, updates, invoices, and service-related notifications
  • Business Operations: To manage bookings, process payments, and maintain customer records
  • Service Improvement: To analyze website usage, understand customer preferences, and enhance our offerings
  • Marketing Communications: To send promotional materials about our services (with your consent)
  • Legal Compliance: To comply with applicable laws, regulations, and legal processes
  • Security: To protect against fraud, unauthorized access, and security threats

3. How We Share Your Information

We do not sell your personal data. We may share your information with:

3.1 Service Providers

  • Payment Processors: To process transactions securely
  • Cloud Hosting Services: To store data and host our website
  • Email Service Providers: To send communications and newsletters
  • Analytics Providers: To understand website performance and user behavior
  • Catering Partners: To fulfill service delivery when necessary

3.2 Legal Requirements

We may disclose your information if required by law, court order, or governmental authority, or to protect our legal rights and safety.

3.3 Business Transfers

In the event of a merger, acquisition, or sale of assets, your information may be transferred to the acquiring entity.

4. Cookies and Tracking Technologies

We use various tracking technologies to enhance your experience and understand how our services are used:

4.1 Google Analytics

We use Google Analytics to collect information about website usage, including:

  • Number of visitors and session duration
  • Pages viewed and user navigation paths
  • Geographic location and demographics
  • Traffic sources and referral information
  • Device and browser information

Google Analytics uses cookies to track and report website traffic. Data collected is processed in accordance with Google's Privacy Policy.

4.2 Google Ads Conversion Tracking and Remarketing

We use Google Ads to:

  • Track conversions from our advertising campaigns
  • Display targeted advertisements to previous visitors
  • Measure advertising effectiveness and ROI
  • Create custom audiences based on website interactions

4.3 Facebook Pixel

We implement Facebook Pixel for:

  • Tracking conversions from Facebook advertisements
  • Building custom audiences for targeted advertising
  • Remarketing to website visitors on Facebook and Instagram
  • Optimizing advertisement delivery to relevant audiences

4.4 How to Opt-Out

You can control and opt-out of tracking:

  • Adjust your browser settings to refuse cookies or alert you when cookies are being sent
  • Use browser extensions like Privacy Badger or uBlock Origin
  • Opt-out of Google Analytics by installing the Google Analytics Opt-out Browser Add-on
  • Manage Google Ads settings through your Google Account preferences
  • Control Facebook ad preferences in your Facebook account settings
  • Enable Global Privacy Control (GPC) in your browser

5. Your Privacy Rights

Under GDPR and Singapore PDPA, you have comprehensive rights regarding your personal data:

Right to Access

You can request a copy of all personal data we hold about you, including how it's being used and who it's shared with.

Right to Correction/Rectification

You can request that we correct any inaccurate or incomplete personal data we hold about you.

Right to Erasure (Right to be Forgotten)

You can request deletion of your personal data when it's no longer necessary for the purposes collected or if you withdraw consent.

Right to Data Portability

You can request to receive your personal data in a structured, commonly used, machine-readable format and transmit it to another controller.

Right to Object

You can object to processing of your personal data for direct marketing purposes or when processing is based on legitimate interests.

Right to Withdraw Consent

Where processing is based on consent, you can withdraw that consent at any time without affecting the lawfulness of prior processing.

Right to Restriction

You can request restriction of processing in certain circumstances, such as when contesting accuracy of data or objecting to processing.

Right to Non-Discrimination

You will not receive discriminatory treatment for exercising any of your privacy rights.

To exercise any of these rights, please contact us using the information provided at the end of this policy. We will respond to your request within 30 days.

6. Platform-Specific Disclosures

6.1 Google Services (Google Analytics & Google Ads)

Data shared with Google includes:

  • Website usage patterns and analytics data
  • Advertising interaction data and conversions
  • Cookie identifiers and device information
  • Anonymized user behavior and demographics

Google processes this data according to their Privacy Policy and Terms of Service. Data may be transferred internationally to Google's servers.

6.2 Meta/Facebook (Facebook Pixel & Custom Audiences)

Data shared with Meta includes:

  • Website visits and page views
  • Button clicks and form interactions
  • Purchase and conversion events
  • Hashed email addresses for Custom Audience matching

Meta uses this data for advertising optimization and audience targeting across Facebook and Instagram platforms.

6.3 Microsoft/Bing Ads

If we use Bing Ads, data shared includes:

  • Website visit information and conversions
  • Search query data and ad interactions
  • Device and browser information

7. Global Privacy Control (GPC) Support

We respect Global Privacy Control (GPC) signals sent by your browser. When we detect a GPC signal, we will:

  • Honor your opt-out preference for data sharing
  • Limit non-essential tracking and cookies
  • Restrict data sales and targeted advertising (where applicable)

To enable GPC: Use browsers or extensions that support GPC, such as Privacy Badger, DuckDuckGo, Brave, or Firefox with appropriate settings.

8. No Automated Decision-Making

We do not use automated decision-making processes, including profiling, that produce legal effects or similarly significantly affect you. All decisions regarding service provision, pricing, and customer interactions involve human review and judgment.

9. Data Security Measures

We implement comprehensive security measures to protect your personal data:

  • Encryption: SSL/TLS encryption for data transmission
  • Access Controls: Restricted access to personal data on a need-to-know basis
  • Secure Storage: Data stored on secure servers with regular backups
  • Regular Audits: Periodic security assessments and vulnerability testing
  • Employee Training: Staff trained on data protection and privacy practices
  • Incident Response: Procedures in place for data breach notification and response

However, no method of transmission over the internet or electronic storage is 100% secure. While we strive to protect your personal data, we cannot guarantee absolute security.

10. Data Retention Periods

We retain your personal data only for as long as necessary to fulfill the purposes outlined in this policy:

Data Type Retention Period
Contact Form Submissions 3 years from last interaction
Customer Service Records Duration of service relationship plus 7 years
Marketing Communications Until consent is withdrawn or 3 years of inactivity
Transaction Records 7 years for tax and accounting purposes
Website Analytics Data 26 months (Google Analytics default)
Cookie Data Up to 24 months depending on cookie type