PRIVACY POLICY AND DATA PROTECTION (PDPA COMPLIANT)

Last updated: March 2026

Responsible Entity: NovaCore Software Pte. Ltd.

Registered Office: 2 Venture Dr, #19-21 VISION EXCHANGE, Singapore 608526

Jurisdiction: Republic of Singapore

"This Privacy Policy governs the processing of data by NovaCore Software Pte. Ltd. (hereinafter, "the Company"). Our commitment to privacy is based on the Personal Data Protection Act 2012 (PDPA) of Singapore and the principle of Privacy by Design. We process the minimum information necessary to ensure the security and performance of the critical systems developed."

01 CLAUSE 1: REGULATORY FRAMEWORK AND COMMITMENT

Our commitment to privacy is governed by the Singapore PDPA. We implement advanced security protocols for the protection of digital assets.

02 CLAUSE 2: DATA CATEGORIES AND COLLECTION

NovaCore limits the collection of information to the following essential technical categories:

  • Technical Identity: Names, positions and emails voluntarily provided in forms or during requirements mapping.
  • Connectivity and Security: Anonymized IP addresses and connection metadata used for DDoS prevention and perimeter security audits.
  • Infrastructure Metrics: Aggregated usage data to optimize the performance of the delivered software architecture.

03 CLAUSE 3: TECHNICAL PURPOSES OF PROCESSING

Data is processed exclusively for:

  • Execution of engineering contracts and software deployment.
  • Security validation of nodes and development environments.
  • Compliance with legal obligations in the jurisdiction of Singapore.

04 CLAUSE 4: PROTECTION AND SECURITY PROTOCOL

We implement bank-level and critical infrastructure security standards:

  • Logical Isolation: Each database and client environment is logically isolated to prevent cross-leakage.
  • Encryption: We apply AES-256 algorithms at rest and TLS 1.3 protocols in transit.
  • Zero-Backdoor Architecture: Our systems are designed without backdoors; NovaCore does not retain credentials after the final technical transfer.

05 CLAUSE 5: INTERNATIONAL TRANSFERS

Where the infrastructure requires international cloud services (EU/USA), NovaCore ensures that the destination country provides a level of protection comparable to Singapore's PDPA under strict compliance protocols.

06 CLAUSE 6: TECHNICAL SOVEREIGNTY AND RIGHT TO BE FORGOTTEN

The user maintains full ownership over any processed data. NovaCore guarantees the permanent and irreversible deletion of technical data after contract termination or express request, respecting the right to be forgotten.

07 CLAUSE 7: DATA PROTECTION OFFICER (DPO) AND CONTACT

In accordance with Singapore law, any technical inquiries regarding the protection of your data or the exercise of your rights should be directed to our Data Protection Officer:

"Security is not a feature, it is a fundamental right of the code."

Data Protection Officer: