Skip to content
Singapore Accounting & Corporate Secretarial Services
Legal

Privacy Policy

How we collect, use, disclose, and protect personal data, in accordance with Singapore’s Personal Data Protection Act 2012 (PDPA).

Last updated: 20 August 2026

Enitus (“Enitus”, “we”, “us”, or “our”) respects your privacy and is committed to protecting your personal data in accordance with the Personal Data Protection Act 2012 of Singapore (“PDPA”). This Privacy Policy explains what personal data we collect, why we collect it, how we use and protect it, and the rights you have over it.

This policy applies to personal data collected through our website (enitus.com), our contact and enquiry forms, and in the course of providing accounting, corporate tax filing, corporate secretarial, payroll, and GST filing services to our clients.

Our Data Protection Officer

As required under the PDPA, Enitus has appointed a Data Protection Officer (“DPO”) responsible for ensuring our compliance with data protection law. You can reach our DPO at hello@enitus.com for any question, concern, or request relating to your personal data.

What personal data we collect

Depending on how you interact with us, we may collect:

  • Contact details — name, company name, phone number, and email address submitted through our enquiry form or given to us directly.
  • Enquiry details — the service you’re asking about and any message or additional information you choose to share.
  • Client and engagement data — for clients we act for, this may include company registration details, financial records, tax reference numbers, director and shareholder information, and other data necessary to provide accounting, tax, corporate secretarial, payroll, or GST services, as required under the Companies Act, the Income Tax Act, the GST Act, and related regulations.
  • Usage data — standard technical information such as IP address, browser type, pages visited, and time spent on our site, collected automatically when you use enitus.com.

How we use your personal data

We collect and use personal data only for purposes you would reasonably expect, including to:

  • Respond to enquiries submitted through our contact form
  • Provide, administer, and communicate about the services you’ve engaged us for
  • Prepare and file statutory returns, filings, and documents on your behalf with ACRA, IRAS, and other government bodies
  • Meet our own legal and regulatory obligations, including anti-money laundering (AML) and know-your-customer (KYC) checks
  • Maintain and improve our website and services
  • Send you information you’ve requested, or that we’re required to send as part of an engagement

We do not use your personal data for marketing communications unless you’ve given us clear consent to do so, and you may withdraw that consent at any time.

Disclosure of your personal data

We do not sell your personal data. We may disclose personal data to:

  • Government agencies and regulators (such as ACRA and IRAS), where required to deliver a service you’ve engaged us for or where required by law
  • Service providers who support our operations (such as email delivery and hosting providers), bound by confidentiality obligations and only to the extent needed to provide their service to us
  • Professional advisors, where necessary and permitted by law
  • Any party, where required by law, court order, or to protect our legal rights

How long we keep your data

We retain personal data only for as long as necessary to fulfil the purpose it was collected for, or as required by law. Client accounting and corporate records are generally retained for at least seven (7) years, in line with record-keeping requirements under IRAS and ACRA guidelines. Enquiry data from visitors who don’t go on to become clients is retained only as long as reasonably needed to respond to and follow up on that enquiry.

How we protect your data

We take reasonable technical and organisational measures to protect personal data against unauthorised access, collection, use, disclosure, or similar risks, including access controls and secure handling of client records. No method of transmission over the internet is completely secure, and while we work to protect your personal data, we cannot guarantee its absolute security.

Cookies

Our website may use cookies and similar technologies to help it function properly and to understand how visitors use the site. You can control or disable cookies through your browser settings; doing so may affect how parts of the site work.

Your rights

Under the PDPA, you have the right to:

  • Access the personal data we hold about you
  • Correct any personal data that is inaccurate or incomplete
  • Withdraw consent for us to collect, use, or disclose your personal data, subject to legal or contractual restrictions

To exercise any of these rights, contact our DPO at hello@enitus.com. We’ll respond within a reasonable time, and in any case within the timeframe required under the PDPA, after verifying your identity.

Third-party links

Our website may contain links to external sites, including official government sites like ACRA and IRAS. We are not responsible for the privacy practices of websites we don’t operate, and we encourage you to review their own privacy policies.

Changes to this policy

We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. The “Last updated” date at the top of this page shows when it was last revised. Material changes will be reflected here; we encourage you to review this page periodically.

Contact us

8 Burn Road, #06-13 Trivex, Singapore 369977+65 9658 9911hello@enitus.com
Let’s Talk

Have a question about how we handle your data?

8 Burn Road, #06-13 Trivex, Singapore 369977 · hello@enitus.com