Privacy Notice
Last updated: 30 June 2026
Executive AI Institute Pte. Ltd. (UEN 202947182K) is the data controller for personal data collected through executiveaiinstitute.pro and related institute enrolment processes. Our registered address is 20 Cecil Street, #16-05 PLUS, Singapore 049705. Privacy enquiries: [email protected].
This notice explains how we collect, use, disclose, and protect personal data under the Personal Data Protection Act 2012 (PDPA) of Singapore. It applies to website visitors, programme enquirers, enrolled participants, corporate billing contacts, and alumni forum attendees. By submitting forms or enrolling in institute modules, you acknowledge this notice. Where we rely on consent, you may withdraw it subject to legal or contractual restrictions — withdrawal may limit our ability to deliver programmes you have requested.
Identity and contact: full name, job title, organisation, work email, telephone number, business address, and national identification or passport details where required for venue access or corporate invoicing.
Enrolment and attendance: module selections, cohort dates, attendance records, assessment outcomes where applicable, dietary or accessibility requirements you voluntarily provide, and correspondence with faculty facilitators.
Technical data: IP address, browser type, device identifiers, pages viewed, referral URLs, and cookie identifiers described in our cookie policy.
Payment data: billing contact details and transaction references. Card payments are processed by third-party payment gateways; we do not store full card numbers on institute servers.
We process personal data for these legitimate purposes: responding to programme and corporate enquiries; administering enrolment contracts and cohort schedules; delivering executive AI education seminars; issuing completion certificates; complying with ACRA, tax, and audit obligations; improving website security and performance; sending service communications about modules you have booked; and, where you opt in, sharing institute news relevant to senior leaders.
We do not sell personal data to data brokers. We do not use enrolment information to offer unrelated financial products, crypto schemes, or life-coaching services.
Depending on context, we rely on: (a) consent — marketing emails, optional analytics cookies, and sensitive accessibility information; (b) contractual necessity — delivering programmes you or your employer purchased; (c) legal obligation — tax invoices, fraud prevention, and regulatory requests; (d) legitimate interests — website security, aggregated analytics, and defending legal claims, balanced against your reasonable expectations as a corporate professional browsing an executive education site.
We may share personal data with: cloud hosting providers maintaining Singapore or ASEAN data centres; email delivery services transmitting enrolment confirmations; payment processors; professional advisers (lawyers, accountants) under confidentiality; and corporate sponsors who fund your seat, limited to attendance confirmation where your employer contracts us. Transfers outside Singapore occur only with appropriate safeguards such as contractual clauses or your explicit consent for specific tools.
Enquiry records: twenty-four months after last contact unless an enrolment follows. Enrolment and certificate records: seven years after programme completion for audit and dispute resolution. Marketing suppression lists: indefinitely to honour unsubscribe requests. Server logs: ninety days unless security investigation requires longer retention. Cookie consent logs: six months aligned with banner messaging.
You may request access to personal data we hold about you, correction of inaccurate data, and information about how we have used your data in the past year. You may withdraw consent for marketing and non-essential cookies. You may lodge a complaint with the Personal Data Protection Commission (PDPC) if you believe we have handled your data improperly. Contact [email protected] before escalating — we aim to resolve concerns within twenty-one business days.
We implement access controls, encrypted transport (HTTPS), staff confidentiality training, and vendor due diligence. No internet transmission is perfectly secure; submit sensitive documents through encrypted channels we provide during enrolment rather than unencrypted email when possible.
See our cookie policy for categories, durations, and opt-out instructions. Essential cookies operate the contact form and consent banner. Analytics cookies fire only after you accept them via the banner.
Our institute serves senior corporate professionals. We do not knowingly collect data from individuals below eighteen. If you believe a minor submitted data, contact us for deletion.
We update this notice when practices or regulations change. Material updates appear on this page with a revised "Last updated" date. Continued use after changes constitutes acknowledgement for non-material edits; enrolment contracts may require re-consent for material processing changes.
Data Protection Officer correspondence: [email protected]. Postal: Executive AI Institute Pte. Ltd., 20 Cecil Street, #16-05 PLUS, Singapore 049705. PDPC website: https://www.pdpc.gov.sg — for guidance on individual rights and complaint procedures in Singapore.
We do not use personal data to make solely automated decisions with legal or similarly significant effects on individuals. Enrolment assessments involve human facilitator judgement. Website analytics, when enabled, produce aggregated statistics without profiling executives for credit or employment decisions.
Institute newsletters and programme announcements are sent only when you opt in via enrolment forms or explicit marketing consent checkboxes. Every email includes an unsubscribe mechanism honoured within ten business days. Service messages about modules you have booked are not marketing and may be sent under contractual necessity even if marketing is declined.
When your employer sponsors your seat, we share attendance confirmation and certificate status with designated HR or learning-and-development contacts named on the corporate agreement. We do not share classroom discussion content or peer feedback without consent. Sponsors must provide their own privacy notices to employees where required.
We maintain incident response procedures aligned with PDPA guidance. If a breach likely causes significant harm, we will notify affected individuals and the PDPC without undue delay, documenting remedial steps and support offered to impacted participants.
Alumni events may publish attendee name badges and organisation titles within the room. Photography at institute events is opt-in. LinkedIn or social posts by participants are their own responsibility; faculty slides may be shared under institute intellectual property terms stated in enrolment packs.
Regional executives travelling to Singapore for institute modules may provide passport details for building access. Such data is used only for venue security and deleted after the module concludes unless longer retention is required for invoicing or immigration documentation you request.
This notice was reviewed and published on 30 June 2026. Prior versions are available on request for compliance audits. Material changes will be highlighted at the top of this page for thirty days after publication.
Contact form submissions without follow-up enrolment: deleted after twenty-four months. Paid enrolment contracts: retained seven years including invoice line items and attendance sheets. Certificate registries: retained indefinitely in anonymised aggregate for statistical reporting; identifiable records follow the seven-year rule. Security incident logs: up to three years. Employee access logs to participant data: ninety days unless investigation requires extension with documented approval.
Submit access or correction requests to [email protected] with sufficient identity verification (corporate email, enrolment reference, or signed letter for corporate sponsors). We respond within thirty calendar days unless complexity requires extension under PDPA. Excessive or repetitive requests may incur reasonable administrative fees stated in advance.
We check Singapore Do Not Call Registry requirements before telemarketing to residential numbers. Business contact numbers provided in corporate enquiries may receive service calls about institute programmes you requested. Opt out anytime via email.
We collect only data necessary for the stated purpose. Optional fields on contact forms are clearly marked. Enrolment forms avoid requesting sensitive health data unless you voluntarily disclose accessibility needs for venue planning. Financial data beyond billing contacts is not collected on marketing pages.
Third-party processors handling personal data on our behalf are bound by written agreements requiring PDPA-compliant safeguards, breach notification cooperation, and deletion upon contract termination. Processor lists are available to corporate clients during vendor due diligence upon request.
If you remain dissatisfied after contacting [email protected], you may escalate to the Personal Data Protection Commission. We cooperate with regulatory enquiries and document remedial actions taken in response to valid complaints about institute data handling practices.
Executives attending from Malaysia, Indonesia, or other jurisdictions receive the same privacy protections during Singapore modules. Data collected for visa invitation letters is minimised and deleted after travel unless you enrol in additional programmes requiring retention.
We may publish anonymised statistics about cohort composition, module completion rates, and industry representation for institute transparency reports. No individual executive is identifiable in public summaries without separate written consent for named case studies or testimonials.
For any privacy matter not covered above, email [email protected] or write to our data protection contact at 20 Cecil Street, #16-05 PLUS, Singapore 049705. We aim to acknowledge receipt within three business days and resolve straightforward requests within twenty-one business days.