CPIS, Commercial Investigations LLP
Legal · Privacy

Privacy Policy

How CPIS LLP collects, uses and protects your personal data, written in plain language, compliant with Singapore's PDPA.

Effective 1 April 2026Document v3.2Governed by the laws of Singapore

Section 01

Scope of this Policy

This Privacy Policy explains how Commercial Investigations (CPIS) LLP (“CPIS”, “we”, “us”) collects, uses, discloses and safeguards personal data in the course of providing private investigation, due diligence and related professional services in Singapore.

It applies to clients, prospective clients, website visitors and any individual whose personal data we handle in connection with an engagement.

Section 02

Data we collect

We only collect personal data that is necessary for the purpose for which it is provided. This typically includes:

  • Identification details (name, NRIC/passport number, date of birth) where required for engagement or KYC.
  • Contact information (telephone, email, mailing address).
  • Case-related information voluntarily provided by you to scope an investigation.
  • Technical data from this website (IP address, device, pages visited) collected via standard server logs.

Section 03

How we use your data

Personal data is used strictly for purposes connected to the engagement or your interaction with us, including: scoping and delivering investigative services, communicating with you, complying with legal and regulatory obligations, and maintaining the security and operation of our systems.

We do not sell or rent personal data to third parties under any circumstances.

Section 04

Disclosure of personal data

We share personal data only where strictly necessary, and only with parties bound by equivalent confidentiality obligations. Recipients may include your appointed solicitor, the courts or regulators where required by law, and trusted vetted partners assisting on a specific matter.

Section 05

Retention

Case data is retained only for as long as necessary to fulfil the purpose for which it was collected, plus any period required by law or by the engagement letter. On request, we will return or securely destroy original documents at the close of a matter.

Section 06

Security

We apply administrative, physical and technical safeguards proportionate to the sensitivity of the data we handle, including access controls, encryption of data in transit and at rest, and a strict need-to-know policy within the firm.

Section 07

Your rights under the PDPA

Under Singapore's Personal Data Protection Act, you may request access to and correction of your personal data, and may withdraw consent to its further use, subject to legal and contractual restrictions.

Requests should be sent in writing to our Data Protection Officer at dpo@cpis.com.sg. We aim to respond within 30 days.

Section 08

Updates to this Policy

We may update this Policy from time to time. The latest version will always be published on this page with an updated effective date.

Questions about this document?

Our compliance desk is happy to clarify any clause or provide a signed PDF copy on request.

Call UsWhatsAppFree Consult