Privacy Policy

Your information is handled for a clear purpose.

This policy explains the information Timeliss handles, why we need it, who may receive it and the choices available to you.

Last updated 12 July 2026

A protected folder and security shield

1. Scope of this policy

This policy applies when you visit Timeliss websites, create or access an account, complete a service intake, use a guided tool, participate in a case, communicate with us, or are referred by an employer, adviser, insurer or service partner.

A case may contain information about the person requesting help, family members, beneficiaries, executors, donees, witnesses, deceased persons and professional contacts. Only provide another person’s information when you are authorised to do so and it is relevant to the requested service.

2. Information we collect

  • Account and identity information: name, email address, telephone number, authentication identities and account-security activity.
  • Intake and case information: service needs, relationships, country, urgency, planning preferences, case answers, tasks, notes and status history.
  • Documents and records: files you upload or that authorised participants and service providers add to a case.
  • Communications: email and WhatsApp delivery records, support enquiries, notification preferences and messages connected with a case.
  • Transaction information: quotes, acceptance records, payment status and provider references. Payment-card details may be collected directly by the payment provider rather than Timeliss.
  • Technical information: device and browser data, IP address, security logs, session information, audit records and referral or campaign parameters.

We receive information directly from you, from people authorised to participate in a case, from organisations making a permitted referral, and from authentication, communications, storage or payment providers used to deliver the platform.

3. How we use information

We use information to:

  • identify the relevant country and service workflow;
  • create and operate accounts, service intakes, tools and secure case dashboards;
  • prepare recommendations, checklists, drafts, quotes and case tasks;
  • coordinate authorised family members, Timeliss personnel and professional or service partners;
  • send authentication codes, requested updates, reminders and service communications;
  • protect users, investigate misuse, maintain audit records and improve reliability;
  • meet contractual, regulatory, accounting, dispute-resolution and other legal obligations; and
  • analyse service use in an aggregated or appropriately de-identified form.

WhatsApp and email are used for authentication, prompts and updates. Sensitive documents should remain in the secure Timeliss case rather than being sent through ordinary messages.

4. When information is shared

We do not give every participant unrestricted access. Case owners control invitations, and access should be limited to what each participant needs for their role.

Information may be disclosed to:

  • people you invite or authorise, such as relatives, executors, donees, beneficiaries or advisers;
  • lawyers, healthcare professionals, funeral providers, administrators or other partners involved in a requested service;
  • technology providers supporting hosting, document storage, authentication, communications, monitoring and payments;
  • an employer, insurer, adviser or referring organisation, but only for the agreed referral, eligibility or service-status purpose—not unrestricted access to private family records; and
  • public authorities, courts or other parties where disclosure is required or permitted by law or needed to protect legal rights and safety.

Third-party services, including Google and WhatsApp, process information under their own terms and privacy policies when you choose to use them.

5. Security and account protection

Timeliss uses role-based access, secure authentication, encrypted transport, protected storage, audit logging and operational controls designed to prevent unauthorised access, use, alteration or disclosure. No internet service can guarantee absolute security.

Keep magic links, one-time codes and passkeys private. Contact us promptly if you believe your account, telephone number or email address has been compromised.

6. Retention and overseas transfers

We retain information for as long as it is reasonably needed to provide the service, maintain an accurate case and transaction record, resolve disputes, enforce agreements and meet legal or regulatory requirements. Different records may have different retention periods. Information that is no longer required should be deleted, anonymised or securely isolated unless continued retention is required or permitted.

Some service providers may process information outside Singapore. Where the Singapore Personal Data Protection Act applies, Timeliss will use contractual or other safeguards intended to provide a standard of protection comparable to the PDPA, unless an applicable exception permits otherwise.

7. Your choices and requests

Subject to applicable law and permitted exceptions, you may ask to access personal data Timeliss holds about you, understand how it has been used or disclosed, or correct inaccurate information. You may also withdraw consent for a particular use with reasonable notice. Withdrawal may prevent us from continuing part of a service where that information is necessary.

You can update some account and notification settings directly. For access, correction, consent withdrawal, deletion or privacy complaints, email us with enough detail to identify the relevant account or case. We may need to verify your identity and authority before responding.

8. Cookies and service analytics

Timeliss uses essential cookies and similar storage to keep you signed in, protect sessions, remember locale choices and preserve a service handoff. Referral parameters may be recorded to understand how a request reached Timeliss. If optional analytics or advertising technologies are introduced, this policy and any required consent controls should be updated before they are used.

9. Changes to this policy

We may update this policy when services, providers or legal requirements change. The current version will be published here with its update date. Material changes may also be communicated through the platform or your registered contact details.

10. Contact our privacy team

Email privacy@timeliss.com with privacy questions, requests or complaints. General service questions should go through the Contact Us page.

Singapore’s Personal Data Protection Commission provides an overview of organisations’ data-protection obligations on the PDPC website.