1. Scope of this policy
This policy applies when you visit Timeliss websites, create or access an account, complete a service intake, use a guided tool, participate in a case, communicate with us, or are referred by an employer, adviser, insurer or service partner.
A case may contain information about the person requesting help, family members, beneficiaries, executors, donees, witnesses, deceased persons and professional contacts. Only provide another person’s information when you are authorised to do so and it is relevant to the requested service.
2. Information we collect
- Account and identity information: name, email address, telephone number, authentication identities and account-security activity.
- Intake and case information: service needs, relationships, country, urgency, planning preferences, case answers, tasks, notes and status history.
- Documents and records: files you upload or that authorised participants and service providers add to a case.
- Communications: email and WhatsApp delivery records, support enquiries, notification preferences and messages connected with a case.
- Transaction information: quotes, acceptance records, payment status and provider references. Payment-card details may be collected directly by the payment provider rather than Timeliss.
- Technical information: device and browser data, IP address, security logs, session information, audit records and referral or campaign parameters.
We receive information directly from you, from people authorised to participate in a case, from organisations making a permitted referral, and from authentication, communications, storage or payment providers used to deliver the platform.
3. How we use information
We use information to:
- identify the relevant country and service workflow;
- create and operate accounts, service intakes, tools and secure case dashboards;
- prepare recommendations, checklists, drafts, quotes and case tasks;
- coordinate authorised family members, Timeliss personnel and professional or service partners;
- send authentication codes, requested updates, reminders and service communications;
- protect users, investigate misuse, maintain audit records and improve reliability;
- meet contractual, regulatory, accounting, dispute-resolution and other legal obligations; and
- analyse service use in an aggregated or appropriately de-identified form.
WhatsApp and email are used for authentication, prompts and updates. Sensitive documents should remain in the secure Timeliss case rather than being sent through ordinary messages.
5. Security and account protection
Timeliss uses role-based access, secure authentication, encrypted transport, protected storage, audit logging and operational controls designed to prevent unauthorised access, use, alteration or disclosure. No internet service can guarantee absolute security.
Keep magic links, one-time codes and passkeys private. Contact us promptly if you believe your account, telephone number or email address has been compromised.
6. Retention and overseas transfers
We retain information for as long as it is reasonably needed to provide the service, maintain an accurate case and transaction record, resolve disputes, enforce agreements and meet legal or regulatory requirements. Different records may have different retention periods. Information that is no longer required should be deleted, anonymised or securely isolated unless continued retention is required or permitted.
Some service providers may process information outside Singapore. Where the Singapore Personal Data Protection Act applies, Timeliss will use contractual or other safeguards intended to provide a standard of protection comparable to the PDPA, unless an applicable exception permits otherwise.
7. Your choices and requests
Subject to applicable law and permitted exceptions, you may ask to access personal data Timeliss holds about you, understand how it has been used or disclosed, or correct inaccurate information. You may also withdraw consent for a particular use with reasonable notice. Withdrawal may prevent us from continuing part of a service where that information is necessary.
You can update some account and notification settings directly. For access, correction, consent withdrawal, deletion or privacy complaints, email us with enough detail to identify the relevant account or case. We may need to verify your identity and authority before responding.
9. Changes to this policy
We may update this policy when services, providers or legal requirements change. The current version will be published here with its update date. Material changes may also be communicated through the platform or your registered contact details.
10. Contact our privacy team
Email privacy@timeliss.com with privacy questions, requests or complaints. General service questions should go through the Contact Us page.
Singapore’s Personal Data Protection Commission provides an overview of organisations’ data-protection obligations on the PDPC website.