GDPR Compliance Statement

Last Updated: May 13, 2026

Our Commitment to GDPR

Ascet Focus Lab is committed to compliance with the General Data Protection Regulation (GDPR) and protecting the rights of individuals in the European Economic Area (EEA) and beyond.

Legal Basis for Processing

We process your personal data based on the following legal grounds:

Your Rights Under GDPR

Right to Access

You have the right to request confirmation of whether we process your personal data and to obtain a copy of that data.

Right to Rectification

You can request correction of inaccurate or incomplete personal data we hold about you.

Right to Erasure (Right to be Forgotten)

You can request deletion of your personal data under certain circumstances, such as when the data is no longer necessary for the purposes for which it was collected.

Right to Restrict Processing

You have the right to request restriction of processing of your personal data in certain situations.

Right to Data Portability

You can request to receive your personal data in a structured, commonly used, and machine-readable format and transmit it to another controller.

Right to Object

You have the right to object to processing of your personal data based on legitimate interests or for direct marketing purposes.

Rights Related to Automated Decision-Making

You have the right not to be subject to decisions based solely on automated processing, including profiling, that produces legal effects or similarly significantly affects you.

Right to Withdraw Consent

When processing is based on consent, you have the right to withdraw that consent at any time.

Data Protection Measures

We implement appropriate technical and organizational measures to ensure data security, including:

Data Processing Records

We maintain records of our data processing activities as required by GDPR Article 30, including:

International Data Transfers

When we transfer personal data outside the EEA, we ensure appropriate safeguards are in place, such as:

Data Breach Notification

In the event of a personal data breach that poses a risk to your rights and freedoms, we will notify the relevant supervisory authority within 72 hours of becoming aware of the breach. If the breach poses a high risk, we will also notify affected individuals without undue delay.

Data Protection Officer

For questions regarding our GDPR compliance or to exercise your rights, please contact our Data Protection Officer at:

Email: [email protected]
Address: 23 Telok Ayer Street, Level 4, Unit 12, Singapore 048616

Supervisory Authority

You have the right to lodge a complaint with a supervisory authority if you believe our processing of your personal data violates GDPR. You can contact your local data protection authority in your country of residence.

Exercising Your Rights

To exercise any of your GDPR rights, please submit a written request to our Data Protection Officer at the contact information above. We will respond to your request within one month, though this period may be extended by two additional months in complex cases.

Identity Verification

To protect your privacy, we may require verification of your identity before processing requests related to your personal data.

Children's Data

We do not knowingly process personal data of children under 16 years of age without parental consent. If we become aware that we have collected data from a child without proper consent, we will take steps to delete that information.

Updates to This Statement

We may update this GDPR Compliance Statement to reflect changes in our practices or legal requirements. Material changes will be communicated through our website or directly to you when appropriate.