Privacy Policy
Last updated 30 July 2026
1. Introduction
Sentriko Pte. Ltd. (“Sentriko”, “we”, “our”, “us”) is a company incorporated in Singapore. This policy explains how we collect, use, disclose and safeguard personal data when you visit sentriko.com, contact us, or subscribe to our updates.
We operate under Singapore’s Personal Data Protection Act 2012 (PDPA). Where we handle personal data of individuals in the European Economic Area or the United Kingdom, we also apply the General Data Protection Regulation (GDPR) and UK GDPR. Where we handle personal data of California residents, we apply the CCPA/CPRA.
The Sentriko Platform — our marketplace for third-party detection algorithms — is in development and is not yet available to customers. Sections 5 and 6 describe how we will handle data once the Platform launches, and are published here so prospective customers and partners can review our approach in advance. Today we process only the enquiry and marketing data described in Section 2.
2. Information we collect today
Information you give us
When you complete a form on our website, request an Agility Audit, subscribe to our updates or contact us by email, we collect:
- Identity data — first name, last name, job title.
- Contact data — email address and, if you choose to provide it, telephone number.
- Organisation data — organisation name, role category (for example airport operator, algorithm developer, investor) and country.
- Correspondence — the content of messages you send us.
Information collected automatically
- Technical data — IP address, browser type and version, device type, operating system and referring page.
- Usage data — pages viewed, time on page and links followed.
3. Cookies and similar technologies
Our website does not set advertising or cross-site tracking cookies. We use only what is necessary for the site to function and to protect form submissions from abuse, which is exempt from consent requirements.
Our website statistics are derived from server logs and from privacy-preserving analytics that do not set identifying cookies or profile individual visitors. If we later introduce any non-essential cookie, we will show a consent banner to visitors in the EEA and UK before it is set, and this section will be updated first.
You can block or delete cookies through your browser settings at any time. The site will continue to work.
4. How we use your information
- To respond to you — answering enquiries and arranging meetings or Agility Audits you have requested.
- To send material you asked for — research notes, regulatory updates and SDK information, where you have opted in.
- To improve our website — understanding which content is read and where visitors arrive from.
- To meet legal obligations — including record-keeping and compliance with applicable law.
Our legal bases under GDPR are consent (for marketing email), legitimate interests (responding to business enquiries and operating our website securely) and legal obligation where applicable. Under the PDPA we rely on your consent, or on deemed consent where you voluntarily provide data for an evident purpose.
5. Platform data (when the Platform launches)
When the Sentriko Platform becomes available, we will collect from Platform users:
- Account data — usernames, hashed passwords and authentication tokens.
- Operational telemetry — deployment records, algorithm version history and system performance metrics.
We will not own or take custody of the raw security data — such as X-ray imagery or passenger information — generated by customer hardware, unless a customer separately and explicitly agrees to this for a defined purpose such as model training. Our design intent is that raw screening data remains within the customer’s own environment.
6. The third-party marketplace (when the Platform launches)
Sentriko is designed as an open marketplace. When a customer chooses to deploy a third-party detection algorithm through Sentriko:
- The customer authorises Sentriko to facilitate the transfer of the data necessary to enable that service.
- Each third-party provider’s own use of data will be governed by its own privacy policy, which we will make available and which we encourage customers to review.
We intend to operate a vendor assurance process covering security and data handling before any algorithm is listed. Details will be published before the marketplace opens.
7. Who we share information with
We do not sell personal data. We share it only with:
- Service providers acting on our instructions — currently our website and email host, Vodien Internet Solutions, whose servers are located in Singapore.
- Professional advisers — legal, accounting and insurance advisers, where necessary.
- Authorities — where required by law or in response to a valid request from a public authority.
- A successor entity — in connection with a merger, acquisition or sale of assets, subject to this policy continuing to apply.
8. Where your data is held
Your enquiry and marketing data is stored on our own infrastructure in Singapore. We do not use a third-party customer relationship management platform, and your details are not copied to one.
Two limited exceptions, for completeness:
- Outbound email routing. Email we send may transit relay infrastructure operated by our host outside Singapore, including in Australia. This applies to messages in transit only; stored mail remains on the Singapore server.
- Web fonts. Our pages currently load typefaces from a third-party font service, which receives the requesting IP address. We intend to serve these files directly from our own server to remove that dependency.
For any transfer of personal data out of Singapore we comply with the Transfer Limitation Obligation under the PDPA, taking reasonable steps to ensure overseas recipients are bound to a comparable standard of protection. For transfers originating in the EEA or UK we rely on the European Commission’s Standard Contractual Clauses and the UK International Data Transfer Addendum. A summary of the safeguards in place is available on request.
9. How long we keep it
- Enquiry and marketing data — retained for 24 months from your last interaction with us, then deleted or anonymised.
- Marketing subscribers — retained until you unsubscribe, and for a short period afterwards so we can honour your opt-out.
- Website server logs — retained for up to 12 months.
- Records required by law — retained for the period the relevant law requires.
10. Security
We apply measures appropriate to the nature and volume of the data we hold, including encryption of data in transit (TLS), authenticated administrative access, role-based access control, the principle of least privilege, and IP addresses stored in one-way hashed form where they are used only for abuse prevention.
Our domain is protected by SPF, DKIM and DMARC to prevent our email being spoofed.
No method of transmission or storage is completely secure. As the Platform develops we will expand our security programme and seek independent assurance, and will describe those measures here as they are put in place.
11. Your rights
Subject to your jurisdiction, you may have the right to:
- Access a copy of the personal data we hold about you.
- Correct data that is inaccurate or incomplete.
- Delete your personal data, where no overriding legal basis to retain it applies.
- Object to or restrict certain processing, including direct marketing.
- Withdraw consent at any time, without affecting processing carried out before withdrawal.
- Portability — receive your data in a structured, commonly used format.
- Complain to a supervisory authority. In Singapore this is the Personal Data Protection Commission; in the EEA or UK it is your local data protection authority.
To exercise any of these rights, email privacy@sentriko.com. We will respond within 30 days.
12. Children
Our website and services are directed at business and professional users. We do not knowingly collect personal data from anyone under 16. If you believe a child has provided us with personal data, contact us and we will delete it.
13. Changes to this policy
We may update this policy to reflect changes in our services, technology or legal obligations. The date at the top of this page shows when it was last revised. Where changes are material, we will notify subscribers by email.
Contact us
Data Protection Officer
Sentriko Pte. Ltd.
1 Liang Seah Street, #02-02
Liang Seah Place, Singapore 189022