Privacy Policy
Last updated: March 23, 2026
1. Introduction
WarisFlow respects your privacy and is committed to protecting your personal data in compliance with the Personal Data Protection Act 2012 (PDPA) of Singapore. This policy outlines how we collect, use, and secure the highly sensitive data required for estate planning.
2. Information We Collect
To generate accurate Faraid reports, we must collect sensitive personal and financial data. This includes:
- Personal Identifiers: Name, Date of Birth, Gender, and Marital Status.
- Family Tree Data: Names or counts of surviving family members, including parents, spouses, children, and siblings.
- Financial Data: Asset values, property ownership types, CPF balances, insurance payouts, and outstanding liabilities.
- Account Data: Email addresses and authentication credentials.
3. How We Use Your Information
We use your data strictly for the following purposes:
- To execute deterministic Faraid calculations based on AMLA rules.
- To generate personalized estate planning reports and financial visualizations.
- To provide Financial Advisors (if you are utilizing their services) with access to your generated reports for advisory purposes.
- To process payments securely via our third-party payment gateways.
4. Artificial Intelligence Processing
We utilize third-party Artificial Intelligence models to generate the narrative summaries within your report. To achieve this, a structured subset of your data (excluding direct identifiers like NRIC numbers, if provided) is processed by the AI provider. Our AI providers are contractually bound to not use your data to train their foundational models.
5. Data Security and Retention
We implement enterprise-grade security measures to protect your data. All data is encrypted at rest and in transit using modern cryptographic standards. We retain your personal data only for as long as necessary to fulfill the purposes outlined in this policy or to comply with legal obligations.
6. Third-Party Disclosures
We do not sell, rent, or trade your personal data to unauthorized third parties. We may share your data with trusted sub-processors (such as cloud hosting providers and payment gateways) who assist us in operating the platform. These parties are bound by strict confidentiality agreements.
7. Your Rights
Under the PDPA, you have the right to request access to the personal data we hold about you. You also have the right to request corrections to any inaccurate data or request the deletion of your account and associated data. To exercise these rights, please contact our Data Protection Officer.