Privacy Policy

Effective date: 5 September 2025

STIDE PTE. LTD. (“A-STIDE.com”, “we”, “us”, “our”) provides capital advisory services in Private Credit, ABS (Singapore SPVs), and Project Financing across ASEAN. We take privacy seriously and manage personal data in line with applicable laws, including the Singapore Personal Data Protection Act 2012 (PDPA) and, where relevant, other local laws.

Controller & contact
STIDE PTE. LTD. • 8 Temasek Boulevard, Level 42 Suntec Tower 3 Singapore 038988UEN: 202409739H
Data Protection Officer (DPO): dpo@a-stide.com
If you are in the EEA/UK or Thailand/Malaysia, see the Jurisdiction Notices below for additional rights.

1) Scope

This policy covers personal data we process when you use a-stide.com, contact us, download our materials, submit an Eligibility Check, or engage us for advisory services. It does not cover third-party websites we link to.

2) What we collect

  • Identity & contact: name, email, phone, company, role, country.

  • Professional/transactional: mandates, engagement history, KYC/AML information (as permitted by law), meeting notes.

  • Website/technical: device, browser, IP (approximate location), pages viewed, referral source, cookies/SDK identifiers.

  • Marketing preferences: your opt-ins/opt-outs.

Business contact information (e.g., name, title, business email/phone) used solely for business purposes may be excluded from some PDPA obligations, but we handle it responsibly. 

3) How we obtain data

  • Directly from you (forms, email, meetings).

  • From your organization or advisors during a mandate.

  • From service partners (escrow banks, security agents, trustees, KYC providers) and publicly available sources (company registries, professional networks).

  • Via our site analytics and consent tools.

4) Why we use data (purposes) & legal bases

  • Respond to enquiries / pre-screen eligibility / provide proposals (contractual or pre-contractual necessity; legitimate interests).

  • Perform KYC/AML, sanctions, conflicts, and compliance checks (legal obligations; substantial public interest where applicable).

  • Deliver and improve our services, site security, and analytics (legitimate interests).

  • Send insights or event invites to corporate/professional contacts (consent or soft opt-in/legitimate interests, subject to local rules).

  • Protect our rights, prevent fraud, and meet regulatory requirements (legal obligations, legitimate interests).

Under Singapore PDPA we observe obligations including consent/notification, purpose and retention limits, protection, access/correction, data breach notification, accountability and transfer limitation. 

5) Cookies & analytics

We use:

  • Strictly necessary cookies (site operations, security).

  • Analytics/measurement (e.g., page performance, popular content).

  • Advertising/attribution (e.g., LinkedIn Insight Tag) for aggregate campaign measurement to professional audiences only.

You can manage non-essential cookies via our banner (where required) or your browser settings. EU/UK visitors receive opt-in choices consistent with local requirements.

6) Disclosures (who we share with)

  • Transaction partners: escrow banks, security agents, trustees/administrators, law firms, auditors, valuation and KYC vendors—only as needed.

  • Technology & operations: hosting, email, analytics, CRM, document-room providers.

  • Regulators or law enforcement where required.
    We require recipients to protect data and use it only for specified purposes.

7) International transfers

We are Singapore-based; your data may be processed in Singapore or other countries where our vendors operate. For cross-border transfers, we take steps to ensure comparable protection under Singapore’s Transfer Limitation Obligation (e.g., appropriate contractual safeguards/BCRs), and apply relevant safeguards under other laws (e.g., SCCs for EEA/UK data). 

8) Retention

We retain personal data only as long as needed for the purposes above and to meet legal, accounting, and regulatory requirements (e.g., record-keeping, KYC). When no longer required, we anonymise or securely delete it per our retention schedule.

9) Security

We implement administrative, technical, and physical safeguards appropriate to the sensitivity of the data (access controls, encryption in transit where feasible, least-privilege, vendor due diligence, logging/monitoring). No method is 100% secure; we work to prevent, detect, and respond to incidents.

10) Data breaches

Where a notifiable breach occurs, we will notify the PDPC and affected individuals where required by law. 

11) Your rights

Your rights vary by jurisdiction. We will honor applicable rights requests and may need to verify your identity and scope.

Singapore (PDPA)

Access and correction, withdrawal of consent, and other PDPA obligations apply, with certain exceptions. 

Thailand (PDPA)

If you are in Thailand, you may have rights to access, rectification, erasure/de-identification, objection, restriction, portability, consent withdrawal, and complaint to the PDPC, subject to legal exceptions. 

Malaysia (PDPA 2010)

If you are in Malaysia, you may have rights to access and correction and related protections for processing in commercial transactions. 

EEA/UK (GDPR)

If GDPR applies to your data, you may have rights to information, access, rectification, erasure, restriction, portability, and objection, and to lodge a complaint with your supervisory authority; transfers outside the EEA/UK use recognized safeguards. 

To exercise rights, contact dpo@a-stide.com. We will respond within applicable timeframes.

12) Children

Our site and services target corporate counterparties and professional investors. We do not knowingly collect personal data from children.

13) Marketing

We communicate with corporate/professional contacts only. You can opt out of marketing anytime via our emails or by contacting us. We do not engage in retail solicitations.

14) Third-party links

Our site may link to external sites. Their privacy practices are their own; review their policies before providing data.

15) Changes to this policy

We may update this policy from time to time. The “Effective date” reflects the latest version. If changes materially affect you, we will provide a prominent notice.

16) Contact

Questions, requests, or complaints:
Data Protection Officer — STIDE PTE. LTD.
dpo@a-stide.com • 8 Temasek Boulevard, Level 42 Suntec Tower 3 Singapore 038988


Jurisdiction Notices (summary)

Singapore (PDPA): The PDPA sets baseline rules on collection, use, disclosure, care, transfer limits, data breach notification and accountability. Business contact information is generally excluded when used solely for business purposes. 

Thailand (PDPA): PDPA in force since 1 June 2022. The PDPC has issued rules on overseas transfers (e.g., criteria and BCRs). Rights include access, rectification, erasure, restriction, objection, portability, and complaint. 

Malaysia (PDPA 2010): Regulates processing in commercial transactions and grants rights including access and correction; overseen by Malaysia’s Department of Personal Data Protection. 

EEA/UK (GDPR): GDPR provides data subject rights (Art. 13–22) and requires safeguards for international transfers (e.g., SCCs/BCRs)