This Privacy Policy explains how Tectura and its affiliated companies, branches, and related entities (“Tectura”, “we”, “us”, or “our”) collect, use, store, share, transfer, and protect personal data when you interact with us, use our websites, subscribe to our communications, attend our events, contact our teams, apply for employment, or engage with us as a customer, supplier, partner, or business contact.
Tectura operates across multiple jurisdictions. We process personal data in accordance with applicable data protection and privacy laws, which may include, where applicable, the EU General Data Protection Regulation (“GDPR”), UK data protection laws, Taiwan Personal Data Protection Act, Hong Kong Personal Data (Privacy) Ordinance, Mainland China Personal Information Protection Law, Japan Act on the Protection of Personal Information, Singapore Personal Data Protection Act, Malaysia Personal Data Protection Act, India Digital Personal Data Protection Act, and other relevant local privacy laws.
This Privacy Policy is intended to provide a general explanation of our data processing practices. Where local law requires additional disclosures, consent, procedures, or rights, we will comply with those local requirements.
The Tectura entity that determines the purpose and method of processing your personal data will generally be the data controller, personal information handler, data user, data fiduciary, or equivalent responsible party under applicable law.
Depending on your location and relationship with us, the responsible Tectura entity may be the local Tectura company or affiliate with which you interact. For privacy-related inquiries, you may contact us using the contact information provided at the end of this Policy.
We may collect and process the following categories of personal data:
We generally do not seek to collect sensitive personal data unless it is necessary for a specific lawful purpose, required by law, or provided by you voluntarily. Sensitive personal data may include information relating to health, biometric data, precise location, religious or political beliefs, criminal records, or other categories protected under applicable law. Where required, we will obtain your explicit consent or rely on another lawful basis permitted by local law.
We may collect personal data directly from you when you:
We may also collect personal data from other sources, including:
We may use your personal data for the following purposes:
Depending on the applicable law and the purpose of processing, we may rely on one or more of the following legal bases:
Where we rely on consent, you may withdraw your consent at any time. Withdrawal of consent will not affect processing that occurred before the withdrawal.
Where local law requires separate or explicit consent, such as for certain marketing activities, sensitive personal data, cookies, data sharing, or cross-border transfer, we will seek such consent where applicable.
Tectura is a B2B technology and consulting service provider. Most personal data used for marketing relates to employees, representatives, or business contacts of customers, prospects, partners, suppliers, and other organizations.
We may use personal data to:
Our marketing emails may include tracking technologies that help us understand whether an email was opened, whether links were clicked, and which content may be relevant to you. You may opt out of marketing emails at any time by using the unsubscribe link in our emails or by contacting us.
If you opt out, we may retain limited information necessary to record your preference and ensure that we do not send further marketing communications to you.
Our websites may use cookies, pixels, tags, scripts, log files, analytics tools, advertising technologies, and similar tracking technologies to:
Depending on your location, we may request your consent before placing non-essential cookies on your device. You may manage your cookie preferences through our cookie banner, browser settings, or other available preference tools.
For more details, please refer to our Cookie Policy, where available.
We may share personal data with the following categories of recipients where necessary and permitted by law:
We require service providers and business partners that process personal data on our behalf to use appropriate security and confidentiality measures and to process personal data only for authorized purposes.
Because Tectura operates across multiple countries and uses global technology systems, your personal data may be transferred to, stored in, accessed from, or processed in countries or regions outside your location.
Where we transfer personal data internationally, we will take appropriate steps to protect your data in accordance with applicable law. These measures may include:
For personal data originating from the European Economic Area, United Kingdom, or Switzerland, we will use appropriate safeguards where required, such as adequacy decisions, standard contractual clauses, or other lawful transfer mechanisms.
For personal information originating from Mainland China, Japan, Taiwan, Singapore, Malaysia, India, Hong Kong, or other jurisdictions with cross-border transfer requirements, we will follow applicable local requirements, which may include notification, consent, contractual safeguards, security assessments, or transfer restrictions.
We apply appropriate technical and organizational measures designed to protect personal data against unauthorized access, unlawful processing, accidental loss, destruction, alteration, disclosure, or damage.
These measures may include:
No system can be guaranteed to be completely secure. However, we take reasonable steps to protect personal data according to the nature of the data, processing risks, and applicable legal requirements.
We retain personal data only for as long as necessary for the purposes for which it was collected, unless a longer retention period is required or permitted by law.
Retention periods may depend on:
When personal data is no longer needed, we will delete, anonymize, or securely retain it in accordance with applicable retention procedures.
Depending on your location and applicable law, you may have the right to:
These rights may be subject to legal limitations, exceptions, identity verification, and local procedures. To exercise your rights, please contact us using the contact information below.
If GDPR, UK GDPR, or similar laws apply, we will process your personal data according to applicable data protection principles, including lawfulness, fairness, transparency, purpose limitation, data minimization, accuracy, storage limitation, integrity, confidentiality, and accountability.
You may have rights to access, rectify, erase, restrict, object to processing, request data portability, withdraw consent, and lodge a complaint with a supervisory authority.
Where personal data is transferred outside the EEA, UK, or Switzerland, we will use appropriate safeguards where required.
Where Taiwan law applies, we will collect, process, and use personal data for specific purposes and within the necessary scope. We will provide required notices, including the name of the collecting entity, purpose of collection, categories of personal data, period, area, recipients, method of use, data subject rights, and the impact of not providing data where required.
You may have rights to inquire, review, request a copy, supplement or correct, request cessation of collection, processing or use, and request deletion of your personal data, subject to applicable exceptions.
Where Hong Kong law applies, we will handle personal data in accordance with the Personal Data (Privacy) Ordinance and its Data Protection Principles, including requirements relating to collection, accuracy, retention, use, security, openness, access, and correction.
Where direct marketing rules apply, we will provide required notices and opt-out mechanisms.
Where Mainland China law applies, we will process personal information in accordance with applicable requirements, including principles of legality, legitimacy, necessity, good faith, transparency, purpose limitation, data minimization, security, and accountability.
Where required, we will provide specific notices, obtain consent or separate consent, conduct personal information protection impact assessments, implement cross-border transfer mechanisms, and comply with requirements for sensitive personal information, minors’ personal information, and overseas transfers.
Where Japan law applies, we will handle personal information in accordance with the Act on the Protection of Personal Information and applicable guidelines. We will specify purposes of use, manage personal data securely, respond to applicable data subject requests, and follow requirements for third-party provision and cross-border transfer where applicable.
Where Singapore law applies, we will comply with applicable obligations under the Personal Data Protection Act, including consent, purpose limitation, notification, access and correction, accuracy, protection, retention limitation, transfer limitation, and accountability obligations.
Where Malaysia law applies, we will comply with applicable requirements under the Personal Data Protection Act 2010, including the personal data protection principles relating to notice and choice, disclosure, security, retention, data integrity, access, and transfer.
Where India law applies, we will process digital personal data in accordance with applicable requirements under the Digital Personal Data Protection Act and related rules, including notice, consent or permitted use, data principal rights, grievance handling, security safeguards, breach notification, and cross-border transfer requirements where applicable.
Our websites may contain links to third-party websites, platforms, applications, plug-ins, or services. These third parties may collect or process personal data according to their own privacy policies.
We are not responsible for the privacy practices, security, or content of third-party websites or services. We encourage you to review their privacy policies before providing personal data or using their services.
Our websites, services, and marketing activities are generally intended for business users and are not directed to children. We do not knowingly collect personal data from children unless permitted by law and necessary for a specific service or activity. Where local law requires parental or guardian consent for children’s personal data, we will obtain such consent where applicable.
We may use analytics, CRM segmentation, marketing automation, and similar tools to better understand business interests and improve communications. These activities are generally used for B2B marketing and service improvement.
We do not use personal data to make decisions that produce legal or similarly significant effects on individuals solely by automated means, unless clearly disclosed and permitted by applicable law.
We may update this Privacy Policy from time to time to reflect changes in our business, legal requirements, technology, or data processing practices. The updated version will be posted on our website with a revised “Last updated” date.
If you have questions about this Privacy Policy, wish to exercise your privacy rights, or want to opt out of marketing communications, please contact us at:
Tectura Email: info@tectura.com
If required by applicable law, we will respond to your request within the legally required timeframe.