Last Updated: 30 July 2024
South Korea residents, please see our Supplementary Notice for Residents of South Korea here.
California residents, please see our new California Privacy Notice here.
South Africa residents, please see our Promotion of Access to Information Act (“PAIA”) manual here.
Please see our Seal of Registration issued by the Philippines National Privacy Commission here.
This Privacy Policy applies to Singapore Airlines Limited (“SIA”).
SIA is a corporation registered in the Republic of Singapore with company number 197200078R and a registered office at 25 Airline Road, Airline House, Singapore 819829.
For the purposes of the General Data Protection Regulation (“GDPR”), and other applicable data protection laws, we are the data controller. Our data protection officer can be contacted at dpo@singaporeair.com.sg.
If you have made a flight booking with us but one or more flights in your booking are to be operated by other airline(s), such other airline(s) are also a “data controller” for the purposes of the GDPR. If you have made a booking for non-flight services through us, including hotel or car rental bookings, the provider of such services is also a “data controller”. You may access the privacy policies of the other airlines and non-flight service providers via their own websites or request a copy of the same from them directly.
We collect, use and disclose Customer Data (as defined below) in order to provide you with a safe, smooth, efficient and customised experience with us. The collection, use and disclosure of Customer Data enables us to provide services and products that are most likely to meet your needs and requirements. This Privacy Policy outlines our policy and responsibility in relation to the collection, use and disclosure of Customer Data.
By continuing to use our services, you signify that you have read and understood this Privacy Policy. If you are based in Singapore, you provide your consent to us collecting, using and disclosing your personal data in accordance with this Privacy Policy.
The types of Customer Data that we collect depends on the circumstances of collection and on the nature of the service requested or transaction undertaken.
There are two broad categories of Customer Data that we collect:
(i) personal information that can be used to identify an individual, such as name, gender, date of birth, nationality, passport or other personal identification numbers;
(ii) contact information, such as mailing address, phone number, email address;
(iii) payment information, such as credit or debit card information, including the name of cardholder, card number, billing address and expiry date;
(iv) travel information, such as ticket numbers, destinations, flight information;
(v) information on your other activity and purchases made through SIA (such as chargeable seats, excess baggage, seat upgrades), our website or mobile applications (such as hotel accommodation, car rentals and insurance), and purchases of packages such as the Singapore Stopover Holiday and other linked travel arrangements;
(vi) your customer preferences, such as dietary, seating, entertainment viewed, information on your KrisShop purchases (including the transaction dates, channel in which purchase was made, KrisFlyer miles accrued) and membership details (including membership tier and membership tier qualification status), places that you would like to visit or other service preferences;
(vii) information about your in-flight WiFi usage, such as whether you use in-flight WiFi, what WiFi plan you used, the mode of payment to pay for in-flight WiFi and how much data was utilised for your WiFi sessions;
(viii) information about your in-flight interactions with our staff, such as types of beverages requested or other in-flight requests and preferences;
(ix) information about your interactions with our ground staff, such as the details of any complaint cases, incidences of lost baggage, call details, and other information relevant to assist our ground staff to service you;
(x) health information, such as vaccination status, pre-departure test results, doctors’ notes, medical certificates and letters and requests related to medical conditions;
(xi) information you choose and/or consent to submit when you use features on our website, mobile applications, or other online facilities, including, but not limited to
- information in the queries you enter into our chatbot, Kris, on our global Facebook page, website and mobile application;
- audio clips and images you submit to us via the “Capture and Discover” tool to provide travel recommendations
- audio clips or text you submit when using the Translation Assistant, and
- your location information.
(xii) information we receive from flight bookings made via our online corporate booking platform;
(xiii) information we receive from other sources e.g. our page on social media websites and our contractual partners; and
(xiv) business contact information, such as the contact details of the employees of our vendors and corporate customers, as well as the contact details collected by our divisions including the Cargo Division and Engineering Division.
For the purposes of this policy statement, Customer Data means Personal Data and Technical Data.
We also use Customer Data to derive Statistical Data, such as the number of passengers. This is processed and stored purely for analytical purposes, and is entirely anonymous. This information will not be stored to your customer record, and will only be aggregated for statistical analysis so that we can better understand our customers’ profile and improve our service offering.
Special categories of information or “sensitive personal data”
Certain categories of Customer Data, such as information about your race, ethnicity, religion or health, are considered special categories of information, or “sensitive personal data” under certain applicable laws, including the GDPR. Certain other categories of Customer Data, such as your payment information (credit or debit card number), is also considered sensitive personal data under the Personal Information Protection Law of PRC (“PIPL”).
Generally, we try to limit the circumstances where we collect your sensitive personal data. However, this can occasionally occur because it is required to complete the payment and conclude the transaction with you, or you have made certain requests in connection with your travel arrangements that reveal or suggest something about you that could be considered “sensitive personal data”, if you otherwise choose to provide such information to us (or a third party such as the travel agent through which you made your booking), or if such information is required by public or regulatory authorities for health, customs and immigration purposes.
For example:
We collect Customer Data whenever you use our services, including when you travel with us, when you use our website or mobile applications, or when you interact with us via email, social media, our contact centres or any other channels such as our ticketing counters and airport operations.
We also collect Customer Data from your authorised representatives. This includes persons whom you have authorised (e.g. your organisation’s corporate travel manager) and persons who have been validly identified as acting on your behalf pursuant to our security procedures.
We may receive your Customer Data from other entities within our group of companies, which include Scoot Pte. Ltd. (“Scoot”), Kris+ Pte. Ltd., KrisShop Pte. Ltd. and Encounters Pte Ltd (collectively with SIA, the “SIA Group”).
In addition, we may receive Customer Data from third parties which are located in various countries. This includes, but is not limited to, travel agents, our retailer KrisShop, our KrisFlyer partners (including, amongst others, airlines and non-airlines such as Hilton, Avis, Hertz, American Express, the Economist and Esso) and other contractual parties, our service providers, and other airlines including our subsidiaries to facilitate travel on code share or multi-airline flights.
Where you disclose personal data of another person to us, including but not limited to situations where you make reservations on behalf of another person, you undertake to ensure that the individual whose Customer Data is supplied to us has, where required under applicable data protection laws, authorised the disclosure, is informed of, and agrees to the provisions of this Privacy Policy.
The collection of the following types of Customer Data is mandatory to enable us to fulfil our contract of carriage with you. These types of Customer Data are marked as mandatory on our booking form. If you do not provide this information, we will not be able to provide you with our services and/or products required.
Additional information may be mandatory if you are flying to a specific country, or if you are flying on behalf of a business registered in a specific country, e.g. your gender, nationality, passport number, the country of issue of your passport, your vaccination status and pre-departure test results, the name, GST registration number and address of the business you are flying on behalf of, and your business email address and phone number. These mandatory fields will be clear when you make a booking.
The collection of the following types of Customer Data is mandatory to enable SIA to administer your membership with KrisFlyer: (i) title; (ii) last/family name; (iii) first/given name if you do not have a last/family name; (iv) date of birth; (v) email address; (vi) mobile phone number; (vii) mailing address; (viii) gender; (ix) nationality; and (x) whether you are an EU or Swiss resident.
The collection of the following types of Customer Data is mandatory to enable SIA to administer your membership with HighFlyer: (i) title; (ii) last/family name; (iii) first/given name if you do not have a last/family name; (iv) date of birth; (v) email address; (vi) mobile phone number; (vii) mailing address; (viii) gender; and (ix) nationality.
The collection of the following types of Customer Data is mandatory to enable us to administer your account as a Registered Customer: (i) last/family name; (ii) first/given name if you do not have a last/family name; (iii) date of birth; (iv) email address; and (v) whether you are an EU or Swiss resident.
The failure to supply the following types of Customer Data will result in (i) us being unable to update you on our latest products and/or launches; and/or (ii) your inability to enter or participate in contests, promotions or redemption activities organised by us:
If you are an EU or Swiss or Chinese resident, we are required to disclose the legal basis for processing your data under the GDPR, the Swiss Data Protection Act and the PIPL. We are also required to disclose the purposes for processing your data under certain applicable laws, including the Singapore Personal Data Protection Act. If you are based in Singapore, you consent to each of the purposes for processing your data as set out below.
We will use the Customer Data in the following ways:
In accordance with our contract of carriage with you, we will use the Customer Data to:
i. maintain your account;
ii. facilitate your transactions and services;
iii. enable you to log in using your account on any of the platforms hosted by us; and
iv. Send you updates and other account related information.
Further, as a KrisFlyer member, Customer Data will be used to administer your KrisPay programme and mobile application.
As it is in our legitimate interests to be responsive to you, to provide customised services and marketing, to ensure the success of our business and to ensure the proper functioning of our products, services and organisation, we will use your Customer Data to:
In relation to our KrisFlyer and Registered Customer programmes, we will use your Customer Data to:
i. provide you with any information including promotions and offers from us and other KrisFlyer programme partners, where applicable (with your consent where required by applicable laws);
ii. deliver programme-related benefits including, but not limited to, automatically enrolling you in lucky draw promotions;
iii. contact you regarding product and customer related surveys and market research; and
iv. respond to your email and call enquiries;
Further, as a KrisFlyer member, Customer Data will be used to provide services to celebrate special occasions; sending you KrisFlyer-related news and KrisFlyer e-statements and associated promotions and offers (with your consent where required by applicable laws)
i. maintain the Participating Company’s HighFlyer account;
ii. facilitate Participating Company-related transactions and services;
iii. market and communicate to the CTMs and ACTMs information on SIA and HighFlyer promotions, contests, events and lucky draws, including those conducted by HighFlyer program partners (with your consent where required by applicable laws);
iv. contact the CTMs and ACTMs regarding product and customer related surveys and market research;
v. respond to email and call enquiries from the CTMs and ACTMs; and
vi. Send the CTMs and ACTMs programme information updates and other account related information.
i. maintain your travel records in the Participating Company’s HighFlyer account;
ii. facilitate Participating Company-related transactions and services;
iii. contact the CTs regarding product and customer related surveys and market research; and
iv. respond to email and call enquiries from the CTs.
i. to contact you to perform our services, and in particular, to monitor and record calls for quality, training, legal compliance, analysis and other related purposes in order to pursue our legitimate interest to improve service delivery;
ii. enforce our terms and conditions against your employer; and
iii. communicate with you about products, services, promotions, events and other news and information we think will be of interest to you.
If you are an EU or Swiss or Chinese resident, you can object to this profiling and opt-out of receiving such targeted marketing. For more information on this right, click here
With your consent where required by applicable laws, we will use your Customer Data to:
You have the right to withdraw your consent at any time by contacting us at dpo@singaporeair.com.sg, by logging on to your KrisFlyer account for KrisFlyer members or by logging on to your HighFlyer account for HighFlyer Participating Companies.
With your consent where required by applicable laws, we will share your Customer Data with selected third parties in the situations set out below:
We will share your Customer Data with any of the entities within the SIA Group, in the situations set out below:
i. Fulfill bookings and facilitate flight transfers of passengers;
ii. Manage passengers who travel on flights operated by our subsidiaries and are Registered Customers or members of our KrisFlyer or HighFlyer programmes; and
iii. Manage passengers during flight disruptions and provide necessary assistance and services;
i. Respond to complaints or compliments received by us from passengers who are sharing their flight experience on flights operated by our subsidiaries;
ii. Provide an enhanced customer experience and personalise offers to passengers;
iii. Anticipate the servicing needs of passengers on flights with us;
iv. Understand customers better through analytics and research (including marketing research) to support personalisation;
v. Contact customers about updates, surveys, and offers on and relating to our Registered Customer, KrisFlyer and HighFlyer programmes; and
vi. If necessary, prevent passengers who have been issued banning notices from flying with other airlines within our group.
For example, we and other airlines are required by laws in the United States of America, France and other countries to provide border control agencies with access to your booking information or flight itinerary. Accordingly, relevant Customer Data (known as PNR or Advance Passenger Information (“API”)) will be disclosed to the appropriate customs and immigration authorities as required by law.
We will also disclose your Customer Data to third parties:
In addition, we may disclose Customer Data to our legal advisors for establishing, exercising or defending our legal rights, to our other professional advisors, or as otherwise authorised or required by law. We also reserve the right to share Customer Data as is necessary to prevent a threat to the life, health or security of an individual or corporate entities. Further, we will disclose Customer Data, as is necessary, to investigate suspected unlawful activities including but not limited to fraud, intellectual property infringement or privacy.
If you are a Chinese resident, please note that our mobile application uses the following third-party software development kits ("SDK"). During your use of our mobile application, we may disclose Customer Data to these SDK providers for the purposes listed here.
Our Head Offices are based in Singapore. Customer Data will be transmitted to data storage facilities where we keep our central records. Customer Data will be transferred to our offices and appointed agents, including ground handling agents, sales agents and contact centre agents, in Singapore and around the world in connection with our performance of the contract with you.
This means that Customer Data will be transferred to, and stored at, a destination outside of your country and outside China, the European Economic Area ("EEA"), and Switzerland, and in particular Singapore, Germany, Japan and USA where we have data centres.
We will transfer Customer Data to airports and ground crew in destinations that you are flying to in and where we operate. The Customer Data will also be processed by staff operating outside China, the EEA and Switzerland who work for us, for our suppliers or our business partners. Such staff are engaged in, among other things, the fulfilment of your order, the processing of your payment details and the provision of support services. The Customer Data is transferred outside the EEA and Switzerland on the basis that it is necessary for the performance of our contract of carriage with you.
We will also transfer Customer Data to our code share and joint venture partners in strategic alliances in Europe, West Asia and Africa, North Asia, Southeast Asia, Southwest Pacific and the Americas for the purposes of performing any contract of carriage. Please click here for a list of our partners.
If you are an EU or Swiss resident, where we transfer Customer Data outside the EEA and Switzerland, this is done either on the basis that it is necessary for the performance of our contract of carriage with you, or that the transfer is subject to the European Commission’s model contracts for the transfer of personal data to third countries (i.e., the standard contractual clauses), pursuant to Decision 2004/915/EC and Decision 2010/87/EU as appropriate.
(If you are a Chinese resident, where we transfer Customer Data outside the territory of China, (i) this is done on the basis that the security assessment is conducted in accordance with the Personal Information Protection Law of PRC and relevant regulations, or that the model contract terms issued by the China Administration of Cyberspace (“CAC”) are concluded for the transfer, or that the transfer is necessary for the performance of our contract of carriage with you, or for the protection of your life and property safety; and (ii) if not already specified in this Privacy Policy, we will notify you about the transfer to the extent explicitly required by the PIPL (such as the name and contact of the recipient and purpose of processing) and obtain the consent from you.
If you are not a resident in the EU, UK, Switzerland, or China, you may have certain rights in relation to the Customer Data we hold about you, which we detail below.
Access.
You have the right to know whether we process Customer Data about you, and if we do, to access Customer Data we hold about you and certain information about how we use it and who we share it with.
Where permitted by law, we reserve the right to charge a reasonable administrative fee for this service. In exceptional circumstances, we reserve the right to deny you access to your Customer Data and may provide an explanation as required by applicable laws.
Exceptional circumstances include (to the extent allowable under applicable law) where:
Correction.
You have the right to correct any Customer Data held about you that is inaccurate.
Feedback and complaints.
If you have any concerns, feedback or complaints about the use and/or sharing of your Customer Data, we are open to receiving your feedback or complaints.
Exercise of Rights.
In order to process your request promptly, we kindly ask you to include the necessary identification details with your request as well as any other information necessary to confirm your identity or to process your request. Such information may include the following:
All data privacy requests should be sent to dpo@singaporeair.com.sg. Please note that requests sent in via other channels or which do not contain sufficient supporting information may take longer to process and/or we may not be able to respond within the prescribed timelines.
For Registered Customers and KrisFlyer programme members, you may correct any Customer Data by logging into your account.
If you are a resident in the EU, UK or Switzerland, you may have certain rights in relation to the Customer Data we hold about you, which we detail below. Some of these only apply in certain circumstances as set out in more detail below. We also set out how to exercise those rights.
These rights include:
Please note that we will require you to provide us with proof of identity before responding to any requests to exercise your rights. We will respond to a request by you to exercise those rights without undue delay and at least within one month (although this may be extended by a further two months in certain circumstances).
In order to process your request promptly, we kindly ask you to include the necessary identification details with your request as well as any other information necessary to confirm your identity or to process your request. Such information may include the following:
All data privacy requests should be sent to dpo@singaporeair.com.sg. Please note that requests sent in via other channels or which do not contain sufficient supporting information may take longer to process and/or we may not be able to respond within the prescribed timelines.
Complaints.
In the event that you wish to make a complaint about how we process your Customer Data, please contact us and we will endeavour to deal with your request as soon as possible. This is without prejudice to your right to lodge a claim with your data protection authority.
Access.
You have the right to know whether we process Customer Data about you, and if we do, to access Customer Data we hold about you and certain information about how we use it and who we share it with.
If you require more than one copy of the Customer Data we hold about you, we may charge an administration fee.
We may not provide you with certain Customer Data if providing it would interfere with another’s rights (e.g. where providing the Customer Data we hold about you would reveal information about another person) or where another exemption applies.
Portability.
You have the right to receive a subset of the Customer Data we collect from you in a structured, commonly used and machine-readable format and a right to request that we transfer such Customer Data to another party.
The relevant subset of Customer Data is data that you provide us with your consent (please see here for the types of Customer Data we process on the basis of your consent: How we use your Customer Data or for the purposes of performing our contract with you (please see here for the types of Customer Data we process on the basis of our contract with you: How we use your Customer Data
If you wish for us to transfer the Customer Data to another party, please ensure you detail that party and note that we can only do so where it is technically feasible. We are not responsible for the security of the Customer Data or its processing once received by the third party. We also may not provide you with certain Customer Data if providing it would interfere with another’s rights (e.g. where providing the Customer Data we hold about you would reveal information about another person).
You have the right to correct any Customer Data held about you that is inaccurate. Please note that whilst we assess whether the Customer Data we hold about you is inaccurate or incomplete, you may exercise your right to restrict our processing of the applicable data as described below.
In order to process your request promptly, we kindly ask you to include the necessary identification details with your request as well as any other information necessary to confirm your identity or to process your request. Such information may include the following:
All data privacy requests should be sent to dpo@singaporeair.com.sg. Please note that requests sent in via other channels or which do not contain sufficient supporting information may take longer to process and/or we may not be able to respond within the prescribed timelines.
For Registered Customers and KrisFlyer members, you may correct any Customer Data by logging into your account.
You may request that we erase the Customer Data we hold about you in the following circumstances:
Also note that you may exercise your right to restrict our processing of the Customer Data whilst we consider your request as described below.
Please provide as much detail as possible on your reasons for the request to assist us in determining whether you have a valid basis for erasure. However, we may retain the Customer Data if there are valid grounds under law for us to do so (e.g., for the defence of legal claims or freedom of expression) but we will let you know if that is the case. Please note that after deleting the Customer Data, we may not be able to provide the same level of services to you as we will not be aware of your preferences.
Where you have requested that we erase Customer Data that we have made public and there are grounds for erasure, we will use reasonable steps to tell others that are displaying the Customer Data or providing links to the Customer Data to erase the Customer Data too.
In order to process your request promptly, we kindly ask you to include the necessary identification details with your request as well as any other information necessary to confirm your identity or to process your request. Such information may include the following:
All data privacy requests should be sent to dpo@singaporeair.com.sg. Please note that requests sent in via other channels or which do not contain sufficient supporting information may take longer to process and/or we may not be able to respond within the prescribed timelines.
For Registered Customers and KrisFlyer members, you may correct any Customer Data by logging into your account.
You have a right to require us to stop processing the Customer Data we hold about you other than for storage purposes in certain circumstances. Please note, however, that if we stop processing the Customer Data, we may use it again if there are valid grounds under data protection law for us to do so (e.g. for the defence of legal claims or for another’s protection).
You may request we stop processing and just store the Customer Data we hold about you where:
Objection.
At any time you have the right to object to our processing of Customer Data about you in order to send you promotions, special offers, marketing messages, including where we build profiles for such purposes and we will stop processing the Customer Data for that purpose.
You also have the right to object to our processing of Customer Data about you and we will consider your request in other circumstances as detailed below.
In order to process your request promptly, we kindly ask you to include the necessary identification details with your request as well as any other information necessary to confirm your identity or to process your request. Such information may include the following:
All data privacy requests should be sent to dpo@singaporeair.com.sg. Please note that requests sent in via other channels or which do not contain sufficient supporting information may take longer to process and/or we may not be able to respond within the prescribed timelines.
You may object where we are processing the Customer Data we hold about you (including where the processing is profiling) on the basis of our legitimate interest and you object to such processing (please see here for the types of Customer Data we process on that basis: How we use your Customer Data
Please provide us with detail as to your reasoning so that we can assess whether there is a compelling overriding interest in us continuing to process such data or we need to process it in relation to legal claims. Also note that you may exercise your right to request that we stop processing the Customer Data whilst we make the assessment on an overriding interest by indicating this in your request.
If you reside in China, you may have certain rights in relation to the Customer Data we hold about you, which we detail below.
Access.
You have the right to access the followings:
If you require more than one copy of the Customer Data we hold about you, we may charge an administration fee.
Portability.
You have the right to receive a subset of the following types of Customer Data we collect from you in a structured, commonly used and machine-readable format and a right to request that we transfer such Customer Data to another party.
If you wish for us to transfer the Customer Data to another party, please ensure you detail that party and note that we can only do so where it is technically feasible. We are not responsible for the security of the Customer Data or its processing once received by the third party.
Deletion.
You may request that we delete the Customer Data we hold about you in the following circumstances:
Where you have requested that we delete your Customer Data that we have made public and there are valid grounds for deletion, we will use reasonable steps to tell others that are displaying the Customer Data or providing links to the Customer Data to erase the Customer Data too.
Please note that after deleting the Customer Data, we may not be able to provide the same level of services to you as we will not be aware of your preferences.
Correction.
You have the right to request corrections if you find that your Customer Data held by us is inaccurate or incomplete.
In order to process your request promptly, we kindly ask you to include the necessary identification details with your request as well as any other information necessary to confirm your identity or to process your request. Such information may include the following:
All data privacy requests should be sent to dpo@singaporeair.com.sg. Please note that requests sent in via other channels or which do not contain sufficient supporting information may take longer to process and/or we may not be able to respond within the prescribed timelines.
For Registered Customers and KrisFlyer programme members, you may correct any Customer Data by logging into your account.
Restriction of Processing.
You have a right to withdraw your consent and restrict us from collecting certain Customer Data about you or processing your Customer Data for certain purposes or in certain ways (e.g., for us to share with third parties or disclose to the public, certain Customer Data about you), subject to the applicable laws. Please provide as much detail as possible on the scope of your withdrawal. Please note that such withdrawal of your consent shall not cause any impact to the processing activities that we already performed before duly receiving such withdrawal from you.
Objection.
At any time you have the right to object to our processing of Customer Data about you in order to send you promotions, special offers, marketing messages, including where we build profiles for such purposes and we will stop processing the Customer Data for that purpose.
Exercise of Rights.
In order to process your request promptly, we kindly ask you to include the necessary identification details with your request as well as any other information necessary to confirm your identity or to process your request. Such information may include the following:
All data privacy requests should be sent to dpo@singaporeair.com.sg. Please note that requests sent in via other channels or which do not contain sufficient supporting information may take longer to process and/or we may not be able to respond within the prescribed timelines.
We may reject your request to exercise the above rights if it would interfere with another’s rights (e.g. where providing the Customer Data we hold about you would reveal information about another person) or where another exemption under applicable laws or regulations applies or where applicable laws requires otherwise. An explanation of reason will be provided to you in case of our rejection. If you have further questions to such rejection, please contact through the email: dpo@singaporeair.com.sg.
In relation to your personal data collected by us for the purposes as originally notified to you, as mentioned in this Privacy Policy, or for specific purposes, if you wish to withdraw your consent for us to continue processing your personal data, you may send your consent withdrawal request to us at dpo@singaporeair.com.sg. Please note that if there is a legal basis for us to continue processing (collect, use and disclose) your personal data, we will inform you accordingly.
You also have the right to request access to and obtain a copy of your personal data, to receive from us your personal data in a machine-readable format and to request that we transfer such personal data to another party, to object to our processing of your personal data, to ask us to erase or destroy your personal data, to ask us to restrict use of your personal data, to have us record your objection to your request in relation to your personal data, and to file a complaint against us if we violate the Personal Data Protection Act B.E. 2562 (A.D.2019) of Thailand (“Thailand PDPA”) or fail to comply with any notification issued under the PDPA.
All data privacy requests including requests to exercise your rights to opt-out / to withdraw consents according to the Thailand PDPA should be sent to dpo@singaporeair.com.sg. Please note that requests sent in via other channels or which do not contain sufficient supporting information may take longer to process and/or we may not be able to respond within the prescribed timelines.
We will retain Customer Data for as long as it is necessary to fulfil the purpose for which it was collected, our legal or business purposes, or as required by relevant laws. We will usually keep your Customer Data for up to 7 years to ensure that any contractual disputes can be addressed. This includes standing requests which contain sensitive personal data about yourself, e.g. a standing request that you wish to receive a halal meal or a wheelchair at the airport on all flights with us. You can amend your standing request at any time to change your preferences in the future.
If you opt-out or withdraw your consent to marketing, we will remove you from our marketing database.
We need your assistance to ensure that your Customer Data is current, complete and accurate. As such, please inform us of changes to your Customer Data by submitting your updated particulars to us (see Section 16). If you are a Registered Customer, KrisFlyer member or HighFlyer Participating Company, you may update your Customer Data at any time by logging on to your account.
We will also request Customer Data updates from you from time to time. As detailed above, your booking information or flight itinerary will be disclosed to the appropriate customs and immigration authorities as required by law. As such, it is important to ensure that the Customer Data contained in your booking information or flight itinerary is current, complete and accurate.
We take the protection of your Customer Data seriously but, unfortunately, the transmission of information via the internet is not completely secure. Although we will do our best to protect your Customer Data, we cannot guarantee the security of your Customer Data transmitted through the website or mobile application; any transmission is at your own risk.
We may, from time to time, provide you with links to other websites for your convenience and information. If you follow a link to any of these websites, please note that these websites have their own privacy policies and that we do not accept any responsibility or liability for these policies. You access these websites at your own risk and we are not responsible for these websites. Whilst we will protect your Customer Data on our website and mobile application, we cannot control or be responsible for the policies of other sites we may link to, or the use of any Customer Data you may share with them. Please note that our Privacy Policy does not cover these other websites, and we would recommend that you are apprised of their specific policies.
In addition, some features on our website and mobile application rely on 3rd party services, including Application Programming Interface (“API”) services provided by Google LLC and/or any of its subsidiary companies (collectively, “Google”). Where you choose to use any feature on our website or mobile application that relies on a service provided by Google, you consent to the disclosure of information, including Customer Data, necessary for such use to Google, and agree that the information so disclosed may be processed in accordance with the Google Privacy Policy.
Our website and mobile application are not directed at children under the age of 16 and we cannot distinguish the age of persons who access and use the same. If a minor (according to applicable laws) has provided us with Customer Data without parental or guardian consent, the parent or guardian should contact us (see Section 16) to remove the relevant Customer Data and unsubscribe the minor. If we become aware that Customer Data has been collected from a person under the age of 16 without parental or guardian consent, we will delete this Customer Data and, where that minor has an account, terminate the minor’s account.
We will amend this Privacy Policy from time to time, and the updated versions will be posted on our website and mobile application; and date stamped so that you are aware of when the Privacy Policy was last updated. Please check back frequently to see any updates or changes to this Privacy Policy. If we make any material changes to this Privacy Policy, we will provide notice via email notification. Subject to applicable laws, the English version of this Privacy Policy will prevail over any version of this Privacy Policy in another language.
If you have comments, questions or complaints about or requests relating to this Privacy Policy statement, please contact SIA in writing at the address below referencing ‘Privacy Policy':
Singapore Airlines DPO
08D Airline House
25 Airline Road
Singapore 819829
Or email dpo@singaporeair.com.sg referencing: Privacy Policy.
Alternatively for queries specific to KrisFlyer, you may contact:
KrisFlyer Membership Services
PO Box 177
Singapore Post Centre Post Office
Singapore 914006
For queries specific to the Registered Customer programme, you may email HighFlyer_Support@singaporeair.com.sg referencing: Privacy Policy