Privacy Policy
Last updated: 26 August 2026
1. Who we are
This website and the ZyloPOS platform are operated by Adneti Technologies Pte Ltd (UEN 201202598W), located at 16 Jalan Masjid, #03-13, Singapore 418941 ("we", "us"). Contact: sales@zylopos.com.
We are the data controller for website visitors' data and the data processor for end-consumer data processed on behalf of our restaurant merchant customers.
2. What data we collect
- Quote requests: business name, contact person, phone, email, selected configuration.
- Trial accounts: name, email, company details.
- Website analytics (only after consent): page views and related metrics via Google Analytics 4 (Measurement ID G-W826D3NMVC), with IP anonymization enabled.
- Platform data (merchants): menu, orders, and end-customer data you enter (e.g. member phone numbers) — processed strictly per our Data Processing Agreement (DPA).
- Essential preferences: language and currency cookies required for site function.
3. Why we process it (legal bases)
- Contract — to prepare quotations, deliver trials and subscriptions.
- Legitimate interest — to respond to sales enquiries and secure the service.
- Consent — for non-essential cookies and marketing communications (withdrawable anytime).
- Legal obligation — where required by Singapore or applicable EU law.
4. Where data is stored & international transfers
Primary hosting is ZyloPOS Enterprise Cloud in Singapore, operated under Singapore's Personal Data Protection Act (PDPA). Singapore does not currently benefit from an EU adequacy decision. For visitors and customers in the European Economic Area (EEA), United Kingdom or Switzerland, transfers of personal data to Singapore are safeguarded by the EU Standard Contractual Clauses (2021), available upon request. Where an EU customer selects regional data residency, their data is hosted within the EEA (e.g. Frankfurt).
5. Retention
Quote enquiry data: retained up to 24 months. Platform customer data: retained for the subscription term plus 90 days, then deleted or anonymized. Analytics data: maximum 14 months.
6. Your rights
Depending on your jurisdiction (including GDPR for EEA residents), you may have the right to:
- Access, correct or delete your personal data
- Data portability (export)
- Restrict or object to certain processing
- Withdraw consent at any time
- Lodge a complaint with your local supervisory authority
To exercise any right, email sales@zylopos.com. We respond within 30 days. Restaurant merchants can export or delete end-customer records from the ZyloPOS dashboard (when available under their plan).
7. Cookies
Essential cookies keep the site working (language, currency, consent choice). Analytics cookies (Google Analytics 4) load only after you click "Accept all" in the consent banner — especially required for EEA/UK/Swiss visitors. You can clear your choice by clearing cookies for this site.
8. Security & breaches
Data is encrypted in transit (TLS) and at rest. In case of a personal data breach affecting EEA individuals, we will notify affected merchant customers and supervisory authorities within 72 hours as required by GDPR Article 33, where applicable.
9. Singapore PDPA
For personal data of individuals in Singapore, we comply with the PDPA. See our PDPA page for consent, access and correction information.
10. Changes
We will post any changes on this page with a new "Last updated" date. This page is a compliance baseline, not a substitute for legal advice. Before onboarding EU merchants at scale, SCCs and DPA templates should be reviewed by counsel.
Questions? Email sales@zylopos.com or WhatsApp +65 8824 7501. See also Terms of Service.