Privacy Policy
IndianEvents.SG — operated by TESG Pte. Ltd.
Last updated: 2026
1. Introduction
This Privacy Policy explains how TESG Pte. Ltd. ("TESG", "IndianEvents.SG", "we", "us", "our") collects, uses, discloses and protects personal data when you use our website, applications and services (collectively, the "Platform").
We are committed to complying with the Personal Data Protection Act 2012 of Singapore ("PDPA") and other applicable data protection laws.
This Privacy Policy forms part of our Terms and Conditions. By accessing the Platform, creating an account, purchasing tickets, or otherwise providing us with your personal data, you agree to the practices described in this Privacy Policy.
This Privacy Policy does not limit or exclude your rights under the PDPA. If there is any conflict between this Privacy Policy and the PDPA, the PDPA will prevail.
2. What Personal Data We Collect
"Personal data" means data, whether true or not, about an individual who can be identified from that data or from that data and other information which we have access to. Depending on how you use the Platform, we may collect the following categories:
- Identification and contact data — name, email address, mobile number, postal address, nationality and similar contact information.
- Account data — username, password (stored in encrypted form), profile settings, communication preferences.
- Transaction and ticketing data — event selections, ticket details, booking references, purchase history, payment status, discount codes and related records.
- Payment-related data — limited card or payment information as permitted by law (most payment data is processed directly by our payment partners), billing details and transaction identifiers.
- Technical and usage data — IP address, device identifiers, browser type, operating system, pages viewed, links clicked, referring/exit pages, session duration and similar log information.
- Marketing and communication data — your preferences for receiving marketing communications, responses to surveys, contests or promotions.
- Event-related data — preferences or information you provide to organisers via forms hosted on the Platform (for example, dietary restrictions or team allocations), where this relates to an identifiable individual.
- Customer support data — enquiries, complaints, feedback and any supporting documentation or communications.
We generally do not collect sensitive personal data (such as NRIC numbers, health information or biometric data) unless required for specific purposes and permitted by law, and only with appropriate safeguards.
3. How We Collect Personal Data
We may collect personal data directly from you when you:
- Create an account or update your profile;
- Browse or use the Platform;
- Purchase or register for tickets;
- Contact us for support or feedback;
- Subscribe to our marketing communications or newsletters;
- Participate in surveys, promotions or contests.
We also collect personal data automatically via cookies and similar technologies when you use the Platform (see Section 10). We may also receive personal data from third parties, such as payment service providers, organisers and partners who use our ticketing services, analytics and advertising partners, and publicly available or government sources (where lawful).
In certain cases, we process personal data as a data intermediary on behalf of organisers under the PDPA (for example, where we hold attendee lists for an event). In such cases, we handle the data strictly in accordance with the organiser's instructions and our contractual obligations.
4. Purposes for Collecting, Using and Disclosing Personal Data
We collect, use and disclose personal data only for purposes that a reasonable person would consider appropriate in the circumstances, and in accordance with the PDPA. The main purposes include:
- Service delivery and ticketing — creating and managing your account, processing and fulfilling ticket orders, issuing confirmations, e-tickets, QR codes and receipts, enabling event entry, and providing customer support.
- Payment processing and fraud prevention — processing payments through our payment partners and carrying out checks to prevent fraud, unauthorised transactions or misuse of the Platform.
- Platform operation, improvement and analytics — operating, maintaining and securing the Platform, monitoring usage patterns, diagnosing technical issues, and conducting analytics to improve our services (where possible, data will be anonymised or aggregated).
- Marketing and communications (where permitted) — sending service announcements, marketing communications about events or promotions where you have given consent, and personalising content and offers.
- Legal, regulatory and compliance — complying with applicable laws and regulations, responding to requests from public agencies or enforcement authorities, and enforcing our contractual rights.
Where we process personal data for new purposes that are not reasonably related to the original purposes, we will notify you and obtain consent where required by law.
5. Consent, Deemed Consent and Withdrawal of Consent
By providing personal data to us, accessing the Platform, creating an account or purchasing tickets, you consent to our collection, use and disclosure of your personal data for the purposes described in this Privacy Policy.
In some situations, consent may be deemed under the PDPA, such as where you voluntarily provide personal data for a particular purpose or where you continue to use the Platform after being notified of changes to this Privacy Policy.
You may withdraw your consent for our collection, use or disclosure of your personal data at any time by contacting us (see Section 14). We will process your request within a reasonable time. Please note that withdrawal of consent may affect our ability to provide certain services to you, and does not affect our right to continue to retain and use personal data where required or permitted by law.
6. Disclosure of Personal Data to Third Parties
We may disclose personal data to the following categories of recipients, for the purposes set out in Section 4:
- Organisers and venues — to enable them to manage event registration, entry, seating and communications. Organisers are responsible for their own compliance with data protection laws for personal data they receive.
- Payment service providers — to process payments, prevent fraud and manage chargebacks or refunds.
- IT and infrastructure providers — including hosting, cloud, email and technical support services.
- Analytics, marketing or communications partners — who help us analyse usage, send communications or display relevant content, in line with your preferences and applicable law.
- Professional advisers — including lawyers, auditors, accountants and consultants, where reasonably necessary for our business operations.
- Government agencies, regulators or law enforcement — where required or authorised by law.
- Successors or transferees — in the event of a merger, acquisition or restructuring, subject to confidentiality and applicable laws.
We do not sell your personal data.
7. Cross-Border Transfers
The Platform and our service providers may be located in or operate from multiple countries. As a result, your personal data may be transferred to and stored on servers located outside Singapore.
Where personal data is transferred outside Singapore, we will ensure that the receiving organisation provides a standard of protection comparable to that under the PDPA, for example by entering into appropriate data transfer agreements or relying on other legal bases under the PDPA.
8. Data Accuracy, Retention and Protection
We take reasonable steps to ensure that personal data we hold is accurate and complete. However, we mostly rely on you to provide accurate and up-to-date information — please update your account details when they change or notify us of any errors.
We retain personal data only for as long as reasonably necessary to fulfil the purposes for which it was collected, comply with legal or accounting requirements, and resolve disputes or enforce our contractual rights. When personal data is no longer required, we take reasonable steps to delete, anonymise or securely destroy it.
We implement reasonable administrative, technical and physical safeguards (such as access controls, encryption, firewalls and restricted premises access) to protect personal data from unauthorised access, use or disclosure. No method of transmission over the internet is completely secure, but we respond to security incidents in accordance with applicable laws and best practices.
9. Your Rights: Access, Correction and Other Requests
Subject to certain exceptions under the PDPA, you have the right to:
- Request access to personal data that we hold about you;
- Request information about how your personal data has been used or disclosed in the past year;
- Request correction of any inaccurate or incomplete personal data.
To make an access or correction request, please contact us (see Section 14). We may require you to verify your identity, and may charge a reasonable fee for processing access requests in accordance with the PDPA. We may refuse a request where, for example, it would reveal personal data about another individual, is frivolous or vexatious, or relates to ongoing investigations or legal proceedings.
10. Cookies and Similar Technologies
We use cookies and similar technologies on the Platform to:
- Remember your preferences and login details;
- Improve the functionality and performance of the Platform;
- Analyse usage patterns and traffic;
- Support marketing and advertising (where permitted).
You can manage cookies through your browser settings, but disabling certain cookies may affect your ability to use some features of the Platform. Where cookies involve the collection of personal data, we treat such data in accordance with this Privacy Policy.
11. Direct Marketing and Do Not Call ("DNC") Provisions
With your consent (where required by law), we may send you marketing messages about events listed on the Platform, offers or packages from TESG, or selected partners' events or services.
We comply with the PDPA's Do Not Call provisions where applicable. If your Singapore telephone number is registered on the DNC Register, we will not send you marketing messages via that number unless an exception applies or you have provided clear and unambiguous consent.
You may opt out of marketing messages at any time via the unsubscribe links in our emails, your account settings, or by contacting us. Even after opting out, we may still send you service-related messages such as booking confirmations.
11A. Organiser Mailing Lists (Subscriptions to Event Organisers)
After completing a ticket purchase or registration, logged-in customers may be invited via a post-purchase pop-up to subscribe to email updates from the specific event organiser they purchased from. Joining an organiser's mailing list is entirely optional and requires your explicit consent ("Yes, subscribe").
We collect your account email address and name, the organiser identifier, and the booking that prompted the opt-in, solely to deliver email updates from that organiser, sent by IndianEvents.SG on the organiser's behalf. We act as the data custodian for your subscription — organisers do not receive your raw email address, only aggregate counts and growth statistics for their own subscriber list.
You may withdraw consent and unsubscribe at any time via the unsubscribe link in every organiser email, or from Profile → My Subscriptions ("Leave list"). Unsubscribed records are kept for up to 30 days as an audit trail and then permanently deleted; deleting your account deletes these records immediately.
12. Children's Privacy
The Platform is primarily intended for users aged 18 and above. We do not knowingly collect personal data from children under the age required for consent under applicable laws without appropriate parental or guardian consent. If we become aware that we have done so, we will take steps to delete such data as soon as reasonably practicable.
13. Data Breaches
In the event of a personal data breach, we will:
- Assess the incident promptly;
- Contain and remediate the breach where possible;
- Determine whether the breach is notifiable under the PDPA;
- Notify the Personal Data Protection Commission (PDPC) and affected individuals where required by law.
14. Contacting Us (Data Protection Officer)
If you have any questions, feedback, requests or complaints about this Privacy Policy or our handling of your personal data, please contact our Data Protection Officer at admin@indianevents.sg. We will investigate and respond to your query within a reasonable time, in accordance with our legal obligations.
15. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. The updated policy will be posted on the Platform with a revised "Last updated" date. Your continued use of the Platform after changes take effect constitutes your acknowledgement and acceptance of the updated Privacy Policy.
