Privacy policy

Your data, handled with care.

How the Restaurant Association of Singapore (RAS) collects, uses and protects personal data under the Personal Data Protection Act, and how to reach our Data Protection Officer.

This policy explains how the Restaurant Association of Singapore (RAS) handles personal data in line with the Personal Data Protection Act 2012 (PDPA). It applies to ras.org.sg, our event registrations, our newsletters and the personal data we hold about members, partners, guests and the public. Last updated 7 October 2026.

Who we are

RAS is the trade association for Singapore's food and beverage industry, with its secretariat at 331 North Bridge Road, #22-01/06 Odeon Towers, Singapore 188720. RAS is the organisation responsible for the personal data described here. Our Data Protection Officer, Vivian Zhao, can be reached at vivian.zhao@ras.org.sg or on +65 6479 7723.

What we collect

We collect what you give us and only as much as the purpose needs. Membership enquiries and applications: your name, role, company, business registration details, email address, phone number and billing details. Event registrations: your name, company, email address, phone number, dietary requirements where a meal is served, and payment records. Newsletter sign ups: your name and email address. Contact and media forms: your name, email address, phone number and the message you send. Awards and nominations: the details you or your nominator submit about the establishment and the people behind it.

When you visit ras.org.sg we also collect standard technical information such as pages viewed, approximate location, device and browser type, through Google Analytics. This is used in aggregate to understand how the site is used and is not used to identify you.

Why we use it

We use personal data to process and manage membership, to register you for and run events, to administer awards and nominations, to respond to your enquiries, to invoice and collect payment, to send member communications and, with your consent, the RAS newsletter and news of events, programmes and partner offers. We also use it to meet legal and regulatory obligations and to keep the association's records in order.

Consent and marketing messages

Where the PDPA requires it, we collect personal data only with your consent, which you give when you submit a form, register for an event or sign up to a newsletter. You may withdraw consent at any time by writing to vivian.zhao@ras.org.sg, and every newsletter carries an unsubscribe link. Withdrawing consent may mean we can no longer provide the service concerned, and we will tell you if that is the case. We send marketing messages to Singapore telephone numbers only with your clear consent, in line with the Do Not Call provisions of the PDPA.

Who we share it with

We do not sell personal data. We share it only with service providers who process it on our behalf and under instruction: Webflow, which hosts this website and stores form submissions; Mailchimp, which sends our newsletters; Google, which provides our email, document storage and analytics; our events registration platform; and payment processors for paid events and membership fees. We may share event attendance details with a co-organiser or venue where that is needed to run the event, and we will say so when you register. We may also disclose personal data where the law requires it.

Transfers outside Singapore

Some of the providers above store data on servers outside Singapore, including in the United States and the European Union. Where this happens we take steps to ensure the data receives a standard of protection comparable to that under the PDPA, including contractual safeguards with the provider.

How long we keep it

We keep personal data only for as long as it is needed for the purpose it was collected for, or as the law requires. Membership records are kept for the life of the membership and for up to seven years after it ends for accounting and audit purposes. Event registration and enquiry records are kept for up to three years. Newsletter subscriptions are kept until you unsubscribe. When data is no longer needed we delete it or anonymise it.

How we protect it

Access to personal data is limited to secretariat staff who need it for their work. Our systems use encrypted connections, access controls and two step verification. No method of transmission or storage is completely secure, so if we become aware of a data breach that is likely to cause significant harm we will notify the Personal Data Protection Commission and the people affected as the PDPA requires.

Your rights

You may ask us what personal data we hold about you and how we have used or disclosed it in the past year, and you may ask us to correct it. Write to vivian.zhao@ras.org.sg with enough detail for us to find your records. We respond within 30 days and may charge a reasonable fee for access requests, which we will tell you about first. You may also ask us to delete your data, and we will do so unless we need to keep it for a legal or business purpose, which we will explain.

Cookies

ras.org.sg uses cookies set by Google Analytics and Google Tag Manager to measure how the site is used, and by YouTube when you play an embedded video. You can block or delete cookies in your browser settings; the site will still work. Links to other websites, including our events platform and partner sites, are covered by those sites' own privacy policies.

Changes and contact

We may update this policy from time to time and will post the new version here with a fresh date. Questions, requests and complaints about personal data go to our Data Protection Officer, Vivian Zhao, at vivian.zhao@ras.org.sg, or by post to RAS, 331 North Bridge Road, #22-01/06 Odeon Towers, Singapore 188720. If you are not satisfied with our response you may contact the Personal Data Protection Commission at pdpc.gov.sg.