| Photo | Style | Description | Metal | Batch | Status | Tag (USD) | Cost (USD) |
|---|
| Period | JPY Tag Formula | Normal Tag Formula | Gold Rate |
|---|
| Photo | Style | Description | Metal | Status | Tag (USD) | Cost (USD) | Date |
|---|
| Time (SGT) | Type | User | Detail | Count |
|---|---|---|---|---|
| No transactions yet | ||||
Privacy Policy
Effective Date: 4 April 2026
Data Controller: Blaise Huxley
This Privacy Policy explains how we collect, use, and protect your personal data in compliance with the Personal Data Protection Act 2012 (PDPA) of Singapore.
1. Personal Data We Collect
- Account data: Email address, display name, role
- Inventory data: Consignor names, buyer names, item notes
- Activity data: Login timestamps, actions performed (audit log), transaction history
- Technical data: Browser type (via Google Fonts/CDN requests)
2. Purpose of Collection
- Managing jewelry inventory and consignment records
- Authenticating and authorising user access
- Maintaining audit trails for accountability and dispute resolution
- Generating business reports and analytics
We do not use your data for marketing purposes or share it with third parties for marketing.
3. Data Protection Measures
- All data transmitted via HTTPS (TLS encryption in transit)
- Database encrypted at rest (Supabase/AWS)
- Role-based access control with row-level security
- Session timeout after 30 minutes of inactivity
- Tamper-proof audit and transaction logs
4. Data Retention
- Account data: Retained while account is active; anonymised upon account deletion
- Transaction/audit logs: Retained for 7 years (IRAS tax record requirements), then disposed
- Inventory data: Retained while consignment relationship is active
5. Cross-Border Transfer
Data is stored on Supabase infrastructure (AWS ap-northeast-2, Seoul). Supabase maintains comparable data protection standards through their Terms of Service and DPA.
6. Your Rights
- Access: Request a copy of your personal data
- Correction: Request correction of inaccurate data
- Withdrawal of consent: Withdraw consent for data processing (note: this may affect your ability to use the platform)
- Data portability: Export your data in machine-readable format
- Deletion: Request deletion of your account and associated personal data
To exercise any of these rights, contact our Data Protection Officer (see below) or use the "My Data" option in your account menu.
7. Data Protection Officer
Contact: dpo@blaisehuxley.com
Last updated: 4 April 2026
My Data
Under the PDPA, you have the right to access, export, and request deletion of your personal data.
Download all personal data we hold about you in JSON format.
If any of your personal data is inaccurate, contact our DPO.
dpo@blaisehuxley.com
Request permanent deletion of your account and all associated personal data. This action cannot be undone. Audit logs will be anonymised (not deleted) per regulatory retention requirements.
Organisations
| Name | Slug | Members | Items | Status | Actions |
|---|
| Name | Role | Status | Actions | |
|---|---|---|---|---|
| Loading… | ||||
| Time (SGT) | User | Event | Detail |
|---|---|---|---|
| Loading… | |||