Legal
Privacy Policy
What personal data JefurryInsights handles, why, how long we keep it, and what you can ask us to do.
Last updated 2026-09-28
Who we are
JefurryInsights (https://insights.jefurryaxis.com) is operated by JEFFERY ADVENTURE PTE. LTD., trading as Jeffery Asia (https://jeffery.asia), 46 East Coast Road, #08-04 EastGate, Singapore 428766 (“Jeffery Asia”, “we”, “us”). JefurryInsights is part of Jeffery Asia’s family of AI analysis platforms, alongside its sister product JefurryAxis (https://jefurryaxis.com).
This policy covers the JefurryInsights website, the public demo and the client workspace. We handle personal data under Singapore’s Personal Data Protection Act 2012 (PDPA).
A managed service, so we hold little about you
JefurryInsights is a managed service. The Jeffery Asia analyst team prepares the analysis; the platform is where you read it. You don’t upload your own data, you type very little, and nothing is ordered or paid for online — scope, fees and invoicing are agreed in a separately signed contract. So the personal data we hold is mostly what it takes to let you sign in and read your reports.
The analysis itself draws on public-platform content — social media, news and search — supplied by third-party data providers. We do not collect non-public content, and we do not buy personal identity data.
What we collect
If you visit the website:
- Anything you choose to send through the contact form: your name, work email, organisation and message. The form is optional.
- If you use “Book a meeting”: the booking itself happens on cal.com, a third-party scheduling service, which shares the booking details with us.
- When you submit the contact form or open the booking link: your IP address and, only if you allow it, a hashed device fingerprint. Both are used solely to stop abuse (see Security and abuse prevention below).
- Your cookie choice and, if you allow it, your language preference (see Cookies below).
If you use the client workspace:
- Your work email, display name, interface language and timezone.
- Nothing for signing in beyond your email: you sign in with a one-time link or code sent to it, and we never ask for or store a password.
- Usage records: which modules you open and how long you spend in them. We do not record keystrokes, track mouse movement or take screenshots.
- Server operations logs: the technical records our servers keep so we can run the service, keep it secure and fix faults.
We never collect card or bank details — nothing is paid for on the platform.
How we use it
- To sign you in and keep you signed in.
- To show your organisation its reports, and to send you sign-in and notification emails.
- To handle your enquiry. Contact-form submissions are stored in our database and emailed to our sales team (success@jeffery.asia), who reply to you personally. We do not send automatic replies to the address you enter.
- To detect and limit abuse of the contact form and the booking link.
- To see which parts of the product are used, so we can improve it.
- To keep the service secure, investigate faults and meet our legal obligations.
We do not sell personal data, and we never use your email for third-party marketing.
Where it is stored and how it is protected
Platform data is hosted in Singapore. Some providers, such as the email service, cal.com and the map-tile service, may process data elsewhere; when personal data leaves Singapore, we take the steps the PDPA requires to protect it.
Each client organisation is isolated at the database row level, so no organisation can see another’s content. Sign-in uses one-time links or codes, so there are no passwords to leak, and the session cookie is signed and HttpOnly.
No system is perfectly secure. If a data breach affects you in a way the law requires us to report, we will notify you and the authorities.
Security and abuse prevention
The contact form and the “Book a meeting” link are open to anyone, so we protect them against spam and automated abuse. When you submit the form or open the booking link, we process:
- Your IP address — always, to apply rate limits. We rely on our legitimate interest in keeping the service secure.
- A device fingerprint — only if you allowed it in the cookie banner. Your browser computes it at that moment from browser characteristics (user agent, language, screen, timezone, and hardware and graphics characteristics) and sends only a one-way hash.
We store both only as keyed one-way hashes, use them solely to detect and limit abuse (rate limits, duplicate and spam detection), never for advertising or cross-site tracking, and delete them after 30 days. If you don’t allow the fingerprint, the form still works; we just rely on IP-based limits alone.
How long we keep it
| Data | How long |
|---|---|
| Reports and other deliverables | For the term of the contract, and afterwards as agreed in it |
| Usage records | 13 months |
| Server operations logs | Deleted automatically after 180 days |
| Workspace account details | While you have access to the workspace, then deleted or anonymised within a reasonable period |
| Contact-form enquiries | 24 months, then deleted unless the enquiry became a client relationship |
| Hashed IP addresses and device fingerprints (abuse prevention) | Deleted after 30 days |
| Cookies | See the table in the next section |
Where the law requires us to keep something longer, we will.
Your rights
You can ask us to:
- give you a copy of the personal data we hold about you;
- correct anything that is wrong or out of date;
- export or delete your data — and, if your organisation authorises you, its workspace data;
- stop using data you consented to — you can withdraw consent at any time.
Write to ird@jeffery.asia, ideally from the email address you use with us. We will respond within 7 working days, and may need to confirm your identity first. Withdrawing consent or deleting data may mean parts of the service stop working for you.
If you are not satisfied with our response, you can contact Singapore’s Personal Data Protection Commission (PDPC).
Changes and contact
We update this policy when the way we handle data changes. The date at the top is the date of the current version; for significant changes we will also tell workspace users by email or in the workspace.
Privacy questions and requests: ird@jeffery.asia. Everything else, including sales: success@jeffery.asia. By post: JEFFERY ADVENTURE PTE. LTD., 46 East Coast Road, #08-04 EastGate, Singapore 428766.
This policy is published in English and Chinese. If the two differ, the English version prevails.