Privacy Policy
Operated by Print-IQ Singapore Pte Ltd Effective date: 1 Jul 2026 · Last updated: 28 Jul 2026
1. About this policy
This Privacy Policy explains how Print-IQ Singapore Pte Ltd (“Print-IQ”, “we”, “us” or “our”) collects, uses, discloses, stores, protects and otherwise processes personal data in connection with:
- the PrintOne printer subscription programme (“PrintOne”);
- the website at https://epsonprintone.com and related webpages;
- applications, subscriptions, installations, deliveries, billing, maintenance, repair, replacement and customer-support activities;
- communications with applicants, customers, authorised representatives and website users; and
- related products, services, campaigns or events that refer to this Policy.
PrintOne is operated by Print-IQ. Epson is the manufacturer or supporting technology brand associated with eligible printers and consumables, but is not the contracting party for the PrintOne subscription unless expressly stated in an Order Summary.
This Policy is intended to reflect the Personal Data Protection Act 2012 of Singapore (“PDPA”) and other applicable Singapore laws and regulatory requirements, including applicable Do Not Call provisions and the Spam Control Act 2007.
2. What “personal data” means
“Personal Data” means data, whether true or not, about an individual who can be identified from that data, or from that data together with other information to which we have or are likely to have access.
This Policy applies to Personal Data relating to individuals. It does not generally apply to business contact information where the PDPA excludes such information, although we will still handle business contact information responsibly.
3. Personal data we may collect
Depending on how you interact with us, we may collect the following categories.
3.1 Identity and contact information — full name; residential, billing, delivery and installation address; email address and telephone number; date of birth; nationality or residency status where relevant; NRIC, FIN, passport or other identification information, but only where justified under applicable law and our internal identity-verification policy; a copy or image of an identification document where necessary for a lawful, reasonable and properly documented purpose; and information about an authorised representative, account administrator, employee, tenant, landlord or other person involved in an application.
3.2 Application and account information — selected PrintOne plan and printer model; application date, approval status, contract dates and account reference; eligibility, identity-verification and fraud-prevention information; information reasonably required to assess an application or manage credit risk; records of consent, acceptance, electronic signatures and acknowledgements; account settings, service preferences and marketing preferences; and complaints, disputes, feedback and account notes.
3.3 Billing and payment information — billing name and address; invoices, payment status, refunds, credits, arrears and collection history; transaction identifiers and limited payment-method information supplied by our payment processor; and information required to establish and administer recurring billing.
Payment-card details may be collected directly by a payment processor such as Stripe through a processor-hosted payment page. Unless expressly stated otherwise, we do not receive or store your complete card number or card security code.
3.4 Delivery, installation and premises information — delivery and installation instructions; preferred appointment dates and time slots; access restrictions, parking or loading information; photographs of the installation location where reasonably necessary; records of delivery, installation, handover and proof of service; and names and contact details of persons present or authorised at the premises.
3.5 Equipment, service and usage information — depending on the plan and technical capabilities of the equipment, we may collect: printer model, serial number, asset number and installation location; meter readings, page counts and plan-usage information; ink levels, consumable status and service alerts; diagnostic information, error codes, firmware version and maintenance history; repair, replacement and parts records; network or device information required for installation or support, such as IP address, device identifiers and configuration details; and information reasonably required to prevent misuse, investigate faults, administer page allowances or provide proactive servicing.
We will not access the content of documents printed or scanned unless this is strictly necessary for a specific support request, you have authorised it, and appropriate safeguards are applied.
3.6 Communications and interaction records — emails, web forms, letters, messaging-app communications and support tickets; records and notes of telephone calls or meetings; call recordings where notice has been given and recording is reasonably required for quality assurance, training, dispute resolution or security; survey responses and customer feedback; and interactions with any chatbot or automated support tool.
3.7 Website, device and analytics information — IP address; browser type, device type and operating system; referring pages, pages visited, clicks, session dates and approximate location; cookie identifiers and similar technologies; error, performance and security logs; and preferences entered into plan-selection tools or cost calculators.
3.8 Marketing information — consent or objection to marketing; communication-channel preferences; campaign interactions; and information about enquiries, interests or prior purchases used to personalise communications where permitted.
4. How we collect personal data
We may collect Personal Data:
- directly from you when you enquire, apply, subscribe, pay, contact us or use the website;
- from an authorised representative, employer, business, family member, tenant, landlord or other person acting for you;
- from payment processors, logistics providers, installers, service technicians, credit-reference or fraud-prevention providers;
- from Epson or authorised Epson service and distribution channels where necessary to fulfil the service;
- automatically through the website, cookies, logs, printer telemetry or service-management tools;
- from publicly available sources; and
- from government, regulatory, law-enforcement or dispute-resolution bodies where permitted or required by law.
Where you provide Personal Data about another person, you confirm that you are authorised to do so and have informed that person of the relevant purposes and this Policy.
5. Purposes for which we collect, use and disclose personal data
5.1 Applications and contracting — responding to enquiries; verifying identity and authority; assessing eligibility and applications; preventing fraud and misuse; preparing an Order Summary and subscription agreement; obtaining and recording consent and contractual acceptance; and establishing and administering a customer account.
5.2 Providing PrintOne services — reserving and allocating equipment; arranging delivery, installation, configuration and handover; administering page allowances, consumables and service entitlements; monitoring equipment status where the plan permits; arranging ink delivery, maintenance, repair or replacement; providing technical and customer support; managing relocation, upgrades, plan changes and end-of-term arrangements; and administering manufacturer support or warranty claims.
5.3 Billing and account management — setting up recurring payments; issuing invoices, receipts, credits and payment reminders; collecting subscription, usage, equipment, repair, replacement and other properly payable charges; managing failed payments, arrears and debt recovery; conducting accounting, reconciliation, audit and tax activities; and handling refunds, disputes or chargebacks.
5.4 Safety, security and legal compliance — protecting customers, staff, contractors, systems and assets; detecting or investigating fraud, misuse, unauthorised access or security incidents; verifying service records and resolving complaints or disputes; enforcing contractual and legal rights; responding to lawful requests, court orders or regulatory requirements; complying with tax, accounting, consumer-protection, data-protection and other legal obligations; and assessing, containing and notifying data breaches where required.
5.5 Service improvement and business administration — quality assurance and staff training; service planning, forecasting, inventory and logistics; analytics, research and product development using aggregated or anonymised information where practicable; maintaining business records; corporate transactions, due diligence or restructuring subject to appropriate safeguards; and managing service providers and professional advisers.
5.6 Marketing — where permitted by law and, where required, with your consent, we may send information about PrintOne, printer plans, promotions, related Print-IQ services, events or customer benefits.
You may opt out at any time using the method stated in the communication or by contacting us. Service messages concerning your application, subscription, payment, installation, equipment or support are not marketing messages and may continue where necessary to administer the contract.
6. Consent and other permitted bases
We generally collect, use and disclose Personal Data with consent and after notifying you of the relevant purposes.
In circumstances permitted under the PDPA or other law, we may process Personal Data without consent, including where necessary for contractual performance, legitimate interests, business improvement, investigations, emergencies, legal claims, compliance with law or other applicable exceptions.
We will only collect, use or disclose Personal Data for purposes that a reasonable person would consider appropriate in the circumstances, and we will not require consent beyond what is reasonably necessary to provide the relevant service.
7. NRIC, FIN and other national identification numbers
NRIC, FIN and similar national identification information carries heightened risk and will be handled under enhanced controls.
We will collect, use or disclose a full national identification number or a copy of an identification document only where required by law, or necessary to establish or verify identity to a high degree of accuracy where the purpose is reasonable and documented.
We will not use a full or partial NRIC or FIN number as a password, default password, security question or sole method of authenticating access to an account, document or service.
Where a less intrusive method is sufficient, we will use an alternative, such as an application reference, customer number, one-time password or appropriately designed identity-verification process.
We will not retain a physical identity card. Any electronic copy collected will be access-restricted, protected appropriately, and retained only for as long as required for the documented business or legal purpose.
8. Disclosure of personal data
We may disclose Personal Data, only as reasonably necessary, to:
- Epson entities, authorised distributors or authorised service channels involved in supplying equipment, consumables, warranty support or technical services;
- delivery, warehousing, installation, maintenance, repair and field-service providers;
- payment processors, banks and billing providers;
- cloud-hosting, storage, database, email, communications, analytics, security, customer-support and software providers;
- credit-reference, identity-verification, fraud-prevention and debt-recovery service providers;
- insurers and professional advisers, including auditors, accountants and lawyers;
- an actual or proposed purchaser, investor or successor in a corporate transaction, subject to appropriate confidentiality and data-protection measures;
- regulators, law-enforcement agencies, courts, government bodies or other persons where disclosure is authorised or required by law; and
- any other person whom you have authorised us to disclose the data to.
Service providers are expected to process Personal Data only for authorised purposes and to implement appropriate safeguards.
9. Overseas transfers
Some service providers may process or store Personal Data outside Singapore.
Where Personal Data is transferred outside Singapore, we will take reasonable steps to ensure that the recipient is bound by legally enforceable obligations or other recognised safeguards that provide a standard of protection comparable to the protection required under the PDPA, subject to applicable exceptions.
10. Cookies and similar technologies
The website may use necessary, preference, analytics, performance, security and, where applicable, advertising cookies or similar technologies.
Necessary cookies support core functions such as security, session management and form submission. Optional analytics or advertising technologies will be managed in accordance with applicable consent and notice requirements.
You may adjust browser settings or available cookie controls. Blocking certain technologies may affect website functionality.
A separate Cookie Notice may be published where appropriate.
11. Accuracy
You should provide accurate, complete and current information and promptly notify us of relevant changes.
We will make reasonable efforts to ensure Personal Data used to make a decision affecting you, or disclosed to another organisation, is accurate and complete.
12. Protection and security
We will implement reasonable administrative, physical and technical security arrangements appropriate to the nature and risk of the Personal Data, which may include: role-based and least-privilege access; strong authentication and multi-factor authentication for administrative access; encryption in transit and, where appropriate, at rest; logging, monitoring and alerts for unusual access or bulk extraction; secure software-development, testing and deployment procedures; vulnerability management, backups and recovery procedures; confidentiality and data-protection obligations for personnel and vendors; segregation of production and test data; and documented incident-response and breach-management procedures.
No system is completely secure. You should protect account credentials and promptly notify us of suspected unauthorised access.
13. Retention
We will retain Personal Data only for as long as reasonably necessary to evaluate an application; provide and administer the subscription; fulfil service, warranty, accounting, audit and tax obligations; resolve disputes, enforce rights or manage legal claims; comply with legal or regulatory requirements; and maintain legitimate business records.
When retention is no longer necessary for a business or legal purpose, we will cease retention or remove the means by which the data can be associated with an individual, using secure disposal or anonymisation methods as appropriate.
Our detailed retention periods are set out in an internal retention schedule and may differ by data category.
14. Access and correction
Subject to the PDPA and applicable exceptions, you may request access to Personal Data in our possession or control; information about how we used or disclosed that data within the applicable period; or correction of an error or omission.
Requests should be submitted to the Data Protection Officer using the contact details below. We may verify your identity before processing a request.
Where permitted by law, we may charge a reasonable fee for an access request and will provide an estimate in advance. We may refuse or limit a request where an applicable legal exception applies.
15. Withdrawal of consent
You may withdraw consent by giving reasonable notice to the Data Protection Officer.
We will explain the likely consequences of withdrawal. Depending on the data and purpose involved, withdrawal may prevent us from processing an application, providing part or all of the service, administering payment, maintaining support or complying with the subscription agreement.
Withdrawal of consent does not affect processing already lawfully carried out and does not prevent processing permitted or required without consent under applicable law.
16. Marketing, Do Not Call and unsubscribe requests
We will manage marketing calls and messages to Singapore telephone numbers in accordance with applicable Do Not Call requirements and recognised exceptions.
We will manage bulk commercial electronic messages in accordance with applicable anti-spam requirements, including identification and unsubscribe requirements where applicable.
You may opt out through an unsubscribe link, by replying as instructed, or by contacting us. We will process the request within the period required by law.
17. Data breaches
We maintain procedures to assess, contain, investigate and remediate suspected data breaches.
Where a breach is notifiable under the PDPA, we will notify the Personal Data Protection Commission and affected individuals as soon as practicable in accordance with applicable requirements.
18. Children
PrintOne applications must be made by individuals aged 18 or above or by duly authorised representatives of legal entities.
We do not knowingly invite children to enter into PrintOne subscriptions or submit identity and payment information. A parent or legal guardian should contact us if a child has provided Personal Data without proper authority.
19. Third-party websites and services
The website may link to payment pages, manufacturer resources, social-media platforms or other third-party services. Those third parties may process Personal Data under their own privacy notices.
We are not responsible for a third party’s independent privacy practices, but we will conduct appropriate vendor assessment and contractual management where the third party processes Personal Data on our behalf.
20. Changes to this policy
We may update this Policy to reflect changes in law, technology, service design or business practices.
The updated version will be published with a revised “Last updated” date. Where a change materially affects how we handle Personal Data, we will provide additional notice or seek fresh consent where required.
21. Data Protection Officer and contact details
Data Protection Officer Print-IQ Singapore Pte Ltd UEN: 201419987M Registered/business address: 8 Ubi View Singapore 408554 Email: general@print-iq.com.sg Telephone: +65 6100 7747 Website: https://epsonprintone.com
Please include sufficient details for us to identify the relevant application, account, communication or data, but do not send complete card details, passwords or unnecessary identity-document images by ordinary email.
22. Complaints
Please contact our Data Protection Officer first if you have a concern about our handling of Personal Data. We will review the concern and respond within a reasonable period.
You may also have the right to approach the Personal Data Protection Commission or another competent authority.