Diama Core Values
About Services Contact

GDPR Compliance

Last updated: May 13, 2026

1. Our Commitment to GDPR

Diama Core Values is committed to protecting the privacy and security of personal data in accordance with the General Data Protection Regulation (GDPR) (EU) 2016/679. This page outlines how we comply with GDPR requirements and your rights under this regulation.

2. Data Controller

Diama Core Values acts as the data controller for personal data collected through our website and services.

Contact Details:
Diama Core Values
123 Robinson Road, #15-01
Singapore 068902
Email: [email protected]

3. Legal Basis for Processing

We process your personal data under the following legal bases:

  • Consent: You have given clear consent for us to process your personal data for specific purposes
  • Contract: Processing is necessary for a contract we have with you, or because you have asked us to take specific steps before entering into a contract
  • Legal Obligation: Processing is necessary for us to comply with the law
  • Legitimate Interests: Processing is necessary for our legitimate interests or the legitimate interests of a third party (unless there is a good reason to protect your personal data which overrides those interests)

4. Your Rights Under GDPR

Under GDPR, you have the following rights regarding your personal data:

Right to Access

You have the right to request copies of your personal data. We may charge a small fee for this service.

Right to Rectification

You have the right to request that we correct any information you believe is inaccurate or complete information you believe is incomplete.

Right to Erasure

You have the right to request that we erase your personal data, under certain conditions.

Right to Restrict Processing

You have the right to request that we restrict the processing of your personal data, under certain conditions.

Right to Object to Processing

You have the right to object to our processing of your personal data, under certain conditions.

Right to Data Portability

You have the right to request that we transfer the data that we have collected to another organization, or directly to you, under certain conditions.

Right to Withdraw Consent

Where we rely on consent to process your personal data, you have the right to withdraw that consent at any time.

5. How to Exercise Your Rights

To exercise any of your GDPR rights, please contact us at:

Email: [email protected]

We will respond to your request within one month. If your request is complex or we have received a number of requests, we may extend this period by a further two months, in which case we will notify you.

6. Data We Collect

We collect and process the following categories of personal data:

  • Identity data (name, title)
  • Contact data (email address, physical address)
  • Technical data (IP address, browser type, device information)
  • Usage data (how you use our website and services)
  • Communications data (information shared in inquiries and coaching sessions)
  • Financial data (payment and transaction information)

7. How We Use Your Data

We use your personal data for the following purposes:

  • Providing our coaching and consulting services
  • Managing our relationship with you
  • Improving our website and services
  • Ensuring security and preventing fraud
  • Complying with legal obligations

8. Data Sharing

We do not sell or rent your personal data to third parties. We may share your data with:

  • Service providers who process data on our behalf (email providers, payment processors)
  • Professional advisers (lawyers, accountants)
  • Regulatory authorities when legally required

All third parties are required to respect the security of your personal data and treat it in accordance with the law.

9. International Transfers

Some of our service providers may be based outside the European Economic Area (EEA). When we transfer your personal data outside the EEA, we ensure appropriate safeguards are in place, such as:

  • Standard contractual clauses approved by the European Commission
  • Transfers to countries with adequacy decisions
  • Other legally approved mechanisms

10. Data Retention

We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected, including:

  • Inquiry data: Retained for 2 years from last contact
  • Client records: Retained for 7 years after program completion
  • Financial records: Retained for the period required by law
  • Marketing data: Retained until consent is withdrawn

11. Data Security

We have implemented appropriate technical and organizational measures to ensure the security of your personal data, including:

  • Encryption of data in transit and at rest
  • Access controls and authentication
  • Regular security assessments
  • Staff training on data protection
  • Secure backup procedures

12. Data Breach Notification

In the event of a data breach that is likely to result in a risk to your rights and freedoms, we will notify you and the relevant supervisory authority within 72 hours of becoming aware of the breach.

13. Children's Data

Our services are not directed at children under 16 years of age. We do not knowingly collect or process personal data from children under 16.

14. Automated Decision Making

We do not use automated decision-making or profiling in our services.

15. Complaints

If you believe we have not handled your personal data in accordance with GDPR, you have the right to lodge a complaint with a supervisory authority. In the EU, you can contact your local data protection authority.

16. Updates to This Page

We may update this GDPR compliance information from time to time. Any changes will be posted on this page with an updated revision date.

17. Contact Us

For any questions about our GDPR compliance or to exercise your rights, please contact us:

Email: [email protected]
Address: 123 Robinson Road, #15-01, Singapore 068902

Privacy Policy GDPR Cookies Policy Terms of Use

© 2026 Diama Core Values. All rights reserved.