Personal Data Protection · PDPA

Privacy policy.

How RideOut collects, uses, discloses, and protects personal data in line with Singapore's Personal Data Protection Act 2012 (PDPA) — and the rights you have over your data.

Last updated · 26 June 2026

Who we are.

This policy is issued by RIDEOUT PTE LTD (UEN 202527884Z), a company incorporated in Singapore that provides pre-scheduled, fixed-rate late-night transport for food & beverage businesses ("RideOut", "we", "us"). It covers personal data we handle through our website rideout.sg, our WhatsApp Business channel, our booking and dispatch systems, and our dealings with operators, their staff, and our drivers.

What we collect.

We collect only the personal data we need to quote, schedule, run, and bill rides. Depending on your relationship with us, that may include:

From operators (F&B businesses)

  • Contact details of the person enquiring — name, business name, role, email, and phone number.
  • Operational details needed to plan routes — your venue address, shift-end times, and the number of staff needing transport.

From staff being transported

  • First name (or a label you assign) and drop-off area or postal code, so we can build and optimise the route.
  • We ask operators to share only what is necessary, and to have informed their staff that this data is shared with us for the purpose of arranging transport.

From drivers

  • Name, contact details, vehicle details and plate number, Private Hire Vocational Licence (PDVL) details, and payout/bank information.

From everyone who uses our website or WhatsApp

  • Messages you send us and the phone number you send them from.
  • Standard technical data — IP address, browser type, and aggregate usage analytics (see Cookies & analytics).

Why we use it.

We use personal data for the following purposes:

  • To respond to enquiries and prepare quotes and cost analyses.
  • To plan, optimise, dispatch, and run scheduled rides.
  • To send operational notifications — confirmations, driver ETAs, and receipts (see our WhatsApp consent policy).
  • To invoice operators and pay drivers.
  • To provide customer support and resolve disputes.
  • To meet legal, regulatory, tax, and licensing obligations in Singapore.
  • To improve the safety, reliability, and quality of our service.

We rely on your consent, and on the legitimate-interest and contractual bases recognised under the PDPA, to process this data. Where consent is the basis (for example, WhatsApp notifications), you may withdraw it at any time.

Who we share with.

We do not sell personal data. We share it only with parties that help us deliver the service, and only as needed:

  • Drivers — the minimum trip details (pickup, drop-off area, timing) needed to complete an assigned route.
  • Twilio and Meta / WhatsApp — to deliver WhatsApp messages you have opted in to receive.
  • Payment, accounting, and hosting providers — to process invoices, payouts, and to run our website and systems.
  • Authorities and regulators — where required by Singapore law, or to protect safety and our legal rights.

Where any provider is located outside Singapore, we take steps to ensure your data receives a standard of protection comparable to the PDPA.

Cookies & analytics.

Our website uses a minimal set of cookies and privacy-respecting analytics to understand aggregate traffic and improve the site. We do not use this data to identify individual visitors, and we do not run third-party advertising or cross-site tracking. You can block cookies in your browser without losing core functionality of the site.

How long we keep it.

We retain personal data only for as long as needed for the purpose it was collected, or as required by law. Booking and billing records are kept for the period required under Singapore tax and accounting rules. Consent and opt-out records are kept for as long as legally required. WhatsApp message content is retained for up to 24 months for dispute resolution, after which it is deleted. Enquiry data for prospects that do not become customers is deleted within 24 months of last contact.

How we protect it.

We apply reasonable administrative, technical, and physical safeguards to protect personal data against unauthorised access, use, or disclosure — including encrypted storage, access controls limited to staff who need it, and vetting of the drivers and processors who handle data. No system is perfectly secure, but we work to keep risk low and to respond quickly if an incident occurs.

Your rights.

Under the PDPA you may, at any time:

  • Access the personal data we hold about you, and ask how it has been used or disclosed.
  • Correct personal data that is inaccurate or out of date.
  • Withdraw consent to any use of your data, including WhatsApp notifications (reply STOP) — noting that this may affect our ability to provide the service.
  • Request deletion of data we are no longer required to keep.

To make a request, email our Data Protection Officer at hello@rideout.sg. We will respond within a reasonable time, and in any case as required by the PDPA. We may need to verify your identity before acting on a request.

Changes to this policy.

If we materially change how we handle personal data, we will update the "Last updated" date above and, where appropriate, notify affected individuals. Continued use of our service after a change takes effect constitutes acceptance of the revised policy.

Contact us.

Questions about this policy or your data? Email our Data Protection Officer at hello@rideout.sg or message us on WhatsApp. You also have the right to contact Singapore's Personal Data Protection Commission (PDPC) if you have unresolved concerns.