The fine print, kept short

Privacy policy

This page explains what we collect when you contact us, what we do with it, and the choices you have. We’ve kept it in plain language and as short as we honestly can.

1. Who we are

2Wombats Pte. Ltd. is a Singapore firm that implements and supports business systems built on the Xintesys ERP and the Xintesys-Connect framework. When this policy says “we”, “us” or “our”, it means 2Wombats.

2. What we collect

When you send a request through our site, we may receive:

  • Your name and, if you give it, your company name.
  • Your country and how you describe your business.
  • What you tell us about your current systems, problems and goals.
  • Your email address, so we can reply.
  • Basic technical data — IP address, browser type, visit time — used only for security and simple usage statistics.

3. What we do with it

We use this information to:

  • Read and assess your request.
  • Prepare our reply — feasibility, timeframes, cost estimates.
  • Come back to you with questions if something is unclear.
  • Improve how we explain our services and how the site works.

We do not sell your data, and we do not rent it.

4. Our email promise

Your email address is used to answer your request and to follow up on that same topic — nothing else. You won’t land on a mailing list unless you clearly ask to, or clearly agree to receive a specific kind of update.

If you ever get an email from us you don’t want, reply and say stop. We will.

5. Legal bases (for visitors in certain regions)

Some jurisdictions — the EU and UK among them — require us to name the legal bases for handling personal data. Where that applies, ours are:

  • Legitimate interest — reviewing and answering your request.
  • Consent — where you ask us to contact you or keep you updated.
  • Legal obligation — where the law requires us to keep certain records.

6. How long we keep it

  • Active requests and follow-up: for as long as we’re working with you on them.
  • Declined or closed requests: for a reasonable period in case we need to refer back, after which we delete or anonymise the data.
  • Legal, security or accounting records: for as long as applicable law or our internal policies require.

7. Who we share it with

  • Service providers who help us run our systems — secure hosting, email. They process data on our behalf and are required to protect it.
  • Authorities, if a law, regulation or valid legal request obliges us to.
  • A successor business, if we’re ever involved in a merger or acquisition — with steps taken to keep your data protected through the change.

8. International transfers

Data may be stored or processed in countries other than your own. When it is, we use reasonable safeguards — data-processing agreements and security controls that meet industry norms.

9. Your rights

Depending on where you live, you may be able to:

  • Ask for a copy of the personal data we hold about you.
  • Have us correct anything that’s wrong or incomplete.
  • Have us delete data that’s no longer needed.
  • Object to, or limit, certain kinds of processing.
  • Withdraw consent you’ve previously given.

To exercise any of these, contact us through the site. We may need to confirm your identity before acting.

10. Cookies

The site may use cookies or similar tools to stay secure and to understand basic usage patterns. We don’t use them to follow you around the rest of the internet. You can control cookies in your browser settings; switching them off may affect parts of the site.

11. How we protect your data

We use reasonable technical and organisational measures against loss, misuse and unauthorised access. No system is perfect; we aim to keep the risks low and review our safeguards over time.

12. Changes to this policy

When we update this policy we’ll change the date below. If a change is significant, we’ll take reasonable steps to let you know.

Last updated: August 2026