Per PDPA Singapore Protection + Accuracy Obligations: protect personal data + maintain accuracy. Requirements include (a) implement Protection Obligation making reasonable security arrangements to protect personal data against unauthorised access + collection + use + disclosure + copying + modification + disposal + similar risks + (b) implement Accuracy Obligation ensuring personal data is accurate + complete where it will be used to make decisions affecting individuals + (c) implement Data Minimization collecting only what is necessary + (d) implement encryption + pseudonymisation + access control + as appropriate + (e) conduct regular Security Testing and Assessment + (f) integrate with broader information security programme + (g) maintain monitoring + improvement.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.