What happened
Around 1-2 September 2026, Singapore's Personal Data Protection Commission (PDPC), speaking at the Cybersecurity and Data Protection Conference 2026 (Commissioner Denise Wong), released a series of updated guidelines and technical guides covering generative AI, cybersecurity readiness, and privacy-enhancing technologies (PETs). Separately, IMDA (at the Singapore Data Festival 2026) announced expansion of its PET Sandbox programme, release of a new Federated Learning Technical Guide developed with GovTech Singapore, and updates to its Synthetic Data Generation Guide, plus commissioning of an ASEAN-focused report on cross-border PET-enabled data sharing.
Why it matters
These updates extend Singapore's existing (non-binding but influential) AI governance/security guidance stack -- used as a reference model across APAC -- into new technical areas (federated learning, synthetic data, PETs) directly relevant to secure AI data pipelines and cross-border AI deployments.
Action needed
Organisations operating in Singapore or referencing Singapore's Model AI Governance Framework should review the updated PDPC guidelines and new IMDA technical guides (Federated Learning, Synthetic Data Generation) and map them into existing AI data-security controls.