On 15 August 2025, Singapore’s Health Sciences Authority (HSA) issued an update listing overseas health products found to contain potent, prohibited ingredients. These may cause harmful side effects. The HSA advises consumers to avoid such products and buy only from trusted sources. Sellers in Singapore face severe penalties for supplying adulterated products. The HSA continues monitoring global enforcement to protect local consumers and urges suppliers to assess any overseas regulatory impacts.
On 11 August 2025, Singapore’s CCCS obtained court orders against immigration consultancy businesses for misleading trade practices. The businesses used deceptive tactics to pressure customers into applying for permanent residency, including false guarantees and scripted sales pitches. The mastermind behind these practices evaded detection by operating through new entities. The court ordered cessation of these practices, public disclosure of the orders, and ongoing reporting to CCCS. This signals CCCS’s strict enforcement stance.
Singapore is considering age assurance measures for social media platforms to protect younger users online. These may include age verification systems to ensure age-appropriate content. The Online Safety Bill will be tabled soon, and a new commission to support victims of online harm is planned for next year. This aligns with global efforts to enhance digital safety for children.
In a joint response to a public forum letter, the Monetary Authority of Singapore (MAS) and the Cyber Security Agency of Singapore (CSA) announced that they are considering requiring vendors to obtain national cybersecurity certifications, namely the Cyber Essentials or Cyber Trust mark, before they can be licensed or bid for government contracts involving access to sensitive data or systems.
This move follows a recent data breach involving a third-party vendor and underscores the growing regulatory focus on third-party cybersecurity risks.
The Infocomm Media Development Authority of Singapore (IMDA) is launching two initiatives, the generative AI (GenAI) Playbook and the GenAI Navigator, to make artificial intelligence (AI) more accessible to Singapore businesses and to increase its adoption locally.
The Infocomm Media Development Authority (IMDA) has released a new set of advisory guidelines (Advisory Guidelines) aimed at enhancing the resilience and security of cloud services and data centers in Singapore. These Advisory Guidelines are part of Singapore’s broader digital infrastructure strategy and reflect growing emphasis on the systemic importance of digital services and infrastructure to both the economy and daily life.
On 10 March 2025, the Health Sciences Authority launched its public consultation for the draft on the Best Practices Guide for Medical Device Cybersecurity. The document provides medical device manufacturers and healthcare providers with best practice recommendations and considerations on general cybersecurity principles to protect the security of medical devices for their entire product life cycle.
On 7 March 2025, the Ministry of Health announced a host of changes to the healthcare system to address the shifting needs of the Singapore population. These changes included a review of advertising regulations for certain healthcare professionals, the recognition of family medicine as a medical specialty and the introduction of registration requirements for psychologists.
On 11 February 2025, the Singapore government announced new AI safety initiatives, namely: (i) the Global AI Assurance Pilot for best practices around technical testing of generative AI applications; (ii) the Joint Testing Report with Japan; and (iii) the publication of the Singapore AI Safety Red Teaming Challenge Evaluation Report. These initiatives aim to enhance AI governance, innovation and safety standards.
In December 2024, privacy concerns were raised after the new Bizfile portal of the Accounting, Corporate and Regulatory Authority of Singapore displayed names and full National Registration Identity Card numbers for free in its search results.
The Personal Data Protection Commission has since clarified the appropriate use and misuse of NRIC numbers.