Privacy Policy Questions Answered
Your account details are archived when you close the account. Transaction records stay for seven years to meet legal requirements; personal information like your phone and email are flagged as inactive but retained. Contact support if you want to request permanent deletion of non-transaction data.
Payment credentials are tokenised—we store a secure reference, not the actual card or wallet number. When you make a deposit or withdraw, we send the token to our payment processor over an encrypted connection. Your real payment details never sit in our main database.
Yes. Open your account settings and visit the Privacy & Security section to view your profile data. You can also email or chat with support to request a full data export, which includes all information we hold linked to your account in a portable format.
We don't sell your data. We share information only with payment partners who process your DANA, OVO, GoPay and QRIS transactions, hosting providers who run our servers, and fraud-detection services to protect your account. All third parties sign confidentiality agreements.
Session logs and device data are retained for ninety days to detect unusual login patterns and prevent fraud. After ninety days, older logs are deleted. We keep transaction histories for seven years for legal and account recovery purposes.
You can disable email notifications in your account settings under Preferences. Uncheck promotional email, and we'll stop sending newsletters immediately. You'll still receive critical account alerts like login attempts or withdrawal confirmations.
Use the live chat in your account lobby during operating hours for immediate help, or email our support address with your concern. We respond to privacy inquiries within two business days and can escalate to our data protection officer if needed.