LEGAL REFERENCE

Your data. Your control. Our commitment.

We built tupai win around your account security and privacy. This policy explains exactly how we collect, store and protect your information — from your QRIS, DANA, OVO...

Data EncryptionPayment SecurityAccount PrivacyAudit ReadyIndonesia Compliant
tupai win Your data. Your control. Our commitment.

Privacy Policy — Full Details

Service availability is jurisdiction-dependent. Users are responsible for checking local law before access.

HELP CHANNELS

Privacy Questions & Data Requests

Live Chat Support Ask about data collection, account privacy or payment security. Our team responds during lobby hours to clarify any policy detail.
Data Access Request Submit a formal request to see all personal data we hold on your account. We'll provide it within 14 days in a readable format.
Account Deletion Request permanent removal of your account and associated data. Contact support to initiate the process and confirm your identity.
TRUST MARKERS

How We Keep Your Privacy Strong

SSL Encryption

All data in transit between your device and our servers is encrypted with 256-bit SSL technology. Payment details and personal information travel securely every time.

PCI DSS Compliance

We meet Payment Card Industry Data Security Standards. DANA, OVO, GoPay and QRIS transactions are tokenized and never stored in plain text on our systems.

Regular Audits

Independent security firms audit our infrastructure quarterly. We test encryption, access logs and fraud detection to catch vulnerabilities before they spread.

Fraud Detection

Our system monitors account activity in real time. Unusual logins, deposit patterns or withdrawal requests trigger verification checks to protect your account.

Limited Staff Access

Only designated team members can view customer data, and only for account support, fraud prevention or legal compliance. All access is logged and audited.

Indonesia Data Law

We align with Indonesian data protection regulations. Your information is processed transparently, stored securely and shared only with trusted payment processors and legal partners.

How Our Privacy Stacks Up

Data MinimalismWe ask for only what we need: name, email, phone, ID and payment details. No unnecessary fields, no hidden third-party integrations.
Transparent RetentionAccount data stays on file for the life of your membership. Closed accounts are held for 12 months for compliance, then securely deleted.
No Marketing Sell-OffYour email and phone are never sold to marketers or resold to other platforms. We use them only for account notifications and policy updates.
Cookie ClarityWe use cookies for login persistence and fraud prevention. You can clear them anytime in your browser without losing your account access or balance.
Third-Party LimitsPayment processors (DANA, OVO, GoPay, QRIS) see transaction data only. Hosting and analytics partners see no personal names or payment details.
Breach ResponseIf a breach occurs, we notify affected accounts within 48 hours and provide step-by-step guidance to secure your account and reset credentials.
Policy UpdatesChanges to this privacy policy are announced 30 days in advance. Material changes require your active consent before they take effect.
QUICK SIGNAL

What Makes Our Privacy Framework Work

End-to-End Encryption Every login, deposit and withdrawal is wrapped in SSL. DANA...
Real-Time Monitoring Our fraud team watches account activity 24/7. Unusual sign-ins, rapid...
Account Recovery Lost your password? Forgot your second factor? Our support team...
Audit Trail Logs Every login, payment and setting change is logged with timestamps...
Compliance Ready We maintain records for Indonesian tax and legal authorities. All...
Instant Opt-Out Stop all promotional messages with one click. Pause your account...

Privacy Policy — Your Questions Answered

We collect your name, email, phone number, ID and payment details when you open an account. We also log your IP address, device type and account activity for security and fraud prevention. This helps us verify your identity and keep your DANA, OVO, GoPay and QRIS transactions safe.

Active account data stays on file for as long as your membership is open. If you close your account, we retain records for 12 months to meet legal requirements, then permanently delete them. You can request deletion anytime via our support team.

No. We never sell your personal data. Payment processors like DANA, OVO, GoPay and QRIS only see transaction details required to process your request. Hosting and analytics partners cannot see names or payment information.

All DANA, OVO, GoPay and QRIS transactions are encrypted with 256-bit SSL and tokenized immediately. We never store raw payment information on our servers. Every transaction undergoes fraud checks before it completes.

Yes. Submit a data access request via our support team and we'll provide a complete export of your personal information within 14 days. The file includes account details, activity logs, payments and any notes we've recorded.

We notify affected accounts within 48 hours with clear guidance on securing your login and resetting credentials. We also maintain cyber insurance and work with law enforcement where required by Indonesian authorities.

Contact our support team with your account ID. We'll verify your identity, process your deletion request, and remove all personal data within 30 days except records we must keep for legal compliance in Indonesia.