Reference

How pesstoto Handles Your Personal Data

This Privacy Policy tells you exactly what data we collect when you open an account, how we use it, and who can access it — covering everything from your login details to the wallet you use, whether that's DANA, OVO or GoPay.

Account data protectionDANA, OVO, GoPay wallet privacyNo data sold to third partiesYour right to request deletionCookie controls in your account
pesstoto How pesstoto Handles Your Personal Data
HOW WE PROTECT YOU

Data Handling, Cookies and Account Security

We apply standard encryption across your account data and payment records. Cookie controls, retention periods, and the steps to request changes to your stored information are all managed through your account settings — not buried in a separate form.

Data Retention

We keep your account data for as long as your account is active or as required by applicable law. Once you close your account, we begin the deletion process for personal identifiers within the period set by local regulation.

Cookie Controls

Cookies on pesstoto track your session state and wallet preference — not ad networks. You can review and adjust cookie permissions in your browser settings or through the cookie banner on your first visit.

Account Security

Each login session is verified against the device and IP you registered from. If we detect a new device — say, switching from your phone in Semarang to a desktop — we send a verification step before granting access.

Requesting Changes

To update, correct or request deletion of your stored data, go to Account Settings, then Data and Privacy. For wallet-linked records — DANA, OVO, GoPay — we verify your identity before making any change to payment history.

PRIVACY CONTACT PATHS

How to Reach Us About Your Data

If you want to request a copy of your data, ask us to correct something, or raise a privacy concern, contact our support team directly. We handle data requests through the channels below. Response times depend on the complexity of your request, but we aim to acknowledge every submission and keep you updated through the same channel you used to reach us.

Live Chat Use the live chat widget in your account dashboard to raise a privacy question. Our support team will log your request and follow up directly in the same chat thread.
Email Support Send your data request or privacy concern to our support email address, available in the Contact section of your account. Include your registered phone number for faster verification.
Account Help Centre The Help Centre inside your account lists step-by-step paths for data access requests, cookie preference changes and wallet-data queries for DANA, OVO and GoPay.

Common Questions About Your Privacy

These questions cover the data and privacy topics we hear most from account holders — from what we store when you use GoPay, to how long we keep your records and what you can ask us to remove.

We store your name, email, phone number and date of birth from registration. We also log session data and device identifiers to keep your account secure against unauthorised access.

No. We record transaction references and wallet identifiers to verify deposits and withdrawals, but we never store your e-wallet PIN, password or full account credentials. Those stay in your wallet app.

Yes. Submit a data access request through live chat or email support. Include your registered phone number so we can verify your identity before sending any account data.

Go to Account Settings, then Data and Privacy, and submit a deletion request. We process these in line with applicable local law; some transaction records may be retained as required by regulation.

We share only the minimum data needed with payment processors like those handling your GoPay or OVO transfers. We do not sell personal data to advertisers or unrelated third parties.

Personal identifiers begin deletion after account closure within the period set by applicable local law. Financial transaction records may be kept longer where regulation requires it.
Reference

Privacy Policy

Service availability depends on eligible regions and local law. Users should check local rules before opening an account.

Access may be available only where local law permits.