Reference

How we protect your account and payment details

When you open an account with over 1, your personal information and deposit records stay encrypted from the moment you enter them.

End-to-end encryption on depositsNo third-party data salesAccount-level access controls
over 1 How we protect your account and payment details
PRIVACY QUESTIONS

Contact us about your data

You can request details about what data we hold on your account, ask us to correct information or request deletion where allowed.

Live chat support Open the chat icon in your account lobby or on this site.
Email requests Send a formal data request to our compliance team with your account email and…
Account settings Log in to your account, navigate to Settings > Privacy, and review what personal…
DATA HANDLING

How we keep your information safe

Every deposit via DANA, OVO, GoPay or QRIS is encrypted before it reaches our payment processor.

Encryption standard

All data in transit uses TLS 1.3 encryption. Stored payment information is encrypted at rest and never stored in plain text on our systems.

Session security

Your login session expires after 30 minutes without activity. You can view all active sessions in your account and log out remotely from any device.

Data retention

We keep account records for seven years after closure to comply with financial reporting laws. You can request deletion of non-essential data before that period ends.

Access logs

Every login, withdrawal and payment is logged with timestamp and device details. Check your account activity feed anytime to spot unauthorised access.

Partner vetting

Payment partners and analytics vendors sign data-processing agreements and undergo annual security audits. We never sell your information to marketers.

Update requests

Contact our support team to change your registered phone number, email or banking details. Verification is required before changes take effect.

Privacy policy questions answered

Read answers to the questions we hear most often about how we collect data, who can see it and what rights you have over your account information.

We collect your full name, email address, phone number and date of birth for identity verification. During your first deposit, we also record your DANA, OVO, GoPay or QRIS payment details to process transactions. This information is required by Indonesian financial rules and by our payment partners.

No. Your banking and payment information is shared only with the payment processor needed to clear your DANA, OVO, GoPay or QRIS deposit. Those processors are bound by strict data-handling agreements and cannot use your details for any purpose beyond transaction processing.

We retain your account records for seven years after closure to comply with Indonesian financial and tax reporting laws. During that time, your data remains encrypted and inaccessible to staff. After seven years, we securely delete all non-essential personal information.

Yes. Log into your account, go to Settings > Privacy and select 'Download my data'. We will email you a complete record of your personal information, login history and transactions within five business days.

Contact our support team immediately via live chat or email. We will lock your account, review all recent logins and transactions, and help you change your password and security settings. Report suspicious activity within 24 hours to preserve evidence for investigation.

We use cookies only to keep you logged in, remember your language preference and measure how visitors use our site. We do not sell cookie data to advertisers or data brokers. You can disable non-essential cookies in your browser settings without losing account access.

Your account data is stored in secure server facilities with 24/7 monitoring, backup power and restricted physical access. Backup copies are held in geographically separate locations to protect against data loss. All facilities meet international security standards.