Reference

avatar toto Privacy Policy, Made Clear

The avatar toto Privacy Policy explains what we collect when you open an account, sign in from a mobile device, or use DANA, OVO, GoPay and QRIS.

Account dataWallet detailsCookie choicesContact requests
avatar toto avatar toto Privacy Policy, Made Clear
HELP WITH PRIVACY

Get Help With A Data Request

A clear contact path matters when your phone, wallet record or sign-in history needs attention. We handle Privacy Policy questions through the support route linked from your account area, so you can identify the relevant account step instead of sending sensitive details into a public chat. Mention the email or phone linked to your account, the request you want handled and any receipt reference. Never send a password or full wallet credential in your message.

Team online

Account data request

Use the support route from your signed-in account to ask what personal data we hold, why it is used and which account step created the record. We may verify account ownership before discussing phone or sign-in details.

Wallet record question

For a DANA, OVO, GoPay or QRIS record, include the payment rail, date and reference shown in your account. We use those details to locate the relevant status without asking you to reveal a password or wallet PIN.

Correction request

If your account name, phone detail or contact record needs correction, tell us which field is wrong and what should replace it. We may request an account check before changing information connected to access or payment history.

DATA CARE DETAILS

What We Do With Your Account Data

Privacy is part of the account flow, not a separate screen you have to guess through.

Account collection

When you open an account, we collect the contact and verification details needed to create access. A clear phone verification step helps us connect the right person to the right account before account details are displayed.

Device signals

When you sign in on mobile or desktop, limited device and session signals can help us recognise unusual access. These signals support account protection; they are not a reason to collect unrelated content from your device.

Cookie controls

Cookies can keep a session active, remember a selected setting and help identify repeated sign-in problems. You can manage cookie behaviour through your browser, although turning some cookies off may affect the account path.

Payment matching

DANA, OVO, GoPay and QRIS references help us match a receipt with the correct account status. For bank transfer or virtual account questions, we use the reference and related account record rather than requesting a wallet PIN.

Retention timing

We retain account, security and transaction records for the operational, dispute or legal purpose that requires them. When that purpose ends, we remove or anonymise the record according to our retention process.

Your requests

You can ask for access, correction, clarification or deletion where applicable through the account support route. We may confirm your identity first, then explain any reason a particular record must remain available.

Answers About Your Privacy Policy

These Privacy Policy answers focus on the searches we hear most often before an account is opened. They explain the practical handling of contact data, wallet references, cookies, devices and account requests. If your question is not covered, use the support route from your account area and include only the details needed to locate your record.

The avatar toto Privacy Policy covers account contact details, phone verification, sign-in activity, device signals, cookies and payment references. It also explains retention, security handling and how you can ask for access, correction or deletion where applicable.

We use your phone number to create an account contact point and complete the clear phone verification step before account access. It can also help us investigate a sign-in issue or confirm that a privacy request comes from the account holder.

Yes. The Privacy Policy covers the DANA and QRIS references needed to match a receipt, show wallet status and investigate a stalled transaction. We do not need your wallet PIN for this process, and the same approach applies to OVO and GoPay.

Cookies may keep your session active, remember a setting and help identify repeated account access problems. You can adjust cookie behaviour in your browser. If you disable required cookies, parts of the sign-in or account request path may not work as intended.

You can contact us through the support route in your account area to request access to stored data or correction of an inaccurate contact record. We may verify ownership first, and we will explain if a record must remain for security, dispute or legal reasons.

We keep account, security and payment records only while an operational, dispute or legal purpose requires them. After that purpose ends, our process removes or anonymises the record. You can ask support about the reason a particular record remains.

Yes. Account access and eligibility depends on local law. We apply the Privacy Policy where local law permits, and you should check the rules that apply to your location before opening an account or sending a privacy request.