Reference

duatoto Privacy Policy for Your Account

duatoto Privacy Policy explains how we collect, use and protect the details connected to your account, device and wallet activity.

Account dataWallet recordsCookie choicesAccess requests
duatoto duatoto Privacy Policy for Your Account
CONTACT ROUTES

Where Privacy Questions Go

A clear contact path helps you ask about your Privacy Policy rights without explaining the same issue twice. When you contact us, include the account contact you used and a short description of the data question; do not send a wallet PIN or full payment password. Our support route can connect an account-access concern with the cashier path, so a DANA receipt, QRIS reference or bank-transfer status is handled against the correct account. If you are in Makassar or elsewhere in Indonesia, use the same account route rather than creating a second profile.

Team online

Account access

Use the account support route when you want to ask what contact details, phone verification records or sign-in events are linked to your duatoto account. We may ask for a safe identity check before discussing personal data, and we will not ask you to reveal your account password.

Wallet receipt

For a privacy question tied to DANA, OVO, GoPay, QRIS, bank transfer or virtual account activity, send the payment reference and date through the cashier support path. We use the reference to locate the record while keeping sensitive wallet credentials out of the conversation.

Data request

Ask us to access, correct or remove eligible personal details through the privacy contact path. Tell us which account contact to use and what you want changed. We confirm the request before acting, and where local law permits, we explain any record that must remain for security or legal reasons.

DATA PRACTICES

How We Handle Privacy Requests

Privacy work follows the same account steps you see when moving from phone verification to a lobby session.

Account details

We collect details needed to create and maintain your account, such as contact information and phone verification status. We use them to authenticate access, respond to privacy requests and connect your account with the correct service record. You can ask us to correct inaccurate account details through support.

Payment references

We may retain a DANA, OVO, GoPay, QRIS, virtual account or bank-transfer reference, together with its status and timestamp. We do not need your wallet PIN to investigate a receipt. These records help us match a payment question to the right account and resolve duplicate or missing status reports.

Device security

Browser and device signals can show whether a sign-in follows your usual account path or needs an extra check. We use this information for account security, not to read unrelated files on your phone. If a device change blocks access, support can guide an identity check without requesting your password.

Cookies

Cookies can keep a session working, remember a selected setting and help us detect technical problems. You can manage cookies in your browser, although blocking some types may interrupt sign-in or the path from account access to the lobby. Our Privacy Policy treats cookie data as part of your access record.

Retention

We keep personal and transaction records for the period needed to provide account support, protect against misuse or meet a legal requirement. When a record no longer has one of those purposes, we remove it or separate it from direct account identifiers under our handling process, where local law permits.

Your changes

You can ask what personal data we hold, request a correction or raise a deletion question through the privacy contact path. We may need to verify that the request comes from you, and some account or payment records may remain when security or legal duties require them. We explain the result clearly.

Privacy Policy Questions for Indonesia

These Privacy Policy answers address the account and payment questions you are most likely to have before opening access. They explain what we collect, how you can reach us and why a verification step may be needed. If your question concerns a specific record, include the account contact and payment reference so we can investigate without asking for secret wallet credentials.

The duatoto Privacy Policy covers account details, phone verification, sign-in and device signals, cookies, payment references and support messages. It explains how we use those records for access, security, service and legal needs, including questions about DANA, OVO, GoPay, QRIS or bank-transfer status.

Phone verification helps us connect account access to the contact you provide and reduces the risk of another person requesting your data. We may use its status during a privacy request or account recovery check, but you should never send us your password or wallet PIN.

Yes. The Privacy Policy covers payment references, timestamps and status information connected with DANA, OVO, GoPay, QRIS, virtual account and bank transfer activity. We use those details to trace a receipt or investigate a stalled status, without needing your private wallet credentials.

Use the privacy contact path and identify the account contact linked to your request. State which detail is wrong and what the corrected value should be. We verify the request before changing personal data, then explain the outcome and any reason a related record must remain.

You can ask us to remove eligible personal data through support. We first verify the request and check whether the record is still needed for account security, payment investigation or a legal requirement. Where local law permits, we remove or separate data that no longer has a valid purpose.

Our cookies can keep your sign-in session active, retain a selected setting and help identify technical errors. Browser controls let you manage them. If you block required cookies, the path from phone verification to account access may not work correctly, and some Privacy Policy choices may need to be repeated.

Yes. Access, eligibility and the handling of some requests depends on local law. We assess a request using the applicable rules and tell you whether data can be accessed, corrected or removed. You can still contact us with a specific account or wallet question and receive a clear response.