LEGAL REFERENCE

How We Handle Your Account Data

This is the unggutoto privacy policy — a plain read on what we collect when you open an account, why we keep it, and how long it stays...

Plain-language policyIndonesia-awareAccount data onlyUpdated regularlyEasy to contact us
unggutoto How We Handle Your Account Data

Privacy Posture and Jurisdiction Notes

Service availability is jurisdiction-dependent. Users are responsible for checking local law before access.

24/7 SUPPORT

Privacy Contact Paths

If something in this policy needs clarifying, or you want to act on a data right, reach us through any of the channels below. Our privacy desk reads everything that comes in.

Team online

Privacy Inbox

Email our data team directly at [email protected] with your registered username and the request type. We acknowledge within one business day and resolve most tickets inside seven days.

In-App Chat

Open the chat bubble after you sign in and ask for the privacy queue. The agent will route your data question to the right reviewer rather than the general support pool, so nothing gets lost.

Account Settings

Head to your account page to download a copy of your profile, update contact fields, or trigger a closure request. Self-serve tools cover most edits without needing to message us first.

REVIEW SIGNALS

How We Review This Policy

Legal Sign-Off

Every revision of this policy is read by our compliance lead before it goes live. We log the date, the change summary and the reviewer initials inside our internal policy register.

Quarterly Refresh

We revisit the document four times a year so wording stays aligned with Indonesia data practice and any processor changes. Small clarifications happen more often when a section reads ambiguously.

Named Owners

The privacy desk has named owners, not a faceless inbox. When you write in, a real reviewer picks the ticket up, signs the reply and stays on the thread until you confirm closure.

Processor Audits

Payment routers and fraud-check vendors we share data with go through an annual audit. We check their certifications and confidentiality clauses before any account information leaves our environment.

Change Log

A short change log sits at the bottom of this page so you can see what moved between versions. Material changes get a notification through your registered email before they apply.

Independent Review

Once a year an external counsel reads the policy end-to-end and flags anything that drifts from current Indonesia practice. Their notes feed straight into the next quarterly refresh cycle.

Consistency Across Our Policy Pages

Tone
Same plain-language voice you'll see on our terms and cookie pages — no copy-paste legalese borrowed from a template.
Structure
Sections appear in the same order across all three policy documents, so once you learn the layout here it carries over.
Definitions
Terms like account holder, processor and supported region mean the same thing on every legal page we publish.
Retention
Retention windows quoted here line up with the figures in our terms; we don't publish two different numbers for the same record.
Contact
The privacy inbox is the single contact route for data rights across cookies, terms and this policy — one queue, one owner.
Updates
Version dates are synced; when this policy gets a refresh, the cookie and terms pages are checked the same week.
Jurisdiction
All three documents follow the same supported-regions framing for Indonesia, so access language never contradicts between pages.
PLATFORM SNAPSHOT

What Sits Inside This Policy Page

Plain Sections The page is split into short, named sections so you...
Version Stamp A version date sits at the top so you always...
Glossary Inline Tricky terms are explained where they appear rather than stuffed...
Rights Checklist A short list shows what you can ask us to...
Processor Notes Where a third party touches your data, we name the...
Change Log At the foot of the page a compact change log...

Questions About This Privacy Policy

We hold your registration details, login activity, wallet references linked to DANA, OVO, GoPay or QRIS, and any messages you've sent our support desk. Nothing outside those categories is collected through your account.

Active account data stays with us while your account is open and for the retention window our licence requires after closure. Once that window ends we either delete the file or anonymise it for statistical use only.

Yes. Open your account settings and trigger the export tool, or email the privacy inbox with your username. We package your profile, activity log and message history into a single file within seven days.

Only processors we rely on for fraud checks and payment routing, and only the fields they need for that task. Each one signs the same confidentiality terms we follow internally before any data is shared.

Most fields — email, phone, display name — you can edit yourself from the account page. For anything locked, like your verified name, send the correction request through the privacy inbox with supporting documentation.

Material changes are emailed to your registered address before they take effect, and the change log on this page records the date and summary. Minor wording tweaks appear in the log without a separate notice.

Request closure from your account settings or message the privacy desk. We confirm by email, end access immediately, and remove or anonymise your file once the mandatory retention window for Indonesia has passed.