How We Handle Your Account Data
This is the unggutoto privacy policy — a plain read on what we collect when you open an account, why we keep it, and how long it stays...
Privacy Posture and Jurisdiction Notes
We process your personal data where local law permits and only inside supported regions for Indonesia. The data we keep covers your registration details, login activity, wallet references tied to DANA, OVO, GoPay or QRIS, and the support messages you send us. We retain records for the period our licence conditions require, then remove or anonymise them. You can ask us to
export your file, correct a field, or close the account entirely — and we'll confirm by email once the request is processed. Third-party processors we rely on for fraud checks and payment routing are bound by the same confidentiality terms we hold ourselves to.
Service availability is jurisdiction-dependent. Users are responsible for checking local law before access.
Privacy Contact Paths
If something in this policy needs clarifying, or you want to act on a data right, reach us through any of the channels below. Our privacy desk reads everything that comes in.
Privacy Inbox
Email our data team directly at [email protected] with your registered username and the request type. We acknowledge within one business day and resolve most tickets inside seven days.
In-App Chat
Open the chat bubble after you sign in and ask for the privacy queue. The agent will route your data question to the right reviewer rather than the general support pool, so nothing gets lost.
Account Settings
Head to your account page to download a copy of your profile, update contact fields, or trigger a closure request. Self-serve tools cover most edits without needing to message us first.
How We Review This Policy
Legal Sign-Off
Every revision of this policy is read by our compliance lead before it goes live. We log the date, the change summary and the reviewer initials inside our internal policy register.
Quarterly Refresh
We revisit the document four times a year so wording stays aligned with Indonesia data practice and any processor changes. Small clarifications happen more often when a section reads ambiguously.
Named Owners
The privacy desk has named owners, not a faceless inbox. When you write in, a real reviewer picks the ticket up, signs the reply and stays on the thread until you confirm closure.
Processor Audits
Payment routers and fraud-check vendors we share data with go through an annual audit. We check their certifications and confidentiality clauses before any account information leaves our environment.
Change Log
A short change log sits at the bottom of this page so you can see what moved between versions. Material changes get a notification through your registered email before they apply.
Independent Review
Once a year an external counsel reads the policy end-to-end and flags anything that drifts from current Indonesia practice. Their notes feed straight into the next quarterly refresh cycle.