Reference

Privacy Policy for Your bpjtoto Account

We show the privacy terms before you share your details, so you know what we collect, why we keep it, and how to ask for a change.

Account dataCookie termsChange requestsLocal law
bpjtoto Privacy Policy for Your bpjtoto Account
CONTACT ROUTES

Contact Us About Your Data

Privacy questions go through the same support paths we use for account checks, so your request reaches a person who can verify it and log the action.

Live Chat Open chat from your account page and send the email tied to your profile. We use it for privacy requests, lock checks, and copy requests, and the team is on duty daily from 09:00-23:00 WIB.
WhatsApp Message us from the number shown in your account area if you need a written trail. We use this channel for deletion requests, correction requests, and quick confirmation when a data change is waiting.
Email Send a clear request to our support inbox with your account name and the change you want. Email works well for records, and we reply in the same thread after verifying your details.
DATA HANDLING

How We Handle Your Data

We collect only the fields needed to run your account, confirm activity, and handle your request.

Collection

We collect only what we need to open, verify, and service your account: contact details, login history, device type, and message records. We do not ask for extra fields unless a support case requires them.

Cookies

Cookie files keep you signed in, remember language choice, and reduce repeated checks on mobile and desktop. If you clear them, the session may reset and you may need to verify again.

Security

We use account verification steps before sensitive changes, including password reset and contact updates. If a login looks unusual, the session can be held while we confirm the request through the registered channel.

Retention

We keep records only as long as needed for account service, dispute handling, fraud checks, and any legal duty that applies in your location. After that period, data is removed or anonymized.

Access

You can ask what we hold about you, request correction, or ask for export where local law permits. We answer only after we confirm the request comes from the account holder or a verified contact.

Changes

If this policy changes, we update the page and explain what changed in the account area or support reply. Continued use after the update means you have seen the new text, unless local law says otherwise.

Privacy Questions You May Ask

These are the questions we hear when someone checks the privacy page before opening an account. The answers focus on what we collect, how long we keep it, how cookies work, and how you can contact us from the address tied to your account. If your request needs verification, we will ask for one matching detail before we change anything. That keeps the process tied to your own details, not someone else's.

We keep the details needed to run your account: contact data, login records, device type, support messages, and any transaction reference linked to your account. We do not ask for extra fields unless a specific request needs them.

Yes. When a DANA, OVO, GoPay, or QRIS transaction reaches us, we store the reference, time, and status so we can match it to your account and answer questions. We do not store more than that unless support needs it.

Yes. Send the request from the email or chat linked to your account, and we will verify it before making a change. Where local law permits, we can also help with export or deletion.

Cookies keep your session active, remember your language choice, and reduce repeat verification on mobile and desktop. If you clear them, the page may ask you to sign in again and confirm your details.

Only the staff who need it for account service, security checks, or support can access your data, and access is limited by role. Service partners see only what they need to carry out the task.

We keep records only for the period needed to service your account, resolve disputes, complete checks, and meet legal duties. After that, we remove or anonymize the data unless local law requires something different.

Yes. Access and eligibility depend on local law, and the service is available only where local law permits. Privacy requests are handled under the same rule, so the answer can differ by location.