Reference

pagodawin Privacy Policy: What We Collect and Why

Our Privacy Policy sets out exactly what personal information pagodawin collects when you open an account, make a deposit via DANA or QRIS, and access your account history…

Clear data collection scopeDANA, OVO, GoPay, QRIS transaction recordsAccount security and verification stepsYour right to access or delete dataJurisdiction-aware: depends on local law
pagodawin pagodawin Privacy Policy: What We Collect and Why
PRIVACY CONTACT PATHS

How to Reach Us About Your Privacy

If you have a question about the data we hold on your account — or want to request a correction, export or removal — our support team is available 24 hours a day, seven days a week. You can reach us through live chat directly on pagodawin.xyz, or send a written request via email and we will respond within 48 hours. For account-level data queries tied to a QRIS or DANA transaction, have your transaction reference ready so we can locate the record quickly.

Team online

Live Chat

Available around the clock at pagodawin.xyz. Bring your account ID and payment reference for faster data-access or deletion requests tied to your wallet history.

Email Request

Send a written privacy request to our data team. We aim to confirm receipt within 24 hours and resolve data-access or correction requests within 48 hours.

Account Settings Path

Log into your account, head to the Account Settings section, and find the Data & Privacy tab to download your personal data or submit a deletion request directly.

DATA HANDLING PRACTICES

Six Ways We Protect Your Account Data

Our data practices cover everything from the moment you enter your phone number during verification through to how long we retain your OVO or GoPay transaction records after account closure.

Encrypted Storage

All personal data — including payment references from DANA, OVO, GoPay and QRIS — is stored with encryption at rest. Only authorised internal systems can query your transaction records.

Cookie Control

We use session cookies to keep you logged in and analytics cookies to measure page load times. You can adjust cookie preferences in your browser at any time without affecting your account access.

Verification Records

Phone verification data collected when you first open your account is retained only for identity-confirmation purposes and is not shared with marketing partners or third-party advertisers.

Transaction Log Retention

Bank transfer logs from BCA, Mandiri and BRI rails, and e-wallet records from DANA and GoPay, are kept for the period required under applicable financial regulations, which depends on local law.

Data Access Request

You can request a full export of your stored data at any time through the Account Settings path or by emailing our data team. Exports are delivered within 48 hours of identity confirmation.

Account Deletion

Requesting account closure triggers a review of any outstanding transaction records. Once cleared, personal data that is not required for regulatory retention is permanently removed from our systems.

Privacy Policy Questions We Hear Most

These are the questions we receive most often from people in Indonesia who want to understand exactly how pagodawin handles their personal data — covering account verification, payment records, cookie use and how to exercise your data rights where local law permits.

We collect your name, phone number, device identifiers and the wallet or bank details you use for DANA, OVO, GoPay or QRIS deposits. This is the minimum needed to verify your identity and process transactions.

We do not sell or share your personal data with marketing partners. Data may be passed to payment processors such as QRIS and DANA networks solely to complete your transaction and clear your deposit.

Transaction logs from DANA, GoPay, OVO and bank transfers via BCA or Mandiri are retained for as long as required by applicable financial regulations. Exact durations depend on local law in Indonesia.

Yes. Go to Account Settings, open the Data & Privacy tab, and submit an export request. We will send a complete record of your stored personal data within 48 hours of confirming your identity.

Submit a deletion request via live chat or email. After we confirm your identity and clear any pending transactions, personal data not subject to regulatory retention is permanently removed from our systems.

We use session cookies for login continuity and analytics cookies for performance monitoring. You can adjust or block these in your browser settings at any time; your account access will not be affected by doing so.

The same Privacy Policy applies across Indonesia, including for accounts opened from Makassar or Denpasar. Access to certain account features and data rights may still depend on local law applicable to your region.