Reference

kastoto Privacy Policy for Your Account

kastoto Privacy Policy explains what we collect when you create an account, verify your phone, use DANA or QRIS, and access titles such as Dragon Tiger.

Clear data purposesWallet activity explainedAccount contact pathCookie choices
kastoto kastoto Privacy Policy for Your Account
CONTACT YOUR WAY

Get Privacy Help Beside Account Support

A direct support route helps when a privacy question is tied to your login or wallet status.

Account access request Use the support path beside account access when you need a copy of personal data, an explanation of a phone-verification record or help confirming which account details we hold.
Wallet record question For DANA, OVO, GoPay or QRIS concerns, include the payment reference and approximate date, but never send your wallet PIN or full login password through support.
Correction or deletion Ask us to correct an inaccurate detail or assess a deletion request through the same support route. We may need account verification before changing or removing personal records.
DATA CONTROL

See How We Protect Policy Choices

Privacy choices work best when you know what happens at each account step. We separate ordinary access records from payment-status checks, limit internal access by operational need and keep requests tied to…

Account security

Phone verification helps us distinguish the account holder from an unapproved sign-in. We may use device and session signals to identify unusual access before discussing account or wallet records.

Payment references

DANA, OVO, GoPay, QRIS, virtual account and bank-transfer records are used to match status and account ownership. We do not need your wallet PIN or banking password for that check.

Cookie settings

Cookies and similar device markers can remember an access session and help us understand whether a page loads correctly. You can manage cookie permissions through your browser settings.

Retention period

We retain account, support and transaction-related records only for as long as needed for the stated purpose, account security, dispute handling or duties that depend on local law.

Data access

You can ask what personal data we hold, why it is used and which account activity it relates to. We may request phone or account details to prevent disclosure to another person.

Policy changes

When we change this Privacy Policy, we place the revised wording on this page and update its date or notice where applicable. Check it again before using account tools.

Privacy Policy Answers Before Account Access

These Privacy Policy answers address the searches we hear most often from Indonesian account holders. They cover access, wallet records, cookies, corrections and contact steps so you can decide what to share before phone verification or account use, where local law permits.

It covers personal data connected with your account, including phone verification, sign-in activity, device signals, support messages, cookies and payment-status records from DANA, OVO, GoPay, QRIS or bank transfer.

We use phone verification to help confirm account ownership, protect access and respond to account requests. If you contact us about Dragon Tiger activity or wallet status, verification helps us discuss the correct record.

Yes. The Privacy Policy covers references needed to match QRIS, DANA, OVO and GoPay payment status with your account. We do not ask for wallet PINs or banking passwords for this process.

Send an account-data request through the support path linked beside account access. State whether you want a copy, purpose details or a correction, and include enough account information for us to verify you.

You can request correction of inaccurate personal details or ask us to assess removal. Some records may need to remain for security, disputes or duties that depend on local law.

Cookies can preserve a sign-in session and help identify page or device problems. Your browser controls whether cookies are accepted, so changing those settings may affect account access or saved preferences.

Use the account support route and identify the subject, such as phone verification, QRIS status, device access or data correction. Do not include your password, wallet PIN or complete banking credentials.