LEGAL REFERENCE

Your Privacy Comes First

We built batamtoto around one core principle: your account data, payment information and personal details are yours to control. This privacy policy explains exactly what we collect, how...

Data SecurityTransparent CollectionYour ControlQRIS & E-Wallet SafeIndonesia Compliant
batamtoto Your Privacy Comes First

Privacy Policy Overview

Service availability is jurisdiction-dependent. Users are responsible for checking local law before access.

24/7 SUPPORT

Privacy Questions & Support

Email Support Contact our privacy team at [email protected] with any questions about how we handle your data, requests to access your information, or concerns about your account security.
Live Chat Open a conversation with our support specialists through the batamtoto dashboard. They can walk you through privacy settings, data requests and account protection options in real time.
Account Settings Visit the Privacy & Security section inside your batamtoto account to review permissions, manage communication preferences and download a copy of your stored personal data.
WHY VISITORS TRUST US

Our Privacy Commitment

Encryption Standard

All data transmitted to and from batamtoto travels through TLS 1.3 encryption. Your account credentials and payment details are stored...

Payment Compliance

We process DANA, OVO, GoPay and QRIS transactions through PCI DSS Level 1 certified gateways. Your wallet details never touch...

Annual Audit

batamtoto undergoes independent security audits each year. Penetration testing and vulnerability assessments are conducted by third-party firms to verify data...

GDPR-Aligned

Although we serve Indonesia, our privacy framework mirrors GDPR principles for data minimization, consent and user rights. You can request...

Cookie Transparency

We use session cookies to keep you logged in and analytics cookies to improve lobby speed and game loading. No...

Incident Response

If a data breach occurs, we notify affected users within 48 hours via email and account alert. We then file...

Consistency Across Our Site

Home Page
Our homepage describes what we offer: live tables, slots and sportsbook access via QRIS, DANA, OVO and GoPay. Privacy policy reinforces that account data supporting these services stays secure.
Terms of Service
Terms page covers account rules and game terms. Privacy policy specifically defines what personal data we collect for account creation and how it's protected.
Payment Help Centre
Payment pages explain how to fund via QRIS or e-wallets. Privacy policy clarifies that payment details are encrypted and never stored on our primary servers.
Responsible Play Page
Responsible play covers account limits and self-management tools. Privacy policy explains how your preference data is stored securely and only used to enforce your own settings.
Mobile App Privacy
Mobile app stores your login session locally. Privacy policy confirms local storage is encrypted and sessions auto-expire after 30 minutes of inactivity for security.
Contact & Support
Support pages list email, live chat and in-app messaging. Privacy policy guarantees support conversations are logged securely and deleted after 90 days unless you request retention.
Cookie Notice
Our banner discloses analytics and session cookies on first visit. This privacy policy details each cookie type, purpose, duration and your right to opt out of non-essential tracking.
AT A GLANCE

What Your Privacy Covers

01
Account Identity Your name, email, phone number and date of birth are collected only for account verification and regulatory compliance. We never share these with marketing partners or third-party advertisers.
02
Payment Information DANA, OVO, GoPay and QRIS wallet links are tokenized immediately. We store a reference token only, never your actual wallet credentials. Payment processors retain the real data under their own encryption.
03
Game & Betting History Your bet history, game sessions and account balance are stored in our encrypted database. You can view your full history in the Account > Transactions section anytime. Data is kept for audit and dispute resolution.
04
Device & Login Activity We log your login location, device type and IP address to detect unauthorized access and prevent account takeover. You can review all active sessions and log out remote devices from Account > Security.
05
Communication Preferences Email, SMS and in-app notification settings are stored on your account. You control every channel. We never send promotions to users who've opted out, and preference changes take effect immediately.
06
Data Retention & Deletion Account data is retained for 7 years to comply with Indonesian audit requirements. Upon request, we'll anonymize or delete personal data within 30 days, except transaction records required by law.

Privacy Policy FAQ

We collect your full name, email, phone number, date of birth, residential address and payment method details (DANA, OVO, GoPay or QRIS wallet link). We also log your IP address and device type for security. This data is required for account verification, payment processing and regulatory compliance in Indonesia.

Your wallet credentials are never stored on batamtoto's servers. All QRIS, DANA, OVO and GoPay transactions flow through PCI DSS certified payment gateways. We store only a reference token to link transactions to your account. Your actual payment details remain with the payment processor under their encryption.

Yes. Open your Account menu, select Privacy & Security, then choose 'Download My Data' to receive a copy of everything we hold about you in standard format. To request deletion, email [email protected]. We'll delete non-regulatory data within 30 days; transaction records are kept for 7 years.

No. We never sell, rent or share your personal information with marketers, data brokers or third-party advertisers. Your account data is used only to operate batamtoto, process payments, prevent fraud and meet Indonesian regulatory requirements. Third-party sharing requires your explicit consent.

We notify you via email and in-app alert within 48 hours of confirming a breach. We then file disclosure reports with relevant Indonesian authorities and publish a transparent incident summary on this page explaining what was affected and what steps we've taken to prevent recurrence.

We retain transaction records for 7 years for audit and dispute resolution as required by Indonesian financial regulations. Non-regulatory personal data (name, email, address) is deleted within 90 days of account closure, unless you request faster deletion or have an unresolved dispute.

Yes. Visit Account > Communication Preferences to control email, SMS and in-app notifications individually. You can opt out of all promotions, but we'll still send service alerts (login attempts, withdrawal confirmations, policy updates). Changes take effect immediately across all channels.