Reference

How roh toto Handles Your Personal Data

At roh toto, your personal data is handled with a clear set of rules — what we collect, why we collect it, and exactly how long we keep…

Data collected only as neededDANA, OVO, GoPay & QRIS transactions securedAccount data retained per policy termsYour rights to access and delete dataContact us to update your records
roh toto How roh toto Handles Your Personal Data
PRIVACY CONTACT PATHS

Reach Us About Your Privacy Rights

If you have a question about how your data is used, want to request a copy of the information we hold about you, or need to update details linked to your DANA, OVO, GoPay or QRIS account, our privacy support team is reachable every day. We aim to respond to all data-related requests within 48 hours of receipt, and our team operates from 08:00 to 22:00 WIB across all channels listed here.

Team online

Live Chat

Start a live chat session directly from your account dashboard. Available daily from 08:00 to 22:00 WIB. Our privacy team handles data access and deletion requests through this channel with a target response under two hours.

Email Support

Send your privacy request or data inquiry to our dedicated support email. We confirm receipt within one hour and deliver a full response within 48 hours. Include your registered phone number for faster verification of your account identity.

Account Portal

Log into your roh toto account and navigate to Settings, then Privacy to submit a data request directly. This portal lets you review what categories of data we hold and flag any inaccuracies for our team to correct within three business days.

DATA HANDLING STANDARDS

Six Ways We Protect Your Account Data

roh toto applies a layered approach to data security across every part of the account lifecycle — from the first registration step through to payment processing via DANA, OVO, GoPay and QRIS.

End-to-End Encryption

All data you submit — including payment details for DANA, OVO, GoPay and QRIS — travels over TLS 1.3 encrypted connections. Stored records use AES-256 encryption, meaning raw data is never readable without the correct decryption key held by authorised staff only.

Cookie Transparency

We use session cookies to keep you logged in and analytics cookies to understand how pages are used. You can review and adjust your cookie preferences at any time through the Cookie Settings panel accessible from the footer of every page on the platform.

Account Security Layers

Your account is protected by password hashing and optional two-factor authentication via SMS. Suspicious login attempts from unrecognised devices trigger an automatic email alert to your registered address, giving you immediate visibility of any unauthorised access attempt.

Data Retention Schedule

We keep active account data for as long as your account remains open. Once you close your account, transactional records linked to DANA, OVO or QRIS are retained for the legally required period as determined by applicable Indonesian financial regulations, then securely deleted.

Third-Party Sharing Policy

We share your data only with payment processors required to complete your DANA, OVO, GoPay or QRIS transaction and with identity verification partners where local law permits. We do not share, rent or exchange your personal data with marketing firms or data brokers.

Your Right to Request Changes

You may request a full export of the personal data we hold, ask us to correct inaccuracies, or request deletion of your account data at any time via the Account Portal or by contacting our privacy team on live chat during the 08:00–22:00 WIB support window.

Common Questions About Your Data at roh toto

The questions below reflect what account holders in Indonesia commonly ask when they want to understand how roh toto handles their personal information. If your question is not covered here, our privacy support team is available daily from 08:00 to 22:00 WIB via live chat or the Account Portal.

We collect your name, email address, mobile number and payment method details such as your DANA or OVO account reference. We also log your device type and IP address to protect your account from unauthorised access attempts and verify your region.

We share data only with the payment processors needed to complete your DANA, OVO, GoPay or QRIS transactions, and with identity verification services where local law permits. We do not sell or trade your personal data with advertisers or data brokers under any circumstances.

Once your account is closed, transactional records are kept for the period required under applicable Indonesian financial regulations. After that mandatory period ends, your records are permanently and securely deleted from our servers in line with our retention schedule.

Yes. Log into your account, go to Settings, then Privacy, and submit a data export request. Alternatively, contact our privacy team via live chat between 08:00 and 22:00 WIB. We aim to deliver a full data export within 48 hours of verifying your identity.

Submit a correction or deletion request through the Account Portal under Settings then Privacy, or reach our support team on live chat during operating hours. We confirm receipt within one hour and aim to complete verified correction or deletion requests within three business days.

We use session cookies for login continuity and analytics cookies to understand page usage patterns. You can review all active cookies and adjust your preferences at any time by opening Cookie Settings in the footer. Disabling analytics cookies does not affect your account or payment functions.

Payment references linked to DANA, OVO, GoPay and QRIS are transmitted over TLS 1.3 encrypted connections and stored with AES-256 encryption at rest. Only authorised roh toto staff with a documented operational need can access payment records, and all access is logged and audited.