Reference

Privacy Policy For Your brototo Account

brototo Privacy Policy explains what we collect when you open an account, connect DANA, OVO, GoPay or QRIS, and access the lobby from your phone or desktop.

Clear data purposesWallet details explainedCookie choicesAccount access controls
brototo Privacy Policy For Your brototo Account
PRIVACY HELP DESK

Where To Ask About Your Data

A direct support path helps you resolve a privacy question without repeating your account story. From Jakarta or Surabaya, you can contact us through the support channel shown on the site and include your account phone number, request type and any relevant payment reference. We use those details to locate the correct record while limiting disclosure. Support is available every day from 09:00 to 22:00 WIB for login, wallet-status and personal-data questions. Please do not send your password or full wallet PIN.

Team online

Privacy request

Ask us to explain, correct or remove personal details linked to your account. Include your registered phone number and the specific request so we can check identity before responding.

Wallet record check

If a DANA, OVO, GoPay or QRIS reference appears incorrectly, send the receipt number and date through support. We compare the reference with account records without asking for your wallet PIN.

Account access help

For a privacy concern after phone verification, tell us your device type and approximate login time. Our team can separate a security event from a normal session and guide the next account step.

DATA HANDLING DETAILS

What We Do With Account Records

Privacy controls work best when each data use has a clear reason. We separate account details from payment references where practical, restrict staff access by task and use security logs to investigate…

Account details

We may collect your phone number, account identifier and verification results when you open access. These details help us confirm that the person requesting a session is connected to the account.

Payment references

DANA, OVO, GoPay, QRIS, bank transfer and virtual account records can include a reference, amount marker and status. We use them to reconcile account activity, not to request wallet credentials.

Cookies

Cookies can keep your session connected, remember language or regional settings and help us understand sign-in errors. You can manage cookie permissions in your browser, although some account steps may then need repeating.

Device security

We record signals such as browser type, operating system, IP address and login timing. These signals help us flag an unfamiliar device and may lead to an additional phone verification step.

Retention

We keep personal records for the period needed to provide account service, resolve a payment dispute or meet a legal request. When a record is no longer needed, we remove or de-identify it.

Changes and requests

You can ask for access, correction, deletion or an explanation of processing through support. We may request account details before making a change, so another person cannot alter your privacy record.

Privacy Policy Questions From Indonesia

These Privacy Policy answers focus on the questions you may have before opening an account or connecting a local wallet. We explain the account step, device records, payment references and contact route in practical terms. If your situation is unusual, send support the relevant details and we will assess the request under the policy and where local law permits.

The brototo Privacy Policy covers account details, phone verification, device and browser signals, cookie use, payment references and support requests. It explains why we use each category, how long records may remain and how you can ask for access, correction or deletion.

No. Our Privacy Policy allows us to use transaction references and status details for DANA or OVO reconciliation, but we do not ask for or store your wallet PIN. Never place a PIN, password or full security code in a support message.

Phone verification connects an account request to the person holding the registered number and helps us reduce mistaken or unusual access. The Privacy Policy treats the verification result as account-security data, used for access checks and related support handling.

Yes. Contact support with your registered phone number and ask for a copy of the personal data linked to your account. We may verify your identity first, then explain which records can be provided under local law and the applicable policy.

Send a correction or deletion request through the support channel listed on the site, describing the record and the change you want. We check the account before acting, and some records may need to remain for disputes or legal obligations.

The policy may cover browser type, operating system, IP address, login timing and security events. We use these signals to identify unfamiliar access, troubleshoot a mobile session and protect the account; they are not a request for your device password.

Yes. Requests and account access depend on local law. Where local law permits, we follow the rights and purposes described here; if a rule limits a request, support will explain the applicable reason and any available next step.