Reference

How situs228 Protects Your Personal Data

At situs228, your personal data is handled with clear purpose: we collect only what we need to operate your account, process deposits via DANA, OVO, GoPay or QRIS…

Data collected only for account operationDANA, OVO, GoPay & QRIS transaction privacyYour right to access and delete dataNo third-party sale of your information24/7 data security monitoring
situs228 How situs228 Protects Your Personal Data
PRIVACY CONTACT PATHS

How to Reach Us About Your Data

Team online

Live Chat Support

Our live chat team is available 24 hours a day, 7 days a week. Send your data access or deletion request directly through the chat widget inside your account dashboard — responses typically arrive within one hour.

Email Data Request

For formal written requests — such as a full data export or an account erasure — email our privacy team at [email protected]. We aim to acknowledge your request within 24 hours and resolve it within 7 working days.

Account Settings Panel

Navigate to Settings → Privacy inside your situs228 account to review the data categories we hold, update your contact preferences, or submit a consent withdrawal directly without contacting support.

HOW WE HANDLE DATA

Six Ways We Keep Your Information Secure

Data security at situs228 is operational, not just a policy statement. Every account and payment record is protected by the measures below, applied consistently across all Indonesia accounts regardless of which payment…

Encrypted Storage

All personal data and payment records — including DANA and OVO transaction logs — are stored using AES-256 encryption at rest. No readable plaintext of your financial data sits on our servers at any point after processing.

Cookie Control

We use session cookies to keep you logged in and analytics cookies to understand page performance. You can review and withdraw cookie consent at any time through the cookie banner or the Privacy section in your account settings.

Account Security Layers

Two-step verification is available on every situs228 account. When enabled, any login from an unrecognised device triggers an OTP sent to your registered phone number before access is granted — protecting your data from unauthorised entry.

Data Retention Policy

We retain your account data for as long as your account is active and for a defined period afterward as required by applicable regulations. Where local law permits shorter retention, we apply the shorter period and delete records on schedule.

No Third-Party Data Sale

We do not sell, rent or trade your personal data to any third party for marketing purposes. Payment processor partners such as GoPay and QRIS networks receive only the transaction data necessary to complete your specific payment instruction.

Your Right to Request Changes

You may request a copy of your stored data, ask us to correct inaccurate records, or request deletion of your account data entirely. Submit these requests via live chat or email; we process them within the timelines stated in our contact section.

Privacy Policy Questions We Hear Most

Below are the data and privacy questions we receive most often from accounts in Indonesia. If your question is not covered here, reach our privacy team via live chat or at [email protected] — available around the clock.

We collect your name, email address, mobile number and chosen payment method — DANA, OVO, GoPay or QRIS. We also log device identifiers and session timestamps to protect your account from unauthorised access.

We share only the minimum transaction data needed for your chosen payment rail to process a deposit or withdrawal. We do not sell or share your personal profile with advertisers, data brokers or unrelated third parties.

Log in and go to Settings → Privacy, or contact our team via live chat or email at [email protected]. We acknowledge requests within 24 hours and deliver your data export within 7 working days.

Yes. Submit a deletion request through live chat or by email. We will remove your personal data from active systems within 7 working days, subject to any retention obligations that depend on local law.

All payment records are encrypted using AES-256 at rest and transmitted over TLS connections. Transaction logs are accessible only to authorised personnel for dispute resolution and are not visible to other account holders.

We use session cookies for login continuity and analytics cookies to monitor page load performance. You can accept, reject or customise cookie categories through the consent banner on first visit or via Settings → Privacy at any time.

Core protections — encryption, no data sale, access rights — apply to all accounts. Certain data retention periods and feature eligibility depend on local law, and we apply the rules relevant to your registered location automatically.