Reference

How nxttoto Handles Your Personal Information

Your account data stays yours. This page explains exactly what we collect when you register, deposit via DANA, OVO, or GoPay, and access the lobby — and how you can view, update, or request deletion of that data at any time.

Account Data RightsWallet Transaction PrivacySecure Data StorageContact Us AnytimeIndonesia Region Scope
nxttoto How nxttoto Handles Your Personal Information
DATA HANDLING STANDARDS

How We Protect and Manage Your Information

Your account data is stored on servers with SSL encryption in transit and access controls at rest. We limit internal access to your personal information to the teams that need it to process your transactions or resolve your support requests. Cookie data collected during your session helps us keep your account logged in, remember your lobby preferences, and analyse which pages load correctly on your device — you can manage cookie permissions through your browser settings. We keep your account data for as long as your account remains active and for a retention period required by applicable financial and legal obligations after closure.

SSL Encryption

All data moving between your device and our platform travels over SSL. This covers your login, your deposit flow through DANA or OVO, and any support messages you send.

Cookie Management

Session cookies keep you logged in across lobby pages. Analytics cookies are non-identifying. You can clear or block cookies via your browser without affecting your account data.

Data Retention

Active account data is retained while your account is open. After closure, we hold only what is required by applicable legal obligations, then remove the rest on schedule.

Access Controls

Your personal data is accessible only to staff with a verified operational need — payment processing, identity verification, or support resolution. No wider internal sharing.

PRIVACY CONTACT PATHS

Reach Us About Your Data

If you want to access the data we hold on your account, correct something, or ask us to delete your information, the fastest path is our live chat. For formal written requests — such as a full data export or an account-closure request — email works better so we have a clear record to act on. We aim to respond to all privacy-related requests within a reasonable timeframe.

Team online

Live Chat

Open the chat icon inside your account dashboard to ask about your stored data, request a correction, or flag a privacy concern directly.

Email Support

Send a written data request, including your registered account email, to our support address for formal access or deletion queries.

Account Settings

Some data — like your contact number or linked wallet — can be updated directly from your account settings without contacting support.

Common Questions About Your Privacy

Straightforward answers to what Indonesia account holders ask most about how their data is used, stored, and accessed on nxttoto.

We collect your name, email address, phone number, and the payment method you use — such as your DANA or OVO account reference — to verify your identity and process transactions.

We do not sell your data. We share only what is necessary with payment processors like DANA, OVO, and GoPay to complete your transactions, and with any authority required by applicable local law.

Send a written request from your registered email to our support address. Include your account username and we will prepare a data export within a reasonable timeframe.

Yes. Submit a deletion request via email support or live chat. We will remove your personal data after the legally required retention period for financial records has been met.

Cookies keep your session active, remember lobby preferences, and help us confirm pages load correctly on your device. You can block or clear them in your browser settings at any time.

We store only the transaction reference and account identifier needed to match your deposit or withdrawal. Your wallet PIN and full login credentials never pass through our system.
Reference

Privacy Policy

Service availability depends on eligible regions and local law. Users should check local rules before opening an account.

Access may be available only where local law permits.