Reference

How ziatogell Handles Your Personal Data

At ziatogell, every piece of personal data you share — from your account registration details to your payment method preferences — is collected with a clear purpose and…

Encrypted account storageDANA, OVO, GoPay & QRIS data handled separatelyData deletion requests within 7 working daysNo third-party sale of your personal dataIndonesia-region data handling
ziatogell How ziatogell Handles Your Personal Data
PRIVACY CONTACT PATHS

Reach Us About Your Privacy Rights

If you have questions about your data, want to request a copy of what we hold, or need to correct information on file, our privacy support team is reachable through three dedicated…

Live Chat Support Our live chat channel is open daily from 08:00 to 23:00 WIB. Type 'privacy request' at the start of your message and an agent will handle it within the data team's queue, not the general support queue.
Email Privacy Desk Send your request to our privacy desk email address found in your account settings under 'Legal & Privacy'. Include your registered phone number so we can verify identity before releasing or modifying any stored data.
In-App Account Request Form Inside your account dashboard, navigate to Settings → Privacy → Submit Request. The form auto-tags your account ID, reducing back-and-forth. You will receive a confirmation number within one hour of submission.
DATA HANDLING STANDARDS

How We Protect and Manage Your Information

Our data-handling practices cover six distinct areas — from the cookies we place on your browser to how long we keep closed-account records.

Cookie Management

We use session cookies to keep you logged in and preference cookies to remember your language and payment chip selection. You can clear or block these through your browser settings at any time without losing your account data.

Account Security Protocols

Passwords are hashed using industry-standard algorithms before storage; we never hold your password in plain text. Two-step verification is available under Settings → Security and we strongly encourage you to switch it on after your first login.

Data Retention Schedule

Active account data is retained for as long as your account remains open. Closed accounts are anonymised after 90 days, and transaction logs tied to DANA, OVO, GoPay or QRIS are kept for the period required by Indonesian financial record-keeping rules.

Third-Party Data Sharing

We share only the minimum data required with payment processors DANA, OVO, GoPay and QRIS to complete a transaction. We do not sell, rent, or trade your personal data to advertisers or unrelated third parties under any circumstances.

Your Right to Access Data

You may request a full export of the personal data we hold on your account at any time. Exports are delivered as a structured file to your registered email address within seven working days of a verified request.

Policy Change Notification

When we update this Privacy Policy, we post a notice in your account inbox at least 14 days before the changes take effect. You will also see a banner on the lobby page the next time you log in, with a direct link to the updated text.

Your Privacy Policy Questions, Addressed Directly

The questions below reflect what we hear most often from account holders in Indonesia when they want to understand how their data is used, who can see it, and what steps they can take if something does not look right. If your question is not covered here, use the live chat channel or the in-app request form.

We collect your name, email address, phone number, date of birth, and the payment method you choose — DANA, OVO, GoPay or QRIS. We also record device identifiers and login timestamps to protect your account from unauthorised access.

No. When you pay via DANA, OVO, GoPay or QRIS, the credential verification happens inside each provider's own secure environment. We receive only a transaction reference number, not your wallet password or PIN.

Go to Settings → Privacy → Submit Request inside your account dashboard, or email our privacy desk with your registered phone number for identity verification. We deliver your data export within seven working days of confirming your identity.

Yes. Submit a deletion request through the in-app form or via email. We will anonymise your active account data within seven working days. Transaction logs required by Indonesian financial regulations are retained for the legally mandated period before permanent deletion.

Access is role-restricted. Only our account-verification team, fraud-prevention team, and compliance officers can view personal data, and only when a specific operational or legal reason requires it. All internal access is logged and reviewed regularly.

We use session cookies for login continuity and preference cookies for payment chip and language settings. You can block or delete cookies through your browser at any time. Blocking cookies may affect login persistence but does not remove your account data from our servers.

We send an in-account inbox message and display a lobby banner at least 14 days before any Privacy Policy update takes effect. The notification includes a direct link to the revised text so you can review every change before it applies to your account.