Reference

How bandit78 Protects Your Personal Data

Our privacy policy sets out exactly what data we collect when you open an account, how we store it, who can access it, and how you can request…

Data encrypted in transit and at restYour rights: access, correct, deleteNo third-party sale of your dataDANA, OVO, GoPay, QRIS coveredContact us 24/7 for privacy requests
bandit78 How bandit78 Protects Your Personal Data
PRIVACY CONTACT CHANNELS

Reach Our Privacy Team Directly

If you want to know what data we hold about you, ask us to correct an error, or request deletion of your account, our privacy support…

Live Chat Start a live chat session directly on bandit78.xyz at any hour.
Email: [email protected] Send a formal written request to our dedicated privacy address.
Telegram Support Find our verified Telegram channel linked in your account dashboard.
DATA HANDLING PRACTICES

Six Ways We Keep Your Data Safe

We built our data practices around the principle that your personal information exists to make your account work — not to be traded, profiled for advertising, or held…

End-to-End Encryption

All data moving between your device and our servers is encrypted using TLS 1.3.

Cookie Policy

We use session cookies to keep you logged in and analytics cookies to understand which features you use most.

Account Security Steps

Two-factor authentication is available for every account. We recommend enabling it via your profile settings page; it applies to login…

Data Retention Schedule

Active account data is kept for the duration your account is open.

Third-Party Sharing Rules

We share data with payment processors such as DANA, OVO, GoPay, and QRIS only to complete your transaction.

How to Request Changes

Log in, go to Account Settings, and select 'My Data'.

Your Privacy Questions, Clearly Answered

The questions below are the ones we hear most often when you contact us about how we manage your personal data. If your question is not covered here, our live chat team is online around the clock and can pull up your specific account details with your permission.

We collect your full name, email address, phone number, date of birth, and payment identifiers such as your DANA or OVO account reference. Device data like IP address and browser type is also logged for security purposes.

We retain the minimum records required by applicable regulations — typically financial transaction logs for up to 5 years. Personal profile data not required for compliance is deleted within 30 days of account closure confirmation, where local law permits.

No. We do not sell, rent, or trade your personal data. The only third parties who receive any data are payment processors like GoPay and QRIS, and only the transaction details they need to complete your deposit or withdrawal.

Log in to your account, go to Account Settings, and choose 'My Data' to download a structured copy of your profile. Alternatively, email [email protected] and we will send a data-access report within 72 hours of verifying your identity.

Yes. Submit a deletion request via live chat or at [email protected]. We action deletion for all non-regulatory data within 30 days. Records we are legally required to retain are flagged separately and deleted once the retention period ends.

Session cookies keep you logged in during your visit; analytics cookies help us improve which account features we prioritise. You can manage both from your cookie-preference panel in Account Settings — disabling analytics cookies does not affect your ability to use the platform.

Yes. Payment references from DANA, OVO, GoPay, and QRIS are stored encrypted at the database level using AES-256. We hold only the reference identifier needed for reconciliation — we do not store full wallet credentials or card numbers on our servers.