Reference

Privacy Policy for Indonesia Accounts

At hbiwin, we built this Privacy Policy for Indonesia accounts that use DANA, OVO, GoPay, and QRIS, so you can see what we collect, why we keep it…

DANAOVOGoPayQRIS
hbiwin Privacy Policy for Indonesia Accounts
CONTACT PATHS

Where to Send Privacy Requests

The fastest privacy request is the one sent through the contact path that matches your account.

Email Send your request to [email protected] with your registered email, the change you want, and any screenshot that helps us locate the record. We check this inbox daily from 09.00-21.00 WIB.
WhatsApp Message our WhatsApp line from the number on your account and include a short privacy request. We use it for quick identity checks, status updates, and simple corrections when the account details already match.
In-account form After login, open Settings > Privacy Request and send the form from the account you want changed. That route is the cleanest way to link your request to device logs, payment traces, and support history.
HANDLING RULES

What We Keep, Why, and For How Long

We handle privacy records around the actions you take, not around guesses. Cookie data keeps your session, language choice, and login state in place on Chrome, Safari, Android, and iPhone; payment traces…

Data we collect

We keep the details you type at sign-up, the contact path you confirm, and the account activity needed to maintain access. We avoid asking for extra fields unless a support case or legal rule needs them.

Cookie use

Our cookies remember session state, language choice, and login status so you do not repeat the same checks on every visit. If you clear them in Chrome or Safari, you may need to verify again.

Device checks

We store browser type, IP range, and device timing to spot account takeover attempts and repeated failed logins. That record also helps when you ask why a session was closed on Android or iPhone.

Payment traces

When you use DANA, OVO, GoPay, or QRIS, we keep the reference number, amount, and status result for reconciliation. We do not expose full wallet details in public chat or on screen.

Retention

We keep support tickets and log traces only as long as needed for account safety, dispute handling, and any legal hold that applies where local law permits. After that, we trim or archive them.

Requests

To ask for a copy, correction, or removal where allowed, send the request from your registered email or through in-account support. We may ask for a recent login check before we process it.

Privacy Questions We Hear Most

These are the privacy points people ask us about first, especially when they use DANA, OVO, GoPay, or QRIS and then want to know what stays in the account record. Our answers stay tied to the actual data path: what we collect, how long we hold it, how you contact us, and what changes local law lets us make. If a request needs identity checks, we use the same registered email or WhatsApp line to confirm it.

We keep the details you submit at sign-up, the contact path you confirm, session logs, and device markers needed to secure the account. If you use DANA, OVO, GoPay, or QRIS, we also keep the transaction reference and status.

Cookies keep your session open, remember language choice, and reduce repeat checks when you return on Chrome, Safari, or another browser. If you clear them, we may ask you to confirm the account again before changes are made.

Yes. Send the request from your registered email or the in-account form, and we will confirm the account before sharing anything. Where local law permits, we can provide a copy of stored details linked to your profile.

Use the same contact path and tell us exactly which field is wrong, such as email, phone number, or recovery contact. We verify the account first, then update the record if the change is allowed under local law.

We keep records only for the period needed to run the account, settle a support case, or meet any retention rule that applies in your region. After that, the record is trimmed, archived, or removed.

Email [email protected], message WhatsApp from your registered number, or open Settings > Privacy Request after login. We read these channels daily and use them to handle access, correction, and removal requests where allowed.

Yes. If access, correction, or removal is limited by local law, we follow that rule and explain the reason in our reply. We only process the request in regions where the law permits it.