LEGAL REFERENCE

Your Privacy Matters at koin303

We keep your account secure, your payment details safe, and your gaming history private. This policy shows exactly how we do it — from the moment you open...

Account SecurityPayment ProtectionData PrivacyYour RightsTransparency
koin303 Your Privacy Matters at koin303

Our Privacy Promise and How It Works

Service availability is jurisdiction-dependent. Users are responsible for checking local law before access.

HELP CHANNELS

Questions About Your Privacy

Privacy Team Contact our dedicated privacy inbox for data-access requests...
Account Support Our account specialists can walk you through privacy...
Security Alerts We'll notify you immediately if we detect unusual...
WHY VISITORS TRUST US

Why We're Serious About Your Privacy

Encryption Standard

Every login, deposit and withdrawal is protected by SSL encryption. Your QRIS code, DANA wallet link and bank details never travel unencrypted across our systems.

Third-Party Audits

We undergo regular security audits from independent firms to verify our data-protection controls meet international standards applicable to payment processing.

Transparent Logging

Every request to your account — login, chip purchase, table entry — is logged with timestamp and IP. You can review this on demand through account history.

Payment PCI Compliance

We maintain PCI DSS certification to handle DANA, OVO, GoPay and QRIS transactions safely. Your card or wallet credentials are never stored on our servers.

Data Minimisation

We ask for only what's essential to open your account and process payouts. We don't track your location, device serial number or browsing history outside koin303.

Annual Review

Every year we reassess our privacy practices, update our retention schedules, and align with evolving Indonesian data protection guidelines and regulations.

How Our Privacy Policy Stands

Clear LanguageNo legal jargon. We explain what data we collect, why, and who can access it in plain English so you know exactly where you stand.
No Hidden ClausesThis policy covers account security, payments and gaming history. We don't use boilerplate text copied from unrelated platforms or hide terms in footnotes.
Indonesia-First ApproachWe've built this policy around DANA, OVO, GoPay and QRIS — the payment tools you already use — and Indonesian data protection norms.
Regular UpdatesWhen our practices change or local law evolves, we update this page immediately and notify active players via email. We don't bury updates in changelogs.
Your Access RightsYou can request a copy of all personal data we hold about you, ask us to correct it, or ask us to delete it (where law allows) within 30 days.
Breach NotificationIf we ever detect unauthorized access to your account or payment details, we'll contact you within 24 hours and outline steps to secure your data.
Independent VerificationOur encryption and access controls are tested by third-party auditors annually. Reports are available upon request to account holders.
SERVICE CONTEXT

What This Policy Covers in Your Account

Login & Verification Email, phone number and ID verification happen once during onboarding...
Transaction Record Every deposit, withdrawal and chip transfer is logged with your...
Payment Method Links When you link DANA, OVO, GoPay or QRIS, we store...
Session Tracking We log when you join a live table, switch lobbies...
Communication Preferences Control whether we email you about new table launches, promotions...
Device & IP Log We record the device type, browser and IP address for...

Your Privacy Questions Answered

We retain your account details for as long as your account is active. After closure, we keep encrypted backups for 7 years to comply with payment regulations, then delete them. You can request early deletion where law allows.

No. We never sell, rent or share your personal data with third parties for marketing. We only share data with payment processors (DANA, OVO, GoPay, QRIS partners) and law enforcement when legally required.

We notify affected account holders within 24 hours, explain what data was accessed, and recommend immediate steps — password reset, payment method review, transaction monitoring. We also file reports with relevant authorities.

Your wallet credentials are encrypted before transmission and never stored on our servers. We use tokenization — a unique secure code — so even if our database is breached, your actual payment details remain protected.

Yes. Email our privacy team with your account number and we'll provide your personal data, transaction history and device logs within 30 days in a portable format you can open offline.

We use cookies to keep you logged in and to improve page load speed. We don't use third-party tracking pixels or sell browsing data. You can disable non-essential cookies anytime in account settings.

You can request full account deletion. We'll remove your personal data (except encrypted transaction records required by law) within 30 days. Your wallet links will be severed immediately.