Reference

Privacy Policy for Your Account Data

Our Privacy Policy tells you what we collect, why we keep it, and how you can ask for changes without a long back-and-forth.

Account dataCookiesSupport requestsLocal law
candutoto Privacy Policy for Your Account Data
CONTACT PATHS

Where to Ask About Privacy

Privacy requests are handled through the same account routes you already use, so you do not need to hunt for a separate form.

Live chat Use live chat from 09:00-23:00 WIB when you need help with a data correction, a login issue on a shared device, or a privacy question tied to your account. We verify ownership before we touch anything.
WhatsApp Send a WhatsApp message if you want a shorter path for cookie questions, message deletion requests, or account access concerns. We can ask the right verification step first, then continue the case inside your account thread.
Email Email works well when you need a written trail for a retention question or a request to update contact details. We keep the reply tied to your account so you can track what changed and when.
DATA HANDLING

How We Handle Your Data

We keep privacy handling practical: collect only what we need, store it for a defined reason, and limit who can see it.

Account records

We store the details you submit when you open an account, update contact data, or ask for help. Those records let us confirm ownership before any change, and we keep the visible trail short so only the needed staff can view it.

Session cookies

Cookies help us keep you signed in, remember your language choice, and tell one browser session from another. If you want to reset them, use your browser privacy controls on Android, iPhone, or desktop and start a fresh session.

Device checks

We log device type, browser version, and access time to spot unusual sign-in patterns. That data helps us block abuse without asking you to repeat the same security step every time you return from another phone or laptop.

Retention

We keep personal data only as long as we need it for support, dispute handling, fraud checks, or legal duties. After that point, we remove it or lock it behind stricter access so it is not used for anything else.

Request changes

If you want to correct, update, or delete a detail, send the request through your account contact path and we will verify ownership first. That step protects you from accidental exposure and keeps the change attached to the right profile.

Security contact

If you think someone else accessed your account, tell us right away through live chat or WhatsApp. We can review recent logins, close open sessions, and tell you which records were touched while we handle the report.

Privacy Questions We Hear Most

These are the questions we usually answer when you want to know what data we keep, how long we keep it, and how to ask for a change. We keep the language simple because privacy decisions should not feel hidden inside legal text. If your request depends on local law, we will say so clearly and keep the next step tied to your account.

We collect the details you enter, basic device and browser data, cookie records, and support messages. If you choose DANA, OVO, GoPay or QRIS, the related transaction reference may also sit in your account history for security and audit purposes.

Yes. Send the request through live chat, WhatsApp, or email from the account you want updated. We verify ownership first, then correct the details and confirm what changed so you have a clear record.

We keep it only as long as needed for account support, dispute handling, fraud checks, and legal duties. When that reason ends, we remove the record or lock it down so access stays restricted.

No. Cookies follow your browser settings, so you can clear them on Android, iPhone, or desktop from the privacy controls. That gives you a new session and removes stored preferences from that browser.

Only staff who need the data for support, security, or legal handling can open the record, and they work from a limited internal view. We also ask for account verification before we discuss private details.

Access and data handling depend on local law, and the service is available only where local law permits. If a rule changes your access or your request path, we will point you to the correct step after verification.