Reference

Open rastoto Privacy Policy Before Your Account

rastoto Privacy Policy explains what we collect when you open an account, check your phone, enter the lobby, or use DANA, OVO, GoPay and QRIS.

Account dataWallet recordsCookie choicesContact requests
rastoto Open rastoto Privacy Policy Before Your Account
CONTACT PATHS

Reach Support About Privacy Policy Requests

A clear contact route helps you ask about the Privacy Policy without sending sensitive details through an unsuitable channel.

Account help path Use the signed-in account help route for a Privacy Policy question about your phone verification, login record or wallet status. We can connect the request to the right account without asking you to post personal details in a public message.
Site contact route If you cannot sign in, use the contact route shown on our site and state that your message concerns the Privacy Policy. Add your registered phone number only when requested; never send a password, one-time code or full wallet credential.
Payment record check For a DANA, OVO, GoPay, QRIS, bank transfer or virtual account record, provide the payment reference and date when asked. This gives us a practical way to check status while limiting the personal data included in your request.
DATA PRACTICES

Browse How rastoto Handles Your Privacy

Privacy work is part of the account flow, not a separate promise. We limit access to account records by operational need, use security checks around sign-in and phone verification, and keep payment…

Account data

We may receive your phone number, account details and verification result when you open an account. We use these details to create access, connect your requests to the correct record and help protect the sign-in path from mistaken or unauthorised use.

Payment handling

When you choose DANA, OVO, GoPay, QRIS, bank transfer or a virtual account, we keep the transaction details needed to match a deposit or status enquiry. Payment providers may process their own records under their own privacy terms.

Cookie controls

Cookies can support a signed-in session, remember a browser choice or help us understand which page produced an access problem. You can adjust cookie controls in your browser, although some account functions may not work as intended afterward.

Device security

A mobile browser may send device, browser and connection signals that help us identify unusual sign-in behaviour. These signals support account protection; they are not a reason to request your password or one-time verification code from you.

Record retention

We retain account, support and payment records for as long as needed for the stated account purpose, security checks, dispute handling or a legal duty. Retention can differ by record type, and we remove or restrict data when the applicable period ends.

Your requests

You can contact us to ask what eligible personal data we hold, request a correction, question a use or ask about deletion. We may verify account ownership before acting, so one person cannot change another person's phone or payment record.

Browse Privacy Policy Answers Before Opening

These Privacy Policy answers address the account and payment questions you are most likely to have before opening access. We keep the route practical: identify the record, use the contact path, and complete an ownership check when the request concerns your phone, wallet or sign-in details. For supported Indonesia access, eligibility depends on local law.

The rastoto Privacy Policy covers account details, phone verification, sign-in and device signals, cookies, support messages, and payment references created through DANA, OVO, GoPay, QRIS, bank transfer or a virtual account. It explains why we use each record and how you can ask about it.

We use your phone number to create and locate your account, complete the clear phone verification step before account access, and respond to account requests. We may ask you to confirm ownership before changing it, so another person cannot take over your account details.

Yes. The Privacy Policy covers the account-linked reference, method, amount and status needed to check DANA or QRIS activity, as well as OVO, GoPay, bank transfer and virtual account records. The selected payment provider may also handle data under its own privacy terms.

Use the signed-in account help path when available, or the site contact route if you cannot access your account. State that the request concerns the Privacy Policy, identify the record you mean, and complete an ownership check before we provide or amend eligible data.

Cookies can keep a mobile browser session active, remember a cookie choice or help us trace an access problem. You can change browser cookie controls, but blocking required cookies may affect sign-in, phone verification or the path from your account to the lobby.

You may ask about deletion through our contact path, and we assess the request against the record purpose, security needs, dispute handling and any legal duty. Some payment or account records may need to remain for a defined period before removal or restriction.

Yes. Send the question through account help or the site contact route and tell us the region and access issue. Availability and eligibility depends on local law, so we assess the request for supported Indonesia access where local law permits.