dikatotoPrivacy Policy

This page describes what we collect when you use dikatoto, how we keep that data protected, and what rights you hold over your information. dikatoto operates via mobile browser and Android/iOS access; we handle your personal data with care across all access paths. Our servers and payment processors may sit outside your home jurisdiction, but we comply with applicable data protection obligations wherever you access our platform from.

We collect only the information needed to verify your identity, process your deposits via DANA, e-wallet, mobile banking, local payment, online payment, e-wallet, or bank virtual accounts (mobile banking, local payment, online payment, e-wallet), settle your bets on Liga 1 and other markets, and deliver our service. We do not sell your data to marketers or brokers. We do share limited information with payment processors and regulators where law requires.

Read this policy carefully. If you have questions about how dikatoto handles your data, contact our support team. We aim to respond within one business day.

What Data We Collect and How We Use It

Account and Identity Data

When you open a dikatoto account, we collect your full name, date of birth, phone number, email address, and national identity number. We verify this data against government identity records during sign-up. We also request your home address, including city (Jakarta, Surabaya, Bandung, Medan, or elsewhere) and postal code. We use this data to confirm your eligibility, prevent fraud, and comply with anti-money-laundering regulations that govern online gaming platforms operating in your jurisdiction.

We keep this data encrypted and stored on our servers. We do not share your identity details with third parties except when required by law, by court order, or to verify transactions with your payment provider.

Payment and Transaction Data

When you deposit or withdraw funds on dikatoto, we record the transaction date, amount, payment method (e.g., DANA wallet number, e-wallet virtual account, mobile banking account identifier), and the purpose (deposit / withdrawal / bonus). We do not store full payment card numbers or banking credentials on our servers. Payment processing is handled by third-party tokenization processors that hold PCI compliance certification. We see only a token representing your payment method, not your underlying account details.

Our encryption standard on dikatoto

All payment information transmitted to dikatoto uses TLS 1.2 or later encryption. Your session is protected by industry-standard security protocols. We do not log or store plaintext payment credentials at any point.

Betting and Activity Data

We record your wagers, game activity, bet slips, and payout history for regulatory compliance and dispute resolution. This includes which football markets (Liga 1, Piala AFF, Champions League) you accessed, which live-dealer tables you joined, which slot games you played, and settlement outcomes. We retain this data to handle disputes, prove settlement accuracy, and comply with gaming regulations in your jurisdiction.

Device and Access Data

When you use dikatoto via mobile browser or Android/iOS app, we log your device type, operating system version, IP address, and approximate location (based on IP geolocation, not GPS). We use this data to detect fraud, prevent account takeover, and improve platform stability. We do not track your physical location beyond IP-level approximation. We do not collect location data from your phone's GPS unless you explicitly grant permission.

Third-Party Processors

We engage third-party processors to handle payment processing, identity verification, and customer support. These processors have access only to data needed for their specific function. We require all processors to sign data protection agreements and maintain compliance with applicable law. Processors may store data in cloud regions outside your home country; we ensure their security meets our standards.

We at dikatoto do not share your personal data with marketing companies, advertisers, or brokers. Our sole use of your data is to deliver our gaming service and comply with applicable law.

dikatoto data protection team

Cookies and Tracking

We use cookies to maintain your login session, remember your language preference, and detect suspicious activity (such as repeated failed login attempts). We do not use cookies for advertising or cross-site tracking. We do not allow third-party advertisers to set cookies on dikatoto. Your browser can delete or disable cookies; doing so may prevent you from logging in or using the platform normally.

Your Rights and Our Commitments

Your Rights on dikatoto

You have the right to request a copy of all personal data we hold about you. We will provide it within 30 days in a portable format. You have the right to correct inaccurate data — if your registered address or phone number is wrong, notify us and we will update it immediately. You have the right to request deletion of your data, subject to legal retention requirements; we will delete non-regulatory data within 60 days unless law requires us to keep it longer.

You have the right to object to our use of your data for fraud detection or account verification. However, objecting may prevent us from delivering our service. You have the right to lodge a complaint with the data protection regulator in your jurisdiction if you believe we have mishandled your data.

Data Retention on dikatoto

We retain your account and identity data for as long as your account is active, plus five years after closure (to handle disputes and satisfy regulatory requirements). We retain bet slips and settlement records for seven years. We retain payment records for five years. We retain logs of failed login attempts for 90 days. These retention periods comply with anti-money-laundering regulations and dispute resolution standards in our operating jurisdiction.

Jurisdiction and Changes to This Policy

We at dikatoto operate from a jurisdiction outside Indonesia. This privacy policy is governed by the laws of our operating jurisdiction. Your personal data may be transferred to, stored in, and processed in countries other than your own. By using dikatoto, you consent to this transfer and processing. We may update this policy at any time. Updated policies take effect immediately upon posting; we recommend reviewing this page periodically.

Contact Us About Your Data

If you have questions about how we collect, use, or protect your data, or if you wish to exercise any of your rights under this policy, contact our support team via live chat on dikatoto.app or email our compliance team. We aim to respond within one business day. We will not charge you for accessing your data, correcting it, or requesting deletion, except where excessive repetition requires administrative cost recovery under applicable law. During major holidays such as Idul Fitri, Idul Adha, or Imlek, response times may extend; we update our status calendar during these periods.