Reference

How capai138 Handles Your Personal Data

Your account data, wallet connections — DANA, OVO, GoPay — and session activity are handled under a clear set of rules we've set out here.

Account data protectionDANA, OVO, GoPay wallet privacyYour right to access and deleteCookie and session transparencyContact path for data requests
capai138 How capai138 Handles Your Personal Data
DATA REQUEST CONTACT

How to Reach Us About Your Privacy

If you want to access, correct, or remove your personal data, you can reach our support team directly through the channels below. We aim to respond to all data-related requests within a reasonable window — complex requests involving payment verification records from DANA, OVO, or GoPay may take slightly longer, but we will acknowledge your message promptly and keep you updated on the status.

Live Chat Support Open the chat icon from any page on capai138 — our team is available around the clock to log your data request, confirm your identity, and pass the case to the right handler.
Email Data Request Send your full data request — including the account phone number and the e-wallet type you use (DANA, OVO, or GoPay) — to our support email. We use the account details to verify identity before processing any changes.
Account Help Centre Log in to your account and head to the Help section. From there you can raise a data-access or deletion ticket directly, pre-filled with your account reference so the team can act without back-and-forth.
HOW WE PROTECT YOU

Data Handling, Cookies, and Account Security

We have built the data layer of capai138 around mobile-first account flows — meaning that every data decision, from how long we hold a GoPay transaction reference to how cookies behave across a mid-session device switch, is shaped by how real accounts actually move between a phone browser and the full site. The six points below cover our core commitments in plain terms.

Encryption in Transit

All data moving between your device and our servers — including wallet top-up confirmations from DANA or OVO — is encrypted. This applies whether you are on a mobile browser in Bekasi or switching to a desktop session later.

Cookie Behaviour

We use session cookies to keep you logged in across a browser tab switch and analytics cookies to understand which pages load slowest on Android devices.

Data Retention Windows

Active account data is kept while your account is open. If you request deletion, we remove personal identifiers within a reasonable period, retaining only what local legal obligations require us to hold — typically transaction records tied to GoPay or…

Third-Party Sharing Limits

We share data with payment processors (DANA, OVO, GoPay) only to the extent needed to complete a transaction or verify a withdrawal. We do not sell your data to advertising networks or unrelated third parties.

Account Security Steps

Login uses a one-time code sent to your registered mobile number. If we detect an unfamiliar device or location, the account pauses pending your confirmation — a deliberate friction point that protects your wallet balance before we release access.

Policy Update Notices

When this policy changes in a material way, we notify active accounts via the in-app message centre. Minor wording clarifications are updated silently; anything that affects your data rights comes with a notice and a clear effective date.

Questions We Get About Data and Privacy

These are the questions we actually receive from accounts about how we handle their data. If your question is not covered here, reach out via live chat or the email channel listed above — we will respond with a specific answer for your account situation rather than a generic reply.

We collect your name, mobile number, and the e-wallet you link — DANA, OVO, or GoPay. We also log your device type, login timestamps, and IP address at the point of sign-up. We do not collect your e-wallet PIN or full bank account number at any stage.

We store a transaction reference number long enough to confirm a deposit or withdrawal has cleared. The actual wallet credentials stay inside your DANA, OVO, or GoPay app. After verification is complete, payment references are held only as long as legal record-keeping obligations require.

Yes. Send a data-access request through live chat or the support email, including your registered phone number and the e-wallet type linked to your account. We will verify your identity and send a summary of the personal data tied to your account within a reasonable period.

Raise a deletion request through the Help section inside your account or via live chat. We will remove personal identifiers after verifying your identity. Some transaction records connected to GoPay or OVO payments may be retained where local legal obligations apply.

We share data with payment processors — DANA, OVO, GoPay — only to complete or verify a transaction. Our fraud-prevention layer may cross-check login signals with device-level security partners. We do not sell personal data to advertisers or unrelated commercial parties.

We use session cookies to keep you logged in and analytics cookies to measure page performance, particularly on Android mobile sessions. You can disable non-essential cookies in your browser settings. Turning off session cookies may require you to log in again with each new browser tab.

Your account session is tied to your login credentials, not your device. If you move from a phone browser to a desktop, we log the device change but keep your account and wallet data continuous. An unfamiliar device triggers a one-time verification step before access is restored.

We keep active account data while your account is open. If you request account closure, personal identifiers are removed within a reasonable window. Transaction records may be retained longer if local legal or regulatory obligations require it — we will specify the reason if asked.

Yes. If we make a material change — one that affects your data rights or how we use payment data from DANA, OVO, or GoPay — we send a notice to your in-app message centre before the new policy takes effect. Minor clarifications are updated without a separate notification.

We record aggregate session behaviour — such as which game rooms you enter and session duration — to improve platform performance. This is stored in non-personally-identified form for service analytics. It is not linked to your name or wallet details for commercial profiling purposes.