Reference

nostoto Privacy Policy for Your Account

Our Privacy Policy explains what we collect when you open an account, sign in from a mobile browser, or check DANA and QRIS status at the cashier.

Clear data choicesCookie controlsAccount access checksIndonesia account context
nostoto nostoto Privacy Policy for Your Account
CONTACT PATHS

Get Privacy Help Beside Your Account

A direct support path matters when a privacy request and a wallet receipt meet in the same account.

Account privacy request Ask us to find, correct or explain personal details connected with your nostoto account. Include your registered contact detail so we can verify the request before discussing account records.
Cashier receipt check If a DANA, OVO, GoPay or QRIS receipt appears against the wrong status, send the reference through support. We use the payment reference to trace the related account event.
Access concern Tell us when a new phone, browser session or account sign-in looks unfamiliar. We may ask account questions before sharing privacy details, helping keep your records away from another person.
DATA CONTROLS

What We Do With Your Personal Data

We keep this policy practical by linking each data action to an account task you can recognise.

Account details

We collect the contact and verification details you submit when opening or maintaining an account. We use them to identify your account, respond to requests and prevent another person from changing your records.

Login security

Sign-in records can include device, browser, session and approximate connection details. These signals help us investigate unusual access, including a new mobile browser used to reach the lobby.

Cookies

Cookies and similar browser storage can remember a session, preserve account settings and support security checks. You can manage browser permissions, although restricting them may interrupt account access.

Payment references

A DANA, QRIS, GoPay, OVO, bank transfer or virtual account event may create a reference linked to your account. We use that reference to match receipts and resolve status questions.

Retention period

We retain account and support records only while they serve security, service, dispute or legal needs. When a record is no longer needed, we remove it or restrict further use.

Change request

You can ask what personal data we hold, request a correction, or ask about deletion through account support. We verify your identity first and explain any lawful reason a record must remain.

Privacy Policy Answers for Indonesia

These Privacy Policy answers address the account questions we expect before you open an account or send a data request. We keep the route practical, from cookies on a mobile browser to a payment reference attached to QRIS, DANA, OVO or GoPay.

It covers account details, verification records, login activity, device and browser signals, cookies, support messages and payment references. It also explains how we use, retain, protect and respond to requests about those records.

We need account details to identify you and manage access. Login, browser and session records help us detect unusual activity, confirm support requests and protect the account path when you change devices.

Yes. A DANA, QRIS, OVO, GoPay, bank transfer or virtual account reference may connect to your account event. We use that limited record to match a receipt and answer a cashier status request.

Use the support route inside your account and ask for a data copy or correction. We first verify that you control the account, then explain which records we can provide, change or retain.

You can ask us to delete personal data through support. We assess the request against security, dispute and legal needs, remove records that no longer need retention, and explain any record that must remain.

Cookies can keep your session active, remember selected settings and support device checks. You can adjust browser permissions on your phone or desktop, but blocking required cookies may prevent a normal sign-in.

Contact our account support route and describe the privacy issue without sending unnecessary credentials. For a wallet matter, include the DANA, OVO, GoPay or QRIS reference so we can locate the relevant record.