Reference

How timunmerah Handles Your Account Data

Your account data — including the wallet details you use with DANA, OVO, or GoPay — is handled with care and never shared outside the operational scope required to run your account.

Data collected only as neededDANA, OVO, GoPay wallet contextYour access rights explainedContact path for data requestsApplies where local law permits
timunmerah How timunmerah Handles Your Account Data
DATA HANDLING STANDARDS

How We Manage and Protect Your Information

Data protection at timunmerah is not a checkbox exercise — it shapes how account systems are built and how access controls are enforced. Here is a breakdown of the six areas that matter most to account holders asking how their data is managed.

Data Collection Scope

We collect only what your account requires: registration details, payment wallet identifiers for DANA, OVO, or GoPay, and session activity. We do not build behavioural marketing profiles or collect data outside your account's operational needs.

Cookie and Session Use

Cookies on timunmerah serve two purposes: keeping your session active while you navigate the lobby, and detecting login anomalies. We do not use third-party advertising cookies.

Account Security Practices

Account access is protected by password authentication and OTP verification sent to your registered contact. Unusual login attempts — for example, access from an unrecognised device or location — trigger an additional verification step before the account opens.

Data Retention Period

We retain account data for as long as your account remains active and for the period required by applicable financial and regulatory obligations after closure. Once the retention period ends, personal data is deleted or anonymised from our systems.

Third-Party Data Sharing

Your data reaches third parties only when required to process a transaction you have initiated — such as a GoPay deposit or an OVO withdrawal. Those parties operate under data-protection agreements.

Your Rights and How to Use Them

You have the right to request a copy of the data we hold on your account, ask us to correct inaccurate information, or request deletion where local law permits.

DATA REQUEST CONTACT

How to Reach Us About Your Privacy

If you want to access, correct, or delete your personal data, reach out through any of the channels below. Our account support team handles data-related requests and will confirm receipt within one business day. Requests are processed in the order they arrive, and we will keep you updated on the status of your case.

Live Chat Start a chat session directly from your account dashboard. Our support team handles data access and correction requests during operating hours and will log your request for follow-up if the queue is busy.
Email Support Send your data request by email with your registered account name and the specific action you need — access, correction, or deletion. We will confirm receipt and provide a reference number so you can track progress.
Account Help Center The Help Center inside your account includes a dedicated Privacy Request form. Fill in the form, select the type of request, and submit — no need to restate your account details since the form pulls them from your session.

Frequently Asked Questions About Your Data

These are the questions account holders most often ask about how their personal information is collected, stored, and managed on timunmerah. If your question is not covered here, the support channels in the section above are the fastest way to get a specific answer.

We collect your registered name, contact details, and the wallet identifier for whichever payment method you use — DANA, OVO, or GoPay. We also log session data and device identifiers for security purposes. We do not collect data beyond what your account and transactions require.

The wallet identifiers you register — your DANA number, OVO account, or GoPay credentials — are stored in encrypted form on our secured servers. They are used only to process deposits and withdrawals you initiate. We do not store your wallet PIN or full payment credentials.

We share data only with the payment processors needed to complete a transaction you have started — such as the infrastructure behind a GoPay deposit. Those processors are contractually required to protect your data. We do not sell or share your information with advertisers or data brokers.

Account data is retained for as long as your account is active and for the period required by applicable financial and legal obligations after closure. Once that period ends, your personal data is deleted or anonymised. You may request early deletion through our support channels where local law permits.

We use session cookies to keep you logged in and fraud-detection identifiers to flag unusual access. We do not use advertising or tracking cookies. You can clear cookies through your browser settings at any time, though this will end your current account session and require you to log in again.

Submit a data access request through Live Chat, by email with your registered account name, or using the Privacy Request form inside your account's Help Center. We will confirm receipt within one business day and provide the requested information in a readable format within the timeframe required by applicable law.

Yes, where local law permits, you can request deletion of your personal data. Send the request through any of our support channels. Note that some data may need to be retained for a period after account closure to meet financial and legal obligations — we will explain what applies to your specific case.

Your account is protected by password authentication and OTP verification sent to your registered contact each time you log in from an unrecognised device. If our system detects a login from an unusual location or device, an additional verification step is triggered before access is granted. This applies to your wallet-linked account.

When this policy changes in a material way, we will notify you through your registered contact before the changes take effect. Continued use of your account after that notification means you accept the updated terms. You can always request a copy of the current policy through our support channels.

Reach our account support team via Live Chat or email with the subject line 'Privacy Complaint'. Include your account reference and a description of the issue. We will log your complaint, assign a reference number, and respond with an update. If your concern is not resolved, you may seek recourse through the relevant authority where local law permits.