Reference

Open bostoto Privacy Policy for Your Account

bostoto Privacy Policy explains how we handle your account details, wallet records and device activity when you use our Indonesia-facing site.

Account dataWallet recordsCookie choicesAccess requests
bostoto Open bostoto Privacy Policy for Your Account
CONTACT ROUTES

Switch to the Right Privacy Support Path

A clear contact route helps when a Privacy Policy question involves your login, phone verification or wallet record. We ask you to use the account support path shown on our site and include the relevant receipt or status reference where available. This lets us check the correct account without asking you to send unrelated personal details.

Team online

Account access

If you cannot reach your account, tell our support team which phone verification step stopped you. We use that detail to locate the access issue without requesting your password.

Wallet records

For a DANA, OVO, GoPay or QRIS question, share the payment reference and account contact path. We can then match the record while limiting the details included in your request.

Policy requests

Ask us to explain, correct or remove eligible personal data through the support route connected to your account. We may verify ownership before making any change.

DATA PRACTICES

Browse bostoto Data Handling Details

We keep the Privacy Policy practical: it describes what we collect, why we use it and how you can ask about it.

Account details

We use the contact details you submit to create and protect your account, complete phone verification and respond to account requests. Please keep your login details private and do not place a password in a support message.

Payment references

DANA, OVO, GoPay, QRIS, bank transfer and virtual account references help us identify payment status. We use these records for reconciliation, support checks and account security rather than unrelated contact.

Cookies

Cookies can preserve session settings, remember selected preferences and help us understand whether a page request completed. You can manage browser cookie controls, although some account steps may then require another login.

Device activity

We may record device and browser signals linked to sign-in activity so we can spot unusual access. On mobile, open the Privacy Policy from the site menu; the same policy remains available on desktop.

Account security

Phone verification is required before account access, and support may ask ownership questions before changing personal details. We do not ask you to disclose a password when checking a login or wallet issue.

Retention and changes

We retain records for the operational, security or legal period connected to their purpose. To request correction, access or an eligible deletion, contact us through the account support path with enough detail to verify ownership.

Check Privacy Policy Answers Before Opening

These Privacy Policy answers address the searches we hear most often about account data, payment references, cookies and access requests. If your question concerns a specific DANA, OVO, GoPay, QRIS, bank transfer or virtual account record, include that reference when contacting us.

The bostoto Privacy Policy covers account details, phone verification, device signals, cookies, support messages and payment references connected with DANA, OVO, GoPay, QRIS, bank transfer or virtual account activity.

We use your phone number for account creation, verification before account access and account-related contact. If you ask us to change it, we may verify ownership before updating the record.

Yes. The Privacy Policy explains that QRIS, DANA, OVO and GoPay references may be linked to a payment status or receipt so we can reconcile the account and answer a support request.

Use the support contact path connected to your account and state whether you want access or correction. Include your account contact detail, but never send your password or unnecessary payment credentials.

Cookies can keep your session and selected settings available while you move through the site on mobile. Browser controls can remove them, though a later account step may ask you to sign in again.

We keep each record for the period needed for its stated account, security, support or legal purpose. When that purpose ends and no duty applies, the record can be removed or de-identified.

Yes. Use the account support route shown on our site and describe the concern, such as phone verification, a wallet reference, cookie choice or a data request. We may verify ownership first.