Reference

How main188 Protects Your Personal Data

At main188, your personal data belongs to you — we collect only what we need to run your account, process deposits via DANA, OVO, GoPay and QRIS, and…

Data collected only for account operationDANA, OVO, GoPay & QRIS payment data protectedRetention periods clearly statedDeletion requests accepted via live chatNo data sold to third parties
main188 How main188 Protects Your Personal Data
PRIVACY CONTACT PATHS

How to Reach Us About Your Data

We handle privacy requests — access, correction, and deletion — through three dedicated channels. Our data support team is available 24 hours a day, seven days a week, so you can raise a concern at any time without waiting for business hours. Requests submitted before 22:00 WIB are usually acknowledged within two hours; all requests are resolved within 72 hours.

Team online

Live Chat

Open the chat widget inside your main188 account dashboard at any hour. Identify yourself as submitting a privacy request and our agent will log it immediately with a reference number.

Email Support

Send your data request to our privacy inbox at [email protected]. Include your registered mobile number and the nature of your request — access, correction or deletion — so we can act without back-and-forth delays.

In-Account Form

Log in, navigate to Account Settings, then select 'Privacy & Data'. Submit a structured request form directly from your profile page. A confirmation receipt is issued within 15 minutes of submission.

DATA HANDLING PRACTICES

Six Ways We Keep Your Data Secure

Security is not a single feature — it is a set of overlapping practices we apply at every layer of your account.

End-to-End Encryption

Every data packet exchanged between your device and our servers uses TLS 1.3 encryption. This applies to login, payment confirmation via DANA or OVO, and any personal detail update you submit through your account settings page.

Cookie Policy

We use session cookies to keep you logged in and analytics cookies to measure page load times. No third-party advertising cookies are placed without your explicit consent, which you can withdraw at any time via the cookie preference panel in your account.

Data Retention Limits

Active account data is retained for the lifetime of your account plus 24 months after closure, in line with financial record requirements. Transaction logs for QRIS and GoPay payments are retained for 36 months as required by applicable local financial reporting standards.

Account Security Checks

Our system flags unusual login locations automatically and sends an alert to your registered email. If we detect a login attempt from an unrecognised device, we pause the session and ask for a one-time code sent to your mobile number before access is restored.

Third-Party Data Sharing

We share data only with payment processors — DANA, OVO, GoPay and QRIS — strictly to complete your transaction. No personal profile data is sold, rented or passed to marketing firms. Data shared with processors is governed by their own certified privacy standards.

Your Right to Access & Correct

You can request a full export of the data we hold on you at any time. Corrections to name, phone number or email are processed within 24 hours of a verified request. Deletion requests remove personally identifiable data while retaining anonymised transaction records as required by law.

Frequently Asked Questions About Our Privacy Policy

The questions below cover the points our account holders ask most often about how their data is handled on main188. If your question is not listed here, our live chat team can answer privacy queries 24 hours a day at no extra step — just open the chat from your account dashboard.

We collect your full name, email address, mobile number and the payment identifier linked to your chosen method — DANA, OVO, GoPay or QRIS. Device type and IP address are logged as part of standard session security. We do not collect your wallet PIN or bank password.

Payment identifiers from DANA and OVO are transmitted over TLS 1.3 encrypted connections and stored in isolated, access-controlled database segments. Only our payment reconciliation team can view transaction references, and only for dispute resolution purposes.

Yes. Submit a data access request through the 'Privacy & Data' form in Account Settings or email [email protected]. We will compile and deliver a full data export to your registered email within 72 hours of identity verification.

Personal identifiable data is retained for 24 months after account closure. QRIS and GoPay transaction logs are kept for 36 months to satisfy financial reporting requirements. After those periods, data is permanently deleted or fully anonymised from our systems.

We share data only with the payment processors you choose — DANA, OVO, GoPay or QRIS — and only to complete your specific transaction. We do not sell, rent or share your profile with advertisers, data brokers or any unrelated third party under any circumstance.

Navigate to Account Settings, select 'Privacy & Data', and submit a deletion request. Alternatively, email [email protected] with the subject line 'Data Deletion Request'. Personally identifiable fields are removed within 72 hours; anonymised transaction records are retained as required by applicable law.

The core policy applies to all account holders. Certain data processing steps — such as identity verification depth — depend on local law. Where local law permits, we apply the minimum data collection standard. If your region has additional requirements, our support team will notify you directly.