Reference

citoto Privacy Policy for Your Account

citoto Privacy Policy explains what we collect when you open an account, sign in from a mobile browser, or connect DANA, OVO, GoPay and QRIS.

Account dataWallet detailsDevice signalsPolicy access
citoto citoto Privacy Policy for Your Account
CONTACT PATHS

Get Privacy Help Inside Your Account

A privacy question should not be mixed with a stalled wallet request. After you sign in, use the support path connected to your account and include the phone number or account reference involved, without sending a wallet password or one-time code. We use the details you provide to locate the right record, check a DANA or QRIS reference, and reply about your Privacy Policy request.

Team online

Account request

Open the support path after login and identify the account record concerned. We use that reference to discuss a data question without asking you to place private details in a public message.

Wallet query

For DANA, OVO, GoPay or QRIS questions, share the transaction reference and approximate date. We can compare the payment status with your account record while keeping wallet passwords and access codes out of the request.

Correction request

Tell us which account detail appears wrong and what should change. We may ask for a clear account step, such as phone verification, before altering information so the request is tied to you.

HANDLING YOUR DATA

How We Apply Privacy Controls

Our Privacy Policy is put into practice around the points where information is created: account opening, phone verification, mobile sign-in, wallet matching and support contact.

Account records

When you open an account, we record the details needed to create and maintain that account. Phone verification helps connect the sign-in request to the correct record before account access is provided.

Session security

We use sign-in time, browser and device signals to help identify unusual account activity. On a shared phone, sign out after checking the lobby and avoid saving your citoto password in the browser.

Wallet references

A DANA, OVO, GoPay or QRIS reference can help us reconcile a transaction question. We handle the reference as account support data and do not need your wallet password to investigate its status.

Cookies

Cookies and related browser storage may retain a session choice or support security checks. You can remove or block them through your mobile or desktop browser, although some account functions may then require another sign-in.

Retention

We keep account, security and transaction records only for the period needed for the stated purpose, account support or applicable legal duties. The period can differ by record type and the request connected to it.

Your request

Use the signed-in support path to ask for access, correction or deletion where local law permits. Include the affected account detail, and we may verify your phone before making a change or sharing account data.

Privacy Policy Answers for citoto

These Privacy Policy answers focus on the questions that arise before you open an account or connect an Indonesian wallet. We explain the account step, mobile browsing signals, transaction references and request path in plain English. If your question concerns a specific record, sign in first so the support team can locate the correct account without exposing details in an open channel.

It covers account details, phone verification, sign-in records, device and browser signals, support messages, and payment references linked to DANA, OVO, GoPay, QRIS, bank transfer or virtual account activity. It also explains purposes, retention, security and requests connected with your account.

Phone verification helps us connect an account access request to the right account and reduce mistaken or unauthorised changes. We may use its status when you ask for account support, correction or a wallet transaction check.

Yes. When you sign in from a phone, we may receive browser, device and session details used for security and account continuity. Your browser controls cookies and storage, and blocking them may require you to sign in again.

No. A DANA, OVO, GoPay or QRIS transaction reference can help match a wallet event to your account, but we do not need your wallet password or one-time code to check a payment status.

Sign in, open the account support path and ask for access to the data linked to your account. Include the relevant phone or account reference. Where local law permits, we will verify the request before discussing or providing the record.

Yes. Use the signed-in support path, name the detail that is inaccurate and provide the corrected value. We may complete phone verification or another account check before changing the record so the update is tied to your account.

Retention depends on the record and its purpose. We may keep account, security, transaction or support records for account service, dispute handling or legal duties. You can ask about a particular record through support, where local law permits.