LEGAL REFERENCE

Your data. Our responsibility.

We keep your account details, payment history and personal information secure across every transaction. This policy explains how totosuper collects, uses and protects the data you share when...

Encrypted transactionsData retention clarityYour control alwaysQRIS & E-wallet safe
totosuper Your data. Our responsibility.

Privacy Policy — Core Posture

Service availability is jurisdiction-dependent. Users are responsible for checking local law before access.

SUPPORT

Privacy Questions — Get Help

Team online

Email Support

Send privacy inquiries to our dedicated team. Expect a response within 24 hours on weekdays. Include your account details and the specific information or concern.

Live Chat

Chat with our support agent during business hours. They can guide you through data requests, account deletion or explain how your information is used.

Account Settings

Review and update your personal information directly in your account dashboard. You control which contact methods we use to reach you.

WHY THIS PLATFORM

How We Earn Your Trust

Encryption Standard

All transmissions between your device and our servers use industry-standard TLS encryption. Payment data, account credentials and personal details are never exposed in plain text.

Third-Party Audit

Our privacy and security practices undergo regular third-party review. Reports are shared with regulators and confirm our compliance with data protection standards.

Data Minimisation

We collect only the information needed to run your account, process payments and meet legal requirements. No unnecessary data gathering, no hidden tracking fields.

Transparent Retention

Your account data is retained for the duration of your membership plus any period required by law. After that, it's securely deleted unless you request otherwise.

Access Control

Internal access to your data is limited to staff who need it to serve you—billing, support, compliance. Everyone signs a confidentiality agreement.

Incident Response

If a breach occurs, we notify affected users and regulators within legally mandated timeframes. We maintain cyber insurance and incident response procedures.

Consistency Across totosuper

Single Privacy Standard
Whether you're playing via our live casino, sportsbook or slot lobbies, the same data protection rules apply. No variation by game type.
Unified Payment Privacy
DANA, OVO, GoPay and QRIS deposits follow identical encryption and audit trails. Your e-wallet link is protected the same way across all transaction types.
Consistent Cookie Policy
Our site uses cookies for session security and account personalization only. No advertising trackers, no cross-site profiling, no data sales.
Mobile & Desktop Alignment
Your mobile app and desktop browser experience share the same privacy framework. Data collected on one platform is governed by this same policy.
Same Support Response
Email, chat or in-app privacy requests receive the same level of detail and urgency. No faster service for certain regions or account tiers.
Regular Policy Updates
When we update this policy, we notify you via email and post the change date here. Material changes get a 30-day notice before they take effect.
GDPR & Local Compliance
Supported regions with GDPR or equivalent data laws receive the highest protection standards. We do not weaken compliance for convenience.
PLATFORM SNAPSHOT

Privacy Across Your Account Flow

Signup & Verification You provide name, email, phone and ID number to create...
Payment Processing When you fund via DANA, OVO, GoPay or QRIS, we...
Account History Your deposit, withdrawal and gaming history is logged for your...
Communication Preferences Choose which channels totosuper uses to reach you: email, SMS...
Device & Location Data We log your IP address and device info for security...
Data Export & Deletion Request a copy of all your data or ask us...

Privacy Policy — Common Questions

No. We do not sell your data to advertisers or marketing firms. We share information only with payment processors, anti-fraud services and legal authorities when required by law in supported regions.

We retain active account data for as long as you're a member. After account closure, we keep records for seven years to meet anti-money-laundering requirements, then securely delete them.

No. We store only a transaction reference and timestamp. Your wallet credentials remain with your payment provider. We never see or store your PIN, password or full account number.

We have cyber insurance and incident response procedures in place. If a breach occurs, we notify you within 72 hours and provide guidance on protecting your account and payment methods.

Yes. Submit a deletion request via your account settings or email our support team. We'll remove personal details within 30 days, except records required by law for compliance purposes.

We use cookies only for session security and remembering your preferences. No advertising trackers, no cross-site profiling. You can disable non-essential cookies in your browser settings.

Contact our support team via email or live chat with details of your concern. We investigate within 7 days and escalate to our privacy officer if needed. Formal complaints go to local data protection authorities.