Your data. Our responsibility.
We keep your account details, payment history and personal information secure across every transaction. This policy explains how totosuper collects, uses and protects the data you share when...
Privacy Policy — Core Posture
totosuper operates in supported regions where local law permits online gaming activity. We collect personal information necessary to verify your identity, process deposits via DANA, OVO, GoPay and QRIS, manage your account and comply with anti-money-laundering requirements. Your data is encrypted during transmission and stored on secure servers. We do not sell or share your information with third parties for marketing purposes.
Data retention follows local regulatory timelines. You have the right to request, update or delete your personal information subject to legal obligations. Contact our support team for data subject requests or privacy concerns.
Service availability is jurisdiction-dependent. Users are responsible for checking local law before access.
Privacy Questions — Get Help
Email Support
Send privacy inquiries to our dedicated team. Expect a response within 24 hours on weekdays. Include your account details and the specific information or concern.
Live Chat
Chat with our support agent during business hours. They can guide you through data requests, account deletion or explain how your information is used.
Account Settings
Review and update your personal information directly in your account dashboard. You control which contact methods we use to reach you.
How We Earn Your Trust
Encryption Standard
All transmissions between your device and our servers use industry-standard TLS encryption. Payment data, account credentials and personal details are never exposed in plain text.
Third-Party Audit
Our privacy and security practices undergo regular third-party review. Reports are shared with regulators and confirm our compliance with data protection standards.
Data Minimisation
We collect only the information needed to run your account, process payments and meet legal requirements. No unnecessary data gathering, no hidden tracking fields.
Transparent Retention
Your account data is retained for the duration of your membership plus any period required by law. After that, it's securely deleted unless you request otherwise.
Access Control
Internal access to your data is limited to staff who need it to serve you—billing, support, compliance. Everyone signs a confidentiality agreement.
Incident Response
If a breach occurs, we notify affected users and regulators within legally mandated timeframes. We maintain cyber insurance and incident response procedures.