oyatoto Casino & Sportsbook Data Care

This page describes what we collect when you use oyatoto and how we keep that data protected. We at oyatoto collect personal information only to operate your account, process deposits and withdrawals, verify your identity, and comply with local regulations. We do not sell your data to third parties, and we encrypt all sensitive information in transit and at rest.

Our data handling reflects the jurisdictions we serve. Users in Jakarta, Surabaya, Bandung, Medan, and other supported regions benefit from the same encryption and security practices. We store your KYC documents (ID photos, name, date of birth) separately from your betting history. We retain payment records (DANA, e-wallet, mobile banking, local payment, online payment, e-wallet, mobile banking, local payment, online payment, e-wallet transactions) for compliance and dispute resolution.

Our services are available only where local law permits. Users are responsible for verifying that access and use comply with their own jurisdiction's law.

What We Collect on oyatoto

We at oyatoto collect the following information when you create an account: your full name, email address, phone number, date of birth, and password. We use your email to send account notifications, password resets, and withdrawal confirmations. We use your phone number for two-factor authentication (2FA) if you enable it. We store your password encrypted—we never see your plain-text password, and we cannot recover it for you. If you forget your password, we send a reset link to your email.

When you deposit money on oyatoto, we collect payment information: your chosen method (DANA, e-wallet, mobile banking, local payment, online payment, e-wallet, or bank account), the amount, and the timestamp. We do not store your full payment credentials—payment processors handle that securely. We record your Virtual Account number (for bank transfers) so we can match incoming deposits to your account.

Before your first withdrawal, we require Know Your Customer (KYC) verification. We collect a photo of your government ID (national ID, passport, or driver's license), your full legal name, and your date of birth. We store this data encrypted and separate from your betting history. We use it only to verify your identity and comply with anti-money-laundering regulations. We do not share it with third parties without your consent.

How We Use Your Data on oyatoto

We use your personal data to operate your oyatoto account. This includes processing your deposits, settling your bets, approving your withdrawals, and sending you account notifications. We use your email and phone to contact you about account activity, security alerts, and service updates. We do not send marketing emails unless you opt in.

We use your KYC data to verify your identity before withdrawals and to comply with local regulations in your jurisdiction. We may share your KYC information with payment processors and compliance partners only when required by law or to prevent fraud. We do not sell your data to advertisers or data brokers.

We use your betting history (which games you played, when, and how much you wagered) to detect fraud, prevent account abuse, and improve our platform. We analyze this data in aggregate—we do not profile individual users for marketing purposes. We retain your betting history for at least three years for compliance and dispute resolution.

KYC data
Know Your Customer information: your ID document, legal name, and date of birth. We store this encrypted and separate from your betting history.
Payment records
Deposits and withdrawals via mobile banking, local payment, online payment, e-wallet, mobile banking, local payment, or bank transfers. We retain these for compliance and dispute resolution.
Betting history
Which games you played, when, and how much you wagered. We use this to detect fraud and improve our platform.
Device information
Your phone model, operating system, and app version. We collect this to optimize performance and troubleshoot technical issues.

Third-Party Processors & Data Sharing

We at oyatoto use third-party processors to operate our platform. Our payment processors (for online payment, e-wallet, mobile banking, local payment, online payment, e-wallet, and bank transfers) handle your payment data securely. Our hosting provider stores our servers, which may sit outside your jurisdiction. Our email service sends account notifications. We require all processors to sign data-protection agreements and encrypt your data in transit.

We do not share your personal data with third parties except as required by law or to prevent fraud. We may disclose your information to law enforcement if legally compelled. We do not sell your data to advertisers, data brokers, or marketing companies. If we are acquired or merge with another company, we will notify you and give you the option to delete your account before any data transfer occurs.

Cookies & Tracking on oyatoto

We use cookies to keep you logged in on oyatoto and to remember your preferences (notification settings, language, timezone). These are session cookies—they expire when you close your browser or log out. We do not use tracking cookies to follow you across other websites. We do not use cookies for advertising or profiling.

On our mobile app (Android APK and iOS Safari), we do not use cookies. Instead, we store your session token locally on your device. This token expires after 30 days of inactivity. You can clear your session anytime by logging out or uninstalling the app.

Your Rights on oyatoto

You have the right to access your personal data on oyatoto. Log in to your account and visit Settings → Account Data to download a copy of your information. You have the right to correct inaccurate data—contact our support team via live chat or email to update your name, email, or phone number.

You have the right to delete your account and associated data. Log in and visit Settings → Close Account. We will delete your personal information within 30 days, except for data we are required to retain by law (KYC records, payment history for compliance). Your betting history may be retained in anonymized form for fraud detection and platform improvement.

You have the right to object to data processing. If you do not want us to use your data for fraud detection or platform improvement, contact our support team. We will honor your request, but this may limit our ability to operate your account securely. You have the right to lodge a complaint with your local data-protection authority if you believe we have mishandled your data.

Data Security & Encryption on oyatoto

We at oyatoto encrypt all data in transit using HTTPS (TLS 1.2 or higher). All communication between your phone and our servers is encrypted. We encrypt sensitive data at rest—your password, KYC documents, and payment records are stored encrypted in our database. We do not store your full payment credentials; payment processors handle that securely.

We use industry-standard security practices: firewalls, intrusion detection, regular security audits, and employee access controls. We limit access to your data to employees who need it to operate your account. We do not share passwords or encryption keys with third parties.

If we discover a data breach, we will notify you via email within 72 hours and explain what data was compromised and what steps we are taking. We will not ask you for your password via email—we will only send you a link to reset it on our website.

We at oyatoto encrypt your data, limit third-party access, and retain information only as long as necessary. Your privacy is a core commitment.

oyatoto editorial team

Policy Updates & Contact

We may update this privacy policy to reflect changes in our practices or legal requirements. We will notify you via email if we make material changes. Your continued use of oyatoto after an update means you accept the new policy. We recommend reviewing this page periodically to stay informed.

If you have questions about how we handle your data on oyatoto, contact our support team via live chat, email, or in-app messaging. Our English-speaking team is available to explain our practices and help you exercise your rights. You can also contact us to request a copy of your data, update your information, or delete your account.

Our services are available only where local law permits. Users are responsible for verifying that access and use comply with their own jurisdiction's law. For questions about this privacy policy or your data rights, visit our FAQ page or contact our support team.