Data Minimisation
We ask only for information we actually need to verify your account and process payments. No unnecessary email lists or marketing sign-ups hidden in the flow.
We keep your account details, payment transactions and gaming records protected every time you log in. This privacy policy shows exactly how we handle your data, where it...
alfaqq collects and processes personal information — your name, email, phone number, address and payment details — only when you sign up, deposit or play. We use this data to verify your identity, process transactions through DANA, OVO, GoPay and QRIS, prevent fraud and improve your gaming experience. Your data is encrypted and stored securely in supported regions. We do not sell
your information to third parties. You have the right to access, correct or request deletion of your data at any time.
Service availability is jurisdiction-dependent. Users are responsible for checking local law before access.
All data moves across 256-bit SSL encryption. Your passwords, bank details and gaming history are locked behind the same security banks use.
We never sell your personal information to advertisers, data brokers or marketing firms. Your email and phone stay yours alone.
We conduct quarterly security reviews to check for vulnerabilities. Third-party auditors verify our compliance with data protection standards.
Every time we access your data internally, it's logged. You can request an audit trail of who viewed your account and when.
Though we operate for Indonesia, we follow GDPR-style data principles: minimal collection, clear purpose and your right to erasure.
If a breach occurs, we notify affected users within 48 hours with details, steps you should take and our remediation efforts.
We ask only for information we actually need to verify your account and process payments. No unnecessary email lists or marketing sign-ups hidden in the flow.
Our cookie notice lists every tracking pixel and what it does. You can switch off analytics and marketing cookies without breaking your account access.
DANA, OVO, GoPay and QRIS transactions are handled by their platforms. We show you their privacy links so you know who touches your bank data.
We don't keep your data longer than necessary. After account closure, most records are deleted within 90 days except where law requires retention.
If your data moves between regions for backup or operations, we tell you upfront and use Standard Contractual Clauses to keep it safe.
You can opt out of marketing emails, analytics tracking and promotional push notifications. One click stops all non-essential contact.
When we change this policy, we email you a summary and give you 30 days to review. We never slip in major changes without notice.