Reference

How dokubola Handles Your Personal Data

At dokubola, your personal data is handled with a clear purpose: we collect only what we need to run your account, process your transactions through DANA, OVO, GoPay…

Data collected only as neededDANA, OVO, GoPay & QRIS transactions protectedYour right to access and delete dataNo sale of personal data to third partiesApplies to all accounts in Indonesia
dokubola How dokubola Handles Your Personal Data
REACH OUR PRIVACY TEAM

How to Contact Us About Your Data

If you have questions about how your personal data is stored or processed — including transactions made via DANA, OVO, GoPay, or QRIS — our privacy support team is available seven days a week. You can submit a data access or deletion request through any of the channels below, and we aim to respond within two business days. Requests from Jakarta and Yogyakarta are handled through the same central queue with no regional delay.

Team online

Live Chat

Reach our privacy support team through live chat on the dokubola website, available daily from 08:00 to 23:00 WIB. Ideal for quick data queries or account verification questions.

Email Support

Send detailed data access or deletion requests to our dedicated privacy email. We aim to acknowledge your message within 24 hours and resolve it within two business days.

Help Centre

Our Help Centre contains step-by-step instructions for submitting a data subject request, updating your contact details, or reviewing what information is linked to your account.

DATA HANDLING PRACTICES

Six Ways We Protect Your Account Data

Keeping your personal data secure is an operational priority, not an afterthought. From the moment you deposit via OVO or QRIS to the moment a withdrawal is confirmed, every step involves encryption…

Encryption at Rest and in Transit

All personal data — including payment details linked to DANA, OVO, GoPay, and QRIS — is encrypted using AES-256 at rest and TLS 1.3 in transit, so your information is protected whether stored or moving between systems.

Cookie and Tracking Transparency

We use cookies to remember your session preferences and analyse site performance. You can review and withdraw cookie consent at any time through the privacy settings panel accessible from your account dashboard.

Account Security Controls

Two-factor authentication is available for all accounts. If we detect a login from an unrecognised device or location, we flag the session and send an alert to your registered email before allowing access to proceed.

Data Retention and Deletion

We keep your account data only as long as your account is active or as local law requires. Once you request deletion, non-regulatory data is purged within 14 days and you receive a written confirmation from our team.

Third-Party Data Sharing Limits

We share data with payment processors — such as the networks behind DANA and GoPay — solely to complete your transactions. No personal data is passed to advertisers or analytics firms without your explicit consent.

Your Right to Access and Correct Data

You may request a full export of the personal data we hold about your account at any time. If any detail is inaccurate — such as a registered phone number or linked OVO wallet — you can update it directly in account settings or through support.

Your Privacy Questions, Answered Clearly

These are the questions we hear most often from people reviewing our Privacy Policy before opening or managing their account. If your question is not covered here, our live chat team is available from 08:00 to 23:00 WIB and can connect you with our privacy team directly for anything that requires a more detailed answer.

We collect your name, email address, mobile number, and date of birth at registration. Once you add a payment method such as DANA, OVO, GoPay, or QRIS, we also store the identifiers needed to process your transactions securely.

No. Your transaction history — whether via DANA, GoPay, OVO, or QRIS — is visible only to you and to authorised dokubola staff who handle account verification and fraud prevention. We do not share it with unaffiliated third parties.

Non-regulatory data is deleted within 14 days of a confirmed closure request. Financial transaction records may be retained longer where local law requires, typically up to five years, after which they are permanently removed from our systems.

Yes. Submit a data access request via live chat or email and we will send you a full export within two business days. The export covers account details, session logs, and payment method identifiers linked to your profile.

We use session cookies to keep you logged in and analytics cookies to improve site performance. You can manage and withdraw cookie consent at any time through the privacy settings panel inside your account dashboard — no account closure needed.

Accounts inactive for 24 months are flagged for review. We will contact you at your registered email before taking any action. If we cannot reach you, non-regulatory data is scheduled for deletion in line with our retention policy and local law.

Contact our privacy team immediately via live chat (08:00–23:00 WIB) or email. We investigate all data misuse reports within one business day and will communicate our findings and any corrective steps taken directly to you.