duatoto Platform Privacy Notice

This page describes what we collect when you use duatoto and how we keep that data protected. We at duatoto operate an online entertainment service available where local law permits. When you create an account, deposit funds via DANA, e-wallet, mobile banking, local payment, online payment, e-wallet, mobile banking, local payment, online payment, or e-wallet, or place a wager on Liga 1 matches or slot games like Aviator and Sweet Bonanza, you share information with us. Our commitment is to handle that information transparently and securely.

We understand that privacy matters. Your personal data—name, email, phone, payment details, gameplay history—flows through our servers during account verification, deposit processing, and withdrawal requests. This notice sets out exactly what we collect, why, and how long we keep it. We do not sell your data to third parties for marketing. We do share limited information with payment processors and compliance partners to fulfil legal obligations and prevent fraud.

Our services are available only where applicable law permits. Users are responsible for verifying that access and use of duatoto comply with their own jurisdiction's law.

What We Collect and Why

When you sign up for duatoto, we ask for your full name, date of birth, email address, and phone number. During account verification—a process we call KYC (Know Your Customer)—we may request a copy of your identity card, passport, or driver's licence. We collect this information to comply with anti-money-laundering and counter-terrorism-financing regulations. We also use it to prevent underage access and account fraud.

If you deposit funds through DANA, e-wallet, mobile banking, or local payment, we receive transaction confirmations from those payment processors. We do not store your full card number or PIN; our payment gateway handles encryption. We record the amount, date, and your account ID to track deposits, process withdrawals, and audit our records.

When you play slot games such as Gates of Olympus, Fortune Tiger, Mahjong Ways, or live-dealer tables (blackjack, roulette, baccarat, Dragon Tiger), we log your wager amounts, game duration, and game session ID. This data helps us calculate player return-to-player (RTP) percentages, detect unusual betting patterns, and honour withdrawal requests. We also collect your device type, browser version, and IP address to monitor account security and prevent multiple-account abuse.

Our servers may sit outside your jurisdiction. We use encrypted connections (SSL/TLS) to protect data in transit. We store encrypted passwords and do not retain them in plain text. Gameplay and payment records are backed up daily and retained according to local regulation timelines—typically 5–7 years for financial records.

Key data categories

  • Personal identity (name, DOB, email, phone)
  • Payment details (deposit/withdrawal records, processor confirmations)
  • Gameplay logs (game type, wager, duration, result)
  • Device and network info (IP, browser, device type)
  • Support communications (email, in-app messages)

Third-party processors

We work with payment processors (online payment, e-wallet, mobile banking, local payment, online payment, e-wallet, mobile banking, local payment, online payment, e-wallet) who handle deposits and withdrawals on your behalf. We also use anti-fraud vendors and compliance service providers. These processors agree to protect your data and use it only to deliver the service. We do not permit them to use your data for their own marketing.

Cookies and tracking

We use session cookies to keep you logged in while you play. We also use analytics cookies to understand how users navigate duatoto—for example, which slot games are most popular during Idul Fitri or Idul Adha holidays. These cookies do not track you across other websites. You can disable cookies in your browser settings, though some features may not work correctly.

Your Rights and Our Commitments

You have the right to access, correct, or delete your personal data held by duatoto, subject to legal and operational constraints. For example, we must retain payment records for tax and anti-fraud purposes; we cannot delete those on request. To exercise your rights, contact our support team via email or in-app messaging during business hours. We aim to respond within 5 business days.

If you suspect your duatoto account has been compromised, we support account recovery through email verification or SMS code. We do not store backup passwords; you can reset your password directly from the login screen. We recommend using a unique, strong password and enabling any additional security features we offer.

We undertake to review our privacy practices annually and update this notice if our data-handling changes. If we make material changes—for example, if we add a new third-party processor—we will notify you via email. Your continued use of duatoto after such notice constitutes acceptance of the updated policy.

We do not sell, rent, or trade your personal data. We do not use your data to build marketing profiles or send unsolicited promotional messages without your consent. If you receive unwanted communications from duatoto, you can unsubscribe via the link in the email or by adjusting your account settings.

Data retention
Payment records kept 5–7 years per regulation; gameplay logs retained 1–2 years for audit; account data deleted 30 days after voluntary closure unless legal hold applies.
Security standard
SSL/TLS encryption for data in transit; encrypted storage for sensitive fields; regular security audits by third-party vendors.
Contact
Email duatoto support or use the in-app help form. Response window: 1–5 business days depending on request complexity.

We at duatoto respect your privacy. If you have questions about how we handle your data, please reach out to our support team. We are here to help clarify our practices and address your concerns.