Reference

12hoki Privacy Policy for Your Account

We keep your account details, device signals, and payment records tied to one profile so privacy requests are easier to handle and support can match DANA, OVO, GoPay…

DANAOVOGoPayQRIS
12hoki 12hoki Privacy Policy for Your Account
REQUEST PATHS

Where Privacy Requests Go

Use the in-account chat, the web form, or the email path shown after login when you want to send a privacy request.

Live Chat Open live chat from your account area when you want a quick privacy request. We use it for data copies, correction requests, and access checks, then route the case to the right team without asking you to repeat the same details.
In-Account Form Send a written request through the form in your dashboard on mobile or desktop. It helps us match the request to your profile, track what changed, and keep a clear record of the step you asked us to take.
Email Path If you prefer email, use the address shown after login so we can match the message to your account. Include your username and the change you want, and we will check it against our records before we reply.
DATA PRACTICES

What We Keep and Why

We keep each privacy request linked to the account that sent it, and we only collect the details needed to answer that request.

Data Scope

We collect contact details, login history, and payment references only when they are needed for account access, support, and request handling. We do not ask for extra fields that do not help us verify or service your profile.

Cookie Use

Cookies keep your session active, save language choice, and reduce repeated sign-ins. On Chrome, Safari, and other common browsers, the choices sit in your browser settings, and you can clear them without changing the account itself.

Security Checks

When you change a password or ask for account access help, we compare the request with login history, device type, and recent session activity. That helps us stop unwanted changes from the wrong device or browser.

Retention Window

We keep records only as long as needed for account service, dispute handling, fraud checks, or legal duty. When the period ends, we remove or anonymise what is no longer required under the rule that applied.

Request Routing

For access, correction, or deletion requests, the fastest route is the dashboard form or live chat. Both paths create a traceable record, so you can follow the same request without starting over in a different channel.

Policy Contact

If you need help reading a clause or want a change in how we use your data, contact us from the account area. We answer in clear English for Indonesia and keep the reply tied to your profile.

Privacy Questions We Hear Most

These are the privacy points people ask about before opening an account or sending a request. We explain what we collect, why cookies matter, how long records stay, and how you can reach us from Indonesia. If a request depends on local law, we say that before you send it so you know which step applies to your account.

We collect the contact details, login data, device signals, and payment references needed to set up and secure your account. If you use DANA, OVO, GoPay, or QRIS, the relevant transaction reference stays linked to the same profile.

Cookies keep you signed in, remember browser choices, and protect the session between mobile and desktop. They also help us spot unusual access patterns, so account changes are checked before they reach your profile.

We keep records for the period needed to run the account, answer your request, settle a dispute, or meet a legal duty. After that, we remove or anonymise what is no longer needed for those purposes.

Yes. Send the request from the dashboard form or live chat, and we will verify the account before we make changes. That step protects you from edits requested by the wrong person or device.

Only the teams and service providers that need it to run your account, handle support, or complete a required check can see it. We do not move it into unrelated mailing lists or unrelated marketing use.

Use the account form, live chat, or the email path shown after login. If you are on mobile in Bandung or on desktop at home, the same request path stays available and tied to your profile.

Yes. If local law limits access or requires a different consent step, we follow that rule and only offer the service where it is allowed. We will tell you which step applies before you submit the request.