LEGAL REFERENCE

How dewawin Handles Your Account Data

This is the dewawin privacy policy — a plain read of what we collect when you open an account, why we keep it, and how long it stays...

Privacy PolicyAccount DataIndonesiaCookiesLast Updated
dewawin How dewawin Handles Your Account Data

Our Policy Posture and Jurisdiction Notes

Service availability is jurisdiction-dependent. Users are responsible for checking local law before access.

24/7 SUPPORT

Privacy Contact Paths

If you have a question about your data, here's how to reach the team that handles it.

Privacy Inbox Email our privacy desk directly with subject lines like access request, correction or deletion. We aim for a first response inside one business day so your account query doesn't sit waiting.
Live Chat Open the chat widget from any signed-in page and ask for the privacy team. The agent will route your data question to the right reviewer rather than answering generic lobby queries.
Data Request Form Use the structured form on your account page to lodge access, export or erasure requests. It captures the identifiers we need so we can verify you and act on the request quickly.
REVIEW SIGNALS

How We Review This Policy

Editorial Owner

Our policy text is owned by a named editor on the dewawin team, not a generic legal template. Every revision...

Legal Review

Indonesian counsel reviews the policy against current local data rules before each publish. Where the law shifts, we update the...

Security Sign-Off

Our security lead signs off on the data-flow descriptions so what you read here matches what actually happens inside our...

Plain Language

We rewrite dense clauses into sentences you can scan on a phone. If a paragraph needs a lawyer to decode...

Version History

Older versions of this policy are archived and available on request, so you can compare what applied when you opened...

User Feedback

When you tell us a section is unclear, we track it and revisit the wording on the next review cycle...

Consistency Across Our Policy Pages

Terms of ServiceThe data definitions used here match the ones in our terms, so account, wallet and session mean the same thing on both pages.
Cookie NoticeTracking categories listed here line up with the toggles in our cookie banner — analytics, functional and required are labelled identically.
KYC NoticeDocument handling described in this policy mirrors the KYC notice you'll see during verification, including retention windows where local law permits.
Payment DisclosureReferences to DANA, OVO, GoPay and QRIS in our payment disclosure use the same data-sharing language you'll find in this policy.
Account ClosureClosure and erasure timelines on the account page match the windows quoted here so you don't get conflicting numbers.
Marketing PreferencesOpt-in and opt-out controls referenced here match the toggles inside your account preferences exactly.
Complaints PathEscalation steps you'll read here are the same ones our complaints page lists, so a privacy issue and a service issue follow parallel routes.

What This Policy Page Shows You

Last Updated Stamp

The top of this page carries a clear date so you know which version applies the moment you read it. We refresh the stamp every time wording changes, even slightly.

Section Anchors

Each clause has a linkable anchor, so support agents can send you to the exact paragraph that answers your question rather than asking you to scroll.

Plain-Language Summary

Every long clause is paired with a short summary box that captures the practical takeaway in one or two lines for quick phone reading.

Your Rights Block

A dedicated block lays out your access, correction, export and deletion rights, with the contact path next to each so you can act without hunting.

Retention Table

A simple table shows how long each data category stays with us — registration, KYC, session logs and payment references — under supported region rules.

Change Log

A change log at the foot of the page lists what shifted between versions, so returning readers can jump straight to the diff instead of re-reading everything.

Privacy Policy Questions

We collect the registration details you submit, the KYC documents where local law permits, device and session signals, and the payment references you link. Nothing extra is pulled in the background beyond what the lobby needs to run.

Send the request from the email address on your account or use the data request form inside your profile. We verify your identity, then deliver the export in a readable format within the window our jurisdiction sets.

Yes. Lodge a deletion request and we'll erase what we're not legally required to retain. Some records, like financial logs tied to past DANA, OVO, GoPay or QRIS transfers, must stay for the period local rules require.

No. We don't sell your account or behavioural data. We share only what payment processors and verification partners need to complete the specific job you've asked us to do, and nothing more than that minimum.

When you transfer with DANA, OVO, GoPay or QRIS, the wallet handles the sensitive credentials. We store a reference and the transaction outcome, which is enough to reconcile your balance without holding wallet passwords on our side.

The last-updated stamp at the top moves whenever we revise wording, and the change log at the foot tells you what shifted. Material changes also trigger a notice on your account dashboard the next time you sign in.

Email our privacy inbox or open live chat and ask for the privacy team. We log every contact, route it to the named reviewer, and respond inside the timelines our jurisdiction expects for the request type you've raised.