Reference

box138 Privacy Policy for Your Account

box138 Privacy Policy explains what we collect when you open an account, verify your phone, browse on mobile, or use DANA, OVO, GoPay and QRIS.

Account dataWallet recordsCookie choicesYour access rights
box138 box138 Privacy Policy for Your Account
PRIVACY HELP

Check Privacy Questions Beside Support

A clear contact route matters when your account data or wallet record needs attention. We ask you to use the support route linked beside the cashier area and include the phone number on your account, the relevant date and a short description of the request. From Bandung or elsewhere in Indonesia, you can ask us to check access, correct a record or explain a Privacy Policy point without sending your full wallet credentials.

Team online

Account data request

Tell us which account detail you want to access or correct, such as your phone number or verification status. We may ask for an account step to confirm that the request comes from you.

Wallet record check

For DANA, OVO, GoPay or QRIS questions, share the payment date and reference shown in your receipt. We use those details to locate the matching record without requesting your wallet password.

Cookie assistance

If a browser setting affects sign-in or policy access, tell us your device type and browser path. We can explain which cookie setting is involved and what may change when it is disabled.

DATA HANDLING

Explore How We Protect Policy Rights

Privacy work is handled through defined account steps rather than broad promises. We separate identity details from payment references where the service process allows, limit internal access to the records needed for…

What we collect

We collect account details you submit, phone verification results, sign-in activity, device signals and payment references. For QRIS or wallet records, the purpose is to match account activity and resolve a status question.

Why we use it

We use these records to open and secure your account, confirm requested changes, display the correct wallet status and investigate unusual access. We do not use a payment reference as access to your personal wallet.

Cookie controls

Cookies can preserve a sign-in step, remember a preference and support security checks. You can adjust them in your browser settings, although disabling necessary cookies may interrupt policy access or account verification.

Account security

Phone verification is part of account access, while device and session signals help us identify activity that does not match your normal path. Never send us a wallet password or one-time code.

Retention approach

We retain account, security and payment records only for the period needed for the stated service, dispute handling and applicable legal duties. When a record is no longer needed, our handling process addresses its removal or restriction.

Requesting a change

Use the support path beside the cashier area to ask for a copy, correction, restriction or explanation. Include your account phone number and request type; we may verify ownership before responding.

Browse Answers About Privacy Policy

These Privacy Policy answers cover the searches we hear most often before account access. You can use the same support path for a request about your phone verification, device record, cookie choice or DANA, OVO, GoPay and QRIS transaction reference.

The box138 Privacy Policy covers account details, phone verification, device and session signals, cookies, payment references, retention, corrections and contact requests connected with your account.

We use DANA and QRIS references to match a payment status with your account and resolve receipt questions. We do not request your wallet password or treat the reference as wallet access.

Yes. Send a correction request through the support path beside the cashier area, identify the phone number on your account and explain the field that needs checking. We may confirm ownership first.

The policy covers practical device signals such as browser type, operating system, IP address and session activity. We use them to support sign-in continuity and identify unusual account access.

We keep payment and account records only as long as needed for the stated service, dispute handling and applicable legal duties. The period can depend on the record type and the request context.

You can change cookie settings through your browser. Necessary cookies may be required for sign-in, security checks or policy access, so refusing them can alter how the account path works.

Yes. Account access and certain data requests depend on local law. Where local law permits, use our support route to ask about access, correction, restriction or a copy of your records.