Your Privacy Matters to Us
We built noya88 around your trust. This privacy policy explains how we collect, use and protect your personal information when you open an account, deposit via DANA, OVO...
How We Handle Your Information
When you join noya88, we collect information needed to verify your identity, process deposits through DANA, OVO, GoPay and QRIS, and deliver our services in supported Indonesian regions. We use encryption to protect your account credentials and payment details. We do not sell your personal data to third parties. Your information stays with us to improve your lobby experience, process withdrawals, and
comply with local regulations where we operate. You can request access to or deletion of your data by contacting our support team.
Service availability is jurisdiction-dependent. Users are responsible for checking local law before access.
Privacy Questions? We're Here
Privacy Standards We Follow
Encryption Standard
All account logins and payment transactions use industry-standard SSL encryption. Your DANA, OVO, GoPay and QRIS details are tokenized and never stored in plain text on our servers.
Regular Audits
We conduct quarterly security reviews to identify vulnerabilities. Third-party auditors test our data handling practices to ensure compliance with regional privacy frameworks.
Staff Training
Our team completes annual data protection training. Every employee who touches customer information understands confidentiality obligations and privacy incident protocols.
Incident Response
If a data breach occurs, we notify affected users within 72 hours and work with local authorities. We maintain a detailed incident log and publish transparency reports annually.
Vendor Agreements
Payment processors, hosting providers and analytics partners sign strict data processing agreements. We audit their security practices before integration and monitor compliance ongoing.
Retention Policy
We keep account data for seven years after closure to meet regulatory requirements. Temporary session logs are deleted after 90 days. You can request earlier deletion where permitted.
Consistency Across Our Platform
| Desktop & Mobile | Privacy protections are identical whether you access noya88 on your phone or desktop. Your DANA, OVO, GoPay and QRIS transactions use the same encryption layer across all devices. |
|---|---|
| Live Tables & Slots | Whether you're at a live baccarat table or spinning in our slot lobbies, your session data and betting history are protected by the same privacy framework and access controls. |
| Sportsbook Markets | Your sportsbook bets, odds tracking and account balance are encrypted with identical standards as casino transactions. Betting history is retained for seven years for audit purposes. |
| Account Recovery | If you forget your password or lose access, our identity verification process applies the same privacy checks across all account recovery paths to prevent unauthorized access. |
| Withdrawal Processing | Payouts to your DANA, OVO, GoPay or QRIS wallet follow the same data protection protocols as deposits. We verify your identity before processing any withdrawal to your registered account. |
| Communication Preferences | You control how we contact you about promotions, account updates and security alerts. Your preferences sync across email, SMS and in-app notifications for consistent experience. |
| Regional Compliance | Our privacy practices adapt to local regulations in supported Indonesian regions. We comply with data residency requirements and regional privacy laws where we operate. |
What Defines Our Privacy Approach
Zero Third-Party Sales
We never sell your personal data to advertisers, brokers or marketing firms. Your account information stays within noya88 to improve your lobby experience and process transactions.
Transparent Logging
Every login, deposit and withdrawal is logged with timestamp and IP address. You can review your full account activity history in the security section of your dashboard anytime.
Payment Tokenization
Your DANA, OVO, GoPay and QRIS details are converted to secure tokens. We never see your full payment credentials, reducing risk if our systems are ever compromised.
Consent-First Approach
We ask permission before using your data for analytics, personalization or marketing. You can withdraw consent anytime from account settings without losing access to core services.
Data Portability
Request a copy of all your personal data in machine-readable format. We'll compile your account history, transaction records and profile information within 14 days.
Deletion Rights
Close your account and request permanent data deletion. We remove your information from active systems within 30 days, except where local law requires longer retention for compliance.