winstar77 Platform Privacy Notice

This page describes what we collect when you use winstar77 and how we keep that data protected. We operate an online gaming and sportsbook platform serving users in jurisdictions where our services are legally available. To provide football markets (Liga 1, Piala AFF, Champions League, Premier League), live-dealer tables, slot games, esports betting, and payment processing through Indonesian channels (DANA, e-wallet, mobile banking, local payment, online payment, e-wallet, mobile banking, local payment, online payment, e-wallet), we necessarily collect and process certain information about you.

Our privacy practices are centred on transparency and your control. We collect data only when necessary for account operation, regulatory compliance, and fraud prevention. We do not sell your personal information. We do not share your data with marketing partners. We minimise how long we retain information. This notice explains our exact practices in plain language.

If you have questions about your data rights on winstar77, how we use your information, or wish to exercise any right you have under applicable law, our support team is available to assist.

What data we collect and why

We collect information in several categories:

  • Account information: When you register on winstar77, we collect your email address, chosen username, phone number, and password. We use this to authenticate your account and communicate with you about your activity, security alerts, and platform updates.
  • Identification information: To comply with Know-Your-Customer (KYC) and Anti-Money Laundering (AML) regulations, we collect your legal name, date of birth, national identification number or passport details, and proof of residence. We use this to verify your identity, prevent fraud, and meet legal obligations in the jurisdictions where we operate.
  • Payment information: When you deposit or withdraw funds through DANA, e-wallet, mobile banking, local payment, online payment, e-wallet, mobile banking, local payment, online payment or e-wallet, we collect transaction records including amounts, timestamps, and payment method details. We store encrypted payment tokens to facilitate future transactions without re-entering full payment credentials.
  • Gaming activity: We record all bets placed, game outcomes, and account balance changes. This allows us to settle winnings accurately, detect fraud, and fulfil your request to view your account history.
  • Device and access information: We log your IP address, device type, browser type, and login timestamps. We use this to detect suspicious account access and prevent unauthorised use.
  • Communication records: If you contact our support team, we retain your messages and our responses. We use this to resolve issues and improve our service.
KYC verification: We are required by law to collect and verify your identity. This is a non-negotiable condition of operating a licensed sportsbook platform. We do not use this information for any purpose other than verification and compliance.

How we use your data

We use the data we collect for these specific purposes:

  • Account management: Enabling you to log in, place bets on Liga 1 or Piala AFF markets, play live-dealer games, deposit and withdraw funds, and view your account balance and history.
  • Fraud and security: Detecting suspicious activity, preventing account takeover, identifying matches with known fraud lists, and blocking access from restricted jurisdictions.
  • Legal compliance: Meeting KYC and AML obligations, reporting suspicious transactions to financial authorities where required, and responding to legal requests from law enforcement or regulators.
  • Customer support: Responding to your questions and resolving disputes related to account access, payment processing, game settlements, or any aspect of your winstar77 experience.
  • Platform improvement: Analysing aggregate (non-identifying) usage patterns to improve game functionality, streamline payment processing, and enhance your overall experience.
  • Communication: Sending you notifications about account security alerts, payment confirmations, game results, platform maintenance, and legal or policy updates.

We do not use your data to:

  • Sell or rent your personal information to third parties for marketing.
  • Build detailed behavioural profiles for resale or licensing.
  • Share your gaming activity with unrelated businesses or advertisers.
  • Contact you for marketing purposes unless you have explicitly opted in.

Third-party processors and data sharing

We use certain third-party service providers to operate winstar77. These include:

  • Payment processors: To process your mobile banking, local payment, online payment, e-wallet, mobile banking, local payment, online payment, e-wallet, mobile banking and local payment transactions, we share transaction details with the respective payment providers and their processors. These providers are bound by strict confidentiality and security requirements.
  • Identity verification providers: We use specialised vendors to verify your KYC documentation and cross-check your identity against watchlists and sanctions databases. These vendors receive only the minimum information necessary to perform verification.
  • Cloud infrastructure providers: Our servers and databases may be hosted by third-party cloud providers in jurisdictions outside Indonesia. Your data is encrypted in transit and at rest.
  • Fraud detection services: We use specialised fraud-detection tools to identify suspicious activity. These services may receive transaction data, device fingerprints, and IP addresses in anonymised or aggregated form.

All third-party processors are contractually bound to process your data only for the purposes we specify and to maintain strict security standards. We do not permit third parties to use your data for their own marketing or commercial purposes.

Note: Our servers may be located outside Indonesia. Your data may therefore be subject to the privacy laws of the jurisdiction where our servers operate. We maintain security controls commensurate with industry standards regardless of server location.

How long we keep your data

We retain your data for as long as necessary to fulfil the purposes described in this notice. Retention periods vary:

  • Account and gaming records: Retained for at least 7 years to comply with tax and anti-money-laundering requirements, even after your account is closed.
  • Payment records: Retained for at least 5 years for financial audit and dispute resolution purposes.
  • Device and access logs: Retained for 12 months to detect fraudulent patterns and authorise legitimate account access.
  • Communication records: Retained for 3 years to resolve disputes and improve customer support.
  • Marketing communications: If you opt in to newsletters or promotional emails, we retain your preference until you unsubscribe.

When retention periods expire, we securely delete your data unless applicable law requires us to keep it longer. You may request deletion of your account and associated data at any time by contacting our support team, subject to applicable legal holds.

Your rights regarding your data

Depending on your jurisdiction, you may have certain rights regarding your personal data:

  • Right to access: You can request a copy of all personal data we hold about you. We will provide this within 30 days.
  • Right to rectification: If your data is inaccurate, you can request correction. You can also update certain information directly through your account settings.
  • Right to erasure: You can request deletion of your data, subject to legal retention requirements. We will confirm deletion once completed.
  • Right to data portability: You can request that we transfer your data to another provider in a standard format.
  • Right to withdraw consent: If you have provided consent for specific data processing (such as marketing communications), you can withdraw that consent at any time.

To exercise any of these rights, contact our support team with your request. We will verify your identity and respond within the timeframe required by applicable law. We do not charge a fee for these requests unless your request is manifestly unfounded or excessive.

How we protect your data

We implement industry-standard security measures to protect your personal data:

  • Encryption: All data transmitted between your device and our servers is encrypted using TLS (Transport Layer Security). Sensitive data at rest is encrypted using AES encryption.
  • Access controls: Only authorised winstar77 staff access your personal data, and only for legitimate business purposes. Access is logged and monitored.
  • Firewalls and intrusion detection: Our infrastructure includes multiple layers of firewalls and intrusion-detection systems.
  • Regular security audits: We conduct periodic security assessments and penetration testing to identify and remediate vulnerabilities.
  • Password security: Your password is hashed and salted; we do not store your password in plain text.

While we maintain strong security practices, no system is completely risk-free. If you suspect your account has been compromised, contact our support team immediately.

Cookies and tracking

We use cookies and similar tracking technologies on the winstar77 platform:

  • Session cookies: These authenticate your login and maintain your session while you use the platform. They expire when you log out or close your browser.
  • Persistent cookies: These remember your preferences and language settings across multiple visits, improving your experience.
  • Analytics cookies: We use these to understand how users interact with winstar77, helping us optimise performance and identify issues.

You can disable cookies through your browser settings, though this may limit platform functionality. We do not use third-party advertising cookies to track your activity across other websites.

Contacting us about privacy

If you have questions about our privacy practices, wish to exercise any right you have under applicable law, or want to report a privacy concern, contact our support team through your winstar77 account dashboard. We maintain English-language support to assist you.

Our services are available only where local law permits. We do not offer our services in jurisdictions where online wagering is prohibited. Users are responsible for verifying that access and use comply with their own jurisdiction's regulations.

We may update this privacy notice from time to time to reflect changes in our practices, technology, or legal requirements. We will notify you of material changes by posting an updated notice on our platform. Your continued use of winstar77 after such updates constitutes acceptance of the revised policy.