Reference

How lotus3 Protects Your Personal Data

At lotus3, your personal data is handled with clear purpose and strict limits — we collect only what we need to run your account, process payments through DANA…

Data collected only for account operationsDANA, OVO, GoPay & QRIS transaction data protectedYour right to access or delete recordsNo third-party sale of your informationRetention periods clearly defined
lotus3 How lotus3 Protects Your Personal Data
PRIVACY CONTACT PATHS

How to Reach Us About Your Data

If you have a question about the data lotus3 holds on your account, want to request a copy, or need to correct an error, our privacy…

Live Chat Open the chat widget from your account dashboard. Available daily 08:00–23:00 WIB.
Email Support Send your data request to our privacy inbox.
Account Settings Navigate to Settings → Privacy in your lotus3 account to download your stored data…
DATA HANDLING PRACTICES

Six Ways We Secure Your Account Data

Data security at lotus3 is not a single measure — it is a layered set of practices applied from the moment you open an account to the point…

Encrypted Storage

All personal data, including payment identifiers for DANA, OVO, GoPay and QRIS, is stored using AES-256 encryption at rest.

Cookie Controls

We use strictly necessary cookies to keep your session active and optional analytics cookies to improve page performance.

Account Security

Two-step verification is available on all lotus3 accounts. Login attempts from unrecognised devices trigger an email alert to your registered…

Retention Schedule

Active account data is retained while your account remains open.

Third-Party Access

We share data with payment processors — DANA, OVO, GoPay and QRIS providers — only to complete transactions.

Data Access Requests

You can request a full export of the data we hold on your account. Requests are processed within 48 hours.

Your Privacy Policy Questions, Addressed

These are the questions we receive most often from account holders about how lotus3 manages personal data. Each answer reflects our current practice and the obligations that apply to us under Indonesian data protection requirements, which depend on local law.

We collect your name, email, phone number, and the payment identifiers connected to your DANA, OVO, GoPay or QRIS account. We also log device type and IP address to protect your session from unauthorised access.

We share only the minimum required data with payment processors — DANA, OVO, GoPay and QRIS — to complete your transactions. We do not sell, rent or trade your personal data to advertisers or data brokers under any circumstance.

After you close your account, transaction records are retained for the period required by Indonesian financial regulations. Once that period expires, all remaining personal data is permanently and irreversibly deleted from our systems.

Go to Settings → Privacy in your account and submit a data export request. Alternatively, email our privacy team with your registered address as verification. We process all export requests within 48 hours of confirmation.

Yes. Submit a deletion request via Settings → Privacy or through live chat (08:00–23:00 WIB). Deletion is completed within 30 days, except for records we are legally required to keep under Indonesian regulations — this depends on local law.

Strictly necessary cookies keep your login session active. Optional analytics cookies help us improve page load times. You can disable optional cookies at any time through the cookie settings panel without affecting your ability to use your account.

Payment reference data linked to DANA, OVO, GoPay or QRIS is kept for 12 months specifically to support dispute resolution. During an active dispute, that record is frozen and cannot be altered until the case is closed.