Reference

How gas1m Handles Your Account Data

When you open an account with gas1m and connect your DANA, OVO, or GoPay wallet, you share information with us — and this page explains exactly what we collect, why we hold it, and how you can request changes or deletion at any time.

Account Data ProtectionDANA, OVO, GoPay Wallet PrivacyData Request RightsCookie ControlsIndonesia Region Coverage
gas1m How gas1m Handles Your Account Data
DATA HANDLING STANDARDS

How We Protect and Manage Your Data

Data security at gas1m is built around the actual flows that matter to your account: e-wallet connections, session authentication, and payment verification. Each of the six practices below reflects a real operational step we take — not a generic policy statement — to keep your account data accurate, protected, and under your control.

E-Wallet Data Encryption When you link your DANA, OVO, or GoPay account, the identifier is encrypted in transit using SSL and stored in a hashed format. We never display your full wallet number back to you in plain text after the initial setup, reducing exposure if your account session were ever compromised.
Cookie and Tracker Controls We use session cookies to keep you logged in and analytics trackers to understand how the lobby is used across mobile and desktop. You can review which non-essential cookies are active by visiting the cookie preference panel in your account settings and switching off categories you do not want.
Account Access Verification Every login attempt triggers an OTP sent to your registered phone number. This applies whether you log in on Android, iOS, or a browser on any device. If the OTP is not entered within the session window, access is denied and you are prompted to restart the login flow from the beginning.
Transaction Record Retention Deposit and withdrawal records linked to GoPay, OVO, and DANA are retained for the period required under applicable Indonesian financial data obligations. Once that retention window closes and your account is no longer active, records are deleted or anonymised according to our internal data lifecycle schedule.
Your Right to Access and Correct You can request a summary of the personal data we hold on your account at any time. If any detail — your name, registered phone number, or linked e-wallet identifier — is inaccurate, contact support with the correct information and we will update it after verifying your identity through the usual OTP step.
Account Closure and Data Removal Requesting account closure triggers a data review process. We remove marketing data and non-essential session records promptly. Transaction records required for compliance are held for the statutory period, after which deletion is completed. You will receive written confirmation once the removal is done.
PRIVACY CONTACT PATHS

Reach Us About Your Privacy

If you have a question about how your data is stored, want to update the e-wallet details linked to your account, or need to submit a formal data request, our support team handles privacy enquiries through the channels below. We aim to respond to data-related requests within a reasonable timeframe — complex requests involving account history or DANA, OVO, or GoPay transaction records may take a little longer to process fully.

Team online

Live Chat Support

Start a live chat session directly from the account page. Privacy questions — including requests to access, correct, or remove your stored data — are routed to our dedicated account team. Available around the clock for Indonesia accounts.

Email Privacy Request

Send a written data request to our support email address, which is listed in your account settings under Help. Include your registered contact detail and the specific data action you are requesting so we can locate your records quickly.

Account Settings Panel

Many privacy actions — updating your linked DANA or OVO number, adjusting marketing preferences, or reviewing your consent choices — can be completed directly inside account settings without contacting support at all.

Common Questions About Your Privacy at gas1m

The questions below cover what real account holders ask when they want to understand how gas1m handles their data — from what gets collected at registration to how to remove your account entirely. If your question is not here, live chat is the fastest route to a direct answer from our account team.

We collect the name, phone number, and contact detail you enter at registration. When you link a payment method, we record the wallet identifier for your DANA, OVO, or GoPay account. We also log the device type and session data each time you access the platform, so we can verify your identity and keep your account secure.

We share your data only with the payment processors needed to complete your transactions — DANA, OVO, and GoPay each receive the minimum information required to process a transfer you have initiated. We also work with service providers under confidentiality agreements. We do not sell your personal data to advertisers or unrelated third parties.

Your e-wallet identifier is encrypted during transmission using SSL and stored in a hashed format in our system. We do not retain your full wallet number in a readable format after the initial verification step. If you need to update or remove a linked wallet, you can do this from the payment section inside your account settings.

Yes. Send a data access request through live chat or the support email address listed in your account settings. Include your registered phone number and the type of records you want — for example, your transaction history or stored profile data. We will verify your identity via OTP before releasing any records.

Contact our support team through live chat or email with the correct information and the field you want updated. We will ask you to verify your identity using the OTP sent to your registered number before making any change. Most profile corrections are completed within one business day after verification.

We use essential session cookies to keep you logged in and functional cookies to remember your lobby preferences. We also use analytics trackers to understand how mobile and desktop sessions differ across the platform. Non-essential trackers can be turned off in the cookie preference panel under account settings — essential cookies cannot be disabled as they are required for the login flow.

Transaction records related to DANA, OVO, and GoPay deposits and withdrawals are held for the period required by applicable Indonesian financial data regulations. Once the required retention window passes and your account is inactive, records are deleted or anonymised. You can ask support for the specific retention period that applies to your account type.

When you request account closure, we remove your marketing preferences and non-essential session data promptly. Financial transaction records required for regulatory compliance are held for the mandatory period before deletion. You will receive a written confirmation from our support team once the closure and data removal process is complete.

Only if you have consented to receive them. During registration and in your account settings, you can set your marketing preferences. If you consented previously and want to opt out, update your preferences in the notifications section of account settings or ask support to remove your contact detail from our marketing list — this takes effect within a short processing period.

Start with live chat — our account team handles privacy questions around the clock and can escalate formal complaints to the relevant internal team. For a written record, send your concern to the support email in your account settings. Include your registered contact detail, a description of the issue, and any relevant dates so we can investigate efficiently.