Reference

How We Handle Your Data and Account

We keep this straightforward. Our legal framework covers how your data moves through marvel77, what we store when you deposit through DANA, OVO, or GoPay, how long we retain account records, and how you can request changes or deletion.

Data TransparencyAccount ControlCookie DisclosureWallet PrivacyRegional Compliance
marvel77 How We Handle Your Data and Account
DATA HANDLING DETAIL

How We Protect and Manage Your Information

We break down our data practices into clear categories so you know exactly what happens at each stage. From the moment you open your account to the point you request deletion, every step follows the same internal protocol — no exceptions for wallet type, device, or region.

Data Collection

We collect your wallet reference (DANA, OVO, or GoPay ID), device type, browser version, IP address, and session timestamps. Nothing beyond what is needed to verify your identity and process transactions moves into our system.

Cookie Usage

Cookies on marvel77 handle session persistence, language settings, and anonymised page-flow analytics. We do not use advertising cookies or share cookie data with ad networks. Clear them from your browser any time you want a fresh session.

Account Security

Your login is protected by OTP verification sent to your registered number. If you switch devices — say from a Redmi to a Samsung — we trigger a secondary confirmation step.

Data Retention

Active accounts retain full transaction and session history. After you close your account, we hold records for a defined period required by applicable regulations, then purge. You can request early deletion through our support channels described above.

Third-Party Sharing

We share data only with payment processors handling your DANA, OVO, or GoPay transactions and with anti-fraud systems. No data goes to advertisers, data brokers, or unrelated services.

Your Rights and Requests

You can request a copy of all data we hold on you, ask for corrections to inaccurate records, or request full deletion. Submit through live chat, email, or the in-app form.

POLICY CONTACT PATHS

Reach Us About Legal or Data Queries

If you have a question about your data, your rights under local law, or how your wallet information is handled, reach out through any of these channels. We handle legal and policy queries with the same speed as account support — no separate queue, no waiting for a different department.

Live Chat Open the chat widget from any page on marvel77. Select the 'Account & Data' category and describe your query. Our team handles data-related requests in the same live session, so you get a direct answer without email back-and-forth.
Email Send your legal or data query to our support email address listed in your account dashboard. Include your registered wallet type — DANA, OVO, or GoPay — and the specific request (export, correction, or deletion).
In-App Request From your account settings on mobile, tap the 'Data & Privacy' option. Submit a structured request form that routes directly to the policy team. This path is faster for deletion or export requests because it pre-fills your account reference automatically.

Common Questions About Your Rights and Data

These are the questions we actually get asked about legal, data handling, and account rights. Each answer reflects how marvel77 operates in practice — no vague gestures, just the real process.

We collect your DANA wallet reference ID, the transaction amount, a timestamp, and your device identifier. This lets us match the deposit to your account and flag it if something looks off. We do not store your DANA PIN or full wallet credentials.

Yes. Open the in-app Data & Privacy form or contact live chat. Once you confirm, we close the account, process any pending balance, and queue your data for deletion after the regulatory retention window. You receive confirmation when the purge completes.

Cookies manage your active session, remember your language setting, and feed anonymised analytics about page flow. We do not run advertising trackers or share cookie data externally. You can clear them from your mobile browser settings at any time.

Only with the payment processor that handles your specific transaction and with our fraud-detection layer. Both operate under contract with strict data-handling limits. We never pass wallet identifiers to advertisers or unrelated third parties.

Inactive accounts retain data in the same way active ones do. If you want records removed, you need to submit a formal closure and deletion request. Without that, the account stays on file in case you return and want to pick up where you left off.

Open live chat or submit the in-app Data & Privacy form. Describe what needs correcting — for example, a wrong phone number or outdated wallet reference — and we update it within the same operational cycle after verifying your identity through OTP.

Yes. Retention periods and your specific rights depend on local regulations that apply where you access the service. We follow applicable requirements, which means some deletion requests may be subject to a mandatory holding period before we can fully purge.

We retain records for a defined period dictated by applicable regulatory requirements. Once that window passes, all transaction records, session logs, and personal identifiers linked to your closed account are permanently deleted from our systems.

Yes. Use the in-app Data & Privacy form and select 'Export Request.' We compile your transaction history, login records, device logs, and stored personal details into a downloadable file and notify you when it is ready — typically within the same operational window.

Data at rest is encrypted. Access is restricted by role — only the teams handling payments or fraud checks can view wallet-linked identifiers. Session tokens rotate on every login, and OTP verification blocks unauthorised access even if someone else has your password.