Rujukan Laman

Privacy Policy for Malaysia account data

toto3d gives you a clear Privacy Policy for the account data, cookie data and payment records linked to your lobby, wallet and support requests.

Account data explainedCookie choices statedPayment records coveredMalaysia request path
toto3d Privacy Policy for Malaysia account data
CONTACT ROUTES

Three ways to reach privacy support

Privacy questions should reach the team that can check your account record, not a public comment thread. Use the channel that fits your request and include the mobile number or email tied to your account, but do not send passwords or one-time codes. We may ask for a verification step before changing data, sending a copy, or closing records connected to your wallet.

Team online

Privacy email

Send data requests to [email protected] with your account email, request type and the date of the account activity involved. We reply after identity checks so account records are not sent to the wrong person.

In-account chat

Use chat after logging in when your request concerns current wallet records, cookie choices or a recent support message. Chat helps us link the request to the right account without asking for extra personal data.

Security escalation

If you think your account data was exposed, contact us at once through chat or privacy email. We will secure account access, check recent sessions and tell you what data was affected where required.

ACCOUNT CARE

Six controls for your account data

Our Privacy Policy is written around the way your account actually works: sign-in, wallet checks, game records, support history and device security.

Collection control

We collect the data needed to run your account, process wallet activity and answer support messages. Optional fields are treated separately, and we do not ask for extra personal data when a request can be handled without it.

Cookie handling

Cookies help keep your session active, remember device choices and measure site errors. You can adjust browser settings, but blocking some cookies may require repeated sign-in or affect account security checks.

Payment record care

Touch 'n Go, GrabPay, Boost dan FPX records are used to match wallet activity with your account and resolve transaction queries. We keep the payment reference, amount, time and status for audit and support needs.

Account security

We use access controls, session checks and encrypted transfer where suitable to reduce account data exposure. If a login pattern looks unusual, we may pause sensitive actions until your identity is confirmed.

Retention choices

Some records must be kept for legal, tax, fraud-prevention or transaction dispute periods. When a record no longer has a valid purpose, we delete it or remove account links where that method is suitable.

Change requests

You may ask us to correct account details, send a copy of personal data or remove records where local law permits. We explain the result if a record must stay for compliance or transaction reasons.

Privacy Policy questions before you join

Before you open an account, it is fair to ask what data we collect and why. These answers explain the Privacy Policy in plain language, including payment records, cookies, security checks and your request options. If your situation is specific, contact us with the account email so we can check the right record.

We collect details needed to create and run your account, such as contact details, login data, device signals, wallet activity and support messages. We use them for account operation, security checks, transaction matching and customer support.

For Touch 'n Go, GrabPay, Boost dan FPX, we record transaction references, amount, time, status and account link. This helps us match wallet activity, answer payment queries and keep audit records required by applicable rules.

Cookies support sign-in, device recognition, language settings and site error checks. You can manage cookies through your browser, but some settings may affect account sessions or require extra verification during sensitive account actions.

Yes. You can ask for a copy of personal data or request a correction where local law permits. We verify your identity first, then explain what we can change, send or retain for legal reasons.

Retention depends on the record type and the reason it exists. Wallet, security and support records may stay while needed for disputes, audit, fraud checks or legal duties, then they are deleted or de-linked.

Only teams and service partners who need the data for account operation, support, security, payment processing or legal duties may access it. We use role-based access so data is not open to every internal team.

Yes. Access and eligibility depend on local law and are available only where local law permits. Privacy rights may also vary by location, so we handle requests according to the rules that apply to your account.