Reference

How We Protect Your Account and Payment Data

Your privacy is how we keep your account safe. At musang168, we explain exactly what data we collect, how we use it and who has access to it…

Account data encryptedPayment information secureNo third-party sales
musang168 How We Protect Your Account and Payment Data
REACH OUR TEAM

Contact Us About Your Privacy Rights

Questions about how we use your data, or want to update your details? Our privacy team is ready to help.

Live Chat Open the chat widget in your account lobby or on this site. Average response time under two minutes during peak hours, available 24/7.
Email Support Send your privacy concern to our data protection inbox. We confirm receipt within one hour and respond fully within five working days.
Account Settings Update your email, phone and personal details directly in your account dashboard under Profile > Privacy & Security.
HOW WE OPERATE

Data Security, Cookies and Account Control

Every deposit and withdrawal on musang168 moves through encrypted channels. We use industry-standard TLS 1.2 encryption on all pages, including the login screen and payment forms.

Encryption Standard

All account access and payment pages use TLS 1.2. Your DANA, OVO, GoPay and QRIS deposit details are tokenized — we never store full card or wallet numbers on our servers.

Session & Cookies

Your session cookie expires after 15 minutes of inactivity. Essential cookies remember your language and device type. Optional analytics cookies can be disabled in your privacy settings.

Password Security

Passwords are hashed with bcrypt. We recommend a 12-character mix of uppercase, lowercase, numbers and symbols. Change your password from Settings > Account Security whenever you like.

Two-Factor Authentication

Enable 2FA via email or SMS in your Security dashboard. Each login from a new device requires a one-time code sent to your verified phone or inbox.

Data Retention

Deposit and withdrawal records are kept for seven years per local regulation. Personal contact details are deleted 30 days after account closure unless law requires retention.

Your Control

Request a copy of all data we hold about you, correct any inaccuracy, or ask us to delete your details. Contact support and we'll respond within five working days.

Privacy Questions Answered

Real questions from players in Medan, Semarang and across Indonesia about what happens to their account data, how payments are protected and what control they have.

We collect your full name, email address, phone number, date of birth and residential address to verify your identity and process withdrawals. We also log your device type, IP address and browser type to detect fraud. All this data is encrypted and stored on secure servers.

We use TLS 1.2 encryption on every transaction. Your payment details never touch our servers — the payment gateway tokenizes your DANA, OVO, GoPay or QRIS details, meaning we store only a secure reference token, not the real account numbers.

No. We never sell, rent or trade your personal information. We share data only with payment processors and our payment gateway provider to complete your deposit or withdrawal where local law permits.

We delete your personal details — name, email, phone, address — within 30 days of account closure. Deposit and withdrawal records are retained for seven years per local record-keeping rules, but your personal identity details are removed.

Yes. Contact our support team via live chat or email and request a Data Subject Access Request. We provide a full export of your account data within five working days. To delete your data, request account closure and we'll begin the removal process immediately.

Session cookies remember you're logged in and expire after 15 minutes of inactivity. Preference cookies remember your language choice. You can disable non-essential cookies in your browser settings without losing core lobby access.

Open your account, go to Settings > Account Security, then select Two-Factor Authentication. Choose email or SMS delivery, confirm your phone number or email, and activate. Every future login from a new device requires a one-time code.