At tito80, your personal data deserves the same level of protection we apply to your account funds. This Privacy Policy explains exactly what information we collect, why we collect it, how we use it, and the rights you hold over your own data.
Last Updated: 1 January 2026tito80 is committed to protecting the privacy of every member who uses our online gambling platform. We process personal data only to the extent necessary to deliver a secure, compliant, and high-quality experience — and we never sell your personal information to third parties for commercial gain.
This policy is written in plain, professional English so that every member — including English-preference users in Jakarta, Surabaya, Bandung, Medan, Bali, and across Indonesia — can understand precisely how their data is handled. Where technical or legal terminology is unavoidable, we provide a clear explanation alongside it.
This Privacy Policy should be read in conjunction with tito80's Terms & Conditions and our Responsible Gaming policy, both of which contain additional provisions relevant to data processing.
The data controller responsible for the personal information collected through the tito80 platform is the tito80 operating entity that holds the international licence under which tito80.net operates. As data controller, tito80 determines the purposes for which and the means by which your personal data is processed.
For all data-related inquiries, requests, or complaints, you may contact our dedicated Data Protection team at:
tito80 collects personal data in the following categories. We collect only what is necessary for the specific purpose identified in Section 5 of this policy.
This includes your full legal name, date of birth, Indonesian residential address, email address, and mobile phone number. This data is provided by you directly at the point of account registration and during KYC (Know Your Customer) verification.
To comply with our anti-money-laundering (AML) and know-your-customer obligations, we collect copies of government-issued identity documents, which may include your Indonesian National Identity Card (KTP) or a valid Indonesian or international passport. In certain cases we may also request a selfie photograph alongside your identity document for biometric confirmation purposes.
This includes the bank account numbers, bank names (BCA, BRI, BNI, Mandiri, CIMB Niaga, OCBC NISP, BSI, Bank Permata), and e-wallet identifiers (OVO, DANA, GoPay, ShopeePay, LinkAja) that you register for deposit and withdrawal purposes. We do not store full card numbers or bank account PINs. All financial data is stored in encrypted form.
We maintain a complete record of your deposit history, withdrawal history, wager history, game session history, bonus credits and usage, and account balance changes. This data is essential for the accurate settlement of bets, bonus administration, fraud detection, and regulatory compliance.
When you access tito80 via a browser or mobile device, we automatically collect your IP address, browser type and version, operating system, device model, screen resolution, time zone, and session timestamps. This data is used for security monitoring, fraud prevention, and platform optimisation.
We collect data about how you navigate and interact with the tito80 platform — including pages visited, games launched, session duration, search queries within the platform, and promotional offers viewed or claimed. This data enables us to personalise your experience and to fulfil our responsible gaming obligations (for example, by detecting patterns indicative of problem gambling).
We retain records of all written communications between you and tito80's support team, including Live Chat transcripts, WhatsApp exchanges, and email correspondence. These records are used for dispute resolution, quality assurance, and staff training.
The following table summarises the categories of data we collect and the primary purpose for each:
| Data Category | Primary Purpose | Retention Period |
|---|---|---|
| Identity & Contact | Account registration, KYC, support | 5 years after account closure |
| Identity Documents | KYC / AML compliance | 5 years after account closure |
| Financial Data | Deposits, withdrawals, AML screening | 5 years after last transaction |
| Transaction & Gaming | Bet settlement, bonus admin, fraud detection | 5 years after account closure |
| Technical & Device | Security monitoring, fraud prevention | 13 months from collection |
| Behavioural & Preference | Personalisation, responsible gaming | Duration of active membership |
| Communications | Dispute resolution, quality assurance | 3 years from date of communication |
tito80 collects personal data through the following channels:
tito80 processes personal data only when a valid legal basis exists. The following table sets out the purposes for which we process your data and the corresponding legal basis for each:
| Processing Purpose | Legal Basis |
|---|---|
| Creating and managing your tito80 account | Performance of contract |
| Processing deposits and withdrawals via BCA, BRI, BNI, Mandiri, OVO, DANA, GoPay, ShopeePay, LinkAja, and other accepted channels | Performance of contract |
| KYC identity verification and AML compliance screening | Legal obligation |
| Fraud detection and platform security | Legitimate interests |
| Responsible gaming monitoring (detecting signs of problem gambling) | Legal obligation & legitimate interests |
| Sending transactional communications (deposit confirmations, withdrawal notifications, security alerts) | Performance of contract |
| Sending promotional communications (bonus offers, seasonal promotions for Idul Fitri, Ramadhan, Nyepi, and other Indonesian cultural events) | Consent (opt-in) |
| Platform analytics and product improvement | Legitimate interests |
| Resolving disputes and responding to support inquiries | Performance of contract & legitimate interests |
| Compliance with applicable regulatory and reporting obligations | Legal obligation |
tito80 does not sell, rent, or trade your personal data. We share data only in the following limited circumstances, and only to the extent strictly necessary for the stated purpose:
We engage carefully selected third-party service providers who process data on our behalf under binding data processing agreements. These providers include payment processors (for deposit and withdrawal facilitation), KYC and AML verification platforms, cloud infrastructure providers (for secure data hosting), fraud-prevention analytics firms, and customer support technology providers. All service providers are contractually prohibited from using your data for any purpose other than the specific service they provide to tito80.
When you launch a game from a third-party studio integrated into the tito80 platform — such as Pragmatic Play, Evolution Gaming, NetEnt, Microgaming, Spribe, or Pocket Games Soft — a session token and anonymised player identifier are shared with that studio to enable gameplay. No identifiable personal data (name, KTP number, bank account details) is shared with game studios.
tito80 may disclose personal data to competent regulatory authorities, law enforcement agencies, or courts when required to do so by applicable law, by a valid legal order, or when disclosure is necessary to protect the legal rights of tito80 or the safety of other platform members.
In the event of a merger, acquisition, restructuring, or sale of all or substantially all of tito80's assets, member personal data may be transferred to the acquiring entity as part of that transaction. You will be notified via your registered email address before any such transfer occurs, and the acquiring entity will be bound by the privacy commitments contained in this policy or will issue a replacement policy with at least equivalent protections.
tito80 has never sold and will never sell your personal data to advertising networks, data brokers, or any other third party for commercial purposes.
tito80 retains personal data for no longer than is necessary to fulfil the purposes outlined in Section 5 of this policy, subject to the minimum retention periods required by applicable financial crime legislation and our international operating licence conditions.
As a general rule, account data, identity documents, and transaction records are retained for a period of five years following the date of account closure or the date of the last transaction on the account (whichever is later). This retention period reflects standard AML record-keeping requirements. After this period, data is securely deleted or anonymised.
Technical and device data (IP logs, session records) is retained for a maximum of 13 months from the date of collection, unless a longer period is required for an ongoing fraud investigation or legal proceeding.
Communications data (support transcripts, email records) is retained for three years from the date of the communication, after which it is securely deleted unless the communication forms part of an unresolved dispute or legal matter.
Data processed solely on the basis of your consent (for example, marketing preference data) is retained until you withdraw your consent and for a brief administrative period thereafter (not exceeding 30 days) to process the opt-out.
tito80 uses cookies and similar tracking technologies (including web beacons and local storage objects) to operate the platform, ensure security, and improve the member experience. The cookies we use fall into the following categories:
You may manage your cookie preferences through your browser settings. Note that disabling strictly necessary cookies will prevent you from logging in to tito80 and may impair platform security. Most modern browsers — including Chrome, Firefox, Safari, and Edge — allow you to view, block, or delete cookies at any time via the browser's privacy or settings menu.
tito80 applies industry-standard security measures to protect your personal data against unauthorised access, disclosure, alteration, or destruction. Our security framework includes:
While tito80 takes every reasonable precaution to secure your data, no internet-based system can be guaranteed entirely free from risk. You are responsible for maintaining the security of your own device and for ensuring your tito80 account password is not shared with any third party. If you suspect your account has been compromised, contact our 24/7 support team immediately.
tito80 recognises and upholds the following rights in respect of the personal data we hold about you. To exercise any of these rights, submit a written request to [email protected] from the email address registered on your tito80 account. We will acknowledge all data rights requests within 24 hours (WIB) and will fulfil valid requests within 30 calendar days of receipt.
tito80 is strictly an adults-only platform. Access to the tito80 platform is permitted only to individuals who are 21 years of age or older. We do not knowingly collect personal data from anyone under the age of 21. If tito80 discovers or is notified that a member is under the age of 21, the account will be immediately suspended, all personal data associated with that account will be deleted as promptly as legally permissible, and any balance will be returned to the source payment method after verification.
If you are a parent or guardian and you believe your child has registered a tito80 account without your knowledge, please contact us immediately at [email protected]. We will treat such reports as highest priority and act within one business hour of receipt.
The tito80 platform may contain references to or integrations with third-party services — including game studios, payment gateways, and customer support tools. Each of these third parties operates under its own privacy policy, which governs the personal data it collects and processes independently of tito80. tito80 is not responsible for the privacy practices of any third party and encourages you to review the privacy policy of any external service provider before engaging with it.
Any personal data you share directly with a third-party service provider — for example, by registering an OVO or DANA e-wallet or by downloading a game studio's standalone application — is governed entirely by that provider's own privacy policy.
tito80 reserves the right to update this Privacy Policy at any time to reflect changes in applicable law, regulatory guidance, or our own data processing practices. Where a proposed change is material — meaning it significantly alters how we collect, use, or share your personal data — we will notify you via email to your registered address at least 14 calendar days before the change takes effect.
Non-material changes (such as typographical corrections, clarification of existing practices, or updates to contact details) may be published without advance notice and take effect immediately. The "Last Updated" date at the top of this page reflects the date of the most recent revision. We encourage you to review this page periodically to remain informed of how tito80 protects your privacy.
Your continued use of the tito80 platform after the effective date of any Privacy Policy update constitutes your acknowledgement of the revised policy. If you do not agree with a material change, you may close your account in accordance with the Terms & Conditions before the change takes effect.
For any questions, concerns, or requests relating to this Privacy Policy or the personal data tito80 holds about you, please reach our Data Protection team through any of the following channels:
tito80 will acknowledge all privacy-related inquiries within 24 hours (WIB) and will provide a substantive response within 30 calendar days. Requests relating to account security breaches or the discovery of a minor's account are treated as critical priority and actioned within one business hour.
Six core commitments that underpin every decision tito80 makes about your personal information.
Your personal information is not a commodity. tito80 has never sold member data to third parties and never will. Every data-sharing arrangement we enter into is solely for the purpose of operating and securing your account.
Sensitive fields — including identity documents, bank account references, and password hashes — are stored using AES-256 encryption, the same standard used by international financial institutions and government agencies worldwide.
Every category of data tito80 collects is listed in this policy along with the specific purpose and legal basis for its collection. We do not process data for undisclosed purposes and we do not retain data beyond the periods set out in Section 7.
Access, rectification, erasure, portability, objection — these are not nominal commitments. Submit a request to [email protected] and we will respond within 24 hours and fulfil valid requests within 30 calendar days, no questions asked.
tito80's infrastructure undergoes scheduled independent penetration testing. Critical vulnerabilities are patched within 24 hours under our responsible disclosure programme, keeping the platform resilient against evolving threats.
Our support team is available around the clock via Live Chat and WhatsApp, with native Bahasa Indonesia-speaking agents on duty at all hours — including during Ramadhan, Idul Fitri, and all Indonesian national holidays.
Now that you understand how tito80 protects your privacy, explore our full range of games and betting markets — from BRI Liga 1 sportsbook action to live casino and slot gacor.
21+ Only | Play Responsibly | SSL Encrypted