qiqiPrivacy Policy

This page describes what we collect when you use qiqi and how we keep that data protected. We at qiqi collect personal information only when necessary for account verification, deposit and withdrawal processing, anti-fraud screening, and regulatory compliance. We do not sell your data to third parties. We do not use your information for marketing without your explicit consent. Every piece of data we hold — your email, identity documents, payment history, account activity — is encrypted, access-controlled, and retained only as long as legally required.

Our qiqi platform operates under strict data handling standards. When you register on qiqi, you provide an email address and create a password. When you deposit funds through DANA, e-wallet, mobile banking, local payment, online payment, e-wallet, mobile banking, local payment, online payment, or e-wallet, we record the transaction reference and timestamp. When you withdraw, our compliance team reviews your request and logs the outcome. All of this happens in accordance with Indonesian data protection standards and our commitment to user privacy.

What Data We Collect on qiqi

We collect the following data when you create a qiqi account: email address, phone number (optional but recommended), username, password hash (never stored in plain text), and account creation date. We do not ask for data we do not need. We do not request your mother's maiden name, blood type, or social media accounts.

During KYC verification on qiqi, we collect government-issued identity documents (passport, national ID card, or driver's license) and proof of address (utility bill, bank statement, or rental agreement). We use these documents only to confirm your legal identity and establish residency. We store scanned copies in encrypted form and do not share them with third parties outside our compliance team. Our KYC processor operates from servers in Indonesia and adheres to the same data protection standards we enforce internally.

When you deposit on qiqi, we record the payment method (DANA, e-wallet, mobile banking, local payment, online payment, e-wallet, or bank transfer), the amount, the transaction timestamp, and the confirmation status. We do not store your full payment card numbers or e-wallet passwords. Payment processors for each method handle sensitive credentials; we receive only confirmation tokens and transaction references. When you withdraw, we log your request, our review outcome, the destination account, and the processing status.

Data retention note: We retain account data for as long as your account is active. After account closure, we retain transaction records for five years to comply with Indonesian anti-money-laundering regulations, then delete them.

How We Use Your Data on qiqi

We use your email and phone number to send account notifications — KYC verification status, deposit confirmations, withdrawal approvals, and password resets. We do not send marketing emails without your opt-in consent. If you prefer not to receive promotional messages, you can disable them in your qiqi account dashboard at any time.

We use your KYC documents to verify your legal identity and comply with anti-fraud and anti-money-laundering screening. We cross-check your identity against global sanctions lists and known fraud databases. This screening protects both you and qiqi by reducing account takeover risk and payment fraud.

We use your deposit and withdrawal history to monitor account patterns and flag unusual activity. For example, if someone attempts to withdraw funds from a qiqi account registered in Jakarta but accessed from abroad with a new device, our system flags it for manual review. We contact you immediately if we detect suspicious activity, and you can confirm or deny authorization. This process protects your funds and helps us maintain platform integrity.

We use your game activity and sports-betting history only to calculate your account balance, settle game outcomes, and fulfill our audit obligations. We do not profile your preferences, track your browsing across other websites, or share your qiqi activity with advertisers. Your betting history remains within qiqi and is never sold or shared.

Our qiqi third-party processors

We work with third-party processors for specific functions: payment confirmation, KYC verification, and fraud screening. Each processor operates under a signed data processing agreement (DPA) that restricts their use of data to the specific service they provide. They cannot use your data for their own marketing or sell it to other companies.

Our payment processors for mobile banking, local payment, online payment, e-wallet, mobile banking, local payment, online payment, e-wallet, mobile banking, and local payment receive only confirmation tokens and transaction references — never your full payment credentials. Our KYC verification partner receives your identity documents in encrypted form and returns only a pass/fail verification result. Our fraud-screening vendor receives only your account metadata and transaction patterns — never your full identity or payment details.

Key takeaways

  • We collect only data necessary for account verification, deposits, withdrawals, and fraud prevention
  • We encrypt all personal data and restrict access to authorized qiqi personnel
  • We do not sell data to third parties or use it for marketing without your consent
  • Our third-party processors operate under strict data agreements and cannot re-use your information
  • We retain account data while your account is active; transaction records for five years after closure

Your Rights on qiqi and Our Data Practices

You have the right to access all personal data we hold about you on qiqi. Request a copy of your account data by contacting our support team through the in-app help section or email. We provide the data in plain text format within ten business days. You also have the right to correct inaccurate data — for example, if your registered address is outdated, you can update it in your account dashboard.

You have the right to request deletion of your qiqi account and associated data, subject to legal retention obligations. If you request account closure, we delete your personal information (email, phone, identity documents) immediately. However, we retain transaction records for five years as required by Indonesian financial regulations. After five years, transaction data is permanently deleted.

We do not use automated decision-making or profiling to restrict your access to qiqi services. Every withdrawal hold, account suspension, or bonus denial results from manual review by our compliance team, and we notify you with the reason. You can dispute any decision by contacting our support team with additional information.

Cookies and tracking on qiqi

Our qiqi platform uses cookies to maintain your login session, remember your language preference, and track basic analytics (page views, device type, referral source). We use cookies only to improve our platform — we do not sell cookie data to advertisers or use it for cross-site tracking. You can disable cookies in your browser settings, but doing so may limit qiqi functionality.

We do not use tracking pixels or third-party analytics scripts that follow you across the internet. Google Analytics operates on qiqi under a data processing agreement that restricts Google from using our analytics data for their own advertising products.

Jurisdiction and data transfers

Our qiqi servers and primary data storage operate from Indonesia. However, some of our third-party processors (KYC verification, fraud screening) maintain servers outside Indonesia. When data transfers to these processors, it is encrypted in transit and at rest. These processors comply with Indonesian Personal Data Protection Law (Law No. 27 of 2022) and other applicable standards.

If you access qiqi from Jakarta, Surabaya, Bandung, or Medan, your data is processed under Indonesian law. We are accountable to Indonesian data protection authorities and to you for any data breach or misuse. If you access qiqi from another jurisdiction, we apply the most stringent applicable law — Indonesian law if no stricter alternative applies in your jurisdiction.

Data breach notification

In the unlikely event of a data breach affecting qiqi, we notify all affected users within 72 hours. Notification is sent to your registered email address and includes details of what data was compromised, what steps we took to contain it, and what steps you should take to protect yourself (such as changing your password). We also notify relevant Indonesian data protection authorities as required by law.

Our commitment to qiqi user privacy means operating transparently about what data we collect, how we protect it, and how long we keep it. If you have questions about our privacy practices, contact our support team through your qiqi account dashboard. We answer all data-related inquiries within five business days.