Your Data. Our Responsibility.
We built astra77 around your account security and payment privacy. Every transaction through DANA, OVO, GoPay or QRIS is encrypted. Your personal information stays yours — we explain...
Privacy Policy Overview
astra77 operates under Indonesian data protection standards and regional compliance frameworks. We collect personal information — your name, email, phone number and payment details — only to verify your account, process transactions and prevent fraud. Your data is never sold to third parties. We retain information for as long as your account is active, plus a retention period for legal compliance. Where
local law permits, we may share anonymised data with payment partners like DANA, OVO, GoPay and QRIS processors to improve service delivery. You have the right to request, correct or delete your personal data by contacting our support team.
Service availability is jurisdiction-dependent. Users are responsible for checking local law before access.
Privacy Questions? Reach Us.
Privacy Standards We Follow
Encryption Standard
All data in transit and at rest uses TLS 1.2+ encryption. Payment card information is tokenised and never stored on our servers. Third-party audits confirm compliance quarterly.
Payment Partner Vetting
DANA, OVO, GoPay and QRIS integrations are audited annually. Each partner signs a data processing agreement that restricts how your payment data is used and stored.
Fraud Prevention
We monitor account activity for suspicious patterns. Your personal data helps us detect unauthorised access and protect your balance. No data is shared with external fraud networks.
Retention Limits
Account data is deleted 12 months after closure. Transaction records for DANA, OVO, GoPay and QRIS payments are kept for 7 years per Indonesian tax law, then purged.
Staff Access Control
Only authorised personnel can access your personal information. All staff sign confidentiality agreements. Access logs are reviewed monthly for unauthorised attempts.
Incident Response
If a data breach occurs, we notify affected users within 72 hours. We work with Indonesian authorities and payment processors to contain the issue and restore security.