mafia77Privacy Policy

This page describes what we collect when you use mafia77 and how we keep that data protected. We collect your email address, full name, date of birth, phone number, and physical address during account registration. We also collect payment method details (bank account number, e-wallet credentials, or card information) when you deposit or withdraw funds. These details are encrypted and stored on secure servers operated by our payment processors.

We use your data to verify your identity (Know Your Customer, or KYC), process deposits and withdrawals, comply with anti-money-laundering regulations, detect fraud, and send you account notifications (settlement confirmations, bonus credits, security alerts). We do not sell your personal data to third parties. We do not share your data with marketing agencies or data brokers. We do share limited information with payment processors (to settle transactions), compliance partners (to verify identity), and law enforcement (if legally required).

Our servers may sit outside your jurisdiction. Data transfers between your phone and our servers are encrypted using TLS 1.3. If you believe your data has been compromised, contact our support team immediately, and we will secure your account and investigate the incident.

What We Collect and How We Use It

We collect data in three categories: registration data, behavioral data, and transaction data.

Registration data includes your email, password (hashed, never stored plaintext), full name, date of birth, phone number, address, and payment method. We collect this during account opening. We use this data to verify your identity during Know Your Customer (KYC) checks, particularly before large withdrawals (thresholds vary by jurisdiction). We retain this data for five years after account closure (required by anti-money-laundering law), then delete it.

Behavioral data includes your activity on mafia77: which games you access, when you log in, your wager amounts, your IP address, and your device type (iPhone, Android, desktop). We use this to detect fraud (unusual login patterns, suspicious withdrawal requests), improve our platform performance, and understand user engagement. We do not use behavioral data to manipulate odds or disadvantage certain players. We retain this data for two years unless legally required to retain it longer (e.g., for a dispute investigation).

Transaction data includes every deposit, withdrawal, wager, settlement, and bonus credit. We log transaction timestamp, amount, payment method, and outcome. We use this data to settle disputes, comply with tax and regulatory requirements, and generate your transaction history (available anytime in your account dashboard). We retain transaction data indefinitely—your account ledger is permanent and immutable.

KYC (Know Your Customer)
Regulatory requirement to verify user identity before large transactions. On mafia77, we conduct KYC during registration; additional verification may occur before withdrawal if thresholds are exceeded.
TLS 1.3 Encryption
Industry-standard encryption protocol. All data transmitted between your device and mafia77 servers is encrypted; no third party can intercept your login credentials or payment details.
Data Retention
Registration data: 5 years after account closure. Behavioral data: 2 years. Transaction data: indefinitely. Legal holds may extend retention periods.
Hash Function
Cryptographic function that converts your password into a unique fingerprint. We store only the hash, never the plaintext password. Even mafia77 staff cannot recover your password from the hash.

Third-Party Processors and Cross-Border Data Transfer

We work with third-party processors to deliver mafia77 services. Payment processors (e.g., payment gateways handling DANA, e-wallet, mobile banking, local payment, online payment, e-wallet, mobile banking, local payment, online payment, e-wallet transactions) receive limited data: your name, account number or e-wallet ID, and transaction amount. These processors are contractually bound to protect your data and use it only to settle your transactions.

We also engage compliance partners (identity verification services) to confirm your name and address against government databases. These partners receive your name, date of birth, and address; they do not receive your payment details or behavioral data. We select compliance partners that meet international data-protection standards.

Our servers and backup systems may be located outside your home country—potentially outside Indonesia. Data transfers comply with encryption standards; we encrypt data before it leaves your jurisdiction. If you are uncomfortable with cross-border data transfer, you may request account closure at any time; we will return any remaining balance to your payment method within five business days.

Law enforcement and government agencies may request your data via formal legal process (court order or subpoena). We comply with such requests, provided they meet local legal standards. We do not share data with law enforcement without legal authorization. We do not disclose to you if we receive such requests, except where required by law.

We encrypt your data in transit and at rest. We do not sell your information. We do not use your data for purposes other than providing mafia77 services and complying with regulations.

mafia77 Editorial Team

Your Rights and Data Subject Requests

You have the right to access your personal data. You can download a complete export of your account data—including registration information, behavioral logs, and transaction history—by submitting a request through your account dashboard. We provide the export within 48 hours in a standard format (CSV or JSON).

You have the right to correct inaccurate data. If your address, phone number, or other registration details are incorrect, update them in your account settings. You can change these details anytime without contacting support.

You have the right to delete your account. Account closure is available anytime through your account settings. Upon closure, your balance is returned to your linked payment method within five business days. Your account data remains in our compliance archive for five years (required by law); after five years, we delete your personal data. You cannot log in or access data after closure.

You have the right to lodge a complaint with your local data-protection authority if you believe we have mishandled your data. Contact information for your jurisdiction's data-protection agency is available online; we will also provide referral information upon request.

Cookies, Device Identifiers, and Tracking

Our platform uses cookies and similar tracking technologies. Session cookies store your login token while you are logged in; they expire when you log out. Persistent cookies (stored for up to 12 months) remember your language preference and notification settings so you do not need to configure them each time you log in.

We use analytics cookies to understand how users navigate mafia77—which sections are most visited, where users encounter friction, whether mobile or desktop is preferred. These analytics are aggregated; we do not track individual user journeys in detail. You can disable analytics cookies in your browser settings, but doing so may degrade your experience.

We do not use cookies to track you across other websites or apps. Cookies set by mafia77 are sent only to mafia77 servers; third parties do not access them. If you clear your browser cookies, you will be logged out and your preferences will reset.

Mobile app users (iOS, Android) may be assigned a device identifier by our servers. This identifier helps us detect fraud (e.g., detecting if your account is being accessed from an unfamiliar device simultaneously in two cities). Device identifiers do not identify you personally and are not shared with third parties.

  • 1
    Your data is encrypted in transit and at restSecurity

    We use TLS 1.3 encryption and hashed password storage. Even our staff cannot access your plaintext credentials.

  • 2
    We do not sell your data to third partiesPrivacy

    Your personal information is used only to provide mafia77 services and comply with regulations.

  • 3
    You can request your data export anytimeAccess

    Download a complete copy of your account data (registration info, behavioral logs, transaction history) in 48 hours.

  • 4
    You can close your account and delete your dataControl

    Close your account anytime. After 5 years, we delete your personal data; compliance records are retained as required by law.

Contact and Policy Updates

If you have questions about this privacy policy or believe your data has been mishandled, contact our support team through your account dashboard. We respond to data-related inquiries within 48 hours.

We may update this policy periodically. Changes are posted on this page with a revision date. Significant changes (e.g., new data sharing arrangements) are communicated to account holders via email. Continued use of mafia77 after a policy update constitutes acceptance of the updated policy. If you do not agree with changes, you may close your account and withdraw your balance.

This privacy policy applies to all regions where mafia77 operates (currently including selected jurisdictions across Southeast Asia). Our services are available only where local law permits. If you have concerns about your jurisdiction's data-protection laws or how they interact with this policy, we recommend consulting local legal counsel before using our platform.