ceri388 Privacy Policy
This page describes what we collect when you use ceri388 and how we keep that data protected. We collect personal information to verify your identity, process deposits and withdrawals, honour our promotional offers, and comply with legal obligations. Our approach is minimal: we ask for only what we need. We do not sell your data to third parties, and we encrypt all sensitive information in transit and at rest.
We recognize that your privacy matters. When you use ceri388 to place bets on Liga 1, Piala AFF, Champions League, or other football tournaments, access live-dealer tables, play slots like Aviator or Sweet Bonanza, or participate in esports markets, we handle your data responsibly. Our servers may sit outside your jurisdiction — for example, in regional data centres — but we apply consistent security practices wherever your data resides. We comply with applicable data protection laws in the jurisdictions where we operate.
If you have questions about how we handle your data, or if you want to request a copy of your stored information or ask us to delete it, contact our support team via live chat or email. You have the right to understand what we collect and to object to certain uses.
What We Collect When You Use ceri388
We collect different categories of information at different stages of your use of ceri388:
- Registration data: When you open an account, we collect your email address, phone number, and the password you create. We use email and phone to send you account notifications, password recovery links, and promotional updates.
- Identity verification data: To unlock deposits and withdrawals, we require government-issued ID (passport, national identity card, or driver licence) and proof of address (utility bill, bank statement, or government document). We store images or scans of these documents encrypted and separately from your account profile.
- Payment data: When you deposit via DANA, e-wallet, mobile banking, local payment, online payment, e-wallet, or bank transfer (mobile banking, local payment, online payment, e-wallet), we record the transaction amount, timestamp, and payment method type. We do not store your full payment credentials — those are handled by the payment provider.
- Activity data: We log all bets placed, games played, withdrawals requested, and promotions claimed. This data helps us calculate your weekly cashback, track tier progression, and detect fraudulent activity.
- Device and connection data: We record the IP address, device type, browser type, and operating system from which you access ceri388. This helps us identify unauthorised access and improve platform security.
How We Use Your Data on ceri388
We use your data for specific purposes:
- Account management: verify your identity, process deposits and withdrawals, reset passwords, and send account statements.
- Promotions: calculate weekly cashback, track tier levels, honour referral bonuses, and notify you of seasonal campaigns tied to Idul Fitri, Idul Adha, Imlek, Nyepi, or Liga 1 events.
- Compliance: meet anti-money-laundering (AML) and know-your-customer (KYC) requirements in jurisdictions where we operate.
- Security: detect fraud, prevent account takeover, and identify patterns of suspicious activity.
- Service improvement: understand how users interact with ceri388 and identify technical issues or feature gaps.
We do not use your data for marketing purposes outside ceri388. We do not share your email or phone with advertisers. We do not sell, rent, or lease your personal information to third parties.
We at ceri388 encrypt all sensitive data in transit using TLS and at rest using industry-standard algorithms. Your password is never stored in plain text.
Data Security, Third-Party Processors, and Your Rights
How We Protect Your Data on ceri388
We use encryption to protect your data. All communication between your device and our servers uses TLS (Transport Layer Security). Sensitive fields — passwords, payment data, identity documents — are encrypted in our database using AES-256. We limit access to your data to ceri388 employees who need it to perform their job. We conduct regular security audits and penetration testing to identify and fix vulnerabilities.
We use two-factor authentication (2FA) to prevent unauthorised login. When you enable 2FA, each login from a new device requires a verification code sent to your registered email or phone. We strongly recommend enabling 2FA immediately after account verification.
We retain your data only as long as necessary. Once your account is closed, we delete personal information (email, phone, identity documents) within a set retention period. We retain transaction records for longer to comply with financial reporting and anti-fraud obligations.
Third-Party Processors and Data Transfers
We use third-party processors to deliver parts of our service. For example, our payment integrations rely on payment processors to handle DANA, e-wallet, mobile banking, and local payment transactions. Our email service provider sends account notifications. Our hosting provider manages our servers. These processors are contractually bound to protect your data and use it only for the services we request.
Our servers may be located outside your jurisdiction. For example, infrastructure may sit in regional data centres in Southeast Asia or beyond. When your data is stored or processed outside your home country, it remains subject to this privacy policy and our encryption standards, but may be subject to the laws of the country where the server is located. By using ceri388, you consent to this transfer.
Your Rights Regarding Your Data
You have the right to:
- Access: Request a copy of all personal data we hold about you. Contact support and we will provide an export of your account data, activity history, and documents within a reasonable timeframe.
- Correction: If your registered email, phone, or identity information is incorrect, you can update it through your account settings or request support to change it.
- Deletion: Request that we delete your account and associated personal data. Deletion requests are processed after a verification window to ensure the request is legitimate. Some data (transaction records) may be retained for compliance purposes.
- Objection: Opt out of promotional emails or notifications. You can manage email preferences in your account settings.
Data protection summary
- We collect email, phone, identity documents, payment info, and activity logs.
- All data is encrypted in transit (TLS) and at rest (AES-256).
- We do not sell or share your data with advertisers.
- Third-party processors are contractually bound to protect your data.
- You have the right to access, correct, delete, or object to your data.
Cookies and Tracking Technologies
We use cookies to manage your session, remember your login state, and analyse how you use ceri388. Session cookies are deleted when you close your browser. Persistent cookies remain until they expire or you delete them. We do not use cookies to track you across other websites.
We use basic analytics to understand which features are popular and identify technical issues. We do not use third-party analytics services that track users across the internet.
Changes to This Privacy Policy
We may update this privacy policy from time to time to reflect changes in our practices, technology, or applicable law. We notify users of material changes via email or in-app notification. Continued use of ceri388 after such notification constitutes acceptance of the updated policy.
Contact ceri388
If you have questions about this privacy policy, requests to access or delete your data, or concerns about how we handle your information, contact our support team via live chat, email, or in-app messaging. We respond to data requests within a standard timeframe. If you are accessing ceri388 from Jakarta, Surabaya, Bandung, Medan, or Semarang and have jurisdiction-specific privacy questions, our team can provide guidance on applicable local data protection laws.
Our services are available only where local law permits. We comply with the privacy laws of each jurisdiction in which we operate. If you believe we have violated your privacy rights, you may contact relevant data protection authorities in your jurisdiction.