This Privacy Policy explains how toto313 collects, uses, stores, and protects your personal data when you use our platform. We are committed to handling your information with care, in compliance with applicable data protection standards.
Six core principles that govern how toto313 handles every piece of personal data entrusted to us by our Malaysian members.
All personal data is encrypted at rest and in transit using 256-bit TLS. Access to member data is restricted to authorised personnel only, with full audit logging on every data access event.
toto313 does not sell, rent, or trade your personal data to third parties for marketing purposes. Data is shared only with service providers necessary to operate the platform and with regulators as required by law.
You have the right to access, correct, and request deletion of your personal data held by toto313. Requests are handled within 14 business days via our support team at [email protected].
We collect only the data required to operate your account, process transactions, verify your identity (KYC), and comply with licensing obligations. We do not collect data beyond what is functionally necessary.
Personal data is retained only for as long as required by our licensing obligations and applicable law. KYC documents are held for a minimum of 5 years post-account closure in line with anti-money laundering requirements.
toto313 uses strictly necessary cookies for session management and optional analytics cookies to improve platform performance. You can manage your cookie preferences via your browser settings.
1.1 The data controller responsible for personal data processed through the toto313 platform at toto313.win is the operating entity holding the international gaming licence under which toto313 operates ("toto313", "we", "us", "our").
1.2 For all data protection enquiries, you may contact our Data Protection Officer (DPO) by email at [email protected] with the subject line "Data Protection Enquiry". We will acknowledge your enquiry within 3 business days.
toto313 collects the following categories of personal data in the course of operating its platform and fulfilling its licensing obligations:
| Category | Data Elements | Required? |
|---|---|---|
| Identity Data | Full legal name, date of birth, nationality, gender, MyKad / passport number | Mandatory (KYC) |
| Contact Data | Malaysian mobile number, email address | Mandatory |
| Financial Data | Payment method details (e-wallet IDs, bank account numbers for withdrawal routing), transaction history | Mandatory |
| Technical Data | IP address, device type, browser type, operating system, session tokens | Automatic |
| Usage Data | Games played, bet amounts, session duration, page interactions, login history | Automatic |
| Communications Data | Live chat transcripts, support email correspondence, feedback submissions | When initiated |
2.1 toto313 does not collect sensitive personal data such as racial or ethnic origin, political opinions, religious beliefs, biometric data, or health information, except where age and identity verification incidentally reveals such information as part of government-issued identification documents submitted for KYC purposes.
3.1 Direct Provision. You provide data directly when you register an Account, complete KYC verification, make a deposit or withdrawal, contact our support team, or participate in promotions.
3.2 Automated Collection. When you access the toto313 Platform, we automatically collect Technical Data and Usage Data through server logs, cookies, and session tracking technologies. This data is collected regardless of whether you are logged in.
3.3 Third-Party Sources. We may receive data from payment processors (confirming transaction status), identity verification services (confirming KYC document authenticity), and fraud prevention databases to verify account information and detect suspicious activity.
4.1 toto313 processes your personal data on the following legal bases and for the following purposes:
5.1 toto313 does not sell, rent, or lease your personal data to third parties. We share personal data only in the following circumstances:
We engage third-party service providers who process data on our behalf under binding data processing agreements. These include: payment processors (DuitNow, FPX, Touch 'n Go, Boost, GrabPay operators), identity verification providers, cloud hosting and infrastructure providers, fraud detection services, and customer support software providers. These processors are contractually prohibited from using your data for any purpose other than providing their services to toto313.
Where necessary for game operation and fairness auditing, toto313 may share non-identifying session and game data with licensed game studios (such as Evolution Gaming, Pragmatic Play, PG Soft). Full identity data is not shared with game providers.
toto313 will disclose personal data to licensing authorities, regulatory bodies, law enforcement agencies, or courts where required by applicable law or regulatory obligation, without prior notice to the Member where legally required.
6.1 As an internationally operated platform, some of your personal data may be transferred to and processed in jurisdictions outside Malaysia. These transfers may involve our cloud infrastructure providers or game studio partners located in other countries.
6.2 Where such transfers occur, toto313 ensures that appropriate safeguards are in place — including standard contractual clauses and contractual obligations on recipient parties to maintain equivalent data protection standards to those applied within Malaysia.
7.1 toto313 retains personal data only for as long as necessary to fulfil the purposes for which it was collected or as required by applicable legal and regulatory obligations:
7.2 Upon expiry of the applicable retention period, data is securely deleted or anonymised such that it can no longer be attributed to any individual.
8.1 As a data subject, you have the following rights regarding your personal data held by toto313:
8.2 To exercise any of the above rights, contact us at [email protected] with the subject line "Data Rights Request" and include sufficient information to verify your identity. We will not charge a fee for reasonable requests.
9.1 The toto313 Platform uses the following categories of cookies:
9.2 toto313 does not use third-party advertising cookies or retargeting pixels. You may manage cookie preferences through your browser settings. Blocking strictly necessary cookies will prevent Platform access.
10.1 The toto313 Platform is strictly for adults aged 21 years and over. We do not knowingly collect personal data from persons under the age of 21.
10.2 If toto313 discovers that personal data has been collected from a person under 21 years of age, the associated Account will be closed immediately, all data will be securely deleted (subject to any mandatory legal retention requirements), and any deposited funds will be returned less any winnings, which shall be forfeited.
10.3 Parents and guardians who believe a minor has registered an account on toto313 should contact us immediately at [email protected].
11.1 With your consent, toto313 may send you promotional communications about bonuses, new game launches, sportsbook promotions, and platform updates via SMS or email to your registered contact details.
11.2 You may opt out of marketing communications at any time by: (a) updating your communication preferences in your Account settings; or (b) contacting support at [email protected] with a request to be removed from marketing lists. Opt-out requests are processed within 5 business days.
11.3 Opting out of marketing communications does not affect transactional communications such as deposit confirmations, withdrawal notifications, KYC requests, or security alerts, which are sent regardless of marketing preferences.
12.1 toto313 implements industry-standard technical and organisational measures to protect your personal data against unauthorised access, disclosure, alteration, or destruction:
12.2 In the event of a personal data breach that is likely to result in a risk to your rights and freedoms, toto313 will notify affected Members without undue delay and in accordance with applicable regulatory notification requirements.
13.1 toto313 reserves the right to update or modify this Privacy Policy at any time. Material changes will be communicated to Members via platform notification or email to the registered address.
13.2 The current version of this Privacy Policy is always available at toto313.win/privacy-policy. The "Last Updated" date at the top of this page reflects when the current version was published. Continued use of the Platform following notification of changes constitutes acceptance of the revised Privacy Policy.
14.1 For any questions, concerns, or requests relating to this Privacy Policy or the processing of your personal data by toto313, please contact us:
Data Protection Officer
toto313 (toto313.win)
Email: [email protected] (subject: "Privacy Policy Enquiry")
We will acknowledge your enquiry within 3 business days and provide a substantive response within 14 business days.
Play with confidence knowing that your personal information is protected to international standards. Over 500,000 Malaysian members trust toto313 with their gaming experience.
21+ For verified adults aged 21 and above only. Always gamble responsibly.