Reference

How We Handle Your Information

We collect account details when you register and payment information when you use bKash, Nagad or Rocket to fund your wallet. This policy explains what we gather, how we store it, who can access it, and how you can request changes or deletion.

Account data collectionPayment securityDeletion requestsCookie disclosureThird-party processors
BB Baje How We Handle Your Information
PRIVACY CONTACT

How to Reach Us About Your Data

If you want to review the information we hold, correct an error, withdraw consent for marketing messages, or request account deletion, contact us through any of the channels below. We respond to data requests within the timeframe local law requires, or within two weeks if no specific period applies.

Live Chat Open the chat widget in your account dashboard and select the privacy topic from the menu. An operator will pull your record and walk you through correction, export or deletion options during the session.
Email Request Send your request to the support email shown in the contact footer, include your registered mobile number and a brief description of what you need. We verify your identity by matching the email to your account before making changes.
Account Settings Log in and visit the privacy section under account settings to download a copy of your data, toggle marketing preferences, or submit a deletion request. Deletion closes your account and cannot be reversed once processed.
DATA PRACTICES

How We Secure and Manage Information

We encrypt payment details when you send a bKash, Nagad or Rocket transfer, store passwords as salted hashes, and limit staff access to account records on a need-to-know basis. Session cookies expire when you log out, and analytics cookies can be blocked in your browser settings without affecting gameplay or wallet functions.

Payment Encryption

When you enter a bKash, Nagad or Rocket account number and confirm a deposit, the transaction travels over an encrypted channel. We store only the masked last digits and the transaction reference, not your full mobile-wallet PIN or credentials.

Cookie Policy

We set a session cookie to keep you logged in and a preference cookie to remember your language and timezone.

Account Security

Your password is hashed with a salt before storage so even our database administrators cannot read it in plain text.

Retention Rules

Active-account data stays on file while your account is open. If you close your account, we archive transaction logs and identity records for the period local financial regulations require, then delete them.

Common Privacy Questions

We collect your name, mobile number, email, date of birth and location during registration, plus device identifiers and IP addresses when you log in. Payment details from bKash, Nagad or Rocket deposits are logged but your wallet PIN stays with the payment provider.

Yes. Log in and go to account settings, then select the privacy tab and request a data export. We send a downloadable file with your profile, transaction history and support tickets within two business days.

Contact support via live chat or email and ask for account closure. We verify your identity, close the account, and delete personal data except transaction logs kept for regulatory periods. The process completes within a week once approved.

We share payment data with bKash, Nagad and Rocket processors to clear deposits and withdrawals, and with fraud-prevention services to verify transactions. We do not sell or rent your information to advertisers or brokers.

Marketing preferences and session logs are deleted immediately. Identity records and transaction history are archived for the period local financial law requires, typically one to five years, then removed from our systems.

Yes. Visit account settings and toggle off promotional emails and SMS. You can also click the unsubscribe link in any marketing email. Account-related messages like withdrawal confirmations and security alerts will still come through.
Reference

Privacy Policy

Service availability depends on eligible regions and local law. Users should check local rules before opening an account.

Access may be available only where local law permits.