Reference

How 399bay Handles Your Personal Information

This page sets out what data we collect when you open an account, make a deposit via bKash, Nagad or Rocket, or contact our support team — and how we use, store and protect it.

Account data protectedPayment info securedNo data sold to third partiesCookie controls availableContact us to request changes
399bay How 399bay Handles Your Personal Information
PRIVACY CONTACT PATHS

Reach Us About Your Privacy Rights

If you want to review the data we hold, request a correction, or ask us to delete your account information, our support team handles these requests directly. You can reach us through the channels below. We aim to respond to all data-related requests as promptly as our team allows, and we will confirm receipt of your request before we begin processing it.

Team online

Live Chat

Start a chat session from the account menu on your phone or desktop browser. Describe your privacy request clearly and our team will log it immediately.

Email Support

Send your data request or privacy concern to our support email address shown in your account settings. Include your registered contact number for faster matching.

Account Help Form

Use the in-app help form under account settings to submit a formal data access or deletion request. This creates a reference number you can track.

DATA HANDLING PRACTICES

How We Protect and Manage Your Information

We apply a layered approach to data security — your account credentials are encrypted in storage, and connections between your device and our platform use SSL encryption in transit. Payment data from bKash, Nagad and Rocket passes through the respective processor's own secure environment; we hold only the reference and outcome, never your wallet credentials. Your rights under this policy apply subject to local law and the eligible region rules that govern your account.

Cookie Controls

We use session cookies for login continuity and analytics cookies to understand page performance. You can adjust cookie preferences through your browser settings at any time.

Account Security

Login sessions are protected by OTP verification sent to your registered mobile number. Unusual device or location activity triggers an additional check before access is granted.

Data Retention

We keep your account records while your account is active. After closure, we retain only what applicable law in your eligible region requires, then delete or anonymise the rest.

Third-Party Sharing

Data is shared only with processors who handle your transactions — bKash, Nagad, Rocket — and only to the extent needed to complete or verify that transaction. No broader sharing occurs.

Common Questions About This Privacy Policy

Below are the questions we hear most often about how 399bay handles personal data, payment records and your rights as an account holder. If your question is not covered here, contact us directly through the support channels listed above.

We collect your name, email, mobile number and any identity documents needed to verify your account. Device and session data are also recorded to protect your login security.

No. Your wallet PIN never passes through our systems. We record only the transaction reference and outcome supplied by the payment processor after your transfer is confirmed.

Yes. Submit a data access request through our live chat, email support or the in-app help form. We will confirm receipt and respond subject to your eligible region's applicable rules.

Contact our support team with your registered mobile number and the specific correction or deletion you need. We process these requests and confirm the outcome in writing.

We use session cookies to keep your login active and analytics cookies to measure page performance. You can adjust or block cookies through your browser settings without losing account access.

Records are kept while your account is active and for a period after closure as required by applicable law in your eligible region. After that period, data is deleted or anonymised.
Reference

Privacy Policy

Service availability depends on eligible regions and local law. Users should check local rules before opening an account.

Access may be available only where local law permits.