Rujukan Laman

Legal Notice & Terms for Malaysia

We've built maxbet88 around clear policy standards for data handling, account access and user rights.

Data handling detailUser rights explainedContact paths open
maxbet88 Legal Notice & Terms for Malaysia
POLICY CONTACT

How to Reach Our Policy Team

Whether you want to exercise a data right, request a copy of what we hold, ask for deletion, or clarify a term in this notice, our policy team is available through three…

Policy email Send your data-rights request or policy question to our dedicated inbox. Attach supporting identity documents if you're asking for account data or deletion. We acknowledge receipt within a few hours and provide a substantive answer or the requested export file within one business day for straightforward requests, longer for complex audits.
Live policy chat Connect with a policy specialist during Malaysia business hours for real-time answers about data handling, retention periods, consent withdrawal, or how to update your communication preferences. The chat transcript is saved to your account so you can refer back to any commitments or timelines we give you during the session.
Help-centre articles Browse our policy knowledge base for articles that explain how we collect and use your data, how long we keep it, who we share it with (payment processors and identity-verification partners only), and the rights you hold under Malaysia consumer-protection frameworks. Each article includes a last-updated date so you know the guidance is current.
DATA & SECURITY

How We Handle Your Information & Keep Accounts Secure

We handle your personal data, payment details and account activity under frameworks that respect Malaysia privacy expectations and meet international data-security standards.

Data we collect

When you open an account we ask for your name, email, phone number, date of birth and a copy of government-issued ID to verify identity and meet anti-money-laundering requirements. Payment data—card numbers, e-wallet handles, bank-account details for Touch 'n Go, GrabPay, Boost or FPX—is tokenised by our payment processor and never stored in plain text on our servers. We also log session data (IP address, device type, browser) to detect suspicious login patterns and prevent unauthorised access.

How we protect it

All account data is encrypted at rest using AES-256 and in transit using TLS 1.3. Payment transactions are processed by PCI DSS–compliant partners; we never see your full card number. Two-factor authentication is available and recommended for every account. Our infrastructure undergoes regular penetration testing and vulnerability scanning, with findings remediated within strict service-level windows. Employee access to personal data is role-based and audited.

Cookies & tracking

We use essential cookies to maintain your logged-in session, remember language preference and keep your payment method selected across page reloads. Analytics cookies track anonymised behaviour—pages visited, features used, time spent—to help us improve the lobby layout and payment flow. You can disable non-essential cookies through your browser settings or our cookie-preference panel; doing so will not prevent you from playing but may reduce personalisation.

Retention policy

Active account data is retained as long as your account remains open. If you close your account we keep identity records and transaction history for six years to meet financial-record-keeping and dispute-resolution obligations, then delete them. Session logs and anonymised analytics are purged after twelve months. Marketing-consent records are kept until you withdraw consent, at which point we suppress your contact details immediately and delete them after ninety days.

Your rights

You can request a copy of all personal data we hold about you, ask us to correct inaccurate information, withdraw consent for marketing communications, or request deletion of your account and all associated data. Deletion requests are processed within seven business days; we'll confirm completion by email. If you believe we've mishandled your data or breached local privacy law, you may lodge a complaint with Malaysia's Personal Data Protection Commissioner.

Policy contact

To exercise any of these rights or ask a question about how we handle your data, email our policy team or use the live-chat channel during Malaysia business hours. Include your registered email address and a brief description of your request. For data exports or deletion we'll verify your identity by sending a one-time code to your registered phone number before processing the request.

Common Questions About Our Legal Framework

We offer services where local law permits. Malaysia visitors can access the platform if they meet the legal age requirement and confirm that online gaming is lawful in their specific location. When you register we ask you to confirm your jurisdiction; continued use constitutes that confirmation.

We collect your name, email, phone number, date of birth and a government-issued ID scan to verify identity and comply with anti-money-laundering rules. Payment details for Touch 'n Go, GrabPay, Boost or FPX are tokenised by our processor and never stored in plain text on our servers.

Identity records and transaction history are retained for six years after account closure to meet financial-record-keeping obligations and resolve any disputes that arise. Session logs and anonymised analytics are deleted after twelve months. Marketing records are suppressed immediately when you withdraw consent and fully deleted after ninety days.

Yes. Email our policy team or use the live-chat channel with your registered email address. We'll verify your identity by sending a one-time code to your phone, then provide a full data export in JSON or CSV format within one business day for most requests.

Click the unsubscribe link at the bottom of any marketing email, or visit your account dashboard and toggle off marketing communications under notification preferences. Changes take effect immediately; you'll stop receiving promotional messages within twenty-four hours. You'll still receive transactional emails about deposits, withdrawals and account security.

Contact our policy team first so we can investigate and resolve the issue. If you remain unsatisfied you may lodge a complaint with Malaysia's Personal Data Protection Commissioner. We take privacy breaches seriously and will cooperate fully with any regulatory investigation.

We share payment details with our PCI DSS–compliant payment processor to handle deposits via Touch 'n Go, GrabPay, Boost and FPX. Identity documents go to our verification partner to confirm your name and age. We do not sell or rent your data to third parties for marketing purposes. All partners are bound by strict data-protection agreements.