Privacy & Data Security

Privacy Policy mega login — Member Personal Data Protection

Mega login treats every member's privacy as a priority. This document clearly explains how we collect, use, store, and protect your personal information — in compliance with Malaysia's Personal Data Protection Act 2010 (PDPA).

Last Updated: January 2026
Bahasa Melayu (Official)
PDPA 2010 Compliance
Our Privacy Commitment
256-bit SSL encryption on all data
Data is not sold to third parties
Data access & deletion rights guaranteed
Full compliance with Malaysia's Personal Data Protection Act 2010
24/7 security monitoring

Why Your Data Is Safe With mega login

We invest in industry-grade security infrastructure to ensure every piece of information you provide remains protected at all times.

Advanced-Level Encryption

All data transmitted between your device and the mega login servers is protected by 256-bit SSL/TLS encryption — the same standard used by leading banking institutions in Malaysia. Stored data is also encrypted using the AES-256 method.

Strict Access Controls

Members' personal information is accessible only to specifically authorised mega login staff with a legitimate operational need. All access is logged and continuously monitored to detect any suspicious activity.

Malaysia PDPA Compliance

Mega login operates in full compliance with Malaysia's Personal Data Protection Act 2010 (PDPA). The principles of fair data processing, legitimate purpose, and data collection limitation are fully observed in all our operations.

No Data Sales

Mega login has never and will never sell, rent, or trade members' personal information to any third party for marketing or commercial purposes. Your data belongs to you, and we respect the trust you place in us.

Right to Data Deletion

You may request the deletion of your personal data from mega login systems at any time. Deletion requests will be processed within 30 working days, subject to mandatory record-keeping requirements as prescribed by law.

Data Breach Notification

In the event of any security incident affecting member data, mega login is committed to notifying affected members within 72 hours and taking immediate remediation steps in accordance with the established incident response procedure.


Identification

Mega login ("we", "Platform", "mega login") respects the privacy of every individual who uses our services. This Privacy Policy is an honest and transparent account of our data management practices — no confusing language, no hidden conditions.

By registering an account or using the mega login platform, you acknowledge that you have read and understood this Privacy Policy. We encourage you to read this document carefully in its entirety and to contact us if you have any questions. Privacy is not merely a legal obligation for us — it is a core value we uphold in every operational decision.

This document applies to all information collected through the megalogin.app website, the mega login mobile app (Android and iOS), and all official mega login communication channels including customer support and email.

1. Information We Collect

Mega login collects several categories of information to ensure a safe, lawful, and quality service is provided to every member. The following are the types of information we collect:

a) Information You Provide Directly

  • Full name as shown on official identification documents
  • Date of birth and gender
  • Active mobile phone number
  • A valid and active email address
  • Account password (stored in hashed format — we do not store plain-text passwords)
  • Bank account or e-wallet details for deposit and withdrawal purposes
  • KYC documents: copy of MyKad, passport, or other valid identity document
  • Proof of address: recent utility bill or bank statement

b) Information Collected Automatically

  • IP address and general geolocation data (state/city)
  • Device type, operating system, and app version in use
  • Browser information (browser user-agent)
  • Login session data including time, date, and session duration
  • Transaction history: deposits, withdrawals, wagering and wins
  • In-platform behavioural data: games played, access frequency
  • Cookie data and device identifiers for security and authentication purposes

Mega login does not collect information beyond what is required to deliver its services. The principle of data minimisation is strictly observed — we only collect what is genuinely necessary for the stated purpose.

c) Information From Third Parties

In certain situations, mega login may receive information from trusted third-party sources such as identity verification service providers, payment providers, and fraud prevention agencies. This information is used solely to verify member identity and prevent fraud and money laundering.

2. Purpose of Data Collection & Processing

Mega login processes members' personal data only for legitimate and transparent purposes. Each processing purpose has a solid legal basis under Malaysia's PDPA 2010:

Processing Purpose Data Used Legal Basis
Account registration & verification Name, email, phone, KYC Contract performance
Financial transaction processing Bank details, transaction history Contract performance
Fraud prevention & AML IP address, session data, KYC, transactions Legal obligation
Customer support Email, communication records Legitimate interests
Platform improvements Usage data, analytics cookies Legitimate interests
Marketing communications Email, phone number Consent
Regulatory compliance All data categories Legal obligation

Regarding marketing communications: you may opt out of promotional emails at any time by clicking the "unsubscribe" link in any email we send, or by updating your notification settings in your mega login account dashboard.

3. Information Sharing

Mega login does not sell, rent, or disclose members' personal information to third parties for marketing purposes. However, in the course of business operations, there are situations where we need to share information with certain parties:

Trusted Service Providers

Mega login works with selected third-party service providers for platform operational purposes. These include:

  • Payment providers — to process deposits and withdrawals securely
  • Identity verification service providers — to complete the KYC process
  • Game providers — to deliver game content (username only, without full personal details)
  • Cloud services and computing — for secure data hosting
  • Analytics platforms — to understand usage patterns and improve the platform

All service providers are bound by strict confidentiality agreements and are only permitted to use data for the specified purposes.

Legally Mandated Disclosures

Mega login will disclose members' personal information when required by law or by direction of a legitimate authority, including in the context of:

  • Compliance with court orders or writs of summons
  • Criminal investigations including fraud and money laundering
  • Official requests from Bank Negara Malaysia or law enforcement agencies
  • Protection of mega login rights and property when legally required

In all instances where data is disclosed to authorities, mega login will notify the relevant member if permitted by law to do so.

4. Data Security

The security of members' personal data is a responsibility we take very seriously. mega login implements multiple layers of technical and organisational security controls to protect your information:

Technical Controls

  • Data encryption in transit: TLS 1.3 / SSL 256-bit for all communications between client and server
  • Data encryption at rest: AES-256 for all sensitive data in the database
  • Passwords are stored using the bcrypt hashing algorithm with a high cost factor
  • Two-factor authentication (2FA) is available and encouraged for all member accounts
  • Round-the-clock 24/7 security monitoring with an intrusion detection system (IDS)
  • Regular penetration testing by independent security experts
  • Frequent data backup snapshots with full encryption

Organisational Controls

  • Role-based access control (RBAC) policy — staff only access data required for their designated tasks
  • Mandatory information security awareness training for all staff
  • Non-disclosure agreements (NDA) signed by all staff and contractors
  • Clear and tested security incident response procedures

While mega login takes all reasonable steps to protect your data, no system can be guaranteed 100% secure. You also play a role by using a strong password, enabling 2FA, and not sharing your login details with anyone.

5. Cookies & Tracking Technologies

Mega login uses cookies and similar tracking technologies to enhance the user experience, ensure account security, and understand how the platform is used. The following are the categories of cookies we use:

Cookie Types Purpose Duration
Essential Cookies Session validation, login security, CSRF prevention Session / 24 hours
Functional Cookies Language preference, display settings, geographic region 30 days
Analytics Cookies Platform usage statistics, UX improvement 90 days
Marketing Cookies Curation of relevant promotional content (with consent) 180 days

You can manage your cookie preferences through your browser settings at any time. Disabling essential cookies may affect the Login functionality and security of your account. Analytics and marketing cookies can be disabled without affecting core platform functionality.

Mega login does not use cross-site tracking or device fingerprinting for third-party marketing purposes. Cookie data is used exclusively within the mega login ecosystem.

6. Your Rights as a Data Subject

Under Malaysia's PDPA 2010, you as a data subject have the following rights regarding your personal information held by mega login:

Right of Access

Request a copy of all personal information we hold about you in a readable format.

Right to Rectification

Request correction of inaccurate, outdated, or incomplete information in your records.

Right to Erasure

Request deletion of your personal data when there is no longer a valid reason for us to retain it.

Right to Object

Object to the processing of your personal data for direct marketing purposes or certain legitimate interests.

Right to Data Portability

Receive your data in a structured, commonly used, and machine-readable format for transfer to another platform.

Right to Restrict Processing

Request a temporary restriction on the processing of your data while a dispute or review is in progress.

To exercise any of the above rights, contact the mega login Data Protection Officer team via email at [email protected]. We will respond within 14 business days. Your identity must be verified before the request can be processed.

7. Data Retention & Deletion

Mega login retains members' personal data only for as long as necessary to fulfil the purposes stated in this policy or as required by applicable law. The following are our data retention period guidelines:

  • Active account data — retained for the duration the member account remains active, plus 5 years after account closure (for audit and AML compliance purposes)
  • Financial transaction records — retained for 7 years in accordance with taxation and anti-money laundering legal requirements
  • KYC Documents — retained for 5 years after the business relationship ends, in accordance with the Anti-Money Laundering Act 2001
  • Customer support communication logs — retained for 3 years
  • Analytics cookie data — deleted after 90 days
  • System access logs — retained for 12 months for security purposes

Once the retention period expires, data will be securely deleted using cryptographic erasure or appropriate physical deletion methods for storage media. Deleted data cannot be recovered.

If you request account deletion before the mandatory retention period ends, mega login will block access to that data and flag it for deletion once the legal retention period has been fulfilled.

8. Third-Party Links & Services

The mega login platform integrates services from carefully selected third-party game and payment providers. While we strive to partner only with providers that uphold high privacy standards, mega login is not responsible for the privacy practices of independent external entities.

Every third-party provider integrated with the mega login platform:

  • Must sign a Data Processing Agreement with mega login
  • Receives only the minimum data required to provide the service
  • Regularly audited to ensure compliance with security and privacy standards
  • Not permitted to use mega login member data for their own marketing purposes

We encourage you to read the privacy policy of each third-party service provider separately to fully understand how they handle your personal data.

9. Changes to the Privacy Policy

Mega login reserves the right to update or amend this Privacy Policy from time to time to reflect changes in operational practices, legal requirements, or platform improvements. Any changes made are for the benefit of better data protection for members.

When significant changes are made to this Privacy Policy, mega login will:

  • Displaying a clear notice on the home page of the mega login website and mobile app
  • Sending notification emails to all registered members at least 14 days before changes take effect
  • Displaying an updated "Last Updated" date at the top of this document
  • Maintaining an archive of previous versions of the Privacy Policy that members may request

Continued use of the mega login platform after the effective date of any changes means you accept the updated Privacy Policy. If you disagree with the changes made, you have the right to close your account and request data deletion in accordance with the established procedure.

We encourage you to review this Privacy Policy page regularly to stay informed about how we protect your information. You can bookmark this page for easy reference.

10. Contact Us

If you have any questions, concerns or complaints regarding this Privacy Policy or how mega login handles your personal data, please contact our Data Protection Officer:

Privacy Email

[email protected]

Response within 14 business days

Customer Support

[email protected]

Available 24 hours / 7 days

You may also refer to FAQ page us for answers to frequently asked questions about privacy and account security. If you are not satisfied with our response, you have the right to lodge a complaint with the Personal Data Protection Commissioner of Malaysia.


You Are Always in Control of Your Data

Mega login gives you full control over your personal information. Below is a summary of your key rights as a member.

Access
View your data
Correct
Record updates
Delete
Delete your data
Export
Download data
Object
Stop processing
Block
Processing restriction

Ready to Join mega login?

Your privacy is protected, your data is secure, and your games are guaranteed fair. Register a mega login account today and enjoy the best gaming experience with complete peace of mind.

PDPA-Protected Data
SSL 256-bit
No Data Sales
Android & iOS App
Bahasa Melayu