Your privacy is not merely a priority β it is our responsibility. This document clearly outlines what data siti8 collects, why it is needed, how it is protected, and your rights as a member of our platform.
10 Sections Β· SSL 256-bit Β· PDPA Compliant
Six core commitments we uphold for every member
All data transmitted between your device and siti8's servers is protected by 256-bit SSL encryption β the same technology used by leading Malaysian financial institutions.
Siti8 has never and will never sell, rent, or trade members' personal data to any third party for marketing or commercial gain.
All data handling practices at siti8 are in full compliance with Malaysia's Personal Data Protection Act 2010 (PDPA), ensuring your rights as a data subject are protected.
You may access, amend, or request deletion of your personal data at any time through your account settings or by contacting our support team.
In the event of any data security incident affecting your information, siti8 is committed to notifying you within 72 hours of it being identified.
All personal data of Malaysian members is stored on servers located in Malaysia or within jurisdictions that meet equivalent data protection standards.
Welcome to the official siti8 Privacy Policy. This document is designed to clearly and transparently explain how our platform collects, uses, stores, and protects your personal information as a siti8 member or website visitor.
This policy applies to all users of the siti8 platform, including registered members, website visitors, and anyone who interacts with our services through any channel β whether via the website, mobile app, or our customer support channels.
Siti8 acts as the data controller under Malaysia's Personal Data Protection Act 2010 (PDPA). This means we are fully responsible for determining the purposes and means of processing your personal data, and we are bound by all legal obligations set out under the PDPA.
π Note: By using the siti8 platform or registering as a member, you are deemed to have read, understood, and agreed to this Privacy Policy. Please review this page periodically as we may update this policy from time to time.
Siti8 only collects data that is strictly necessary to provide quality, secure, and legally compliant services. The following are the categories of data we collect:
| Data Type | Example | Requirement |
|---|---|---|
| Full name | As shown on your identity card | Mandatory |
| Date of birth | For age verification (18+) | Mandatory |
| Phone number | An active Malaysian phone number | Mandatory |
| Email address | A valid email address belonging to you | Mandatory |
| Password | Stored in encrypted hash form | Mandatory |
| Residential address | Required for higher-level KYC verification | Options / KYC |
To process deposits and withdrawals made through local Malaysian payment methods such as Touch 'n Go eWallet, GrabPay, DuitNow, Boost, ShopeePay, and FPX (Maybank2u, CIMB Clicks), we retain transaction records including:
π Payment Security: siti8 does not store your credit/debit card numbers or full bank account details. All payment processing is handled through PCI-DSS certified payment providers.
Your personal data is collected through the following channels on the siti8 platform:
During account registration, profile form completion, KYC document submission, and communications with customer support.
Through cookies, server logs, device data, and analytics tools that operate when you use our platform.
Transaction records from TNG, GrabPay, DuitNow, and other processors you use for deposits or withdrawals.
For KYC purposes, identity verification information may be cross-checked with third parties authorised under Malaysian law.
Siti8 uses your personal data only for legitimate, stated purposes. We will not use your data for any other purpose without notifying you first.
| Purpose of Use | Legal Basis Under PDPA |
|---|---|
| Management and maintenance of your account | Contract performance |
| Processing deposits and withdrawals (MYR) | Contract performance |
| Identity verification (KYC) and fraud prevention | Legal obligation |
| Anti-money laundering (AML) | Legal obligation |
| Providing customer support | Legitimate interest |
| Product improvement and user experience | Legitimate interest |
| Sending promotions and offers (with consent) | Consent |
| Monitoring responsible gaming | Public interest / Legitimate interest |
| Compliance with court orders or authority directives | Legal obligation |
You have the right to withdraw your consent for the use of your data for marketing purposes at any time by contacting our support team or through the communication preferences settings in your account.
Siti8 does not sell or disclose your personal data to third parties for commercial gain. However, in the course of our operations, your data may be shared with certain parties in limited and lawful circumstances:
β οΈ Important: siti8 does not share your data with third-party advertisers, data brokers, or any other party for marketing profiling purposes without your explicit consent. If you receive any communication claiming to be from siti8 that looks suspicious, please contact us immediately.
Siti8 implements multiple layers of technical and organisational safeguards to protect your personal data from unauthorised access, loss, or misuse. Our key security measures include:
SSL/TLS 256-bit encryption for all data transmissions. Passwords stored using bcrypt hashing. Sensitive data in the database encrypted at the field level.
Principle of least privilege β only staff who require access may view data. Full audit logs are maintained for all internal access to user data.
Regular penetration testing by independent security firms. Automated vulnerability scans run daily across all systems.
Automated hourly data backups to geographically separate locations. Disaster recovery plan (DRP) tested quarterly.
Siti8 uses cookies and similar tracking technologies to enhance your experience on our platform. Cookies are small text files stored on your device by your web browser.
| Cookie Category | Purpose | Duration | Type |
|---|---|---|---|
| Essential Cookies | Ensuring core platform functions such as session login and security | Session / 30 days | |
| Functional Cookies | Remembering your preferences such as language, theme, and display settings | 1 year | |
| Analytics Cookies | Analysing platform usage patterns for continuous improvement | 2 years |
You can control and manage cookies through your web browser settings. Please note, however, that disabling essential cookies may affect the functionality of the siti8 platform and your ability to log in securely.
Under Malaysia's PDPA 2010 and siti8's internal policies, you have the following rights regarding your personal data. We are committed to respecting and facilitating the exercise of these rights:
Request a copy of the personal data we hold about you. We will respond within 21 business days.
Request corrections to any inaccurate or incomplete data in your siti8 account at any time.
Request deletion of your personal data when it is no longer required, subject to our legal obligations.
You may object to the processing of your data for direct marketing or behavioural profiling purposes at any time.
Request your data in a structured, machine-readable format for transfer to another platform.
Request that we restrict the processing of your data in specific situations while a dispute or review is ongoing.
How to Exercise Your Rights: To exercise any of the rights above, contact us by email at support@siti8.ws with the subject line "Personal Data Rights Request". Please include your full name and account number. We will respond within 21 business days and may require identity verification before processing your request.
Siti8 retains your personal data only for as long as necessary for the purposes outlined in this policy, or as required by applicable Malaysian law. The following are our data retention guidelines:
| Data Category | Retention Period | Reason |
|---|---|---|
| Active account information | Duration of active account + 7 years | Legal compliance & audit |
| Financial transaction records | 7 years from the transaction date | Tax obligations & AML |
| Access & security logs | 2 years | Security Investigation |
| Customer support communications | 3 years | Referrals & service quality |
| Analytical cookie data | 2 years | Platform improvements |
| KYC Documents | 5 years from account termination | AMLATFPUAA legal obligations |
Once the specified retention period has lapsed, your data will be securely deleted using methods that ensure it cannot be recovered. Data held in backup form will be deleted in the next backup cycle.
If you have any questions, concerns, or complaints regarding how we handle your personal data, siti8's Data Protection Officer (DPO) team is ready to assist you.
Siti8 reserves the right to update or amend this Privacy Policy at any time to reflect changes in our practices, legal requirements, or service improvements. When material changes occur, we will:
Continued use of the siti8 platform after the effective date of any changes constitutes your acceptance of the updated Privacy Policy.
Current Version: 4.1 | Effective Date: 1 January 2026 | Language: Malay (ms-MY)
A transparent process from data collection to protection
With your privacy protected, secure MYR transactions, and a PDPA-compliant platform β you can enjoy football, jackpot slots, and live casino completely worry-free. Register today!
PDPA Compliant Β· SSL 256-bit Β· Malaysia Data