Reference

How 33bad Handles Your Personal Data

This Privacy Policy explains what data we collect when you use 33bad, how we store it, and what rights you have over it.

Account data is secured in transitbKash, Nagad, Rocket payment details handled separatelyYou can request your data at any timeNo data sold to third partiesPolicy applies to all device access
33bad How 33bad Handles Your Personal Data
DATA HANDLING PRACTICES

How We Protect and Manage Your Information

Data security at 33bad is not a single switch — it is a set of layered practices around your account, your payment records and your session. We use SSL encryption on all connections so that data moving between your device and our servers stays private. Account access requires a one-time password sent to your registered number, which means someone who only knows your email still cannot get in. Payment records tied to bKash, Nagad and Rocket are stored separately from your general profile data and are accessible only to authorised account and finance staff.

SSL Encryption in Transit

Every page you load on 33bad runs over HTTPS. Your account details and payment references are encrypted between your device and our servers at all times.

OTP Account Access

Logging in requires a one-time code sent to your registered mobile number. This step blocks unauthorised access even if your password is ever compromised.

Data Retention Limits

We keep your data only as long as your account is active or as required by applicable regulations. When data is no longer needed, we delete or anonymise it securely.

Right to Correct or Remove

You can ask us to correct inaccurate data or request deletion of your account records. Requests are handled by our support team — contact us via chat or email to start the process.

PRIVACY CONTACT PATHS

Reach Us About Your Privacy

If you want to request a copy of the data we hold, ask us to correct something, or raise a concern about how your information has been handled, you can reach our team through the channels below. We aim to respond to all data-related requests as quickly as our team can manage — complex cases may take a little longer, and we will let you know if that applies to yours.

Team online

Live Chat

Open the chat widget from any page on 33bad. Identify yourself with your registered account number and state that your query is about personal data.

Email Support

Write to our support address from your registered email. Use the subject line 'Data Request' so the right team picks it up without delay.

Account Help Centre

Log into your 33bad account, head to the Help section, and submit a ticket under the Privacy category. Include your bKash or Nagad number if the query relates to a payment record.

Common Questions About Your Privacy at 33bad

These are the questions our account holders ask most often about how their data is handled. If your question is not covered here, reach out through live chat or email and we will respond directly.

We collect your name, email, contact number and any verification documents you submit. Device and session data is also logged to detect unusual login activity on your account.

No. We only store the transaction reference and amount from your mobile wallet payment. Your PIN and wallet credentials are never captured or held on our servers.

Yes. Email us from your registered address with the subject 'Data Request' or submit a ticket in the Help section of your account. We will compile and send your data records.

We retain data while your account is active and for as long as applicable regulations require after closure. Once that period ends, records are deleted or anonymised.

We share payment references with bKash, Nagad or Rocket only to process your transaction. We do not sell or share your personal information with advertisers or marketing companies.

Contact support through live chat or email, state that you want your account closed and your data removed, and our team will walk you through the verification and deletion steps.
Reference

Privacy Policy

Service availability depends on eligible regions and local law. Users should check local rules before opening an account.

Access may be available only where local law permits.