Reference

Check Our Legal and Access Policies

We keep our legal position clear so you know exactly where you stand. Access to xstar depends on your local law and eligible regions — our policies below explain how we handle your data, your account, and your rights when using bKash, Nagad or…

Region-Dependent AccessData Handling DisclosedPayment Policy TransparentAccount Rights Defined
xstar Check Our Legal and Access Policies
DATA AND ACCOUNT HANDLING

Explore How We Manage Your Information

Your data matters, and we treat it as a liability we must protect rather than an asset to exploit. Below are six areas where our handling practices affect you directly. Each one outlines what we do, why, and how you can request changes or raise concerns. We operate with the assumption that transparency on these points builds confidence in the platform — particularly when your bKash, Nagad, or Rocket wallet details are involved.

Personal Data Collection

We collect the information you provide at registration — name, phone number, email. We also log device type and session data to detect irregular access patterns.

Cookie Usage

Our site uses cookies to keep you logged in and to remember your preferences such as language or last-visited lobby section.

Account Security Measures

Each login triggers a verification step — OTP sent to your registered mobile number. We encrypt stored credentials and wallet references. If you suspect unauthorised access, contact support immediately through live chat and we will freeze the account pending review.

Data Retention Period

We retain your account data for as long as your account is active plus a reasonable period after closure for regulatory and dispute-resolution purposes. After that window, personal identifiers are anonymised or deleted from our active systems.

Your Right to Request Changes

You may ask us to correct inaccurate personal details, export a copy of your stored data, or request deletion of your account entirely. Submit such requests via email or live chat.

Payment Data Handling

When you deposit via bKash, Nagad, or Rocket, we store only the wallet reference needed to process withdrawals back to the same source.

LEGAL CONTACT PATHS

Open a Channel for Policy Questions

If something in our legal notices needs clarification, reach out directly. We handle policy-related queries separately from general account help so your concern reaches the right team without delay. Keep your registered account email or phone number handy when you contact us — it speeds up identity confirmation and lets us pull your account context immediately.

Live Chat Tap the chat icon from any page on mobile or desktop. Select the policy or legal category when prompted so your message routes to the compliance team instead of general support. Responses come through the same chat window.
Email Send your query to our support address with the subject line referencing your concern — data request, account closure, eligibility question. We aim to respond within a reasonable timeframe and will confirm receipt so you know your message landed.
Account Notification Centre Policy updates and responses to your legal queries also appear inside your account notification panel. Check there if you submitted a request and have not seen an email reply yet — sometimes the in-app response arrives faster.

Switch to Our Legal FAQ for Quick Answers

These are the questions our support team fields most often regarding legal and policy matters. If your concern is not covered here, open a chat session and reference the specific clause or area you need help with.

Access depends on your local law and whether your region is eligible. We do not provide legal advice on this point. If you are unsure, consult an independent legal professional before creating an account or depositing funds.

We collect your name, phone number, and email address. Device type and session timestamps are also logged for security. We do not request national ID during registration — that step only applies if a withdrawal verification threshold is triggered.

Yes. Contact support via live chat or email with your deletion request. After identity confirmation through OTP, we process the request. Active balances must be withdrawn or forfeited before full deletion completes.

We store only the wallet reference necessary to route withdrawals back to you. Your PIN and full wallet credentials never touch our servers. The deposit transaction itself completes entirely within your bKash, Nagad, or Rocket app.

We do not sell or rent your data. We may share limited information with payment processors to complete transactions, or with authorities if legally compelled. Beyond those scenarios, your data stays within our system.

We post revised terms on this page with the update date visible. Where practical, we also push a notification to your account panel and registered email. Continued use of the platform after an update constitutes acceptance of the new terms.

If we restrict access due to eligibility or compliance concerns, your verified balance remains your property. We process a withdrawal to your last-used mobile wallet once any required identity checks clear. Unverified funds may be held pending review.

Yes — one account, multiple devices. Each new device login triggers an OTP to your registered number. We log device identifiers for security, but you are free to switch between phone, tablet, and desktop browser without creating separate accounts.

Open live chat or send an email specifying the field you need corrected — name, phone number, or email. After verifying your identity through OTP, we update the record. Some changes, like phone number, require re-verification for future withdrawals.

We use cookies primarily for session persistence and preference storage. You can clear or block cookies through your browser settings at any time. Blocking them will log you out and reset display preferences but will not delete your account or affect your balance.