Privacy

Personal Data Protection Notice

Privacy Notice )

Use of PT Bank Panin, Tbk. Services.

PT Bank Pan Indonesia, Tbk. or PT. Bank Panin Tbk is a business entity engaged in banking and financial services, hereinafter referred to as " We ".

We fully recognize that Personal Data is an important asset, so we committed to maintaining the confidentiality and protection of your Personal Data .

We implement protection policies and practices in accordance with the PDP Law (Law Number 27 of 2022 concerning Personal Data Protection) and its accompanying Regulations, and prioritize the principles of caution and security for data processing in the use of Our services. This Personal Data Protection Notice (“ PDP Notice ”) explains the policies and practices We implement in the processing of Your Personal Data when using Our services.

This PDP Notice appliestoallvisitorsandusers of our Services,including:

  1. Digital Services (Digital Banking)
  2. Account Opening and Account Management Services
  3. Funding / Savings Management Services
  4. Financing and Loan Services
  5. Payment System Services
  6. Debit Card and Credit Card Services
  7. Investment and Wealth Management Services
  8. Other Banking Product Services
  9. Employee Recruitment Process

(hereinafter referred to as “ Our Services” )

All visitors and users of the Service (Personal Data Subjects) who use the Service

We (hereinafter referred to as “ You ”).

Please read and understand this PDP Notification carefully, so that

You understand how your Personal Data is processed .

This PDP notification covers the following :

1. Scope of PDP Notification

This PDP Notice regulates the policies and practices implemented by Us as the Personal Data Controller in obtaining, storing, correcting, renewing, updating, disseminating, displaying, announcing, transferring, disclosing, deleting, and destroying (hereinafter referred to as “Processing”) your Personal Data .

2. Personal Data Processed

We obtain and collect information that identifies and/or can be identified individually or in combination with other information either directly or indirectly.

directly through electronic and/or non-electronic systems related to the information, which in this case is limited to Our Services .

The Personal Data collected and processed is your Personal Data provided based on your direct or contractual consent when registering or using Our Services, either electronically or non-electronically, which We manage to provide Services to you , such as at Bank Panin branch offices, the website portal www.panin.co.id , call centers, Bank Panin Mobile Banking, and Bank Panin Internet Banking www.internetpanin.com .

Personal Data required by Us to provide Services and Services based on an agreement between the parties, includes Personal Data of a general and specific nature that is in accordance with the product you use, including the following:

General Data such as:

  1. Full name ,
  2. Gender ,
  3. Place and date of birth
  4. Citizenship,
  5. Marital status ,
  6. work
  7. Family name ,
  8. Phone number ,
  9. Email address ,
  10. Office or home address.

Population Identity Number (KTP) or Passport Number,

Specific Data such as:

  1. Account information ,
  2. Financial and asset information,
  3. Job and business information,
  4. Biometrics (if applicable),
  5. Tax information and Taxpayer Identification Number (NPWP) Credit status and loan history,

3. Purpose of Personal Data Processing

We collect Personal Data for various purposes, as permitted by the laws and regulations in force in the Republic of Indonesia.

In processing your Personal Data , We have the following Personal Data processing purposes (“ Purposes ”):

  1. To fulfill legal and regulatory obligations, such as the Financial Services Authority, Bank Indonesia and PPATK;
  2. For the purposes of verification and processing of Personal Data to produce profile data.

You as the Personal Data Subject;

  1. To provide our best service to you ;
  2. To carry out problem solving and complaints related to access to Our Services ;
  3. To perform maintenance, improvement, development, testing, and personalization of our applications and Services to meet your needs and preferences ;
  4. For marketing/promotional needs of our Products and Services that you may need

interest by first obtaining your consent.

4. Storage of Personal Data

We are committed to storing your Personal Data with the best protection for as long as necessary to provide the Services and Us . Some of the Personal Data may also be managed, processed, and stored by third parties who work with Us to maintain the performance of the Services while still complying with the obligations on access and effectiveness of supervision in accordance with applicable laws and regulations.

We retain your Personal Dataas mentioned above for as long as it is necessary to achieve the purposes for which the Personal Data was collected, while you are still using the Services, or as long as such retention is required or permitted in accordance with the laws and regulations in force in the Republic of Indonesia.

We will cease to process your Personal Dataafter assessing the reasons for collecting such Personal Data are no longer met by the processing of the relevant Personal Data, and the processing is no longer necessary for legal and business purposes.

 

5. Processing of Personal Data

The basis for processing Personal Data carried out by Us includes:

  1. Explicit valid consent from the Personal Data Subject for 1 (one) or several specific purposes that have been communicated by Us to the Personal Data Subject;
  2. Fulfillment of agreement obligations in the event that the Personal Data Subject is one of the parties or to fulfill the Personal Data Subject's request when entering into an agreement;
  3. Fulfillment of our legal obligations in accordance with the provisions of laws and regulations ;
  4. Fulfillment of other legitimate interests by taking into account the objectives, needs and balance of our interests and the rights of Personal Data Subjects.

Personal Data Subjects hereby acknowledge and if required by applicable Personal Data Protection regulations, Personal Data may be processed or disclosed by Us in the following cases :

  1. For the purposes of applicable law and/or to respond to ongoing legal processes.
  2. For tax purposes in accordance with applicable regulations and legislation.
  3. To protect our safety , the safety of Personal Data Subjects or the safety of others or for legitimate interests in the context of:
    1. National security .
    2. Law enforcement process .
    3. State administration .
    4. The interests of supervising the financial services sector, monetary, payment systems, and financial system stability.
    5. Data aggregation and processing are intended for statistical and scientific research purposes in the context of state administration.
    6. A state of emergency that has been declared by the Government.
  4. For internal audit purposes within our environment and affiliated companies .
  5. If necessary, in connection with legal proceedings brought against Us , our officers, employees, affiliates or other related third parties.
  6. To establish, implement, protect, defend and enforce our legal rights .
  7. In processing data, we cooperate with other parties either in a relationship as Joint Controllers or Personal Data Processors.
  8. In the context of Processing Personal Data with Our affiliated companies We will only

provide it in good faith in summary form on the basis of legitimate interests in the eyes of the law.

To disclose your Personal Data to third parties, in order to provide Services to you and assist the government of the Republic of Indonesia and its supporting institutions in carrying out state functions.

  1. For certain Services, We need to process specific Personal Data, such as information related to health, genetics, biometric identifiers and other required information. To the extent We require your explicit consent to process such data, We will provide details about the processing of Personal Data at the time of data collection and ask for your consent .

6. Cookies Usage Policy

We use cookies to improve your experience while browsing our website , provide personalised advertising or content, and analyse our traffic .

Our website uses cookies to distinguish you from other visitors to our website . This helps us provide the best experience when you use it and also allows us to improve the quality of services through our website .

You can choose to enable or disable some or all cookies , but disabling them may affect your browsing experience .

7. Rights of Personal Data Subjects

As a Personal Data Subject, you have the right to:

  1. Obtain information about the clarity of identity, the basis of legal interests, the purpose of the request and use of Personal Data, and the accountability of the party requesting Personal Data.
  2. Complete, update, renew and/or correct errors and/or inaccuracies in Personal Data about yourself in accordance with the purposes of processing Personal Data .
  3. Obtain access and obtain copies of Personal Data about yourself in accordance with statutory provisions.
  4. Terminate processing, delete and/or destroy Personal Data about yourself

You comply with the provisions of laws and regulations .

  1. Withdraw consent to the processing of Personal Data about you that has been given to the Personal Data Controller.
  2. File an objection based on official and accurate evidence to a decision-making action based solely on automated processing, including profiling, which produces legal consequences or has a significant impact on the Personal Data Subject.
  3. Submit a formal and/or written request for a postponement to postpone or limit the processing of Personal Data in a proportionate manner in accordance with the purpose of processing the Personal Data.
  4. Obtain and/or use Personal Data about yourself from the Personal Data Controller in a form that conforms to the structure and/or format commonly used or can be read by electronic systems.
  5. Using and sending Personal Data about yourself to other Personal Data Controllers, as long as the systems used can communicate with each other securely in accordance with the principles of Personal Data Protection (PDP) based on the provisions of laws and regulations.
  6. And other matters in accordance with applicable legal provisions including but not limited to:

limited to the PDP Law .

8. Access to Personal Data

We are committed to fulfilling your right to access Personal Data collected and processed. In fulfilling requests for access to Personal Data, We may reject the request if we find that the request for access to Personal Data meets one or more of the following conditions:

 

  1. Not in accordance with applicable laws and regulations, especially regarding disclosing confidential/depositing customer data
  2. Endangering the safety or physical security or mental security of the Personal Data Subject and/or any other person.
  3. Resulting in the disclosure of Personal Data belonging to other people.
  4. Contrary to national defense and security interests.

For further information regarding requests for access to Personal Data, you can contact the communication channels listed below.

9. Correction and Updating of Your Personal Data

If you find any errors in your Personal Data due to inaccuracy or if you need to update or renew your Personal Data, you can ask us to correct, complete and/or update the Personal Data under our management by contacting the communication channels listed below.

In the event of any inaccuracy in providing your Personal Data , We have the right to terminate the Service based on Our knowledge and consideration .

We urge you to play an active role in ensuring the accuracy and updating or updating of your Personal Data .

10. Security and Confidentiality of Your Personal Data

The security and confidentiality of your Personal Data is a priority for Us . We are committed to implementing the best efforts in order to protect and secure Personal Data from unauthorized access, collection, processing, analysis, storage, disclosure, correction and deletion.

We continually update these measures, ensuring they are in line with current technology and best practices. While we strive to maintain the highest security standards, please remember that no system is completely secure and we cannot be held legally accountable without first proving that any breach was intentional on our part.

In the event of illegal access and activities on the confidentiality of Personal Data that is beyond Our control , We will immediately notify You at the first opportunity so that we can reduce the risks arising from the incident. You are responsible for maintaining the confidentiality of Your Personal Data information , including keeping your pin, cvv, username, password, email or OTP ( One-Time Password ) from anyone and to always maintain and be responsible for the security of the device used.

11. Deletion and Destruction of Personal Data

In accordance with applicable laws and regulations or in accordance with our data archive retention policy, we can delete and/or destroy your Personal Data from our system so that it can no longer identify you , except in cases where it is necessary to fulfill legal obligations,

for future evidence, tax, audit and accounting purposes.

We will provide you with notification before deleting and/or destroying Personal Data.

Notification will be sent to the email address you last registered with our system via panin@panin.co.id . If the email address is not available, invalid, or no longer active, then the notification is deemed to have been made properly and the deletion process will continue in accordance with the data retention policy and applicable provisions.

12. Changes to PDP Notification

This Personal Data Protection Notice (PDP) may be changed and/or updated as needed. We encourage you to always read carefully and check this page periodically for changes to this policy.

You may make a request for this at any time by providing reasonable notice to the communication channels provided by Us .

13. Withdrawal of Consent

You can withdraw consent for Personal Data for promotional/marketing processing by contacting us via panin@panin.co.id

14. Contact Us

If you have any questions regarding this PDP Notice, have complaints regarding Our services, and in relation to handling legal disputes, please contact Us via the following communication channels:

Call Center  1500678 or (021) 251- 5555

e- Mail : panin@panin.co.id