Reference

How 98wines Handles Your Personal Information

This Privacy Policy explains what data we collect when you open an account or make a deposit via bKash, Nagad, or Rocket — and exactly how we use, store, and protect it.

Account data protectedbKash, Nagad, Rocket payment data coveredYour right to access and deleteNo data sold to third partiesContact us to request changes
98wines How 98wines Handles Your Personal Information
REACH OUR TEAM

Contact Us About Your Privacy Rights

If you want to access the data we hold on your account, request a correction, or ask us to delete your information, our support team handles these requests directly. Raise your request through any of the channels below and we will respond within a reasonable timeframe. Please include your registered mobile number and account email so we can verify your identity before actioning any data request.

Team online

Live Chat

Start a live chat session from any page on the site. Identify yourself with your registered email and we will handle your data request securely.

Email Support

Send your data access or deletion request to our support email. Include your account mobile number so we can locate and verify your profile quickly.

Help Centre

Our Help Centre has a dedicated privacy request form. Fill in your account details and describe what you need — corrections, access or removal.

HOW WE PROTECT YOU

Our Data Handling Practices in Plain Terms

We use encryption on all connections between your device and our servers, which means data moving between your bKash, Nagad, or Rocket wallet and your account is protected in transit. Account logins use a one-time password sent to your registered mobile, reducing the risk of unauthorised access even if your password is compromised. We review data retention schedules periodically and clear inactive records in line with our internal policy.

Encrypted Connections

Every session on our platform runs over an encrypted connection. Payment data from bKash, Nagad and Rocket transfers is never exposed in plain text during transit.

OTP Account Access

We verify account logins with a one-time password sent to your registered mobile number, adding a layer of security beyond your password alone.

Controlled Data Sharing

We share your data only with payment processors like bKash, Nagad, and Rocket where needed to complete a transaction, and with service partners under strict data agreements.

Retention and Deletion

We keep your data only while your account is active or as required by applicable rules. Once that period ends, personal records are deleted from our systems.

Your Privacy Questions Answered

The questions below cover what we get asked most about how we handle account data, payment information, and your rights under this policy. If your question is not here, reach out via live chat or email and our support team will respond.

We collect your name, email address, and mobile number at registration. When you deposit via bKash, Nagad, or Rocket, we also log the transaction reference linked to that payment.

No. We never store your mobile banking PIN, password, or full wallet credentials. Transaction references are recorded for account history, but your authentication details stay only with your wallet provider.

Yes. Contact us via live chat or the Help Centre privacy form with your registered email and mobile number. We will verify your identity and provide a summary of the data we hold.

Submit a deletion request through the Help Centre form or email support. We will remove personal records once your account is closed, retaining only the minimal transaction log required by applicable rules.

We share data only where needed — with bKash, Nagad, Rocket to process payments, and with technical service partners under data agreements. We do not sell your data to advertisers.

Cookies keep your session active and help us detect unusual login patterns. You can manage or block cookies through your browser settings, though some account functions may be affected if cookies are disabled.
Reference

Privacy Policy

Service availability depends on eligible regions and local law. Users should check local rules before opening an account.

Access may be available only where local law permits.