Reference

Privacy Policy at omagic

We handle your personal information with the same care you put into choosing your mobile wallet. This policy explains exactly what data we collect, why we collect it, how long we keep it, and what rights you hold over it — whether you access…

Data Collection ExplainedbKash, Nagad, Rocket Transaction PrivacyYour Rights Over Your InformationAccount Security Commitments
omagic Privacy Policy at omagic
PRIVACY CONTACT PATHS

Reach Us About Your Data

Have a question about how we store your information, or want to request data deletion? Our support channels handle privacy inquiries directly. Raise a ticket, send an email, or start a chat — we treat every privacy request with urgency because your data belongs to you, not us.

Live Chat Open the chat widget from any page on omagic. Select the privacy category from the menu. An agent will confirm your identity through your registered phone number before discussing account-level data or processing deletion requests.
Email Send your privacy request to our support email address listed in the contact section. Include your registered phone number and a brief description of what you need — data export, correction, or removal. We acknowledge every email within one working day.
Account Settings Log into your omagic account and navigate to the privacy section under settings. From there you can review stored details, update your phone number or email, toggle marketing communications off, and submit a formal data request without contacting support.
DATA HANDLING PRACTICES

How We Protect What You Share

Every piece of information you provide — from your bKash account number to your login credentials — passes through encrypted channels. Below are six specific commitments we make about how your data moves through our systems, who can see it, and how long it stays.

Encryption in Transit

All data travelling between your device and our servers uses SSL encryption. Whether you deposit via Nagad or update your email, the connection stays encrypted end to end. No plain-text personal details travel across the network at any point.

Cookie Management

We use session cookies to keep you logged in and preference cookies to remember your language and display settings. No cookie stores your bKash PIN or Rocket credentials. You can clear cookies from your browser at any time without losing your account.

Account Security Layers

Your account is protected by your password plus OTP verification sent to your registered mobile number. If someone attempts login from a new device, we block access until the OTP confirms it is you. Failed attempts trigger a temporary lock.

Data Retention Period

We keep transaction records and identity documents for the period that applicable regulations require in your jurisdiction. Once that window closes, we securely delete or anonymise the data so it can no longer be linked back to your account.

Third-Party Limits

Payment processors like bKash, Nagad and Rocket receive only the minimum data needed to complete your transfer — typically your account number and transaction amount. They do not receive your full profile, browsing history, or game activity.

Your Right to Delete

You can request full deletion of your personal data at any time. Contact support via live chat or email, verify your identity with your registered phone number, and we process the removal. Deletion is permanent — once done, the data cannot be recovered.

Common Questions About Your Data

We receive frequent questions from account holders about what happens to personal details after sign-up, during transactions, and if you decide to leave. Here are direct answers.

We collect your full name, phone number, email address, and date of birth. If you deposit through bKash, Nagad or Rocket, we also store the wallet identifier linked to that transaction. Device information like phone model and browser version is logged automatically.

Only with the payment processor handling your specific transaction. They receive your wallet number and the amount — nothing else. We never sell payment information to marketing companies or unrelated third parties under any circumstances.

Open a live chat session or send an email to our support team. State that you want a data export. After verifying your identity through your registered mobile number, we compile your stored data and deliver it to your email within a reasonable processing window.

Yes. Submit a deletion request through live chat or email. We verify your identity, then remove personal details from our active systems. Transaction records may be retained for the minimum period required by applicable law in your region before final deletion.

We use session cookies to maintain your login and preference cookies to store display settings. No cookie holds sensitive credentials like your Rocket PIN. You can block or clear cookies in your mobile browser settings — doing so may log you out but will not affect your account balance.

Passwords are hashed — we never store them in readable form. Login attempts from new devices trigger OTP verification to your registered phone. Multiple failed attempts lock the account temporarily. You can reset your password at any time through the OTP process.

Yes. When we make material changes to how we collect or use data, we notify you via your registered email or through an in-account notification. The updated policy date is always visible at the head of this page so you can check the version in effect.

Your account data remains on our servers — not on your device. Whether you access omagic from your phone browser or through the app, the same encryption and security layers apply. Switching devices does not duplicate or expose your information.

Only staff members with a verified operational need — support agents handling your ticket, compliance officers reviewing a flagged transaction, or technical staff resolving a system error. Access is logged and audited. No employee can browse accounts without a recorded reason.

Availability of our services and data-handling obligations depend on your local law and eligible regions. We apply our baseline privacy protections universally, but additional rights — such as data portability or the right to object — may apply based on the regulations in your jurisdiction.