Terms of Service
Our terms reference this privacy policy directly. The data handling described there matches what is written here — there are no hidden clauses in the terms that override your data rights.
At 999ha, your privacy is built into how we operate, not added as an afterthought. This policy sets out exactly what data we collect when you open an...
This policy applies to all personal information you provide when creating and using your 999ha account, including your name, contact details, and transaction records tied to JazzCash, Easypaisa, SadaPay, and Raast. We collect only what we need to operate your account securely and process your payments accurately. Data is stored on secured servers and accessed only by authorised internal teams. Where local
law permits, we may share limited data with licensed payment processors to complete your transactions. You have the right to request access to your stored data, ask for corrections, or submit a deletion request through our support channel. All requests are handled within a reasonable timeframe under applicable data protection frameworks. We do not sell, rent, or trade your personal data to
marketers or unrelated third parties.
Service availability is jurisdiction-dependent. Users are responsible for checking local law before access.
If you have questions about how we handle your personal data, or you want to exercise any of your data rights, our support team is ready to help. Reach us through the channel that works for you — we respond to privacy queries within 48 hours on business days.
Start a live chat directly from your 999ha account dashboard. Our agents handle data access requests, correction queries, and deletion submissions in real time during operational hours for Pakistan.
Send your privacy query or formal data request to our dedicated support email address. Attach your account details so we can locate your record and respond within the required timeframe.
Our Help Centre contains step-by-step guidance on submitting data requests, understanding what we store, and managing your account privacy settings without waiting for a live agent.
We designed our privacy practices around the expectations of Pakistani account holders who manage funds through local payment rails. Every layer of our data handling reflects that commitment — from how we...
All account data, including payment method details and personal identifiers, is encrypted at rest using industry-standard protocols so unauthorised parties cannot read stored records even if infrastructure is ever compromised.
Only verified 999ha staff with a specific operational need can access your account data. Access events are logged and regularly audited so any unusual internal activity is flagged and reviewed promptly.
JazzCash, Easypaisa, SadaPay, and Raast transaction data is stored in isolated environments, separate from general account logs, reducing the risk that a single breach exposes your full payment history.
We collect only the personal details required to run your account and process your transactions. We do not ask for information beyond what is necessary, and we do not retain data longer than operationally justified.
Our privacy policy is reviewed internally on a scheduled basis. When practices change, we update this page and notify active account holders through their registered contact method before changes take effect.
In the unlikely event of a data incident affecting your account, we commit to notifying you through your registered email or phone number promptly, with a clear explanation of what occurred and what steps we are taking.
Our privacy commitments are consistent across every section of the 999ha platform. Whether you are reading this page, our terms of service, or our cookie notice, the same principles apply — no...
Our terms reference this privacy policy directly. The data handling described there matches what is written here — there are no hidden clauses in the terms that override your data rights.
Our cookie notice details the specific tracking technologies we use. It aligns with this policy's description of device data collection and gives you clear opt-out options for non-essential cookies.
The data fields you complete when opening an account correspond exactly to the categories listed in this policy. Nothing collected at registration falls outside the scope described on this page.
The privacy handling described on our deposit and withdrawal pages is consistent with the payment data isolation principles outlined here. JazzCash, Easypaisa, SadaPay, and Raast data is treated identically across all pages.
Account security options, including two-factor authentication and session management, are described in terms that match this policy's explanation of how we protect access to your stored information.
When you contact our support team, the conversation log is handled under the same data retention rules described here. Support agents do not have access to data categories beyond what is needed to resolve your query.
Any communication we send to your registered contact details falls within the use-case categories listed in this policy. We do not use your contact details for purposes outside those described here.
Our privacy framework is structured to give you a clear picture of your data at every stage of your account lifecycle — from first sign-up through...
We document every category of personal data we collect, including identity details, contact information, and transaction records, so you always know what is held on file and why it was gathered in the first place.
Each data category has a defined retention period. Payment records are held only as long as required for dispute resolution, and identity documents are removed once verification is confirmed and the retention period expires.
We name the categories of third parties who may receive your data — licensed payment processors, fraud prevention services — and specify that sharing is limited strictly to what those parties need to perform their function.
You can request a copy of your data, ask us to correct inaccurate records, or submit a deletion request. Each right is explained in plain language with the exact contact path you need to exercise it.
We explain which cookies are essential for the account to function and which are optional. You can manage optional tracking preferences from your account settings without affecting core platform access.
When we revise this policy, we publish the updated version here and send a notification to your registered contact. The effective date at the top of the page always reflects when the current version came into force.