Start Playing Free

Security, Encryption, Payments, and Anti-Fraud Statement

Technical and operational safeguards used by HitJuwa for web traffic, accounts, identity documents, payments, and fraud monitoring.

1. Encrypted web connections

Public HitJuwa web traffic is served over HTTPS/TLS. HTTP Strict Transport Security and other browser security headers are used to reduce downgrade, framing, content-type, and data-leakage risks. Security configurations are maintained and may change as standards and provider requirements evolve.

2. Cloudflare and network protection

HitJuwa routes public website traffic through Cloudflare services. These services can provide TLS termination, traffic filtering, delivery optimization, and protection against abusive network traffic. This statement does not guarantee that every attack can be prevented or disclose confidential firewall rules.

3. Account and application safeguards

HitJuwa uses secure and HTTP-only cookies where applicable, encrypted application sessions, access controls, rate limits, authentication checks, restricted administrative surfaces, and security logging. Users remain responsible for protecting passwords, one-time codes, devices, and account access.

4. Identity-document protection

Uploaded identity documents are stored in private application storage and are not public static assets. Authorized verification providers and personnel may process them only for legitimate identity, eligibility, fraud, security, or compliance purposes, subject to the Privacy Policy.

5. Payment security

Payment information is transmitted over HTTPS/TLS and handled through supported third-party payment-provider workflows. Compatible checkout sessions may use provider tokenization or hosted tools. Available methods and provider flows can vary. HitJuwa does not claim that every payment field is always tokenized in the browser or advertise an unverified encryption-bit strength.

6. Fraud monitoring

HitJuwa reviews account, device, network, purchase, promotion, play, and redemption patterns for possible fraud, account sharing, multi-accounting, payment abuse, geographic evasion, or other prohibited conduct. Activity may be delayed, restricted, rejected, or referred for manual review. Detection thresholds and rules are confidential.

7. Reporting a security concern

Report suspected account compromise, unauthorized activity, or a security concern to support@hitjuwa.com. Do not include a password, authentication code, full payment-card number, or unnecessary identity document in ordinary email.