Privacy Policy
This Privacy Policy (“Policy”) establishes the principles and procedures governing the collection, processing, use, and protection of personal data and information obtained from users of our gaming platform. We are committed to maintaining the highest standards of data protection in accordance with the UK General Data Protection Regulation (GDPR) and all applicable United Kingdom legislation. Last updated: January 18, 2026.
1. Information We Collect
We collect various categories of information to provide our gaming services, ensure compliance with regulatory requirements, and enhance user experience. The data collection process occurs at different stages of your interaction with our platform, including during registration, gameplay, account management, and customer support interactions.
- Personal identification information including full name, date of birth, and nationality
- Contact details comprising email address, telephone number, and residential address
- Financial information including bank account details, payment card information, and transaction history
- Device identifiers such as IP address, browser type, device model, and operating system
- Gaming activity data including bet amounts, game selections, win/loss records, and session duration
- Biometric data where you voluntarily provide facial recognition or fingerprint identification
- Communication records including email correspondence, chat logs, and support tickets
- Location data derived from IP address and device settings
2. Legal Basis for Data Processing
Our processing of personal data is conducted under specific legal grounds as prescribed by GDPR and UK Data Protection Act 2018. Each processing activity corresponds to a legitimate legal basis ensuring lawful and transparent data handling practices throughout our operations.
- Contract performance obligations required to deliver gaming services and fulfil account agreements
- Legal compliance requirements mandated by UK Gambling Commission regulations and anti-money laundering legislation
- Legitimate business interests in fraud prevention, platform security, and customer retention
- Explicit user consent obtained through opt-in mechanisms for marketing communications and analytics
- Public interest compliance with responsible gambling initiatives and player protection schemes
- Vital interests protection through identity verification and account security measures
3. Purposes of Data Processing
Your personal information is processed for clearly defined purposes that support legitimate business operations, regulatory compliance, and user protection. All processing activities remain proportionate to stated objectives and do not extend beyond initially declared purposes without obtaining additional user consent.
- Account creation, management, and maintenance of your gaming profile and preferences
- Identity verification and age confirmation to ensure compliance with gambling age restrictions
- Payment processing, fund deposits, withdrawals, and financial transaction management
- Anti-fraud detection, suspicious activity monitoring, and prevention of illicit gaming practices
- Regulatory reporting to UK Gambling Commission and submission of required compliance documentation
- Customer support provision including technical assistance, complaint resolution, and account inquiries
- Marketing communications delivery through email, SMS, and personalised promotional content
- Analytics and platform improvement through behaviour analysis and user experience optimisation
- Responsible gambling implementation including deposit limits, self-exclusion monitoring, and harm prevention
- Legal defence and dispute resolution in accordance with applicable UK jurisdiction
4. Data Sharing and Third Parties
Personal data may be disclosed to selected third parties who process information on our behalf under strict contractual obligations. All data sharing arrangements comply with GDPR requirements and maintain equivalent data protection standards. We do not sell personal information to external marketing organisations or data brokers.
- Payment processors and financial institutions required for transaction processing and fund management
- UK Gambling Commission and regulatory authorities for mandatory compliance reporting
- Identity verification providers conducting Know Your Customer (KYC) procedures and background checks
- Anti-fraud and risk assessment companies performing transaction monitoring and anomaly detection
- Customer support platforms and helpdesk software providers managing user inquiries
- Marketing analytics partners measuring campaign effectiveness and user engagement metrics
- Cloud infrastructure providers hosting our platform and maintaining data storage systems
- Professional advisors including legal counsel, accountants, and compliance consultants
- Law enforcement agencies and judicial authorities when required by legal proceedings or court orders
5. Data Retention Periods
Personal data is retained for the minimum duration necessary to fulfil stated processing purposes. Retention periods vary depending on data category and applicable legal obligations. We implement systematic deletion procedures ensuring data is securely destroyed when retention periods expire, except where legal requirements mandate extended preservation.
- Account registration data retained throughout account active status plus seven years post-closure
- Transaction records and financial information maintained for six years to satisfy tax law requirements
- Identity verification documents preserved for five years following account termination
- Customer support communications retained for three years after final interaction
- Marketing preference data held until withdrawal of consent or account deletion request
- Device identifiers and technical logs maintained for twelve months for security analysis
- Fraud investigation records preserved for seven years supporting regulatory compliance
- Dispute resolution documentation kept for six years enabling legal defence and evidence preservation
6. User Rights and Data Subject Requests
Users possess comprehensive rights regarding their personal data as established by GDPR. We facilitate straightforward mechanisms enabling exercise of these rights, responding to all legitimate requests within statutory timeframes without imposing unreasonable fees or delays. Requests may be submitted through our dedicated data protection contact email or account settings.
- Right of access to obtain confirmation of processing and receive data copies in standard electronic formats
- Right of rectification to correct inaccurate, incomplete, or outdated personal information
- Right of erasure (“right to be forgotten”) permitting deletion of data under specific circumstances
- Right of processing restriction limiting data use while disputes are resolved or legality verified
- Right of data portability obtaining personal data in machine-readable format for transfer elsewhere
- Right of objection withdrawing consent for direct marketing communications and promotional materials
- Rights related to automated decision making and profiling preventing solely algorithmic processing
- Right to withdraw consent at any time for processing activities dependent on voluntary permission
7. International Data Transfers
Personal data collected from United Kingdom users may be transferred to countries outside the European Economic Area for processing by authorised service providers. All international transfers implement appropriate safeguards including standard contractual clauses, adequacy decisions, and binding corporate rules ensuring equivalent protection standards. Users retain rights to object transfers where legally permissible.
8. Security Measures and Data Protection
We implement comprehensive technical and organisational safeguards protecting personal data from unauthorised access, alteration, disclosure, or destruction. Security measures are regularly reviewed, updated, and tested to address emerging threats and evolving attack methodologies. All personnel involved in data processing receive mandatory confidentiality training.
- End-to-end encryption protecting data transmission through SSL/TLS protocols and secure socket layers
- Database encryption securing stored personal information through AES-256 encryption standards
- Access controls and authentication mechanisms restricting personnel access to authorised individuals only
- Multi-factor authentication protecting user accounts from unauthorised access and credential compromise
- Firewalls and intrusion detection systems preventing unauthorised network access and cyber attacks
- Regular security audits and penetration testing identifying vulnerabilities and remediation requirements
- Incident response protocols enabling rapid breach detection, containment, and user notification
- Data minimisation practices limiting collection to information genuinely necessary for operations
- Pseudonymisation and anonymisation reducing identification risks for research and analytics purposes
9. Cookies and Tracking Technologies
Our platform utilises cookies, web beacons, pixels, and similar tracking technologies enhancing functionality and enabling analytics. Users receive clear notice of cookie usage and may manage preferences through browser settings or our cookie management interface. Essential cookies supporting basic platform operations cannot be disabled without affecting service functionality.
- Session cookies enabling temporary authentication and maintaining user login status during browsing
- Persistent cookies remembering user preferences and login information across multiple sessions
- Analytics cookies tracking user behaviour, page interactions, and feature engagement patterns
- Marketing cookies delivering personalised content recommendations and relevant promotional offers
- Third-party cookies from analytics and advertising partners measuring campaign effectiveness
- Consent management cookies recording cookie preferences and tracking acceptance status
10. Privacy Policy Changes and Contact Information
We reserve the right modifying this Privacy Policy reflecting operational changes, regulatory updates, or technological developments. Material modifications will be communicated through email notification and platform announcements. Continued platform usage following publication constitutes acceptance of revised terms. For privacy-related inquiries, complaints, or data subject requests, please contact our Data Protection Officer through designated communication channels. Users may escalate unresolved concerns to the Information Commissioner’s Office, the independent UK authority responsible for data protection enforcement and regulation. Your privacy rights remain our paramount concern, and we remain committed maintaining your trust through transparent, compliant data practices.