Privacy Policy
This Privacy Policy governs the collection, processing, storage, and protection of personal information provided by users of our online casino platform. We are committed to safeguarding your privacy and ensuring compliance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018. By accessing our services, you acknowledge and consent to the practices described in this comprehensive privacy statement.
1. General Provisions
This Privacy Policy establishes the fundamental principles governing our data processing activities and outlines our commitment to protecting user privacy. Our online casino operates under strict regulatory compliance with UK gambling legislation and data protection requirements. We collect, process, and store personal data solely for legitimate business purposes related to providing secure and responsible gambling services.
Our data processing activities are conducted in accordance with the principles of lawfulness, fairness, transparency, purpose limitation, data minimisation, accuracy, storage limitation, integrity, confidentiality, and accountability. We maintain comprehensive records of all processing activities and regularly review our data handling procedures to ensure ongoing compliance with applicable regulations.
2. Data Controller Information
As the data controller, we are responsible for determining the purposes and means of processing your personal data. Our designated Data Protection Officer oversees all privacy-related matters and serves as the primary contact for data protection inquiries, complaints, and requests from users and regulatory authorities.
We maintain detailed records of our data processing activities, including the categories of data subjects, types of personal data, processing purposes, recipient categories, and retention periods. Our data protection governance framework includes regular audits, impact assessments, and staff training programmes to ensure consistent compliance with data protection obligations.
3. Types of Personal Data Collected
We collect various categories of personal information necessary for operating our online casino services and meeting regulatory obligations. The scope of data collection is limited to information essential for account management, transaction processing, regulatory compliance, and customer support.
- Identity verification data including full name, date of birth, nationality, and government-issued identification documents
- Contact information such as residential address, email address, and telephone numbers
- Financial data including bank account details, payment card information, and transaction histories
- Account credentials comprising usernames, encrypted passwords, and security questions
- Gaming activity records including game preferences, betting patterns, and session durations
- Technical information such as IP addresses, device identifiers, browser types, and operating systems
- Communication records including customer support interactions, chat logs, and correspondence
- Marketing preferences and consent records for promotional communications
4. Purposes and Legal Basis for Processing
We process personal data for specific, legitimate purposes based on appropriate legal grounds under UK data protection legislation. Each processing activity is justified by one or more lawful bases, ensuring that all data handling complies with regulatory requirements and user expectations.
Our primary processing purposes include account registration and management, identity verification for anti-money laundering compliance, payment processing and financial transactions, game provision and platform operation, customer support services, regulatory reporting obligations, fraud prevention and security monitoring, and marketing communications where consent has been provided.
The legal bases for our processing activities include contractual necessity for service provision, legal obligations under gambling and financial regulations, legitimate interests in fraud prevention and business operations, and explicit consent for marketing communications and optional services.
5. Data Collection Methods
We employ various methods to collect personal information, ensuring transparency about data sources and collection practices. All collection activities are conducted fairly and lawfully, with appropriate notice provided to users about the purpose and scope of data gathering.
Direct collection occurs when users voluntarily provide information during account registration, identity verification processes, payment transactions, customer support interactions, and marketing preference updates. Automated collection includes technical data gathered through cookies, tracking technologies, server logs, and analytics tools that monitor website usage and platform performance.
Third-party sources may include payment processors, identity verification services, fraud prevention agencies, and regulatory databases used for compliance screening and risk assessment purposes.
6. Data Sharing and Third-Party Disclosure
We maintain strict controls over data sharing and only disclose personal information to authorised third parties for legitimate business purposes or legal requirements. All data sharing arrangements are governed by comprehensive agreements that ensure appropriate protection of user information.
- Payment processors and financial institutions for transaction processing and fraud prevention
- Identity verification services for regulatory compliance and anti-money laundering checks
- Game providers and software suppliers for platform operation and service delivery
- Regulatory authorities and law enforcement agencies when legally required
- Professional advisors including legal counsel, auditors, and compliance consultants
- Affiliate partners and marketing agencies under strict data protection agreements
- Cloud service providers and technical vendors supporting our infrastructure
We do not sell, rent, or otherwise commercialise personal data to unauthorised third parties. All data sharing is conducted under appropriate legal safeguards and contractual protections.
7. International Data Transfers
When transferring personal data outside the United Kingdom, we implement appropriate safeguards to ensure adequate protection levels. All international transfers comply with UK data protection requirements and are conducted only when necessary for service provision or regulatory compliance.
We utilise adequacy decisions, standard contractual clauses, binding corporate rules, and other approved transfer mechanisms to protect data during international processing. Regular assessments are conducted to ensure ongoing adequacy of protection measures and compliance with evolving legal requirements.
8. Data Security Measures
We implement comprehensive technical and organisational measures to protect personal data against unauthorised access, disclosure, alteration, or destruction. Our security framework is regularly reviewed and updated to address emerging threats and maintain industry-leading protection standards.
- Advanced encryption technologies for data transmission and storage
- Multi-factor authentication systems for account and system access
- Regular security assessments and vulnerability testing procedures
- Employee training programmes on data protection and security practices
- Access controls and audit trails for all data processing activities
- Incident response procedures for security breaches and data incidents
- Regular backup and disaster recovery testing protocols
9. Data Retention Periods
We retain personal data only for as long as necessary to fulfil the purposes for which it was collected or as required by legal obligations. Our retention schedule is based on regulatory requirements, business needs, and the legitimate interests of both our organisation and users.
Account information and transaction records are typically retained for seven years following account closure to meet regulatory obligations. Marketing communications and consent records are maintained until withdrawal of consent or for three years following last interaction. Technical logs and security monitoring data are generally retained for twelve months unless longer retention is required for fraud investigation or legal proceedings.
10. User Rights and Choices
Under UK data protection legislation, users have various rights regarding their personal information. We are committed to facilitating the exercise of these rights and provide clear procedures for submitting requests and obtaining resolution.
- Right of access to obtain copies of personal data and information about processing activities
- Right of rectification to correct inaccurate or incomplete information
- Right of erasure to request deletion of personal data in certain circumstances
- Right to restrict processing when accuracy is contested or processing is unlawful
- Right to data portability for information provided under contract or consent
- Right to object to processing based on legitimate interests or for direct marketing
- Rights related to automated decision-making and profiling activities
Requests can be submitted through our designated contact channels and will be processed within one month of receipt, with possible extensions for complex requests.
11. Cookies and Tracking Technologies
Our website and platform utilise cookies and similar tracking technologies to enhance user experience, analyse website usage, and deliver personalised content and advertisements. We provide comprehensive information about our cookie practices and obtain appropriate consent where required.
Essential cookies are necessary for basic website functionality and security features. Performance cookies collect anonymous information about website usage and help us improve our services. Functional cookies remember user preferences and settings to provide enhanced personalisation. Marketing cookies track user behaviour across websites to deliver targeted advertising and measure campaign effectiveness.
Users can manage cookie preferences through browser settings or our cookie consent management tool, though disabling certain cookies may affect website functionality and user experience.
12. Updates and Contact Information
This Privacy Policy is reviewed regularly and updated as necessary to reflect changes in our processing activities, legal requirements, or business practices. Users will be notified of material changes through email communications, website notifications, or account messages.
For questions, concerns, or requests related to privacy and data protection, users can contact our Data Protection Officer through the designated contact channels provided on our website. We are committed to addressing all inquiries promptly and transparently, maintaining open communication about our privacy practices and user rights.
Users also have the right to lodge complaints with the Information Commissioner's Office if they believe their data protection rights have been violated or if they are unsatisfied with our response to their concerns.