Privacy Policy
This Privacy Policy governs the collection, processing, and protection of personal information by our online gaming platform. We are committed to safeguarding your privacy whilst providing an exceptional gaming experience in compliance with Indian data protection regulations and international standards. This policy outlines our practices regarding data collection, usage, storage, and your rights as a user of our gaming services. By accessing our platform, you acknowledge and consent to the practices described herein. Last updated: January 29, 2026.
1. Information Collection and Types of Data
We collect various categories of personal information necessary for operating our gaming platform and ensuring compliance with regulatory requirements. This information is gathered through multiple channels including direct user input, automated systems, and third-party integrations.
Personal identification data encompasses your full name, date of birth, gender, nationality, government-issued identification numbers, residential address, postal code, and photographic identification documents. Contact information includes email addresses, mobile phone numbers, and alternative communication preferences you may specify.
Financial data comprises banking details, payment card information, UPI identifiers, digital wallet credentials, transaction histories, deposit and withdrawal records, and income verification documents where required. Technical information automatically collected includes IP addresses, device identifiers, browser specifications, operating system details, geolocation data, and website interaction patterns.
- Account registration and verification information
- Gaming activity data and preferences
- Communication records and customer support interactions
- Marketing consent and promotional preferences
- Compliance-related documentation for regulatory purposes
- Biometric data for enhanced security measures where applicable
2. Purpose and Legal Basis for Data Processing
We process personal information for legitimate business purposes essential to operating our gaming platform whilst maintaining compliance with Indian gambling regulations and anti-money laundering legislation. Our legal basis for processing includes contractual necessity, regulatory compliance, legitimate business interests, and user consent where explicitly provided.
Account management requires processing personal data to create user profiles, verify identity, maintain gaming records, and provide customer support services. Financial transactions necessitate processing payment information to facilitate deposits, withdrawals, bonus distributions, and taxation reporting obligations.
Regulatory compliance mandates collecting and processing data to meet Know Your Customer requirements, prevent underage gambling, detect suspicious activities, report to relevant authorities, and maintain detailed audit trails. Security purposes involve processing data to prevent fraud, detect unauthorized access, implement responsible gaming measures, and protect platform integrity.
- Personalizing gaming experiences and recommendations
- Marketing communications with proper consent
- Statistical analysis and platform improvement
- Legal proceedings and dispute resolution
- Third-party service integration and partnerships
3. Data Sharing and Third-Party Disclosure
We maintain strict controls over data sharing and only disclose personal information to authorized third parties under specific circumstances. All data sharing arrangements include comprehensive confidentiality agreements and compliance with applicable privacy regulations.
Regulatory authorities receive necessary information to comply with Indian gaming legislation, anti-money laundering requirements, taxation obligations, and law enforcement requests. Payment processors and financial institutions require specific data to facilitate secure transactions, verify payment methods, and prevent fraudulent activities.
Technology service providers may access limited data necessary to maintain platform functionality, provide customer support, implement security measures, and deliver technical services. Marketing partners with explicit user consent may receive anonymized data for promotional purposes, excluding sensitive financial or identification information.
- Legal advisors for compliance and dispute resolution
- Auditing firms for financial and regulatory compliance
- Cloud storage providers with encryption and security measures
- Analytics services for platform optimization
- Identity verification services for account security
4. Data Security and Protection Measures
We implement comprehensive security measures to protect personal information from unauthorized access, disclosure, alteration, and destruction. Our security framework incorporates industry-standard encryption, access controls, monitoring systems, and regular security assessments.
Technical safeguards include SSL encryption for data transmission, AES encryption for data storage, secure server infrastructure, firewalls and intrusion detection systems, regular security updates and patches, and multi-factor authentication for administrative access.
Administrative measures encompass employee background checks, confidentiality agreements, role-based access permissions, regular security training, incident response procedures, and third-party security audits. Physical security includes secured data centers, restricted facility access, environmental monitoring, and backup power systems.
- Regular penetration testing and vulnerability assessments
- Data anonymization and pseudonymization techniques
- Secure backup and disaster recovery procedures
- 24/7 security monitoring and incident response
- Compliance with international security standards
5. Data Retention and Deletion Policies
We retain personal information only for the duration necessary to fulfill stated purposes, comply with regulatory requirements, and protect our legitimate business interests. Retention periods vary based on data categories, regulatory obligations, and operational necessities.
Account information is retained during active user engagement plus seven years following account closure to meet regulatory compliance requirements. Financial transaction records are maintained for ten years as mandated by Indian financial regulations and tax authorities. Gaming activity data is retained for five years to support dispute resolution and regulatory reporting.
Marketing data is retained until consent withdrawal or two years of inactivity, whichever occurs first. Technical logs and security data are maintained for two years unless required for ongoing investigations. Verification documents are retained for the minimum period required by applicable regulations.
- Automated deletion processes for expired data
- Regular data retention audits and compliance reviews
- Secure data destruction methods for physical and digital media
- Documentation of retention decisions and legal basis
- User notification of significant retention changes
6. User Rights and Data Subject Requests
You possess fundamental rights regarding your personal information processed by our platform. We are committed to facilitating the exercise of these rights whilst balancing regulatory obligations and operational requirements.
Access rights enable you to request confirmation of data processing, obtain copies of personal information, understand processing purposes, identify data recipients, and review retention periods. Rectification rights allow correction of inaccurate information, completion of incomplete data, and updates to changed circumstances.
Erasure rights permit deletion requests under specific circumstances, including consent withdrawal, unlawful processing, or fulfillment of original purposes. Portability rights enable data transfer to alternative services in structured, commonly used formats where technically feasible.
- Right to restrict processing under certain conditions
- Right to object to processing based on legitimate interests
- Right to withdraw consent for consent-based processing
- Right to lodge complaints with supervisory authorities
- Right to receive clear information about automated decision-making
7. International Data Transfers
Our gaming platform may transfer personal information to jurisdictions outside India for operational purposes, technical support, and regulatory compliance. All international transfers comply with applicable data protection regulations and include appropriate safeguards.
We ensure adequate protection through various mechanisms including adequacy decisions by competent authorities, standard contractual clauses approved by regulatory bodies, binding corporate rules for group companies, and certification schemes recognized under applicable privacy frameworks.
Third-party recipients in foreign jurisdictions must demonstrate equivalent protection standards, implement appropriate technical and organizational measures, and provide contractual guarantees regarding data handling practices. We monitor international transfers and maintain records of cross-border data movements.
- Regular assessment of destination country privacy laws
- Implementation of additional safeguards where necessary
- User notification of significant transfer arrangements
- Cooperation with supervisory authorities on transfer matters
- Documentation of transfer mechanisms and legal basis
8. Policy Updates and Contact Information
This Privacy Policy is subject to periodic updates reflecting changes in data processing practices, regulatory requirements, technological developments, and business operations. Material changes will be communicated through prominent platform notifications, email communications, and updated policy versions.
We encourage regular review of this policy to remain informed about our data protection practices. Continued platform usage following policy updates constitutes acceptance of revised terms unless otherwise specified. Previous policy versions are available upon request for reference purposes.
For privacy-related inquiries, data subject requests, complaints, or clarification regarding this policy, contact our Data Protection Officer through designated channels. We are committed to responding promptly to legitimate requests and maintaining transparent communication regarding privacy matters affecting our users.
- Email correspondence for privacy inquiries and requests
- Dedicated privacy support portal within user accounts
- Written correspondence to our registered business address
- Customer support integration for privacy-related assistance
- Regular privacy awareness communications and updates
