Privacy Policy
This Privacy Policy (“Policy”) establishes the framework for the collection, processing, use, and protection of personal data and other information gathered from users (“Players,” “Users,” or “You”) of our online gaming platform. We are committed to maintaining the highest standards of data protection in accordance with applicable Indian legislation, including the Information Technology Act, 2000, and relevant data protection regulations. This Policy outlines our practices regarding information collection, usage, disclosure, and the rights available to you as a user of our services. Last updated: January 18, 2026.
Information Collection and Types of Data
Our platform collects various categories of information to provide comprehensive gaming services, ensure regulatory compliance, and maintain platform security. Understanding what data we collect and why is essential for informed user engagement with our services. We collect information through multiple channels including direct user input, automated tracking systems, and third-party integrations. The following table outlines the primary categories of data we collect:
| Data Category | Examples | Collection Method |
|---|---|---|
| Personal Identification Data | Full name, date of birth, national identification number, passport details | Registration forms, KYC verification |
| Contact Information | Email address, telephone number, residential address, postal code | Account creation, profile updates |
| Financial Data | Banking details, credit card information, payment method preferences, transaction history | Deposit and withdrawal processes |
| Technical Data | IP address, device identifiers, browser type, operating system, session duration | Automatic logging systems, cookies |
| Behavioral Data | Gaming preferences, betting patterns, game selection history, session frequency | Platform activity tracking |
| Biometric Data | Facial recognition features (for optional authentication) | User consent-based enrollment |
During the registration process, we require users to provide accurate personal information necessary for account creation and compliance verification. This includes identity verification documents in accordance with Know Your Customer (KYC) requirements mandated by Indian financial regulations. Financial information is collected only through secure payment gateways and is never stored in unencrypted formats on our servers. Technical data is collected automatically through cookies, pixels, and similar technologies to enhance user experience and detect fraudulent activities. Behavioral data helps us personalize gaming experiences while monitoring for problem gambling indicators.
Purposes of Data Processing and Usage
We process personal data for legitimate business purposes aligned with legal requirements and user expectations. The primary objectives of our data collection and processing activities are clearly defined and communicated to users prior to information submission. Data processing is limited to purposes for which it was collected, unless we obtain explicit user consent for additional uses. Below are the main purposes for which we utilize collected information:
- Account creation, verification, and maintenance to ensure legitimate user access and prevent unauthorized account usage
- KYC and AML (Anti-Money Laundering) compliance verification as required by Indian financial authorities and gaming regulators
- Payment processing, transaction management, and financial record-keeping for deposit and withdrawal operations
- Fraud detection and prevention through behavioral analysis and pattern recognition systems
- Responsible gambling monitoring to identify and assist users displaying problematic gaming behaviors
- Platform security enhancement through technical data analysis and cybersecurity threat assessment
- Customer support provision including account assistance, dispute resolution, and technical troubleshooting
- Personalization of gaming experience through preference learning and customized content delivery
- Marketing communications and promotional notifications with user consent
- Regulatory reporting and compliance with legal obligations from governmental authorities
- Statistical analysis and business intelligence for platform improvement and service optimization
- Legal proceedings support in cases of disputes, violations, or court requirements
We ensure that data processing is proportionate to stated purposes and conducted transparently. Users retain the right to withdraw consent for non-essential processing, though this may limit access to certain platform features. All data processing activities comply with the principle of data minimization, meaning we collect only information necessary for specified legitimate purposes.
Data Security and Protection Measures
Protecting user data from unauthorized access, alteration, disclosure, or destruction is a primary responsibility we take with utmost seriousness. We implement comprehensive security protocols utilizing industry-leading encryption standards and multi-layered protection mechanisms. Our security infrastructure includes technical, administrative, and organizational safeguards designed to prevent data breaches and unauthorized processing. The following security measures are implemented across our platform:
- SSL/TLS encryption (256-bit) for all data transmitted between user devices and our servers
- AES-256 encryption for sensitive data stored in databases and backup systems
- Regular security audits and penetration testing conducted by independent cybersecurity firms
- Multi-factor authentication (MFA) requirements for account access and sensitive operations
- Intrusion detection systems monitoring network traffic for suspicious activities
- Firewalls and Web Application Firewalls (WAF) protecting against external threats
- Access control protocols limiting employee access to personal data based on role requirements
- Regular security training and awareness programs for all staff members handling user information
- Incident response procedures enabling rapid detection and remediation of security breaches
- Data backup and disaster recovery systems ensuring business continuity and data availability
- Secure disposal procedures for data no longer required for specified purposes
- Compliance monitoring with PCI-DSS standards for payment card information handling
Despite our comprehensive security measures, no system is absolutely impenetrable. We maintain cyber liability insurance and maintain documented incident response protocols. Users are advised to maintain strong passwords, enable two-factor authentication, and refrain from sharing account credentials. In the event of any unauthorized data access affecting user information, we will notify affected users and relevant authorities within legally mandated timeframes and provide guidance on protective measures.
Data Sharing and Third-Party Disclosures
We do not sell, rent, or trade personal data to third parties for commercial purposes. However, data sharing occurs in specific circumstances where necessary for service provision, legal compliance, or user protection. Any data sharing arrangement is subject to strict confidentiality agreements and data processing contracts ensuring recipient organizations maintain equivalent protection standards. We categorize data recipients into distinct groups based on the nature of their relationship with our platform:
Payment processors and financial institutions receive necessary transaction data to process deposits, withdrawals, and financial reconciliation. These entities are bound by payment industry standards and contractual obligations protecting data confidentiality. Gaming regulatory authorities may receive aggregate data and user information when required by Indian gaming laws or specific regulatory inquiries. Law enforcement agencies and judicial bodies may access user information when presented with legal warrants, court orders, or in response to subpoenas. Affiliated service providers including customer support vendors, data analytics providers, and marketing partners may access limited personal data necessary for their contracted functions. Anti-fraud and security vendors receive behavioral and technical data to protect the platform from malicious activities and ensure fair gaming environment.
We maintain a detailed list of all third-party processors and their specific data access rights. Users may request information regarding which organizations have accessed their personal data during a specified period. We do not permit third parties to use your information for purposes unrelated to the contracted services provided. All third-party agreements include provisions requiring secure data handling and prohibiting unauthorized data transfers or commercial exploitation of user information.
User Rights and Data Control
Indian data protection principles recognize fundamental user rights regarding personal information. We acknowledge and facilitate the exercise of these rights by all users of our platform. Users have the right to access, rectify, restrict, and in certain circumstances, erase their personal data. Additionally, users possess rights regarding data portability and the right to object to specific processing activities. The following enumeration details the specific rights available to users and the procedures for exercising these rights:
- Right of access: Users may request comprehensive information regarding what personal data we maintain, how it is processed, and the purposes of processing
- Right of rectification: Users may correct inaccurate, incomplete, or outdated personal information maintained in our systems
- Right of erasure: Users may request deletion of personal data in certain circumstances, such as when data is no longer necessary for original purposes or when consent is withdrawn
- Right to restrict processing: Users may limit how we process their data, particularly when accuracy is disputed or processing is deemed unlawful
- Right to data portability: Users may request their personal data in a structured, commonly used, machine-readable format suitable for transfer to other providers
- Right to object: Users may object to processing activities including automated decision-making and marketing communications
- Right to withdraw consent: Users may withdraw previously granted consent for specific processing activities at any time
- Right of non-discrimination: Users cannot be denied services or subjected to adverse treatment for exercising privacy rights
- Right to lodge complaints: Users may file complaints with data protection authorities regarding alleged violations of applicable privacy laws
To exercise any of these rights, users should submit written requests through our designated privacy contact channels. We will respond to legitimate requests within thirty days or provide explanation if additional time is required. Some requests may incur reasonable administrative costs if they require significant resources, though users will be informed of any charges before processing. Users should note that certain requests may be limited by legal obligations or legitimate business interests we must balance against user rights.
Cookies, Tracking Technologies, and Data Retention
Our platform employs cookies and similar tracking technologies to enhance user experience, maintain session continuity, and collect behavioral analytics. Cookies are small files stored on user devices containing information identifying the user and preferences. These technologies enable personalized content delivery, remember login credentials, and track gaming activities for analytics purposes. Users have the ability to control cookie usage through browser settings, though disabling cookies may limit certain platform functionalities.
We utilize different cookie categories serving distinct functions: Essential cookies enable basic platform functionality and security features; Performance cookies measure platform usage and identify areas for improvement; Marketing cookies track user interests for promotional purposes; and Preference cookies remember user choices regarding language, currency, and interface customization. We also employ pixel tags, web beacons, and similar technologies for analytics and tracking purposes. Third-party analytics providers including Google Analytics may receive technical data subject to their respective privacy policies.
Personal data is retained only for periods necessary to fulfill stated purposes unless extended retention is required by applicable law. Financial transaction records are maintained for minimum seven years as required by Indian taxation and anti-money laundering legislation. Account-related personal information is retained during active account status and for specified periods thereafter to satisfy legal obligations and dispute resolution requirements. Users may request data deletion upon account closure where legal retention obligations do not apply. Behavioral and technical data may be retained for extended periods in aggregated or anonymized forms that do not permit personal identification.
This Privacy Policy is subject to periodic updates reflecting legal changes, technological developments, and operational improvements. Significant modifications will be communicated to users through email notification or prominent platform announcement with reasonable advance notice. Continued platform usage following policy updates constitutes acceptance of revised terms. Users are encouraged to review this policy regularly to remain informed of our current data practices and protection commitments.
