Privacy Policy

This Privacy Policy governs the collection, processing, and protection of personal data provided by users of our online gaming platform. As a licensed operator in Ireland, we are committed to maintaining the highest standards of data protection in compliance with the General Data Protection Regulation (GDPR) and Irish Data Protection Act 2018. By accessing our services, you acknowledge that you have read, understood, and agree to be bound by the terms outlined in this comprehensive privacy policy.

Data Controller Information

We operate as the data controller for all personal information collected through our platform. Our operations are conducted under the regulatory oversight of the Revenue Commissioners of Ireland and in accordance with applicable Irish gambling legislation. We maintain our primary business operations within the Republic of Ireland, ensuring compliance with local data protection requirements and maintaining transparent communication channels with our users regarding their personal data.

Our commitment to responsible gaming extends to our data handling practices, where we implement robust systems to protect user information while facilitating secure gaming experiences. All data processing activities are conducted with appropriate legal basis and proportionality measures, ensuring that user privacy remains paramount throughout our service delivery.

Types of Personal Data Collected

We collect various categories of personal data necessary for providing secure online gaming services and maintaining regulatory compliance. The scope of data collection is limited to what is essential for legitimate business operations and legal obligations.

  1. Identity verification data including full name, date of birth, nationality, and government-issued identification documents
  2. Contact information such as residential address, email address, and telephone numbers
  3. Financial information including bank account details, payment card information, and transaction history
  4. Technical data encompassing IP addresses, browser types, device information, and connection details
  5. Gaming activity data including bet history, game preferences, session duration, and platform interaction patterns
  6. Communication records of customer support interactions, live chat sessions, and email correspondence
  7. Marketing preferences and consent records for promotional communications
  8. Responsible gaming information including deposit limits, self-exclusion requests, and risk assessment data

Legal Basis for Data Processing

Our data processing activities are conducted under specific legal bases as defined by GDPR and Irish data protection legislation. Each category of data processing serves legitimate purposes essential for providing licensed gaming services within Ireland's regulatory framework.

Contract performance forms the primary legal basis for processing personal data necessary to deliver gaming services, process payments, and maintain user accounts. Legitimate interests justify processing for fraud prevention, security monitoring, and service improvement activities. Legal compliance obligations require us to process data for age verification, anti-money laundering checks, and regulatory reporting to Irish authorities.

Where applicable, we obtain explicit consent for marketing communications and optional data processing activities. Users retain the right to withdraw consent at any time without affecting the lawfulness of processing conducted prior to withdrawal.

Data Collection Methods and Sources

Personal data is collected through multiple channels during user interaction with our platform and services. We employ transparent collection methods and provide clear information about data gathering practices at the point of collection.

Direct collection occurs when users voluntarily provide information during account registration, identity verification procedures, payment processing, and customer support interactions. Automated collection systems gather technical and behavioral data during platform usage, including gaming activities, device information, and session analytics.

Third-party sources may provide additional data for verification and compliance purposes, including identity verification services, payment processors, and regulatory databases. All third-party data sharing occurs under appropriate data processing agreements and with suitable legal safeguards.

Purposes of Data Processing

Personal data processing serves specific, legitimate purposes aligned with our business operations and regulatory obligations. We maintain strict purpose limitation principles, ensuring data is not processed for incompatible purposes without additional legal basis or user consent.

  1. Account management and user authentication to ensure secure platform access
  2. Age verification and eligibility confirmation in compliance with Irish gambling regulations
  3. Payment processing for deposits, withdrawals, and financial transaction management
  4. Anti-money laundering and fraud prevention measures as required by Irish legislation
  5. Customer support provision and query resolution assistance
  6. Gaming service delivery and platform functionality optimization
  7. Regulatory reporting and compliance with Irish Revenue Commissioners requirements
  8. Marketing communications delivery where consent has been provided
  9. Responsible gaming measures implementation and monitoring
  10. Security monitoring and platform protection against unauthorized access

Data Sharing and Disclosure

We implement strict data sharing protocols, ensuring personal information is only disclosed to authorized parties under appropriate legal frameworks and contractual protections. Data sharing occurs on a need-to-know basis with robust security measures in place.

Service providers and business partners may receive limited personal data necessary for delivering specific services, including payment processing, identity verification, customer support, and technical infrastructure maintenance. All third-party processors operate under comprehensive data processing agreements ensuring GDPR compliance and appropriate security measures.

Regulatory authorities in Ireland may receive personal data as required by law, including the Revenue Commissioners, Garda Síochána, and other competent authorities conducting legitimate investigations or regulatory oversight activities. Legal proceedings may necessitate data disclosure to courts, legal representatives, and law enforcement agencies under proper legal process.

International Data Transfers

While our primary operations are based in Ireland, certain data processing activities may involve international transfers to countries outside the European Economic Area. All international transfers comply with GDPR requirements and maintain appropriate safeguards for user data protection.

Transfers to third countries occur only where adequate protection levels exist through European Commission adequacy decisions or appropriate safeguards such as Standard Contractual Clauses. Service providers located outside the EEA operate under binding corporate rules or certification schemes ensuring equivalent data protection standards.

Users are informed of specific international transfers affecting their data, with details of destination countries, safeguards implemented, and contact information for obtaining transfer documentation copies.

Data Retention Periods

Personal data retention follows established schedules based on legal requirements, business necessity, and data protection principles. We implement automated deletion procedures and regular review processes to ensure data is not retained beyond necessary periods.

Account data is retained for the duration of active user accounts plus seven years following account closure, aligning with Irish financial record-keeping requirements. Transaction records and anti-money laundering documentation are maintained for five years as mandated by Irish legislation. Technical and marketing data is retained for shorter periods based on specific business purposes and user preferences.

Users may request earlier deletion of certain data categories where no legal retention obligations exist. We provide clear information about applicable retention periods and deletion procedures through our customer support channels.

Data Security Measures

We implement comprehensive technical and organizational security measures to protect personal data against unauthorized access, alteration, disclosure, or destruction. Our security framework incorporates industry best practices and evolves continuously to address emerging threats.

  1. Advanced encryption protocols for data transmission and storage systems
  2. Multi-factor authentication requirements for sensitive account access
  3. Regular security audits and penetration testing by independent specialists
  4. Employee access controls and data handling training programs
  5. Secure data centers with physical access restrictions and monitoring systems
  6. Incident response procedures and breach notification protocols
  7. Regular software updates and security patch management
  8. Data backup and recovery systems with encryption protection

Individual Rights and Choices

Users possess comprehensive rights regarding their personal data under GDPR and Irish data protection legislation. We facilitate the exercise of these rights through accessible procedures and responsive customer support channels.

Access rights enable users to obtain confirmation of data processing activities and receive copies of their personal data. Rectification rights allow correction of inaccurate information, while erasure rights permit deletion of data where legally permissible. Restriction and objection rights provide users with control over specific processing activities.

Data portability rights enable users to receive their data in structured formats for transfer to other services. Users may withdraw consent for marketing communications and optional processing activities at any time. All rights requests are processed within one month, with extensions communicated where complex requests require additional processing time.

Policy Updates and Communication

This Privacy Policy undergoes regular review and updates to reflect changes in our services, legal requirements, and industry best practices. Material changes are communicated to users through prominent website notifications and direct communication methods.

Policy versions are dated and archived to maintain transparency regarding changes over time. Users are encouraged to review the Privacy Policy periodically to stay informed about data processing practices. Continued use of our services following policy updates constitutes acceptance of revised terms, except where additional consent is required for new processing activities.

For questions, concerns, or requests regarding this Privacy Policy or data processing practices, users may contact our Data Protection Officer through designated communication channels. We maintain responsive customer support services to address privacy-related inquiries and facilitate the exercise of individual rights under applicable data protection legislation.