Privacy Policy

This Privacy Policy explains how Casiroom may collect, process, protect, disclose, retain and securely delete personal data linked to users of its online casino and sportsbook services. The document covers account data, payment information, website activity, communication records and information needed for lawful operation. Data use is based on user consent where consent is required, as well as other lawful grounds recognised under United Kingdom data protection law. Casiroom handles information only for stated purposes and with controls intended to protect privacy. Users should read this policy before using the services.

Privacy Standards and Data Safeguards

Casiroom handles privacy in the United Kingdom through controlled collection, limited use and protected storage of personal information. Personal data is collected only where it supports account access, payment activity, security checks, responsible gambling controls, service operation, legal duties or communication with users. Technical and organisational measures are used to reduce the risk of unauthorised access, loss, misuse or disclosure.

  1. Identity information may include name, date of birth, address and verification document details.
  2. Contact information may include email address, telephone number and account communication history.
  3. Account information may include username, login records, preferences and security settings.
  4. Transaction information may include deposits, withdrawals, payment method references and fraud screening results.
  5. Gambling activity may include bets, casino play history, sportsbook activity, limits and self exclusion records.
  6. Device and website information may include IP address, browser type, operating system, pages viewed and session records.
  7. Support information may include messages sent through live chat, email or other service channels.
  8. Security measures may include encryption, restricted access, authentication checks, monitoring and staff confidentiality controls.
  9. Data retention controls support legal record keeping and secure deletion when information is no longer required.
  10. Internal access is limited to authorised personnel and service providers with a legitimate need for the information.

Users have rights over their personal data, including access, correction, restriction, deletion, objection and data portability where these rights apply. A user may also withdraw consent where processing relies on consent, subject to legal and regulatory retention duties. Requests are assessed in line with identity verification, security and applicable law.

Casiroom applies privacy standards aligned with the UK General Data Protection Regulation, the Data Protection Act 2018 and the Privacy and Electronic Communications Regulations where relevant. Gambling related checks may also require information handling for age verification, anti money laundering controls, fraud prevention and safer gambling obligations.

Purposes for Data Use

Casiroom uses collected personal data to operate accounts, deliver online services and meet legal duties in the United Kingdom. Information supports account management, payment processing, identity checks, fraud prevention, safer gambling controls and customer support. The platform may also use data for service improvement, website analytics, security monitoring and permitted marketing where consent or another lawful basis applies. Marketing preferences can be managed by users, and service messages may still be sent where they relate to account operation or legal notices. Data is not used for hidden purposes outside the scope of this Privacy Policy.

  1. Account creation, login management and account administration.
  2. Identity, age and address verification where required by law or platform controls.
  3. Deposit, withdrawal and payment reconciliation through approved payment service providers.
  4. Fraud prevention, account security, dispute review and misuse detection.
  5. Safer gambling controls, including limits, exclusion tools and risk monitoring where applicable.
  6. Customer support, complaint handling and communication record management.
  7. Website performance review, analytics, error logging and service testing.
  8. Personalisation of account settings, content display and service preferences where permitted.
  9. Marketing communication where valid consent exists or where law allows relevant communication.
  10. Compliance with tax, audit, anti money laundering, regulatory and law enforcement requests.

All processing must have a lawful basis, such as consent, contract performance, legal obligation or legitimate interests. Users receive information about the main purposes of collection and use through this document and any relevant account notices.

Access, Correction and Account Records

Users may view certain personal information through the account area of the Casiroom platform, including profile details, contact information, payment history and selected account settings. If details are incomplete or inaccurate, a user may request correction through the available support channel or account tools, subject to identity checks. Requests to modify or delete personal data are reviewed against legal duties, security needs, payment records, dispute records, anti money laundering rules and responsible gambling obligations, as some information must be retained for a defined period. By using the services, users consent to reasonable security checks and to the handling of payment information by electronic service providers that support deposits, withdrawals, verification and fraud screening. Casiroom maintains privacy controls intended to keep account records confidential, accurate and protected against unauthorised access.

Protection of Under 18s

The site is intended only for persons aged 18+ in the United Kingdom. The operator cannot confirm a user age without suitable documents or verification data, so age checks may be required before or during account use. If a parent or legal guardian believes that a minor has supplied personal information, the operator can review the concern and delete the data where law permits.

  1. Users must not create an account or use gambling services unless they are aged 18 or over.
  2. Age and identity verification may be requested through documents, electronic checks or other lawful methods.
  3. Accounts linked to minors may be suspended or closed after review.
  4. Personal data relating to a minor may be deleted unless retention is required for legal, fraud prevention or safeguarding reasons.
  5. Parents or guardians may submit a request for review with enough information to identify the relevant account.
  6. The operator may retain a limited record of the review where needed to prevent further underage access.

Data Processing Outside the United Kingdom

Personal data may be processed outside the United Kingdom where the operator, payment providers, verification partners, hosting providers, analytics suppliers or support providers operate. Such processing may take place only for service delivery, security, legal compliance or other purposes described in this Privacy Policy. Use of the site and submission of information records consent to international handling where consent is required. Confidentiality and protection standards are required through partner agreements and data transfer safeguards.

  1. Overseas processing may support hosting, storage, payments, verification, customer service, analytics or security checks.
  2. Transfers must use suitable safeguards required by UK data protection law where applicable.
  3. Service providers may access only the information needed for the agreed task.
  4. Partners must protect confidentiality and apply security controls to personal data.
  5. Data transfer records may be kept for audit, compliance and risk management.
  6. Users may request further information about transfer safeguards where the law grants that right.

Acceptance and Current Version

Use of Casiroom services in the United Kingdom indicates full acceptance of the current Privacy Policy, including the collection, processing, storage, disclosure and deletion practices described in this document. The latest published version replaces all previous versions and applies to future use of the website and related online services. If the policy changes, continued use after publication is treated as acceptance where permitted by law, unless separate consent is required for a specific processing activity.

Sharing with External Recipients

Personal data may be shared with external recipients where required by law, needed for dispute handling, authorised under agreements or necessary for service operation. Recipients may include payment processors, verification services, fraud prevention bodies, technology suppliers, professional advisers, regulators and law enforcement authorities. Where the website identifies a recipient, that information forms part of the notice given to users. If a recipient is not named, users should still be informed of the purpose and scope of disclosure where the law requires it, and supplying data records consent where consent is the lawful basis.

  1. Payment providers may process transaction details for deposits, withdrawals, refunds and payment checks.
  2. Verification partners may process identity, age, address and document information.
  3. Fraud prevention services may receive account, device, payment and behavioural information.
  4. Technology providers may process hosting, security, analytics and support data.
  5. Regulators, courts or law enforcement bodies may receive information where legally required.
  6. Professional advisers may access limited information for audit, legal, tax or dispute purposes.
  7. Group or business transfer recipients may receive data if a lawful restructuring or transfer occurs.
  8. External recipients must handle information under confidentiality, contract and legal controls.

Updated: