Privacy Policy | WinCraft
- Introduction
This Privacy Policy outlines the principles, processes, and obligations related to data management on the win-craftcasino.org website. The platform is operated by Casiworx N.V., fully compliant with applicable European data protection regulations, especially the EU General Data Protection Regulation (GDPR – 2016/679/EU).
The purpose of data processing is to ensure the lawful, transparent, and secure handling of personal data necessary for operating, improving the service, and fulfilling legal obligations. - Principles and Legal Background
WinCraftCasino is committed to the following data protection principles:
- Lawfulness, fairness, and transparency
- Purpose limitation – only collecting data necessary for specific purposes
- Data minimization – requesting only essential information
- Accuracy – regular data reviews and updates
- Storage limitation – retaining data only as long as needed
- Integrity and confidentiality – encryption, access controls, logging
Legal bases for processing include user consent, contract fulfillment, legal obligations, or legitimate interest.
- Data Controller and Contact Details
Controller: Casiworx N.V.
Address: Groot Kwartierweg 10, Curaçao
Company registration number: 163922
Email: [email protected] - Types of Personal Data Collected
win-craftcasino.org may collect the following user data:
- Full name (first and last)
- Date of birth
- Address
- Email address
- IP address and geolocation data
- Device information (e.g., browser type, device model)
- Gameplay activity (e.g., preferred games, game history)
- Deposit and withdrawal transaction details
- Customer service communications
- KYC documents (ID card, utility bill, etc.)
Data is collected during registration, gameplay, support interactions, and to meet legal obligations.
- Purposes of Data Processing
We use data for the following purposes:
- Account creation, verification, and maintenance
- Access to games
- Operation of bonuses and promotions
- Processing of transactions
- Compliance with KYC and AML regulations
- System maintenance and bug fixing
- Customer support and complaint resolution
- Fraud prevention and IT security
- Legal dispute handling and responses to authority requests
Only data strictly necessary for these purposes is used.
- Legal Bases for Processing
According to Article 6(1) of the GDPR:
- (a) Consent – e.g., for marketing newsletters
- (b) Contract performance – for user accounts
- (c) Legal obligation – e.g., KYC requirements
- (f) Legitimate interest – e.g., fraud prevention
The legal basis for each data processing activity is clearly identified before processing begins.
- Data Sharing and Third Parties
Personal data may be shared with the following partners to the extent necessary:
- Payment processors – banks, crypto services
- Verification partners – for ID document checks
- IT security providers – server and infrastructure support
- Legal authorities – upon lawful request
All third parties are contractually bound to comply with GDPR.
- Data Retention Period
Data is stored according to the following guidelines:
- Active users: during the customer relationship
- Inactive accounts: 5 years after closure
- Financial transactions: at least 7 years (per accounting laws)
- KYC documents: 5 years (legal requirement)
- Marketing data: until consent is withdrawn
After retention, data is deleted or anonymized automatically.
- Cookies and Related Technologies
The website uses cookies for functionality, performance, and marketing purposes.
Types of cookies:
- Essential cookies – necessary for basic functions
- Analytical cookies – e.g., Google Analytics for traffic analysis
- Marketing cookies – campaign management, retargeting
Users can change cookie settings at any time via their browser.
- User Rights
Under GDPR, users have the right to:
- Access their personal data
- Correct inaccurate data
- Request deletion of data no longer needed
- Restrict data processing
- Object to data processing
- Request data portability
All requests are answered within 30 days, free of charge.
- Protection of Minors
The service is only available to users aged 18 or over. Age verification is mandatory during registration and before withdrawal.
Accounts created by underage users will be deleted along with all related data. Access to games is permanently denied in such cases. - Security Measures
WinCraftCasino implements the following data protection measures:
- SSL encryption via HTTPS
- Two-factor authentication (for admin access)
- Logging of all access
- Physical server security
- Firewalls, antivirus, and intrusion detection systems
- Regular security audits and backups
User data is safeguarded, and misuse is strictly prevented.
- Contact
For questions, complaints, or data-related matters, contact:
Email: [email protected]
Customer Support: 24/7 live chat in Hungarian
Data Protection Officer: For official requests – [email protected]