Privacy Policy of VegaStars Casino Australia
This Privacy Policy explains how Neptune Projects S.R.L., registered in Costa Rica (“we,” “us,” or “VegaStars Casino”), collects, uses, stores, and protects your personal information when you access or use our platform. We are committed to safeguarding your privacy and handling your data responsibly and transparently.
What Data We Collect
We collect various categories of personal and non-personal information to operate our services, comply with legal obligations, and enhance your experience.
Personal Data
We may collect the following types of personal data directly from you or through your use of our services:
- Identity and contact information: full name, date of birth, residential address, email address, phone number, nationality, and copies of verification documents such as government-issued identification or proof of address.
- Account and transaction data: account identifiers, deposit and withdrawal records, gameplay and betting history, payment method details, bonus activity, and chargeback records.
- KYC and AML verification data: identity verification results, due diligence records, sanctions and politically exposed person screening outcomes, and source of funds documentation.
- Communications data: records of emails, live chat conversations, webform submissions, and support tickets exchanged with our team.
- Responsible gambling signals: session duration metrics, spending patterns, and records of your use of responsible gambling tools.
- Preferences: your marketing communication preferences and cookie consent choices.
- Survey and feedback data: responses you provide through surveys, reviews, or other feedback mechanisms.
Automatically Collected Data
When you visit or interact with our platform, we automatically collect certain technical and usage information:
- Device identifiers: unique device IDs, hardware model, and operating system version.
- Network information: IP address and approximate geographic location derived from your IP.
- Browser and system details: browser type, version, language settings, and operating system.
- Cookies and tracking technologies: data collected through cookies and similar technologies as described further in this policy.
- Session and activity logs: pages visited, features used, timestamps, click patterns, and navigation paths.
- Crash and error diagnostics: technical reports generated when errors or performance issues occur.
- Security logs: authentication events, login attempts, and access records used to detect and prevent unauthorized activity.
Purposes of Data Processing
We process your personal data for the following purposes:
- Service provision: creating and managing your account, facilitating gameplay, processing deposits and withdrawals, administering promotions and bonuses, and providing customer support.
- Identity verification and legal compliance: performing Know Your Customer and Anti-Money Laundering checks, conducting sanctions and politically exposed person screening, preventing fraud and financial crime, and implementing responsible gambling measures.
- Platform security and improvement: monitoring system integrity, responding to security incidents, troubleshooting technical issues, and testing new features or updates.
- Business operations: conducting analytics and reporting, preparing financial forecasts, managing accounting and finance functions, and fulfilling audit requirements.
- Marketing communications: sending you promotional offers, news, and updates about our services where you have provided your consent. You may withdraw your consent to receive marketing communications at any time.
Legal Bases for Processing
We rely on the following legal bases when processing your personal data:
- Contract: processing is necessary to perform the contract between you and VegaStars Casino, including account creation, gameplay facilitation, and transaction processing.
- Legal obligation: processing is required to comply with applicable laws and regulations, including KYC, AML, responsible gambling, and tax reporting obligations.
- Legitimate interests: processing is necessary for our legitimate business interests, such as fraud prevention, platform security, service improvement, and internal analytics, provided these interests are not overridden by your rights and freedoms.
- Consent: where we rely on your consent for specific processing activities, such as marketing communications or certain cookie uses, you have the right to withdraw that consent at any time without affecting the lawfulness of processing carried out prior to withdrawal.
Data Retention
We retain your personal data for as long as necessary to fulfil the purposes for which it was collected, including the provision of our services and compliance with legal obligations. Specific retention considerations include:
- Active account data: retained for the duration of your account relationship with us and for a reasonable period thereafter.
- AML and KYC records: retained in accordance with applicable anti-money laundering and know your customer regulatory requirements, which may mandate retention for several years following account closure.
- Claims defence: retained for the period during which legal claims may be brought against us or by us in connection with your account or activity.
- Regulatory audit requirements: retained as needed to satisfy audit obligations imposed by regulators or licensing authorities.
When personal data is no longer required for any of these purposes, we securely delete or anonymise it in accordance with our internal data management procedures.
Data Protection
We implement appropriate technical and organisational measures to protect your personal data against unauthorised access, alteration, disclosure, or destruction. These measures include:
- Encryption: data is encrypted both in transit and at rest using industry-standard protocols to prevent interception or unauthorised reading.
- Access controls: strict role-based access restrictions ensure that only authorised personnel can access personal data on a need-to-know basis.
- Operational safeguards: regular security assessments, staff training, incident response procedures, and system monitoring are employed to maintain a secure operating environment.
While we take all reasonable steps to protect your information, no method of electronic storage or transmission is completely secure. We encourage you to take your own precautions, such as using strong passwords and keeping your login credentials confidential.
Cookies and Similar Technologies
We use cookies and similar technologies on our platform to enhance functionality and gather usage data. The categories of cookies we use include:
- Essential cookies: required for the basic operation of our platform, including user authentication, session management, and security functions. These cookies cannot be disabled.
- Functional cookies: enable enhanced features and personalisation, such as remembering your language preferences and display settings.
- Analytics cookies: help us understand how visitors interact with our platform by collecting aggregated and anonymised usage data, which we use to improve performance and user experience.
- Advertising cookies: used to deliver relevant promotional content and measure the effectiveness of our marketing campaigns.
You can manage your cookie preferences through your browser or device settings. Please note that disabling certain cookies may affect the functionality of our platform.
Data Sharing and Disclosure
We do not sell or share personal information. However, we may disclose your data in limited circumstances to the following categories of recipients for operational purposes:
- Service providers: trusted third parties who assist us in operating our platform, including hosting and infrastructure providers, security services, KYC and AML verification providers, payment processors, game studio partners, and customer relationship management platforms. These providers are contractually bound to process data only on our behalf and in accordance with our instructions.
- Group companies: affiliated entities within our corporate group on a need-to-know basis to support operations, governance, and service delivery.
- Regulators and authorities: government agencies, licensing bodies, law enforcement, or other authorities where disclosure is required by law, regulation, or valid legal process.
- Business transfers: in connection with a merger, acquisition, reorganisation, or sale of assets, your data may be transferred to the acquiring entity subject to continued privacy protections.
- Player-directed disclosures: where you choose to participate in features that involve limited public visibility, such as displaying your nickname on leaderboards.
International Data Transfers
Your personal data may be processed in countries other than the country in which you reside. When we transfer data internationally, we ensure that appropriate contractual safeguards are in place to provide a level of protection consistent with this Privacy Policy. These safeguards include standard contractual clauses and other legally recognised transfer mechanisms designed to protect your data regardless of where it is processed.
Your Rights
Depending on your jurisdiction, you may have the following rights in relation to your personal data:
- Right of access: you may request a copy of the personal data we hold about you and information about how it is processed.
- Right to rectification: you may request correction of any inaccurate or incomplete personal data we hold about you.
- Right to deletion or erasure: you may request the deletion of your personal data, subject to our legal obligations to retain certain records.
- Right to restriction: you may request that we restrict the processing of your personal data in certain circumstances, such as while we verify the accuracy of your data.
- Right to object: you may object to our processing of your personal data where we rely on legitimate interests as our legal basis.
- Right to withdraw consent: where processing is based on your consent, you may withdraw that consent at any time without affecting the lawfulness of processing carried out before the withdrawal.
To exercise any of these rights, please contact our Data Protection Officer using the details provided in the Contact Information section below. We will respond to your request in accordance with applicable data protection laws.
Children and Minors
VegaStars Casino is intended exclusively for individuals aged 18 years and older. We do not knowingly collect, process, or store personal information from anyone under the age of 18. If we become aware that we have inadvertently collected data from a minor, we will take immediate steps to close the associated account and permanently delete all personal data related to that individual. If you believe that a person under 18 has provided us with personal information, please contact us so that we can take appropriate action.
Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, legal requirements, or operational needs. When we make material changes, we will notify you through our platform or by other appropriate means. We encourage you to review this policy periodically to stay informed about how we protect your information. Your continued use of our services after any changes indicates your acceptance of the updated policy.
Contact Information
If you have questions, concerns, or requests relating to this Privacy Policy or the handling of your personal data, you may contact our Data Protection Officer at [email protected]. The data controller responsible for the processing of your personal data is Neptune Projects S.R.L., registered in Costa Rica.