Privacy Policy
This privacy policy outlines how RockYSpin collects, uses, stores, and protects your personal information when you access and use our online slot game platform. We are committed to safeguarding your privacy and ensuring that your personal data is handled in accordance with applicable data protection regulations, including the General Data Protection Regulation (GDPR) and Austrian data protection laws. By using RockYSpin, you acknowledge that you have read and understood this RockYSpin policy and consent to the practices described herein.
Information We Collect
RockYSpin collects various types of information to provide you with a secure and enjoyable gaming experience. The data we gather falls into several categories, each serving specific operational and legal purposes.
We collect personal identification information that you provide during account registration, including your full name, date of birth, email address, postal address, and telephone number. This information is necessary to verify your identity, comply with legal age requirements for gambling, and communicate with you regarding your account. Additionally, we collect payment information such as credit card details, e-wallet credentials, and bank account numbers to process deposits and withdrawals securely.
Technical data is automatically collected when you access our platform, including your IP address, browser type, operating system, device identifiers, and geographic location. This casino privacy policy-related information helps us maintain platform security, prevent fraud, and optimise your gaming experience. We also collect gameplay data, including your betting history, game preferences, session duration, and transaction records, which allows us to fulfil our regulatory obligations and improve our services.
Cookies and similar tracking technologies are employed to remember your preferences, analyse site traffic, and deliver personalised content. You can manage cookie settings through your browser, though disabling certain cookies may affect platform functionality.
How We Use Your Information
The information collected through RockYSpin serves multiple legitimate purposes that are essential for platform operation, legal compliance, and service improvement. Understanding how we use your data is a fundamental aspect of our privacy commitment.
We use your personal information primarily to operate and maintain your gaming account, process your financial transactions, and provide customer support services. Your data enables us to verify your identity during account creation and subsequent logins, ensuring that only authorised users access your account. Payment information is used exclusively to facilitate secure deposits and withdrawals, with all financial transactions processed through encrypted channels.
Compliance with legal and regulatory requirements represents another critical use of your information. Gaming authorities in various jurisdictions require us to maintain detailed records of player activity, verify player identities to prevent underage gambling, and monitor transactions to detect money laundering or fraudulent activities. We cooperate with regulatory bodies and law enforcement agencies when legally obligated to do so.
Your data also helps us improve RockYSpin by analysing gameplay patterns, identifying technical issues, and developing new features that enhance user experience. We may use your contact information to send you important account notifications, security alerts, and updates about platform changes. Marketing communications are only sent to users who have explicitly opted in to receive such messages, and you can unsubscribe at any time.
Fraud prevention and platform security constitute additional uses of your information. We monitor account activity and transaction patterns to identify suspicious behaviour, protect against unauthorised access, and maintain the integrity of our gaming environment.
Data Sharing and Third-Party Disclosure
RockYSpin operates with a strict data sharing policy designed to protect your privacy while enabling necessary business operations and legal compliance. We do not sell, rent, or trade your personal information to third parties for their marketing purposes.
We share your information with carefully selected third-party service providers who assist us in operating our platform. These partners include payment processors who handle financial transactions, identity verification services that confirm your age and identity, cloud storage providers who host our data infrastructure, and customer support platforms that enable us to respond to your enquiries. All third-party service providers are contractually bound to handle your data securely and use it only for the specific purposes we authorise.
Regulatory authorities and gaming licence issuers receive information as required by law. This includes sharing player data with gambling regulators in jurisdictions where we operate, providing transaction records to financial authorities investigating potential money laundering, and cooperating with law enforcement agencies conducting criminal investigations. Such disclosures are made only when legally mandated or necessary to protect our legitimate interests.
In the event of a business transfer, such as a merger, acquisition, or sale of assets, your information may be transferred to the acquiring entity. We would notify you of such changes and ensure that the new entity honours this RockYSpin policy.
We may also disclose your information when necessary to protect our legal rights, enforce our terms of service, investigate potential violations, or protect the safety and security of our users and platform.
Data Security and Retention
Protecting your personal information is a paramount concern for RockYSpin, and we implement comprehensive security measures to safeguard data against unauthorised access, alteration, disclosure, or destruction.
We employ industry-standard encryption protocols, including SSL/TLS technology, to protect data transmitted between your device and our servers. All sensitive information, particularly payment details and passwords, is encrypted both in transit and at rest using advanced cryptographic algorithms. Our servers are housed in secure data centres with restricted physical access, 24-hour monitoring, and redundant systems to prevent data loss.
Access to personal information is restricted to authorised personnel who require it to perform their job functions. Our employees undergo regular security training and are bound by strict confidentiality agreements. We implement role-based access controls, multi-factor authentication for administrative access, and regular security audits to identify and address potential vulnerabilities.
Regarding data retention, we maintain your personal information only for as long as necessary to fulfil the purposes outlined in this privacy policy. The specific retention periods vary depending on data type and legal requirements, as illustrated in the following table:
| Data Type | Retention Period | Reason for Retention |
|---|---|---|
| Account information | Duration of account plus 5 years | Legal and regulatory compliance |
| Transaction records | 7 years after transaction | Financial regulations and tax laws |
| Gameplay history | 5 years after last activity | Dispute resolution and regulatory requirements |
| Identity verification documents | 5 years after account closure | Anti-money laundering regulations |
| Marketing communications data | Until consent withdrawn or 3 years of inactivity | Marketing preferences management |
| Technical logs | 12 months | Security monitoring and platform optimisation |
Once the retention period expires, we securely delete or anonymise your personal information in accordance with data protection regulations. You may request early deletion of your data in certain circumstances, subject to our legal obligations to retain specific information.
Your Privacy Rights
Under the GDPR and Austrian data protection laws, you possess specific rights regarding your personal information held by RockYSpin. We are committed to facilitating the exercise of these rights whilst balancing our legal obligations.
You have the right to access your personal data and receive a copy of the information we hold about you. This includes details about how we process your data, the purposes of processing, and the categories of recipients with whom we share your information. You can request this information by contacting our data protection officer through the designated channels on our platform.
The right to rectification allows you to correct inaccurate or incomplete personal information. If you notice errors in your account details or other stored data, you can update certain information directly through your account settings or request our assistance for changes to information you cannot modify yourself.
You may exercise your right to erasure (the right to be forgotten) by requesting deletion of your personal data under specific circumstances, such as when the data is no longer necessary for the purposes for which it was collected or when you withdraw consent. However, this right is not absolute, and we may be required to retain certain information to comply with legal obligations or establish legal claims.
The right to data portability enables you to receive your personal information in a structured, commonly used, and machine-readable format and transmit it to another service provider. This right applies to data you have provided to us based on consent or contract performance.
You can object to the processing of your personal data for direct marketing purposes at any time, and we will cease such processing upon receiving your request. You may also object to processing based on legitimate interests, though we may continue processing if we can demonstrate compelling legitimate grounds that override your interests.
Additionally, you have the right to restrict processing of your data in certain situations, such as when you contest the accuracy of the data or object to processing. You also possess the right to withdraw consent at any time for processing activities based on your consent, without affecting the lawfulness of processing conducted before withdrawal.
To exercise any of these rights, contact our data protection team through the contact methods provided on our platform. We will respond to your request within one month, though this period may be extended by two additional months for complex requests. If you believe we have not handled your personal data appropriately, you have the right to lodge a complaint with the Austrian Data Protection Authority (Österreichische Datenschutzbehörde) or the supervisory authority in your jurisdiction.