Privacy Policy

Introduction

This Privacy Policy explains how Ffbet collects, uses, stores and discloses your personal data in connection with the Services it provides. It applies to all users and customers who interact with the Services, whether via websites, apps, or other offerings that link to this policy.

Data Controller and Contact

Ffbet acts as the data controller for the personal data processed in relation to the Services. If you have questions, requests or concerns about your data, contact our Data Protection Officer through the designated channels provided by Ffbet. We will respond in accordance with applicable data protection law.

Definitions

  • Personal Data: any information that identifies you or relates to a natural person who can be identified.
  • Data Controller: the entity that determines the purposes and means of processing your personal data.
  • Data Processor: a natural or legal person that processes data on behalf of the controller.

Categories of Personal Data We Collect

  • Contact Data: name, address, email, phone number.
  • Identity Data: date of birth, government-issued identifiers, verification documents when required.
  • Account and Financial Data: account status, balances, payment methods, transaction history, source of funds.
  • Technical Data: device identifiers, IP address, browser type, operating system, referring URLs.
  • Marketing Data: preferences for communications and consent status.
  • Gaming and Usage Data: bets placed, game history, bonuses, promotions, self‑exclusion status.

How We Use Personal Data

  • To set up and manage your account and provide the Services.
  • To process payments and verify transactions for security and anti-fraud purposes.
  • To enable customer support and protect against fraud and illicit activity.
  • To provide responsible gaming tools, including monitoring for problem gambling indicators.
  • To personalize your experience and communicate information you have requested.
  • To conduct marketing communications where you have given consent or where permitted by law.

Legal Bases for Processing

  • Contractual Necessity: processing is required to provide the Services and manage the customer relationship.
  • Legitimate Interests: processing to maintain accurate records, improve services, combat fraud, and develop new features, provided such interests do not override your rights.
  • Legal and Regulatory Obligations: AML/KYC, licensing, and other applicable laws.
  • Consent: for activities such as direct marketing where required or as permitted by law. You may withdraw consent at any time.

Data Retention

We retain personal data only for as long as necessary to fulfill the purposes described and to comply with legal or regulatory obligations. Transactional data and related records are kept for a minimum of five (5) years. Other data are retained for the period needed to administer the customer relationship or as required by applicable law, after which they are securely deleted or anonymized.

Automated Processing and Profiling

We may conduct profiling for AML and fraud prevention purposes, combining data from multiple sources to assess risk. Final decisions regarding safety and compliance are made by human staff; no purely automated decision will determine your legal rights or obligations without human involvement.

Sharing and International Transfers

We may share your personal data with service providers who support the provision of the Services, including payment processing, identity verification, IT services, analytics, and customer support. We may disclose data to regulators or in connection with legal processes, disputes, or corporate transactions. Where transfers occur outside your home jurisdiction, we implement safeguards consistent with applicable data protection laws, such as contractual clauses or other approved mechanisms.

Your Rights

  • Right of access to your personal data held by us.
  • Right to rectification of inaccuracies.
  • Right to erasure when lawful or upon termination of the Services.
  • Right to restrict processing in defined circumstances.
  • Right to data portability where applicable.
  • Right to withdraw consent, where processing is based on consent.
  • Right to object to processing in certain situations.

Requests to exercise these rights can be submitted to the Data Protection Officer. We aim to respond within a reasonable period, typically within one month, and in any event in accordance with applicable law.

Security

We implement appropriate technical and organizational measures to protect personal data, including encryption in transit and at rest, access controls, regular security reviews, and incident response procedures. Access to personal data is limited to personnel who have a legitimate need to know.

Cookies and Tracking Technologies

We use cookies to provide the Services, improve performance, and support marketing where permitted. Cookies are categorized as essential, functional, performance, and marketing. You may manage cookies via your browser settings. Disabling certain cookies may affect your ability to access features of the Services.

Storage and Security of Data

Stored data reside on secure systems with access restricted to authorized personnel. Data deletion and anonymization are performed when data are no longer required or upon lawful request.

Changes to this Policy

We may update this Policy from time to time. We will notify users of material changes and provide the effective date of the revision.

Complaint and Regulatory Contact

You may lodge a complaint with a supervisory authority in the relevant jurisdiction if you believe your rights have been violated. For assistance or to exercise rights, contact our Data Protection Officer as described above.