Privacy Policy
Oz2Win Casino is committed to protecting your privacy and handling your personal information responsibly. This Privacy Policy explains how we collect, use, disclose, and safeguard your data in compliance with the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs), as well as relevant gambling regulations. We also consider principles from the EU General Data Protection Regulation (GDPR) where applicable to our international operations, ensuring high standards for all users.
Information We Collect
We collect personal information to provide our online casino services, verify identities, process transactions, and comply with legal obligations. This includes data you provide directly, such as during registration, and information gathered automatically through your use of our platform.
Types of personal information collected include:
- Identity and Contact Details: Full name, date of birth, residential address, email address, phone number, and government-issued ID numbers (e.g, driver's license or passport details). These are required for account creation and Know Your Customer (KYC) verification under anti-money laundering (AML) laws. austrac .
- Financial Information: Bank account details, credit/debit card numbers, payment method information, transaction history, deposits, withdrawals, and wagering records. This enables secure processing of funds and compliance with financial reporting requirements. australiabestonlinecasino.co.
- Gaming and Usage Data: Betting history, game preferences, session durations, IP address, device type, browser information, and login times. This helps personalize your experience and detect fraudulent activity.
- Sensitive Information: In some cases, health-related data for responsible gambling assessments (e.g, self-exclusion requests) or biometric data from verification scans, collected only with explicit consent and higher safeguards as per APP 3. usercentrics .
- Communication Records: Emails, live chat transcripts, and support tickets with our team at [email protected].
We collect unsolicited information (e.g, from third-party referrals) and determine if it is reasonably necessary; otherwise, it is destroyed or de-identified per APP 4. Children under 18 are not permitted to use our services, and we do not knowingly collect their data.oaic.
How We Collect Information
Collection occurs primarily when you interact with our site:
- Directly from you via registration forms, deposit pages, or support requests.
- Automatically through cookies, web beacons, and analytics tools (e.g, Google Analytics for site performance).
- From third parties like payment processors (e.g, Visa, bank APIs), KYC providers (e.g, Jumio), or credit reference agencies for verification.
- Public sources or affiliates for marketing (with consent).
We notify you of collection purposes at the time via on-screen notices or this policy, as required by APP 5. Anonymity or pseudonymity is offered where practicable, except for KYC/AML needs (APP 2).oaic.gov.
Purpose of Collection and Use
Your information is used only for legitimate purposes:
- Account management, game access, and transaction processing.
- Identity verification and fraud prevention.
- Regulatory compliance, including AUSTRAC AML/CTF reporting and responsible gambling monitoring.
- Personalizing offers, analyzing trends, and improving services.
- Communications about account updates, promotions (opt-in only), or legal notices.
- Internal audits and dispute resolution. stresstelijf .
Under APP 6, we do not use or disclose data incompatibly with these purposes without consent. For direct marketing (APP 7), we obtain opt-in consent and provide easy unsubscribe options.oaic.gov.
Sharing and Disclosure of Information
We do not sell your data. Disclosure is limited:
- Service Providers: Payment gateways, cloud hosts (e.g, AWS), verification firms, all bound by data processing agreements.
- Group Companies: For operational support.
- Legal Requirements: To regulators (e.g, AUSTRAC), law enforcement, or courts if subpoenaed. actgamblingsupport.org.
- Business Transfers: In mergers, with notice provided.
For cross-border disclosures (APP 8), we ensure recipients provide comparable protections, such as GDPR-equivalent safeguards via Standard Contractual Clauses if EU data is involved. No government identifiers are adopted as our own (APP 9).
Data Quality and Security
We take reasonable steps to ensure data accuracy, completeness, and relevance (APP 10). Security measures include:oaic.gov.
- SSL/TLS encryption for data in transit.
- Firewalls, intrusion detection, and regular penetration testing.
- Access controls (e.g, role-based permissions).
- Employee training on data handling.
Per APP 11, we protect against misuse, loss, or unauthorized access, and destroy/de-identify data when no longer needed. In breach events, we notify affected users and the Office of the Australian Information Commissioner (OAIC) if required.
Cookies and Tracking
Our site uses cookies for functionality, analytics, and advertising:
- Essential: For login and security.
- Performance: To optimize load times.
- Marketing: For retargeting (third-party like Google Ads).
Manage via browser settings or our cookie banner. Disabling may limit.
Data Retention aligns with legal minima:
| Data Type | Retention Period | Reason |
|---|---|---|
| KYC/Identity Documents | 5-7 years post-closure | AML/CTF, tax audits isms |
| Transaction Records | 7 years | Financial laws stresstelijf |
| Gaming History | 5 years | Disputes, RG compliance isms |
| Marketing Data | Until opt-out | Consent-based oz2win-au |
| Technical Logs | 2 years | Security analysis stresstelijf |
Data is securely deleted or anonymized.
Your Privacy Rights
Under the Privacy Act and APPs, you have rights reciprocal to GDPR for accessibility:
- Access (APP 12): Request your data; response within 30 days, possible fees for complex requests.
- Correction (APP 13): Update inaccuracies.
- Deletion: Where no legal retention applies.
- Objection/Restriction: To processing for marketing or non-essential uses.
- Portability: Receive data in structured format.
- Withdraw Consent: At any time.
Contact [email protected]. Complaints go to our Data Protection Officer first, then OAIC (www.oaic.gov.au). International users may invoke GDPR rights if applicable.
Responsible Gambling and Special Categories
For responsible gambling, we may process health indicators (e.g, play limits) with consent. Self-exclusion data is retained to prevent re-registration. Sensitive data receives extra protections per APP 3.
International Users and GDPR
While primarily for Australian users, if you access from the EU/EEA, we comply with GDPR: lawful basis (consent/contract), Data Protection Officer contact, and rights like erasure (right to be forgotten). Transfers use adequacy decisions or.
Changes to This Policy
We update this policy periodically; changes post-date apply to future processing. Check the top for "Last Updated." Significant changes trigger.
Contact Us
Questions? Email [email protected] or write to our registered office. We respond within 30 days.
Last Updated: March 27, 2026.