Donbet Privacy Policy: How Account and Transaction Data Is Handled
This policy explains the personal information processed when a player visits Donbet, opens an account, deposits, places a wager, claims a promotion, contacts support or requests a withdrawal. Processing is tied to clear purposes: operating the account, meeting legal duties, preventing fraud, completing transactions, personalising permitted communications and protecting the service. Data is not collected simply because it may be useful later; each category must have an operational or legal reason.
Effective date: 22 August 2026
Data enters the account through several routes
| Source | Typical information | Why it is needed |
|---|---|---|
| Registration | Name, date of birth, address, email, telephone, country | Account creation, age checks and communication |
| Verification | Identity document, proof of address, selfie or payment ownership evidence | KYC, fraud prevention and payout approval |
| Cashier | Amount, currency, method, timestamp, transaction ID and status | Deposits, withdrawals, reconciliation and disputes |
| Gambling activity | Games, bets, stakes, outcomes, sessions, bonus use and limits | Account history, risk monitoring and product operation |
| Device and browser | IP address, device identifiers, browser, operating system and security events | Login protection, analytics and abuse detection |
| Support | Messages, attachments, call or chat records and case references | Resolving requests and keeping an audit trail |
Lawful purposes govern use
Account and payment processing is necessary to perform the player contract. Identity, source-of-funds, anti-money-laundering and safer-gambling checks can be required by law or regulatory duty. Security monitoring and service improvement may rely on legitimate interests where those interests do not override player rights. Optional direct marketing depends on consent or another lawful basis recognised in the applicable market.
Information collected for verification is not repurposed for advertising. Payment details are used to execute and reconcile transactions, detect duplicate or third-party instruments and investigate chargebacks. Gambling history may be reviewed for fraud, bonus abuse and indicators of harm.
Cookies have distinct jobs
Essential cookies keep sessions active, remember security choices and support the cashier. Preference cookies retain language or display selections. Analytics cookies measure navigation and performance. Marketing cookies support attribution and permitted advertising.
Non-essential cookies should be controlled through the consent panel. Blocking essential storage can prevent login, cashier or security functions from working correctly. Browser deletion removes local cookies but does not erase the account record held for contractual or legal reasons.
Verification data and payment security
Before the first withdrawal, a player may be asked for a government-issued identity document, recent proof of address and evidence that the selected payment method belongs to the account holder. Documents must be uploaded through the authorised account route. Passwords, one-time codes and full card credentials must never be sent through an unsolicited message.
Payment processors receive the information required to execute the selected transaction. They may act as independent controllers or contracted processors under their own legal duties. Card details may be tokenised so the casino does not retain the full number.
When information is shared
Personal information may be shared with payment providers, identity-verification services, fraud and security vendors, hosting and communications suppliers, professional advisers, regulators or public authorities where a lawful request applies. Sharing must be limited to the data needed for the stated purpose and governed by confidentiality, security and contractual controls.
Cross-border processing may occur when a supplier or group function operates in another jurisdiction. Appropriate safeguards should be used where local law requires them, including recognised contractual clauses and security assessments.
Retention follows the purpose and legal clock
Account information is kept while the relationship remains active and for the period required to meet gambling, tax, anti-money-laundering, dispute and recordkeeping duties. Closing an account does not automatically erase records that must be retained. When a retention period expires, information should be deleted, anonymised or placed beyond ordinary operational use.
Player rights and request handling
Depending on the applicable law, a player may request access, correction, deletion, restriction, portability or objection. Consent can be withdrawn for future optional processing. A request should identify the account email and the right being exercised; additional identity evidence may be required before data is disclosed or changed.
The response period begins once the request and identity are sufficiently clear. Complex or repeated requests may require additional time where the law permits. A player can also complain to the relevant data-protection authority.
Security is a shared responsibility
Donbet applies access controls, monitoring, encryption and supplier safeguards appropriate to the data handled. Players should use a unique password, keep recovery email access secure, sign out on shared devices and report unfamiliar transactions or login notices immediately. No online system removes all risk, so incident procedures remain part of the privacy framework.
Privacy enquiries
Privacy requests should be sent through the current privacy or support contact displayed in the footer or account. The request should state the account email, country, requested action and enough detail to locate the relevant record. Do not place identity documents in an ordinary public comment or an unverified email thread.
