Privacy Policy & GDPR Compliance
Protecting your personal data is a fundamental commitment for Total Casino. We strictly adhere to the requirements of the European General Data Protection Regulation (GDPR) to ensure your privacy is maintained at all times. Total Casino uses your data exclusively for the operation of our services and never passes it on to unauthorised third parties.
Data Collection and Use
Total Casino only collects data that is technically or legally necessary for the provision of our services.
- Identification Data: To fulfil legal requirements (age verification, AML).
- Financial Data: For the secure processing of your transactions.
- Usage Data: To improve our offerings and prevent fraud.
Highest Security Standards
Your data is stored in highly secure data centres within the EU. We utilise state-of-the-art encryption technologies (AES-256) to protect your information from unauthorised access, manipulation, or loss. Total Casino subjects its systems to regular penetration tests by independent security experts. Our infrastructure is monitored around the clock to immediately detect and ward off potential threats.
Your Rights as a Data Subject
In accordance with GDPR, you have comprehensive rights regarding your data:
- Right of Access: You can find out at any time what data we store about you.
- Right to Rectification: You can have incorrect data corrected.
- Right to Erasure: You can request the deletion of your account and data (subject to legal retention obligations).
- Data Portability: You can request that we transmit your data to you or a third party in a machine-readable format.
| Data Type | GDPR Category | Legal Basis | Purpose | Storage Duration | Third-Country Transfer | Your Rights |
|---|---|---|---|---|---|---|
| Identity Data (KYC) | Personal Data | Legal Obligation | Identity Verification | 5 years after account closure | No (EU server) | Access, Rectification |
| Financial Transactions | Sensitive Data | Contract Fulfilment | Payment Processing | 10 years (Tax Law) | Payment Providers (EU) | Access, Portability |
| Login Logs | Technical Data | Legitimate Interest | Security | 12 months | No | Access, Erasure |
| Email Address | Personal Data | Consent | Communication | Account Lifetime | Email Provider (EU) | Objection, Erasure |
| Game History | Usage Data | Contract Fulfilment | Bet Tracking | 5 years | No | Access, Portability |
| Session Cookies | Technical Data | Legitimate Interest | Website Functionality | End of Session | No | Browser Settings |
| Analytics Cookies | Technical Data | Consent | Website Optimisation | 13 months max. | Google Analytics | Objection, Deactivation |
| Phone Number | Personal Data | Consent | 2FA and SMS Alerts | Account Lifetime | SMS Provider (EU) | Objection, Erasure |
| IP Addresses | Technical Data | Legitimate Interest | Fraud Prevention | 6 months | No | Access |
| KYC Documents | Sensitive Data | Legal Obligation | Regulatory Compliance | 5 years after account closure | No (EU server) | Access only |
For any questions regarding data protection, you can contact our Data Protection Officer (DPO) at dpo@totalcasino.com at any time. We guarantee to process your requests within the statutory deadlines.