Privacy Policy of Dragonia Casino

Categories of personal data subject to processing

To allow access and correct use of the gaming platform, we collect and process various types of information, which may vary based on user interactions:

Identification and contact data

Includes information voluntarily provided by the user during registration or profile update, such as full name, date of birth, tax code, gender, residential or domicile address, phone number, and email address.

Data relating to usage and gaming activity

Includes data generated during interaction with the platform, such as gaming session history, bets placed, winnings, gaming preferences, participation in promotions, and general browsing behavior within the site.

Technical and device data

They are collected automatically by the system during access and include the IP address, browser type used, operating system data, mobile device identifier, approximate geographic location, and system log information.

Financial transaction data

They include details related to deposit and withdrawal operations performed on the platform, such as the payment method used, amounts transferred, date, time, and transaction outcomes, excluding the direct storage of full bank credentials protected by third-party systems.

Communications with customer support

They include the content of all requests, reports, or messages sent by the user to our customer support team, including details provided for resolving technical or administrative issues.

Legal bases for data processing

The processing of personal data is based on specific legal grounds provided by the legal system, aimed at ensuring its legitimacy:

Contractual performance: Necessary to verify user identity, create and manage the gaming account, provide the requested services, and process financial transactions.

Legal obligations: Necessary to comply with anti-money laundering regulations, public safety provisions, tax controls, and rules on restricting access to minors.

Legitimate interest: Necessary to ensure system security, prevent fraud and abuse on the platform, optimize technical performance, and improve the quality of commercial services.

User consent: Specifically required for sending direct marketing communications, personalized promotional offers, or for activating certain tracking cookies.

Purposes for the use of personal data

The collected data is processed exclusively for the achievement of the following operational purposes:

Ordinary management, maintenance, and technical monitoring of the platform and the user's gaming account.

Verification of eligibility and age requirements (verification of having reached 18 years of age).

Secure processing and finalization of financial deposits and withdrawals.

Provision of customer support services and response to inquiries, complaints, or technical support requests.

Detection, prevention, and combating of illegal activities, cyber fraud, or behavior contrary to the terms of service.

Sending communications related to service updates, contractual changes, or security notices.

With prior consent, marketing activities and sending dedicated promotions via email or text messages.

Data retention approach

Personal data are retained for the period strictly necessary to achieve the purposes for which they were originally collected, or to meet the requirements imposed by current civil, tax, and criminal laws. Generally, data associated with the gaming account remain active for the entire duration of the contractual relationship. After account closure, relevant information is securely archived for the statutory limitation periods for managing potential disputes or responding to formal requests from competent authorities.

Sharing and communication of personal data

Users' personal data are not sold or transferred to third parties for commercial purposes. Data communication may occur exclusively to selected categories of recipients who collaborate in the provision of services:

External data processors and providers of IT services, hosting, software maintenance, and IT security.

Providers of payment solutions and banking institutions responsible for processing financial flows for deposits and withdrawals.

Professionals, legal consultants, and corporate audit firms for the purpose of protecting rights.

Judicial authorities, supervisory bodies, and law enforcement agencies in cases expressly provided for by law.

International data transfers

The processing of personal data takes place mainly within the European Economic Area (EEA). Should it be necessary for technical or operational reasons to transfer information to providers located in third countries outside the EEA, such transfers will only occur in the presence of adequate legal guarantees, such as adequacy decisions by the European Commission or the signing of Standard Contractual Clauses, aimed at ensuring a level of data protection equivalent to that of Europe.

Information security measures

Our platform adopts adequate technical, physical, and organizational security measures to protect personal data from accidental or unlawful destruction, loss, alteration, disclosure, or unauthorized access. We use encryption protocols for data transmission and access control systems for authorized personnel. However, please note that no data transmission system via the internet or digital storage can be guaranteed to be 100% secure; therefore, the platform cannot provide an absolute guarantee against every potential cybersecurity risk.

User rights regarding privacy

In accordance with data protection regulations, users have a series of specific rights that they can exercise at any time:

Right of access: Obtain confirmation as to whether or not personal data is being processed and receive a copy of it.

Right to rectification: Request the correction of inaccurate data or the integration of incomplete data.

Right to erasure (right to be forgotten): Request the deletion of their data if there are no longer any legal or contractual obligations requiring its retention.

Right to restriction of processing: Obtain the suspension of processing in the presence of specific legal hypotheses.

Right to data portability: Receive their data in a structured, commonly used, and machine-readable format to transfer it to another controller.

Right to object: Object to the processing for legitimate reasons or withdraw previously given consent for marketing purposes.

How to contact the platform for privacy requests

To exercise their rights, request clarifications on data processing, or submit requests regarding the protection of their privacy, users can send a formal communication exclusively to the technical support email address: dragonia_support@gmail.com. Requests will be examined and processed within the timeframes stipulated by current regulations.

Periodic updates to the Privacy Policy

This Privacy Policy may be subject to changes over time due to the introduction of new platform features, modifications to services, or legislative evolution. The date of the last update will always be indicated in the document, and modified versions will become effective as soon as they are published on the site.