Privacy Policy Greece, GDPR Overview
This Privacy Policy targets users in Greece and describes personal data processing for an online casino and gaming site. The service follows GDPR and EU privacy standards. It explains what we process when you visit the site, open an account, contact support, or interact with entertainment content such as Big Bass Splash. You will see the reasons for processing, how long we keep records, and the choices available to you.
Last updated: January 28, 2026
Data Controller and Contact
The Data Controller is the organization operating the site and deciding the purposes and methods of processing. For privacy questions, rights requests, or concerns, contact the privacy team at [email protected]. We ask for identity confirmation before completing a request. This step protects your account and helps block unauthorized access.
Who This Policy Applies To
This policy applies to visitors, registered users, and customers in Greece who access the site or its services. The services target adults. We do not knowingly collect personal data from minors. If we learn a minor provided details, we delete the data and stop related processing.
What Personal Data We Collect
We collect account and identity details such as registration information and contact data. We collect verification and compliance records, including checks, documents, and responsible gaming settings. We keep transaction and account activity records for service operation and account history. We collect device and usage data such as IP address, browser type, and on site events. We place cookies and similar technologies. We keep customer support communications such as emails, chat transcripts, and issue reports.
Why We Use Personal Data
We process personal data to create and manage accounts and deliver the services you request. We run eligibility checks and meet legal and regulatory duties. We handle support requests and service communications. We protect accounts, prevent fraud, and maintain security. We apply responsible gaming protections, including limits, cooling off, and self exclusion. We improve site performance, fix errors, and refine features. Marketing messages go out where rules allow and where your preferences support them.
Legal Bases Under GDPR
We rely on contract when we provide services through your account. We rely on legal obligation when laws require checks, record keeping, or reporting. We rely on legitimate interests for security, fraud prevention, and service improvement, while respecting your rights. We rely on consent for non essential cookies and for marketing preferences where relevant. In rare cases, we rely on vital interests to protect people in urgent situations.
Cookies and Similar Technologies
Essential cookies support login, security, and core site functions. Non essential cookies support analytics, preferences, and advertising where relevant. We place non essential cookies only after you give consent. You change choices and withdraw consent through the cookie settings on the site.
Sharing Personal Data
We share personal data with processors providing hosting, analytics, support tools, verification services, and security services. Where payment flows apply, we share required data with payment partners and risk controls. We share data with professional advisers for legal and compliance support. If group companies exist, sharing within the group supports operations. We share data with authorities and regulators when law requires. We do not sell personal data.
International Transfers
If personal data moves outside the EEA, we apply safeguards. These safeguards include Standard Contractual Clauses and additional technical or organizational measures where needed. Ask for more details through [email protected].
Data Retention
We keep personal data for the period needed for the purposes in this policy and for legal obligations. When the need ends and no legal duty requires retention, we delete the data or anonymize it so it no longer links to you. We review retention regularly to keep it proportionate.
Your Rights Under GDPR
Send requests to [email protected]. We ask for identity verification before completing a request.
- Access
- Rectification
- Erasure
- Restriction
- Objection
- Portability
- Withdrawal of consent
Complaints in Greece
If you believe we handled your personal data in breach of data protection rules, file a complaint with the Hellenic Data Protection Authority. Contacting us first often leads to faster clarification and resolution through [email protected].
Security Measures
We protect personal data through technical and organizational measures such as access controls, role based permissions, monitoring, and incident response procedures. We apply encryption in transit when data travels between systems. We limit staff access on a need to know basis and train teams on privacy and security duties. No system stays 100% secure, so we focus on risk reduction and fast response.
Automated Decisions and Profiling
Automated systems support fraud prevention, security, and responsible gaming protections. These checks review signals such as login patterns, device data, and unusual activity. Where law requires a human review, request it through [email protected] and provide context for assessment.
Changes to This Policy
We update this policy when services, processes, or legal duties change. The latest version appears on the site with an updated Last updated date. When changes materially affect personal data processing, we communicate them through the site experience or through account contact details.