1. Introduction
At Stepsino Casino (operating via stepsinocasino.uk), we are steadfastly committed to protecting and respecting your privacy. As a premier destination for online entertainment, we recognise that trust is the foundation of our relationship with our players. This Privacy Policy details how we collect, use, store, and protect your personal data when you visit our website, use our services, or interact with us.
This policy has been drafted in strict accordance with the UK General Data Protection Regulation (UK GDPR), the Data Protection Act 2018, and the regulatory frameworks established by the UK Gambling Commission (UKGC).
2. Data Controller
For the purposes of applicable data protection legislation, the data controller is Stepsino Entertainment Limited ("we", "us", "our", or "Our Casino"). We determine the purposes and means of processing your personal data. If you have any questions regarding this Privacy Policy or how your data is handled, please contact our appointed Data Protection Officer (DPO) at [email protected].
3. Information We Collect
To provide you with a secure, compliant, and tailored gaming experience, we may collect, use, store, and transfer different kinds of personal data, which we have grouped as follows:
- Identity Data: First name, last name, username, title, date of birth, and gender.
- Contact Data: Billing address, residential address, email address, and telephone numbers.
- Financial Data: Bank account details, payment card details, and preferred withdrawal methods (note: we do not store full credit card numbers).
- Transaction Data: Details about deposits and withdrawals, wagering history, gaming activities, and bonuses claimed.
- Compliance & KYC Data: Copies of identification documents (e.g., passport, driving licence), utility bills for address verification, and Source of Funds/Source of Wealth documentation as required by Anti-Money Laundering (AML) regulations.
- Technical & Usage Data: Internet protocol (IP) address, login data, browser type and version, time zone setting, location data, and information regarding how you use our website.
- Responsible Gambling Data: Information related to your deposit limits, self-exclusion statuses, and behavioral markers of harm, which we monitor to protect our players.
4. How We Use Your Information
We will only use your personal data when the law allows us to. Most commonly, we process your data under the following legal bases:
- Performance of a Contract: To register you as a new player, manage your account, process bets and transactions, and provide customer support.
- Legal and Regulatory Obligations: To comply with our UKGC licence conditions, verify your age and identity (KYC), prevent fraud and money laundering (AML), and promote responsible gambling.
- Legitimate Interests: To study how players use our services, develop our products, maintain network security, and prevent fraudulent activity on our platform.
- Consent: To send you direct marketing communications via email or SMS (which you can opt out of at any time).
5. Data Sharing and Disclosure
We do not sell your personal data. However, to operate effectively and meet our legal obligations, we may share your data with the following trusted third parties:
- Service Providers: Payment processors, game developers, identity verification agencies, and IT infrastructure providers.
- Regulatory & Law Enforcement Bodies: The UK Gambling Commission, the National Crime Agency (NCA), sports integrity bodies, and other authorities when required by law or to report suspected illegal activities.
- Responsible Gambling Organisations: National registers such as GAMSTOP, ensuring self-exclusion requests are honoured across all licensed platforms.
6. Data Security
Our Casino employs industry-leading security measures to prevent your personal data from being accidentally lost, used, accessed in an unauthorised way, altered, or disclosed. We utilise 256-bit SSL (Secure Socket Layer) encryption for all sensitive data transmissions. Furthermore, we limit access to your personal data to those employees, agents, and contractors who have a strict business need to know, and they are subject to a strict duty of confidentiality.
7. Data Retention
We will only retain your personal data for as long as necessary to fulfil the purposes we collected it for, including for the purposes of satisfying any legal, accounting, or reporting requirements. Due to stringent UK AML and gambling regulations, we are legally required to retain basic information about our customers (including Contact, Identity, Financial, and Transaction Data) for a minimum of five years after they close their account or cease to be a customer.
8. Your Legal Rights
Under the UK GDPR, you possess specific rights regarding your personal data:
- Request access: You can request a copy of the personal data we hold about you.
- Request correction: You can ask us to correct incomplete or inaccurate data.
- Request erasure: You can ask us to delete your data. Please note that we may not always be able to comply with this request due to specific legal obligations (e.g., AML retention rules).
- Object to processing: You can object to us processing your data for direct marketing purposes.
- Request restriction: You can ask us to suspend the processing of your data under certain scenarios.
- Data portability: You can request the transfer of your data to yourself or a third party.
To exercise any of these rights, please contact our DPO via your account dashboard or at the email address provided above.
10. Changes to This Privacy Policy
We keep our Privacy Policy under regular review. Any changes we make in the future will be posted on this page and, where appropriate, notified to you by email or via an alert upon logging into your account. This version was last updated on [Current Date].