Privacy Policy
Information Gathering
This Privacy Policy has been established by Anakatech Interactive Limited, the operator of the digital platform accessible at aubet-77.com, hereinafter referred to as "the Company" or "the Operator." The Company conducts its operations under the regulatory authority and licensing framework of the Philippine Amusement and Gaming Corporation (PAGCOR). The collection, storage, and processing of personal data are carried out in strict accordance with applicable data protection legislation and regulatory requirements imposed by the aforementioned licensing authority.
The following categories of personal data are subject to collection and subsequent processing by the Company:
- Identification Data: Full legal name, date of birth, gender, nationality, and government-issued identification document numbers are collected for the purposes of identity verification and regulatory compliance.
- Contact Information: Electronic mail addresses, telephone numbers, residential addresses, and postal codes are obtained to facilitate communication between the Company and registered users.
- Financial Data: Banking account details, payment card information, transaction histories, and records of deposits and withdrawals are processed in connection with the provision of financial services on the platform.
- Account Credentials: Username designations, encrypted password data, and security question responses are maintained for the purposes of account authentication and access control.
- Technical and Device Data: Internet Protocol (IP) addresses, browser type and version, operating system identifiers, device identifiers, session timestamps, and geolocation data are automatically recorded during platform usage.
- Behavioral and Usage Data: Records of gaming activity, wagering history, platform navigation patterns, and session duration are compiled for analytical and compliance purposes.
- Verification Documentation: Copies of identity documents, proof of address documentation, and source of funds declarations may be requested and retained as required by applicable anti-money laundering regulations.
Personal data is obtained through various means, including but not limited to voluntary submission during the account registration process, completion of verification procedures, engagement with customer support services, and automatic collection through technical systems deployed on the platform. Data may also be received from third-party verification service providers engaged by the Company for identity and fraud prevention purposes.
How We Use Data
Personal data collected by the Company is processed exclusively for legitimate and specified purposes in accordance with applicable regulatory frameworks. The following purposes constitute the lawful basis for data processing activities conducted by the Operator:
- Account Administration and Service Provision: Personal data is processed to establish, maintain, and administer registered user accounts, to authenticate user identity upon login, and to facilitate access to the full range of services offered on the platform.
- Regulatory Compliance and Licensing Obligations: Data processing is carried out to fulfill obligations imposed by PAGCOR and other applicable regulatory authorities, including identity verification requirements, responsible gambling obligations, and reporting duties.
- Anti-Money Laundering and Fraud Prevention: Financial and identification data is processed to detect, investigate, and prevent fraudulent activity, money laundering, and other financial crimes in accordance with mandatory legal requirements.
- Transaction Processing and Financial Management: Payment-related data is processed to execute deposit and withdrawal transactions, to maintain accurate financial records, and to resolve transaction disputes in a timely manner.
- Customer Support Services: Contact information and account data are utilized to respond to user inquiries, process complaints, and provide assistance through designated support channels.
- Responsible Gambling Compliance: Behavioral and usage data is analyzed to identify patterns indicative of problem gambling behavior, to enforce self-exclusion programs, and to implement responsible gambling measures as mandated by regulatory authorities.
- Platform Security and Integrity: Technical and device data is processed to safeguard the security and integrity of the platform, to prevent unauthorized access, and to investigate potential security incidents.
- Legal Proceedings and Dispute Resolution: Data may be processed and disclosed to competent authorities where required by law, court order, or regulatory directive, or where necessary to establish, exercise, or defend legal claims.
- Statistical Analysis and Service Improvement: Aggregated and anonymized data may be analyzed to assess platform performance, to identify operational inefficiencies, and to enhance the quality and reliability of services offered.
Personal data shall not be processed for purposes incompatible with those specified herein, and shall not be sold, rented, or otherwise transferred to third parties for independent commercial exploitation without the explicit and informed consent of the data subject, except where such disclosure is mandated by applicable law or regulatory authority.
Data Protection
The Company has implemented a comprehensive framework of technical and organizational security measures designed to ensure the confidentiality, integrity, and availability of personal data processed in connection with platform operations. Such measures are maintained in accordance with industry best practices and applicable regulatory standards.
The following technical security measures are employed by the Company:
- Encryption Protocols: All data transmitted between user devices and the Company's servers is protected through Transport Layer Security (TLS) encryption. Sensitive data stored within Company systems is subject to encryption at rest utilizing industry-standard cryptographic algorithms.
- Access Control Systems: Strict access control mechanisms are implemented to ensure that personal data is accessible only to authorized personnel whose professional responsibilities necessitate such access. Role-based access controls and the principle of least privilege are applied across all internal systems.
- Firewall and Intrusion Detection Infrastructure: Advanced firewall systems and intrusion detection and prevention systems are deployed to monitor network traffic, to identify potential security threats, and to prevent unauthorized access to Company systems.
- Secure Data Storage: Personal data is stored on secure servers located in facilities equipped with physical security controls, including restricted access, environmental monitoring, and redundant infrastructure to ensure data availability.
- Regular Security Assessments: Periodic security audits, vulnerability assessments, and penetration testing are conducted to identify and remediate potential weaknesses in the Company's security infrastructure.
- Data Backup and Recovery: Regular data backup procedures are maintained to ensure the recovery of personal data in the event of a technical failure, data loss incident, or security breach.
The following organizational measures are maintained by the Company:
- Personnel Training and Awareness: All employees and contracted personnel who process personal data are required to complete data protection training and are bound by confidentiality obligations commensurate with their access to personal data.
- Data Processing Agreements: Written data processing agreements are established with all third-party service providers who process personal data on behalf of the Company, ensuring that equivalent security and confidentiality standards are maintained by such parties.
- Incident Response Procedures: Formal data breach response procedures have been established to ensure the timely identification, containment, and reporting of personal data breaches in accordance with applicable regulatory requirements.
- Data Retention Policies: Personal data is retained only for the period necessary to fulfill the purposes for which it was collected, or for such longer periods as may be required by applicable law or regulatory authority. Upon expiration of the applicable retention period, data is securely deleted or anonymized.
Notwithstanding the foregoing measures, no data transmission or storage system can be guaranteed to be completely secure. The Company undertakes to notify affected data subjects and relevant regulatory authorities of any significant data security incidents in accordance with applicable legal obligations and within the timeframes prescribed by law.
User Rights
Data subjects whose personal data is processed by the Company are entitled to exercise the following rights in accordance with applicable data protection legislation. Requests pertaining to the exercise of these rights shall be submitted in writing to the contact address specified in the final section of this document and shall be addressed by the Company within the timeframes prescribed by applicable law.
- Right of Access: Data subjects are entitled to request confirmation as to whether personal data concerning them is being processed by the Company, and where such processing is confirmed, to obtain a copy of the personal data concerned together with information regarding the purposes, categories, recipients, and retention periods applicable to such processing.
- Right to Rectification: Data subjects are entitled to request the correction of inaccurate personal data and the completion of incomplete personal data held by the Company without undue delay. Users are encouraged to maintain the accuracy of account information through the account management interface where such functionality is available.
- Right to Erasure: Data subjects are entitled to request the deletion of personal data concerning them where the data is no longer necessary for the purposes for which it was collected, where consent has been withdrawn and no other lawful basis for processing exists, or where processing has been carried out unlawfully. It is noted that the exercise of this right may be subject to limitations where data retention is mandated by applicable law, regulatory authority, or where data is required for the establishment, exercise, or defense of legal claims.
- Right to Restriction of Processing: Data subjects are entitled to request the restriction of processing of their personal data in circumstances where the accuracy of the data is contested, where processing is unlawful but erasure is opposed, or where the data is no longer required by the Company but is needed by the data subject for legal purposes.
- Right to Data Portability: Data subjects are entitled to receive personal data provided to the Company in a structured, commonly used, and machine-readable format, and to request the transmission of such data directly to another controller where technically feasible, in cases where processing is based on consent or contract and is carried out by automated means.
- Right to Object: Data subjects are entitled to object to the processing of their personal data on grounds relating to their particular situation where processing is based on legitimate interests pursued by the Company. Upon receipt of such objection, the Company shall cease processing unless compelling legitimate grounds for processing can be demonstrated that override the interests, rights, and freedoms of the data subject.
- Right to Withdraw Consent: Where data processing is based upon the consent of the data subject, such consent may be withdrawn at any time without affecting the lawfulness of processing carried out prior to withdrawal. Withdrawal of consent shall be effected by written notification to the Company through the contact channels specified herein.
- Right to Lodge a Complaint: Data subjects who consider that processing of their personal data infringes applicable data protection law are entitled to lodge a complaint with the competent supervisory authority or with PAGCOR as the relevant regulatory body overseeing the Company's operations.
The Company undertakes to respond to all valid requests submitted by data subjects within the applicable statutory timeframe. The identity of the requesting party shall be verified prior to the disclosure of any personal data or the execution of any request. The Company reserves the right to decline requests that are manifestly unfounded, excessive, or that would require the disclosure of data subject to legal professional privilege or that would adversely affect the rights and freedoms of third parties.
Get in Touch
All inquiries, requests, and correspondence relating to the processing of personal data, the exercise of data subject rights, or any other matter pertaining to this Privacy Policy shall be directed to the Company through the following designated electronic correspondence channel:
Electronic Mail: [email protected]
Communications submitted to the above address shall be acknowledged upon receipt, and substantive responses shall be provided within the timeframe prescribed by applicable data protection legislation. Data subjects are requested to clearly identify themselves and to specify the nature of their inquiry or request in all correspondence to facilitate timely and accurate processing of their submission.
The Company is operated by Anakatech Interactive Limited and is regulated and licensed by the Philippine Amusement and Gaming Corporation (PAGCOR). All data protection practices described in this Privacy Policy are implemented in accordance with the obligations arising from the Company's PAGCOR license and applicable data protection legislation. This Privacy Policy is subject to periodic review and amendment to reflect changes in applicable law, regulatory requirements, or Company practices. The continued use of the platform following the publication of any amended version of this Privacy Policy shall constitute acceptance of the terms set forth therein.