Privacy Policy

Definitions

Personal Data refers to any information that can identify an individual, either directly or indirectly, such as name, ID number, location, online identifiers, or other characteristics related to physical, physiological, genetic, mental, economic, cultural, or social identity.

Processing involves any action taken on personal data, whether automated or manual, including collecting, recording, organizing, storing, modifying, retrieving, using, disclosing, aligning, restricting, deleting, or destroying data.

Profiling is an automated process using personal data to evaluate aspects of an individual, including work performance, economic status, health, interests, reliability, location, or behavior.

Controller is the entity (individual or organization) that determines the purpose and method of processing personal data.

Processor refers to any party processing personal data on behalf of the controller.

Recipient includes any party receiving personal data, whether or not they are a third party, excluding public authorities receiving data under legal obligations.

Third-party means any individual or organization other than the data subject, controller, processor, or someone under their direct authority who is authorized to process data.

Consent is any voluntary, specific, informed, and clear expression of agreement by the data subject to the processing of their personal data.

Personal Data Breach means a security incident that leads to the accidental or unlawful loss, alteration, or unauthorized disclosure or access to personal data.

Group of Undertakings means a controlling business and its subsidiaries.

Supervisory Authority is an independent authority established by a Member State in accordance with Article 51 of the GDPR.

General

This Privacy Policy outlines how we handle your personal data and applies in conjunction with our Terms and Conditions. By creating an account on our platform, you agree to the terms of this policy. If you disagree with this policy or choose not to provide the necessary information, some services or features may be restricted.

This document forms a binding agreement between you and the Company. While we aim to notify you of significant changes, we recommend reviewing this policy periodically. Continued use of the Website confirms your acceptance of any updates.

We are committed to handling your data lawfully, transparently, and securely in line with Regulation (EU) 2016/679 (GDPR).

Our services are only intended for individuals over the age of 18. If we become aware of data collected from someone under this age, we will take action in compliance with applicable law.

About Us

www.rickycasino.com is owned and operated by Dama N.V., a company registered under the laws of Curaçao (No. 152125), with its address at Scharlooweg 39, Willemstad. The company is regulated by the Curaçao Gaming Control Board (license no. OGL/2023/174/0082).

As the data controller, we process personal data as required under gaming laws to facilitate gameplay and associated services.

We have appointed a Data Protection Officer (DPO) to oversee compliance and serve as your point of contact at dpo@damacasino.com.

Contact Us

You may contact us via:

You can reach out to:

  • Confirm or update your personal information

  • Request your data or marketing preferences

  • Lodge a privacy-related complaint

  • Clarify anything related to this policy

We aim to respond within 30 days. Complex requests may require additional time, in which case, you will be informed.

Information We Collect

Information you provide: Registration forms, contact submissions, documents for verification, transaction details, and correspondence. This includes names, addresses, identification numbers, banking details, and more.

Technical data: IP addresses, browser type, OS, time zone, and related logs.

Usage data: Game history, time spent, page visits, and site interactions.

Analytics data: Usage metrics, application logs, and system alerts for troubleshooting and research.

Third-party data: Information from affiliates, partners, and providers for verification, analytics, compliance, and marketing purposes.

Categories of Personal Data

  • Identity Data: Name, email, DOB, and gender.

  • Contact Data: Address, phone number, email.

  • Financial Data: Salary, bank details, source of funds.

  • Transaction Data: Bets, deposits, withdrawals.

  • Technical Data: IP, browser, OS, and device.

  • Usage Data: Login, gameplay, preferences.

  • Marketing Data: Communication preferences.

  • Special Data: Gaming behavior or racial/ethnic info, only if required by law.

 

How We Use Your Information

We process your data to:

  • Deliver requested services

  • Handle payments and transactions

  • Communicate updates and respond to queries

  • Analyze behavior for responsible gambling

  • Perform fraud and AML checks

  • Improve services and ensure security

  • Offer marketing with your consent

Profiling may be used to evaluate behavior or flag accounts for AML or responsible gaming purposes. Final decisions involve human oversight.

Sharing Your Data

Your data may be shared with:

  • Group entities for operational needs

  • Employees (under NDA)

  • Game and payment providers

  • Marketing partners (with consent)

  • Legal or regulatory bodies

  • Communication and AML software providers

All third parties follow strict data protection agreements and cannot use your data beyond what we authorize.

Transfers Outside the EEA

When necessary, we may transfer data outside the EEA. We use Standard Contractual Clauses and other legal safeguards to ensure your data remains protected.

Data Retention

We retain your data as long as necessary for legal and regulatory purposes, including a mandatory five-year period for AML compliance.

You may request account closure at any time, but data will be retained where legally required. Anonymized data may be retained for analytics.

Your Rights

You have the right to:

  • Access your data

  • Correct inaccuracies

  • Request deletion (subject to legal limits)

  • Object to processing

  • Request restrictions on processing

  • Request data transfer (portability)

  • Withdraw consent (where applicable)

  • Lodge complaints with a supervisory authority

We may ask for ID verification before processing such requests. We strive to respond within one month.

Automated Decisions

  • We do not rely solely on automated decisions. If used, you’ll be informed as required by law.

Data Security

We maintain technical and organizational measures to secure your data. Access is restricted to authorized personnel only.

You are responsible for keeping your account credentials secure. Two-factor authentication is available for additional protection.