SpinEmpire Casino Sweden privacy policy

Privacy Policy — Sweden

SpinEmpire Casino · GBL Solutions N.V. · 256-bit SSL · AES-256 at rest · Last updated May 2026

Your RightWhat It Means
AccessRequest a copy of all personal data we hold on you
CorrectionUpdate any inaccurate information in your profile
DeletionRequest removal of data subject to legal retention requirements
PortabilityReceive your data in machine-readable format (CSV or JSON)
Opt-OutUnsubscribe from marketing communications at any time
ComplaintContact Swedish Data Protection Authority (Datainspektionen) at datainspektionen.se

1. What Information SpinEmpire Casino Collects

1.1 Information You Provide Directly

Registration: Full legal name, date of birth, email address, Swedish residential address, phone number, username, password (encrypted — never stored in plain text).

Identity Verification Documents: Government-issued ID, proof of address, selfie or ID photo (optional), source of funds documentation when required by AML regulations.

Payment Information: Card last 4 digits, e-wallet account ID, bank account number, crypto wallet address, transaction history, withdrawal records. Full card numbers are never stored.

1.2 Information Collected Automatically

Device & Browser Data: IP address, browser type and version, operating system, device type and ID. Used for security, fraud prevention, and session management.

Usage & Behavioral Data: Game play history (which games, how often, duration), spin-by-spin results, session start/end times, page visits, click tracking. Used for responsible gaming monitoring and platform improvement.

1.3 Information from Third Parties

Payment processors, identity verification services (for KYC), fraud prevention networks, and analytics services may share data with us as part of service delivery. This data is subject to the same privacy standards as directly collected information.

2. How Spin Empire Casino Uses Your Information

Account management: Creating accounts, processing deposits and withdrawals, verifying identity, sending account notifications, resolving disputes.

Fraud prevention & security: Detecting unauthorized logins, preventing duplicate accounts, identifying bonus abuse, monitoring for unusual deposit or withdrawal patterns.

AML & KYC compliance: Verifying identity before withdrawals, screening transactions against sanctions lists, investigating source of large deposits as required by Curacao Gaming Authority regulations.

Marketing & promotions: Sending promotional emails, SMS notifications, and push notifications for bonuses and missions. You can opt out at any time without affecting account access.

Platform improvement: Analyzing game popularity, tracking performance, identifying and fixing bugs, understanding player behavior to enhance mobile and desktop experience.

Legal & compliance: Responding to government or regulatory inquiries, reporting to Curacao Gaming Authority, tax reporting, defending legal claims.

3. Who SpinEmpire Shares Your Data With

SpinEmpire does not sell personal data to third parties. Data is shared with:

4. Data Retention Schedule

Data TypeRetention Period
Account Data5 years after account closure
Payment Records7 years (tax and AML legal requirement)
Game History3 years
ID Documents2–5 years
IP / Device Data1 year
Email Communications2 years
Marketing PreferencesUntil opt-out, then 30 days

5. Your SpinEmpire Casino Data Rights & How to Exercise Them

Right to Access Email [email protected] with subject "Data Access Request". We respond within 30 days. Free of charge.
Right to Correction or Deletion Email [email protected]. Corrections completed within 5–10 business days. Deletions subject to legal retention requirements (payment records must be kept 7 years).
Right to Portability Request your data in CSV or JSON format. Email [email protected]. Delivered within 30 days.
Right to Lodge a Complaint Contact Swedish Data Protection Authority (Datainspektionen) at datainspektionen.se if you believe your rights have been violated.

6. Data Security & Encryption Standards

Data in transit: TLS 1.3 with 256-bit encryption — same standard as online banking. All connections between your device and SpinEmpire are encrypted.

Data at rest: AES-256 encryption for stored data. Passwords are hashed with bcrypt — never stored in plain text. Full card numbers are never stored.

Access controls: Least privilege principle, multi-factor authentication for all staff, activity logging, quarterly security audits.

Infrastructure: AWS cloud hosting, hardware firewalls, DDoS protection, intrusion detection systems, encrypted backups with off-site storage.

7. Cookies & Tracking

Essential cookies: Login session management, preferences, and CSRF security tokens. Cannot be disabled — required for site functionality.

Analytics cookies: Google Analytics and Hotjar — anonymized data only. Used to understand how pages are used and improve performance.

Marketing cookies: Ad network tracking for measuring promotional effectiveness. Opt out via Settings → Privacy or browser settings.

8. Children & Age Restrictions

SpinEmpire is strictly 18+ only. We do not knowingly collect data from underage users. Accounts identified as underage are suspended immediately, data deleted, and deposited funds returned within 5–10 business days.

9. International Data Transfers

Data is stored in AWS data centers. All international data transfers comply with GDPR adequacy standards. Backups are stored in separate geographic locations for redundancy.

10. Contact for Privacy Inquiries

For all privacy-related requests: [email protected]
For general support: [email protected]
Swedish Data Protection Authority: datainspektionen.se