How Slotorado handles your personal data
Slotorado records personal data to run accounts, process euro payments and meet legal duties. This page covers what is collected, why it is held and the choices each player has. Processing takes place under the platform’s Curaçao licence.
Who controls the data
Slotorado acts as the controller of the personal data handled through the account. It decides what is collected, why, and how it is protected under the platform’s Curaçao licence. The details below explain those decisions in plain terms.
The policy covers everyone who registers, deposits or plays on the site. It works with the terms and cookie settings rather than in place of them. Questions can go to the support or privacy contact listed on the site.
What the platform records
Data reaches Slotorado from a few clear sources rather than all at once. Some is given by the player, some is generated during play, and some is confirmed by partners. The groupings here show where each type comes from.
| Source | What it includes |
|---|---|
| Provided by the player | Name, date of birth, email, phone and password |
| Generated during play | Games, bets, session times, device and IP |
| Confirmed at verification | ID document, address proof, payment ownership |
| Payment records | Deposits, withdrawals and method details |
Only the data needed to run the account and meet legal duties is collected. Accurate details are a condition of holding an account and clearing a withdrawal. Outdated information can be corrected from the settings or through support.
Keeping data accurate
Accurate data helps payments, verification and communication run smoothly. Details such as address, email and phone can be updated from the account settings. Prompt updates avoid a failed message or a held withdrawal.
The operator may ask a player to confirm details from time to time. Confirming keeps records current and supports the compliance duties in place. Support can help where a change cannot be made directly.
Why the data is processed
Each use of data ties back to a specific, lawful reason rather than open collection. Running the account and handling euro payments rests on performing the agreement with the player. Age and identity checks rest on the legal duties attached to the licence.
Fraud prevention and service improvement rely on the operator’s legitimate interests. Marketing rests on consent, which a player gives and can withdraw. Records kept for compliance rest on a legal obligation.
Consent and choices
Where processing depends on consent, it is asked for clearly and can be refused. Declining consent for marketing does not affect the ability to play. Consent already given can be taken back at any time.
Choices for email, SMS and on-site messages can be set separately. A change to these settings usually applies without delay. Essential notices about security and verification fall outside marketing consent.
Profiling and targeted content
Some content, such as which offers appear, may be tailored to how an account is used. This kind of profiling shapes suggestions rather than deciding access or payouts. A player can opt out of tailored marketing while still using the account.
Screening for fraud and money-laundering risk is separate from marketing profiling. Those checks flag cases for staff to review rather than settling them alone. A player can ask for a person to look at any decision that affects the account.
Cookies and similar technologies
Cookies and similar tools keep the site working, remember choices and measure use. Non-essential cookies can be managed through the site banner or the browser. Strictly necessary cookies cannot be switched off without breaking core features.
| Cookie group | Role | Optional |
|---|---|---|
| Strictly necessary | Login, cashier and security | No |
| Preference | Language and layout choices | Yes |
| Statistics | How pages and games are used | Yes |
| Advertising | Tailoring and measuring promotions | Yes |
When data is shared
Data is shared only to run the service or to meet a legal duty. Partners act under contract and use the data solely for the agreed task. The recipient groups here reflect the usual arrangements.
- Payment providers that process deposits and payouts
- Verification and anti-money-laundering partners
- Game studios whose titles run in the lobby
- Hosting, analytics and security providers
- Authorities where a legal duty requires disclosure
Personal data is not sold to advertisers or unrelated parties. Disclosure to an authority happens only where the law requires it. Each partner is held to a comparable standard of protection.
Storing and protecting data
Data in transit is protected by encryption between the device and the platform. Stored data sits behind access controls limited to staff who need it. These safeguards form part of the licence’s security duties.
No system can promise perfect security, so players share the task. A strong, private password and prompt reporting of anything odd both help. Reviewing account activity from time to time catches issues early.
Retention periods
Data is kept only as long as a clear purpose or legal duty requires. Different records carry different retention needs, which the summary reflects. Once no longer needed, data is deleted or anonymised.
| Data | Typical retention |
|---|---|
| Account and profile | While the account stays open |
| Payment and verification | A period set by anti-money-laundering rules |
| Marketing preferences | Until consent is withdrawn, then a short log |
| Support messages | A limited period after the case closes |
Rights available to players
Data protection law gives players several rights over their information. Most begin with a message to the support or privacy contact. Some carry limits, such as records that must be kept for compliance.
- Access, to receive a copy of the data held
- Rectification, to correct inaccurate details
- Erasure, to delete data not required by law
- Restriction, to limit certain processing
- Objection, to challenge processing based on legitimate interests
- Portability, to receive data in a reusable format
- Withdrawal of consent, for anything based on it
How to make a data request
A data request is straightforward and follows a short path. Confirming identity first keeps information from reaching the wrong person. The steps here cover a typical request.
- Sign in so the request links to the right account
- Decide which right the request concerns
- Contact the support or privacy address on the site
- Confirm identity so data reaches the right person
- Note the response window given in the reply
How long a request takes
A data request is acknowledged and answered within the timeframe set by the applicable law. Complex requests can take longer, and the player is told if more time is needed. Identity confirmation may pause the clock until it is completed.
A request can be refused where the law allows, and the reason is explained in the reply. A player who disagrees can raise the matter with the relevant authority. No fee applies to a standard request in most cases.
Data transfers and partners
Delivering the service may involve partners located in different regions. Where data crosses a border, safeguards keep the level of protection consistent. Such transfers follow the data protection law that applies.
The mix of partners can change as services are adjusted over time. A player can ask which categories of partner handle their data. The safeguards remain in place regardless of a partner’s location.
Protecting younger users
The service is for adults, and data on minors is not knowingly collected. An account traced to someone under age is closed, and its data removed within legal limits. False age details at sign-up can void an account.
Adults sharing a device can reduce risk with a few home safeguards. Private login details and device passcodes keep an account out of reach. Family filters add a further layer on a home network.
Policy updates and contact
This policy can change to reflect legal, regulatory or operational needs. The current version, with its effective date, is published on the site. Continued use after a change signals awareness of the update.
Privacy questions and data requests can go to the support or privacy contact on the site. A clear description helps the team respond accurately. Keeping contact details current ensures any reply reaches the player.
Frequently asked questions
Who is responsible for the data collected?
Slotorado acts as the controller and decides how personal data is collected and protected.
Does browsing the site set any cookies?
Yes, strictly necessary cookies load to keep the site working, while optional ones require consent.
Can marketing consent be withdrawn?
Yes, marketing consent can be taken back at any time without affecting the account.
Is personal data used for automated decisions?
Automated checks screen for fraud and risk, though a player can ask for a human review of a decision.
How can a player request a copy of their data?
A player can request a copy by contacting the support or privacy address and confirming their identity.
Are payment card numbers stored by Slotorado?
Card details are handled by contracted payment processors rather than stored openly by the casino.
Does the policy cover linked third-party sites?
No, an external site reached through a link runs under its own separate privacy policy.
How are players told about privacy changes?
Updates are posted on the site with an effective date, and continued use signals awareness.