Key Aspects of Data Collection

The platform operates under strict transparency protocols regarding all data gathering workflows executed within the technical infrastructure.

Data CategoryPurpose of CollectionExplanatory Note
Personal InformationExecution of regulatory compliance verificationFull name, verified contact e-mail address, date of birth, and UK Postcode are collected to fulfil statutory Know Your Customer (KYC) obligations and prevent unauthorised access to gaming services
Technical TelemetryOptimisation of interface rendering parametersIP addresses, browser cookies, device identifiers, and operational system diagnostics are logged exclusively to enhance platform stability, detect suspicious login patterns, and tailor interface configurations
Financial Ledger DataProcessing of secure payment transactionsTransaction histories, payment method credentials, withdrawal requests, and banking records are retained strictly for audit trail purposes, fraud prevention, and regulatory reporting obligations

All data storage infrastructure is fully encrypted, sandboxed within secure server environments, and processed exclusively for operational integrity, security architecture, and mandatory KYC/AML compliance verification. No information is retained in unencrypted formats or accessible to unauthorised personnel.

Purposes of Data Processing

  1. Guaranteeing secure platform access through multi-layer authentication protocols and session management systems
  2. Executing Know Your Customer (KYC) identity verification procedures in accordance with anti-money laundering legislation
  3. Maintaining payment transaction security architecture and safeguarding financial ledger integrity
  4. Monitoring and preventing fraudulent activity, multi-accounting vectors, and unauthorised bonus exploitation
  5. Optimising native service personalisation features, including responsible gambling limits and tailored communication preferences
  6. Complying with statutory reporting obligations to regulatory authorities and auditing bodies
  7. Resolving customer support enquiries and processing account-related requests efficiently

Data Transmission to Third Parties

Personal information is transmitted to external entities exclusively under strictly defined operational parameters. Data sharing is permitted solely with certified software game providers and integrated payment system gateways, restricted exclusively to information required for processing standard ledger transactions and loading gaming content. BassWin categorically prohibits the sale, trade, or leasing of personal user records to external marketing firms, advertising networks, affiliate brokers, or unauthorised third parties. Any data transmission beyond the operational scope outlined above requires explicit prior consent or is mandated solely by statutory legal obligations.

Security and Encryption Technologies

The platform deploys industry-standard SSL/TLS encryption protocols across all data transmission channels, ensuring complete confidentiality during account registration, login authentication, and financial transactions. Network monitoring firewalls, intrusion detection systems, and automated threat assessment algorithms operate continuously to identify and neutralise unauthorised access attempts. Physical server infrastructure is housed within certified data centres equipped with biometric access controls, redundant power supplies, and climate regulation systems. Data confidentiality and the protection of sensitive participant information constitute the paramount operational priority for BassWin, with ongoing investment in cryptographic security infrastructure and compliance auditing mechanisms.

User Rights under GDPR

Data subjects possess the following statutory rights under modern international privacy legal frameworks:

  • Right of Access – the ability to obtain copies of all logged personal data retained within platform databases
  • Right to Rectification – the authority to request correction or updating of outdated, inaccurate, or incomplete personal records
  • Right to Erasure – the "right to be forgotten", enabling complete deletion of personal information subject to legal retention obligations
  • Right to Restrict Processing – the option to limit specific data processing activities whilst retaining stored records
  • Right to Data Portability – the capacity to receive personal data in a structured, machine-readable format for transfer to alternative service providers
  • Right to Object – the authority to challenge automated decision-making processes or profiling activities impacting legal status
  • Right to Withdraw Consent – the ability to revoke previously granted data processing permissions at any stage without penalties

Cookie Policy and Tracking Technologies

BassWin utilises cookies and similar tracking technologies to enhance operational functionality, analyse participant behaviour patterns, and maintain session continuity across multiple browsing interactions. Essential cookies are deployed to facilitate secure login authentication, preserve language preferences, and store responsible gambling limit configurations. Analytical cookies collect aggregated usage statistics regarding page navigation flows, popular gaming categories, and interface interaction metrics, enabling continuous optimisation of platform performance. Participants retain full control over cookie settings through browser configuration tools, though disabling essential cookies may compromise core functionality, including account access and transaction processing capabilities.

Data Retention Periods

Personal information is retained strictly for the duration necessary to fulfil the operational purposes outlined within this Privacy Policy, comply with statutory legal obligations, and resolve potential disputes or enforcement actions. Active account data remains stored throughout the operational lifespan of participant profiles. Following account closure or dormancy declarations, personal records are retained for a minimum period of five years to satisfy anti-money laundering audit trails, tax reporting obligations, and potential regulatory investigations. Financial transaction logs, KYC documentation, and gameplay histories fall under extended retention schedules mandated by licensing jurisdictions and auditing frameworks. Once statutory retention periods expire, all personal data is systematically anonymised or permanently deleted from live databases and backup systems.

International Data Transfers

Certain technical operations require the transfer of personal information to server infrastructure located outside the European Economic Area (EEA). All cross-border data transfers are executed strictly under GDPR-compliant safeguarding mechanisms, including Standard Contractual Clauses (SCCs) approved by the European Commission, adequacy decisions confirming equivalent data protection standards in recipient jurisdictions, or binding corporate rules ensuring uniform privacy protections across international entities. BassWin maintains continuous oversight of third-party processors to verify ongoing compliance with European data protection principles, regardless of geographical processing locations.

Policy Updates and Amendment Notifications

This Privacy Policy may be revised periodically to reflect operational modifications, regulatory developments, or enhancements to data protection frameworks. Material amendments are communicated via platform notifications, registered e-mail alerts, or prominent announcements displayed upon login authentication. Continued utilisation of BassWin services following policy updates constitutes acknowledgement and acceptance of revised terms. Participants are encouraged to review this document regularly to remain informed regarding evolving data processing practices and privacy safeguards.

Claim your £1,000 deposit bonus