Home/Privacy
Data Protection

Data Processing at SpinEmpire: GDPR Notice for Irish Players

This notice describes how SpinEmpire processes personal data, structured according to GDPR's requirements: categories collected, purposes and their legal bases, recipients, retention logic, and the rights available to every player in Ireland.

Data Categories Processed by SpinEmpire

Four categories cover the complete inventory:

  • Identity and account data: email, hashed password, name, date of birth, currency (EUR)
  • Transactional data: deposits, withdrawals, payment method identifiers, gameplay records
  • Technical data: IP address, device and browser characteristics, cookie identifiers
  • Verification data: identity documents collected once during KYC

No category beyond these is collected, and no data is gathered speculatively.

Purposes and Legal Bases at SpinEmpire Casino

Each processing purpose maps to a GDPR Article 6 basis:

  • Contract performance: account operation, game provision, deposits and payouts
  • Legal obligation: age verification, KYC, anti-fraud and anti-money-laundering screening required under the Gaming Commission of Ireland licence
  • Legitimate interest: platform security, abuse prevention, service improvement
  • Consent: marketing communications — withdrawable at any time with immediate effect and no impact on the account

Processing outside these mapped purposes does not occur.

Cookie Classes on the SpinEmpire Platform

Essential cookies maintain sessions, authentication and security; the platform cannot function without them, and blocking them disables login.

Optional cookies support analytics and preference retention; browser settings control them, and declining them does not restrict play.

Data Recipients: Who Receives SpinEmpire Player Data

Disclosure follows necessity. Payment providers receive transaction data required to execute deposits and withdrawals. The KYC verification partner receives identity documents for the single verification event. Regulatory authorities receive data where disclosure is legally mandated.

Data is not sold and is not shared for third-party advertising. All processors act under GDPR-compliant data processing agreements.

Retention Logic at Spin Empire

Retention tracks legal obligation. Active accounts retain their data for the account's life. After closure, records persist only for the periods mandated by licensing, anti-money-laundering and accounting law, then undergo deletion or anonymisation. No indefinite retention occurs.

Player Rights Under GDPR at SpinEmpire

Every player may exercise:

  • Access — a copy of held data
  • Rectification — correction of inaccuracies
  • Erasure — deletion where no legal retention duty applies
  • Portability — machine-readable export of provided data
  • Objection — to legitimate-interest processing, including marketing, which then ceases

Requests are processed free of charge within statutory deadlines. The Data Protection Commission accepts complaints where a player considers processing unlawful.

Technical Security Measures Protecting SpinEmpire Data

SSL encryption secures all traffic between player devices and the platform. Passwords are stored as hashes. Internal access to personal data follows role-based restriction, and payment credentials flow through providers' secured infrastructure rather than residing with the casino.

Submitting a Data Request to SpinEmpire

Direct requests to [email protected] from the account's registered email, or initiate via live chat (24/7). Identity confirmation precedes fulfilment of sensitive requests — a safeguard, not an obstacle.