Privacy Policy
This privacy policy explains how redstagcasino (operating exclusively at redstagz.com) collects, uses, discloses, and protects your personal information. It applies to all players and visitors accessing redstagz.com from Australia and any users who interact with our services. The effective date of this policy is 1 January 2025.
Who We Are
OBSERVE: The privacy policy must disclose the legal operator, registration, and data protection responsibility per AU privacy law. EXPAND: Corporate data from CURAÇAO jurisdiction and AU client focus identified. REFLECT: All corporate data and DPO contact provided below.
- Operator: Deckmedia N.V., registered legal entity (N.V. type), founded in 2015.
- Headquarters & Legal Address: Heelsumstraat 51, E-Commerce Park, Curaçao.
- Website for Service: https://redstagz.com
- Data Protection Officer (DPO): Liam Parker (acting as Privacy Lead). For privacy inquiries, contact via email at [email protected] (example, as required per AU law; if not available, modify accordingly).
Regional Compliance Note: Although redstagcasino is operated from Curaçao, it fully addresses compliance with Australian privacy law for all AU users of redstagz.com.
What Personal Data We Collect
OBSERVE: AU privacy principles require data subject transparency. EXPAND: Comprehensive categories needed, including non-obvious behavioral and device data. REFLECT: All categories listed for legal completeness.
- Personal Identification Data: Full name, date of birth, e-mail address, phone number, residential address, identification documents (for KYC/AML purposes).
- Account Data: Username, account numbers, passwords (securely encrypted), profile information.
- Financial & Payment Data: Bank account details, credit/debit card numbers, e-wallet information, transaction history, withdrawal and deposit records.
- Technical Data: IP address, device type, browser version, operating system, device identifiers, log data, connection timestamps.
- Behavioral Data: Betting and gaming history, click patterns, time spent on website, navigation paths, session statistics.
- Cookies & Similar Technologies: Session and persistent cookies, analytics identifiers, marketing and advertising trackers, pixel tags.
- Communication Data: Correspondence with customer support, recorded phone calls (where permitted by law), chat transcripts.
Legal Basis for Processing
OBSERVE: Under the Australian Privacy Act 1988 and industry standards, processing must rest upon specific legal grounds. EXPAND: All primary and secondary legal bases incorporated. REFLECT: Legal obligations and user protections clarified below.
- User Consent: We process your data with your explicit consent for activities such as marketing communication, optional profiling, and cookie usage. You may withdraw consent at any time without affecting lawful processing prior to withdrawal.
- Contractual Necessity: Your data is processed as required to establish and fulfill contracts with you (e.g., account creation, service provision, honoring withdrawals, processing deposits, and accessing casino features).
- Legitimate Interests: We have a legitimate interest in performing analytics to improve service quality, prevent fraud, monitor platform integrity, and protect our users and business. These interests are balanced with your rights and freedoms.
- Legal Compliance: Certain data is collected and retained to comply with anti-money laundering (AML), know your customer (KYC), record-keeping, taxation, and mandatory reporting obligations under applicable laws both in Curaçao and Australia.
Protective Clause: Where legal bases overlap or additional justification is needed, we ensure only the minimum scope of personal data is processed to fulfil regulatory, contractual, and operational obligations in full compliance with AU law.
Purpose of Processing
OBSERVE: Transparent articulation of purposes is mandatory under AU privacy legislation. EXPAND: Purposes must encompass both core services and extended platform uses. REFLECT: All material purposes outlined for compliance and user clarity.
- Providing Online Casino Services: Account registration, identity verification, facilitating deposits and withdrawals, managing gaming activity and payouts.
- Improving and Personalising Services: Analysing user interaction to enhance features, address technical issues, and develop new offerings.
- Marketing and Promotional Activities: Sending offers, newsletters, and service updates through email, SMS, and website notifications (with opt-out option).
- Analytics and Research: Aggregated, non-personal analysis of trends and usage to inform operational improvements, carried out in compliance with anonymization standards.
- Fraud Detection and Risk Management: Monitoring behaviour and transactions to identify and prevent fraud, abuse, security incidents, and regulatory breaches.
- Legal Obligations and Regulatory Reporting: Retaining, reporting, and disclosing information as mandated by Australian and international gambling, financial, and anti-crime authorities.
Disclosure & Sharing
OBSERVE: Lawful, limited, and transparent disclosure is required by AU privacy rules. EXPAND: All potential recipient types and protective mechanisms identified. REFLECT: Full disclosure contexts and user protections stated.
- Payment Processors & Banking Partners: Data is shared with third-party financial services to facilitate deposits, withdrawals, and anti-fraud screening, in accordance with security and confidentiality agreements.
- Technology & Service Providers: Third-party vendors for technical support, cloud hosting, communications tools, and customer support may access data solely for the purpose of delivering contracted services to redstagz.com.
- Regulators and Government Authorities: We may disclose your data as required to comply with lawful investigative, licensing, reporting, or legal enforcement demands by AU and international regulatory agencies.
- Affiliates (with user consent): Data may be shared with affiliates and advertising networks only where you have provided explicit consent, and only for specified purposes (e.g., tailored marketing).
- Corporate Transactions: In the case of merger, acquisition, or business transfer, user data may be part of the transferred assets, ensuring ongoing protection under this policy.
Protective Clause: All third-party recipients are contractually bound to maintain confidentiality, data security, and compliance standards as required by applicable Australian laws and regulations.
International Transfers
OBSERVE: Data transfers outside AU, including to Curaçao and the EU, must ensure adequate safeguards. EXPAND: Specify mechanisms for lawful cross-border flows. REFLECT: International transfer framework summarized.
- Jurisdictions Involved: Your personal data may be transferred to and processed in Curaçao, the European Union, and other countries where our servers, partners, or affiliates operate.
- Protective Measures: We implement legally recognized data transfer mechanisms, including Standard Contractual Clauses (SCCs), binding corporate rules, or other equivalent arrangements where required by law to ensure your data has an adequate and consistent level of protection.
- User Safeguards: Data subjects may request additional information about international safeguards by contacting our DPO (see Contacts section).
Regional Compliance Note: All data transfers comply with the Australian Privacy Principles and any additional data export rules applicable in AU as of 2025.
Data Retention
OBSERVE: AU law requires clear, purpose-based retention periods. EXPAND: Include both minimum and maximum retention scenarios with deletion protocols. REFLECT: Full data lifecycle outlined, including user rights to erasure.
- Personal and Financial Data: Retained for the period necessary to fulfil the purposes described above, and no longer than five (5) years after your account is closed, unless law or legitimate business interests require longer storage (e.g., legal investigation).
- Technical & Behavioral Data: Retained for up to two (2) years for account security, service improvement, and analytics, securely anonymized or deleted after this period.
- Legal and Compliance Records: Retention periods are determined by statutory or contractual requirements for anti-fraud and reporting (usually five (5) years per AU regulatory guidance).
- Deletion Procedures: Data is securely erased or anonymized when no longer required. Users may request deletion, subject to overriding regulatory or legal requirements that compel continued retention, such as outstanding AML audits or unresolved disputes.
Procedural Safeguard: All data deletion processes meet or exceed Australian standards for secure erasure and are verified by regular audit as of 2025.
Your Rights
OBSERVE: List all individual rights under AU Privacy Act 1988 and best-practice standards. EXPAND: Right to data portability highlighted for user empowerment. REFLECT: Procedures and contact points detailed for exercising rights.
- Access: You may request a copy of your personal data held by redstagcasino at redstagz.com.
- Correction: You have the right to request rectification of incomplete, inaccurate, or outdated data.
- Erasure ('Right to be Forgotten'): You may request deletion of your data where there is no overriding legal reason for continued retention.
- Restriction of Processing: You may request restriction of processing under certain circumstances (e.g., contesting data accuracy or lawful basis for processing).
- Objection: You may object to processing of your data for direct marketing or in situations where processing is based on legitimate interest.
- Data Portability: You may request a copy of your data in a structured, commonly used, machine-readable format for transmission to another service provider.
- Withdrawal of Consent: Where processing relies on your consent (e.g., for marketing), you may withdraw consent at any time.
User Procedure: To exercise these rights, contact our DPO following the procedure in the "Complaints & Contacts" section. Requests will be acknowledged within 30 days in compliance with AU regulations.
Cookies & Tracking Technologies
OBSERVE: Both statutory disclosure and user empowerment are required under AU law. EXPAND: Clarify both categories and their purposes. REFLECT: User controls and opt-out methods included.
- Session Cookies: Essential for secure access, navigation, and transaction processes. Deleted at end of browser session.
- Persistent Cookies: Store user preferences and device settings to improve the user experience on return visits. Remain active for up to 2 years or as configured by the user.
- Third-Party Cookies: Set by authorized analytics partners (e.g., Google Analytics) and advertising networks, used for site measurement, personalization, and marketing (with user consent).
- Management Options: Users can manage or disable cookies via browser settings or through a cookie management panel provided on redstagz.com. Disabling some cookies may affect website functionality.
Protective Clause: By continuing to use our service, you are deemed to consent to essential cookies, but you may opt out of non-essential cookies at any time.
Data Security
OBSERVE: AU and industry standards demand disclosure of comprehensive technical and organizational protections. EXPAND: Measures must safeguard data confidentiality, integrity, and availability. REFLECT: User reassurance and legal defensibility established.
- Technical Security Controls: SSL/TLS encryption for all user data in transit; encrypted storage for sensitive information including passwords and financial data; firewalls; intrusion detection and prevention systems; and regular vulnerability scans.
- Organizational Measures: Strict access controls and multi-factor authentication for employee accounts; periodic staff data protection training; confidentiality agreements; and documented policies restricting unnecessary data access.
- Monitoring & Audit: Regular security audits and penetration testing, incident response procedures, and adherence to the latest security best practices and relevant AU cyber guidelines.
- Incident Response: Users will be notified promptly in accordance with AU Notifiable Data Breaches scheme if any material breach of their personal information occurs in 2025 or beyond.
Legal Disclaimer: While we employ best-in-class security measures, no system can guarantee absolute data security. Users are encouraged to maintain the confidentiality of their access credentials at all times.
Complaints & Contacts
OBSERVE: AU requirements compel clear provisions for complaints and queries. EXPAND: Multiple complaint escalation channels and external redress are indicated. REFLECT: Procedures and contact features detailed.
- Contact for Data Protection: Direct all inquiries, issues, or rights requests to our Privacy Lead, Liam Parker, at [email protected] (substitute with actual DPO email if different).
- Complaint Procedure: Submit your complaint in writing with a clear description of your concern to the above address. We will acknowledge your complaint within 7 days and provide a substantive written response within 30 days in accordance with Australian privacy requirements.
- External Recourse: If you are dissatisfied with our response, you may lodge a formal complaint with the Office of the Australian Information Commissioner (OAIC) via their official website.
Updates
OBSERVE: Statutory obligation to notify users of material changes. EXPAND: Transparent update mechanism and historical access documented. REFLECT: Date of last revision provided as required for 2025 and beyond.
- Policy Changes: We may amend this privacy policy to reflect legal, technological, or operational updates. All material changes will be notified to users via website banners, email updates, or account notifications.
- Notification & Effective Date: The latest policy version will always be available at https://redstagz.com/privacy. Please review periodically for updates.
- Revision History: Date of last revision: 1 January 2025.
Regional Compliance Note: All updates are managed in compliance with Australian privacy regulations. Users will be given reasonable prior notice of any material change affecting their rights.