This Privacy Policy explains how Noxino, operated by May Sun Services S.A., collects, uses, stores and shares personal data when you visit the site, create an account or use our services. It also explains your privacy rights and the measures used to protect your information.
Who Controls Your Data
Noxino acts as the controller of the personal data covered by this policy, meaning we determine why and how that information is processed.
A data privacy manager oversees questions relating to this Privacy Policy. If you have a privacy-related enquiry or want to exercise your data rights, contact [email protected] and your request can be directed to the appropriate team.
What Personal Data We Collect
We collect information when you register, communicate with us and use your account. Some information is also collected automatically through your device, cookies and similar technologies or obtained from third parties and publicly available sources.
Data Collected at Registration
When you create an account, we may collect Identity Data such as your name, username or similar identifier, title, date of birth and gender.
We also collect Contact Data, including your address, email address and telephone number, as well as Financial Datasuch as bank account and payment card details. Photographic identification, including passports or other approved identity documents, may be collected for verification purposes.
Data Collected During Account Activity
Using your account generates additional information. This can include:
- deposits and withdrawals
- games and other services used
- login information
- IP address
- browser and device information
- operating system and platform
- location and time-zone information
- account preferences and interests
- feedback and survey responses
- information about how you use the site
We use this information for purposes including account administration, security, fraud prevention, service improvement and regulatory compliance.
Data Collected Through Cookies and Tracking
We use cookies and similar technologies to collect information about browsing actions, patterns, devices and how visitors interact with the site.
Information may also come from analytics providers, advertising networks and search-information providers. Cookie and tracking choices may affect how some site features or personalised services work.
How We Use Your Data
Personal data is processed only where there is an appropriate legal basis.
We use information to create and manage your account, communicate with you and provide the services you request. This processing is generally necessary for performing our contract with you.
We also process data to understand customer behaviour, improve our services and determine which products or offers may be relevant. These activities rely on our legitimate interests where permitted by law.
Personal information may also be processed to meet legal and regulatory obligations, including KYC, anti-money laundering and anti-fraud checks, and to provide information to regulators or other authorities where legally required.
Marketing communications may be sent where the applicable requirements are met. You can change your marketing preferences or opt out of these messages.
Who We Share Your Data With
Personal data may be shared where necessary to operate the services, process transactions or meet legal obligations.
Recipients can include:
- other group companies acting as controllers or processors
- IT and system-administration providers
- casino game and software providers
- payment service providers
- identity-verification providers
- providers assisting with marketing communications
- professional advisers, including lawyers, auditors, bankers and insurers
- tax authorities, regulators, government agencies and other competent authorities
Information may also be disclosed as part of a sale, transfer, acquisition or merger involving all or part of the business.
Third-party service providers are required to protect personal information and process it only for authorised purposes and in accordance with applicable instructions.
How Long We Retain Your Data
There is no single fixed retention period for every category of personal data.
We retain information for as long as reasonably necessary for the purpose for which it was collected, including legal, regulatory, tax, accounting and reporting requirements. Information may be kept longer where there is an ongoing complaint or a reasonable prospect of legal proceedings.
When appropriate, personal data may be anonymised so that it can no longer identify you. Anonymised information may then be used for research or statistical purposes without a fixed retention period.
Your Data Rights
Depending on applicable data protection law, you may have the right to:
- Access the personal data we hold about you.
- Correct incomplete or inaccurate information.
- Request erasure where there is no continuing lawful reason for processing.
- Object to processing in certain circumstances.
- Request restriction of how your data is processed.
- Request data portability for qualifying automated information.
- Opt out of marketing communications at any time.
Some rights are subject to legal and regulatory restrictions. For example, we may be unable to delete information that must be retained for compliance purposes.
Requests are generally handled within one month. More time may be needed where a request is particularly complex or where several requests have been submitted. If this happens, we will notify you.
There is normally no fee for exercising your rights, although a reasonable fee may be charged or a request may be refused where it is clearly unfounded, repetitive or excessive.
International Data Transfers
Personal information may be processed by group companies and external service providers involved in areas such as payments, identity verification, technology and account administration.
The Privacy Policy does not specify a fixed list of countries to which information may be transferred. Where personal data is processed outside your jurisdiction, any applicable data protection requirements continue to apply.
Security Measures
We use appropriate technical and organisational measures designed to prevent personal data from being accidentally lost, altered, disclosed or accessed without authorisation.
Access is limited to employees, agents, contractors and other authorised parties who have a legitimate business need to use the information. They must process personal data according to applicable instructions and are subject to confidentiality requirements.
Procedures are also in place for responding to suspected personal-data breaches and notifying affected individuals or regulators where required by law.
Changes to This Policy
We keep this Privacy Policy under regular review and may update it when our practices, services or legal obligations change.
The latest version and its update date will be made available on this page. Where your personal information changes while you hold an account, please keep your account details accurate and up to date.
How to Contact Us About Privacy
For questions about this Privacy Policy, requests concerning your personal data or other privacy-related enquiries, contact [email protected] and ask for the matter to be referred to the data privacy manager.
You may also have the right to lodge a complaint with the relevant data protection or privacy regulator. We would appreciate the opportunity to address your concern first, so you are encouraged to contact us before approaching the regulator.