This page explains what personal data Casino Feedback collects, why, how long we keep it, and what rights you have under the GDPR and the UK Data Protection Act 2018. The policy applies to every visitor regardless of region.
Who is the data controller on privacy policy casino feedback
Karssen Avelar is the data controller for casinofeedback.eu.com and the only person handling any reader correspondence. Contact for any privacy question: smartseokings@gmail.com.
What we collect on privacy policy casino feedback
We collect the minimum necessary to operate the site.
- Three first-party cookies in your browser (
cf_session,cf_lang,cf_consent_ack). See the Cookie Policy for the full list, lifetime, and lawful basis. - Server request logs kept for at most fourteen days for DDoS mitigation and capacity planning. The log records the timestamp, the URL path, the HTTP response code, and the response size. The visitor IP address, the user-agent string, and the Referer header are stripped before write.
- Aggregate affiliate click counts delivered by partner networks once a month as a single number per brand. No visitor identifier is attached.
- Voluntary email correspondence sent to the editor address. We use the content of the message only to answer it.
We do not collect: device fingerprints, geolocation data, behavioural advertising profiles, payment details (the site processes no payments), or account credentials (the site has no user accounts).
Lawful basis on privacy policy casino feedback
The three first-party cookies and the truncated server log run under legitimate interest (Article 6(1)(f) GDPR), balanced by the deliberate exclusion of identifying fields. Email correspondence runs under consent (Article 6(1)(a)) implicit in writing to us. The cookie disclosure itself runs under compliance with the legal duty (Article 6(1)(c)).
How long we keep data on privacy policy casino feedback
| Data | Retention | |---|---| | cf_session | Until you close the browser | | cf_lang | 365 days | | cf_consent_ack | 180 days | | Server request logs | Maximum 14 days; typically deleted within 7 | | Aggregate affiliate click counts | Indefinite (numerical, non-personal) | | Email correspondence | Until you ask us to delete it, or until the matter is resolved and the next quarterly mailbox review runs |
Your rights on privacy policy casino feedback
Under GDPR Articles 15-22, you can ask us to:
- Confirm and copy any personal data we hold about you (Article 15).
- Correct inaccurate personal data (Article 16).
- Delete personal data we hold (Article 17).
- Restrict further processing while a dispute is open (Article 18).
- Export your data in a machine-readable format such as plain text, JSON, or mbox (Article 20).
- Object to processing based on legitimate interest (Article 21). Article 22 (no automated decisions) resolves trivially because we run no automated decision-making or profiling.
Write to the editor email above with your request. We reply within thirty days under Article 12(3) GDPR; most requests are handled within one to three business days. There is no charge, and you do not need to give a reason.
Who we share your data with
We do not sell, rent, lease, or barter personal data. We do not share data with marketing partners. We do not include reader correspondence in training datasets for machine-learning models. Aggregate affiliate click counts shared with partner networks contain no personal data.
Cross-border data transfers and safeguards
If the hosting infrastructure routes traffic through a data centre outside the European Economic Area, the only data that can transit it is the truncated 14-day server log without IP or user-agent. Where applicable, the transfer is covered by the Standard Contractual Clauses of the European Commission.
How we protect your personal data
The site enforces HTTPS on every URL through HSTS. Editor access uses key-based SSH only. The editor email account uses two-factor authentication. If a personal data breach affecting reader correspondence ever occurs, we will notify the supervisory authority within 72 hours under Article 33 GDPR and notify affected readers without undue delay under Article 34.
Third-party service providers
We use a small number of external services to operate this site. Our hosting provider stores website files and serves pages; it receives the same truncated server logs described above. Our domain registrar stores the domain registration record; no personal data from readers is shared with them. Our email service provider handles inbound correspondence to the editor address; emails you send us are stored on their servers for as long as we need to reply and follow up, then deleted. We have reviewed each provider's data processing addendum and confirmed it covers their EU GDPR obligations where applicable. If we add a new provider that processes personal data, this section will be updated at least 30 days before the integration goes live. We do not use third-party analytics platforms, advertising networks, pixel trackers, or any external script that would transmit reader IP addresses to third-party servers.
California CCPA rights for residents
We comply with the substantive obligations of the CCPA by default. We do not sell personal information under Section 1798.120 and do not share personal information for cross-context behavioural advertising. California residents can use the editor email to send a "Do Not Sell My Personal Information" request and receive the same acknowledgement EU residents receive under Article 21 GDPR.
Children under 18 and this service
The site is aimed at adults eighteen and over. We do not knowingly collect personal data from minors. If you believe a minor has corresponded with us, write to the editor and we will delete the record.
When and how this privacy policy changes
We review this policy at least every three months. Material changes are announced at the top of this page at least 30 days before they take effect.
How to contact us about your data
For any privacy question, write to smartseokings@gmail.com. See the Cookie Policy for cookie specifics and the Terms of Use for the editorial contract.
Editorial scope of this privacy page
This entry was written and published under the six-axis editorial scorecard framework: cashier behaviour, bonus math, support quality, KYC handling, wallet timeline, and brand vibe. The data behind every claim ties back to either a personal cashier log on a real account with personal funds, or a reader diary that the editor verified independently before publication. Every numerical claim on this page (rates, days, amounts) is sourced and timestamped on file. Corrections of fact are welcomed at smartseokings@gmail.com within twenty-four hours. The editorial framework is documented in full on the methodology page, the broader site context lives on the about page, and the editor profile is on the author page.