Reference

Privacy Policy

We collect account and payment data to run your wallet, verify withdrawals and keep your login secure. This policy explains what we gather when you deposit via bKash, Nagad or Rocket, how long we keep it, and how you can request changes or deletion.

Account verificationPayment processingSecure storageWithdrawal checksContact on request
kkbb Privacy Policy
DATA HANDLING

Security and Retention Practices

We encrypt account credentials and payment references at rest using industry-standard algorithms, and all traffic between your device and our servers travels over HTTPS to prevent interception. Personal data is stored on servers located in jurisdictions that allow online gaming for eligible regions, and access is restricted to operations and compliance staff who need it to process withdrawals or investigate fraud. We keep transaction logs and account records for the minimum period required by local law in Bangladesh and the licensing frameworks we operate under, typically between three and seven years depending on the record type. After that retention window closes we anonymise or delete the data.

Encrypted Storage

Account passwords are hashed with bcrypt, payment references are encrypted with AES-256, and database backups are stored in encrypted volumes. Staff access is logged and audited quarterly to ensure only authorised personnel view personal data.

Cookie Policy

We set a session cookie to keep you logged in and a preference cookie to remember your language choice. Both expire when you close the browser or after fourteen days of inactivity. No third-party cookies track you across other sites.

Withdrawal Verification

Before releasing funds we compare the payout phone number to your registered account phone. For amounts above a certain threshold we may request a photo ID or recent utility bill to satisfy Bangladesh anti-money-laundering rules in eligible regions.

Retention Periods

Transaction records are kept for seven years to meet audit requirements, session logs for ninety days to diagnose technical issues, and marketing consent records until you withdraw consent. After these periods expire we delete or anonymise the data.

PRIVACY QUESTIONS

How to Reach Us About Your Data

If you want to see what information we hold, correct an error in your profile, or request deletion of your account and associated records, contact us through any of the channels below. We aim to respond within two business days and complete verified requests within ten days where local law in eligible Bangladesh regions permits.

Live Chat Open the chat bubble in the bottom corner of any lobby page and choose Privacy Request from the menu. An agent will ask you to confirm your registered phone number and email, then log your request into our data-protection queue.
Email Send your request to the support address shown in your account dashboard, including your registered phone number and a brief description of what you need—view, update or delete.
Account Settings Log in, tap your profile icon, then Privacy Controls. You can download a copy of your transaction history, update your email or phone number, and submit a deletion request.

Privacy Policy FAQ

We ask for your phone number, email address and a password. The phone number lets us send one-time login codes and verify withdrawal requests. Your email is used for account recovery and important updates about policy changes or wallet activity.

No. When you deposit through bKash, Nagad or Rocket you complete the payment inside your own wallet app, entering your PIN there. We only receive a transaction reference and timestamp from the payment gateway; your PIN never reaches our platform.

We retain deposit and withdrawal records for seven years to satisfy financial audit and anti-money-laundering requirements in eligible Bangladesh regions. After seven years the records are anonymised or deleted unless an ongoing dispute or legal hold requires us to keep them longer.

Yes. Log in, go to Account Settings and tap Privacy Controls, then choose Download My Data. You will receive a JSON file within twenty-four hours containing your profile details, transaction log and session history, minus any encrypted credentials.

Open Account Settings, tap Privacy Controls and select Request Deletion. We will close your account and erase personal data within ten days, keeping only the minimum records required by law—typically transaction logs for audit purposes. Any remaining wallet balance must be withdrawn first.

We share transaction references with payment processors like bKash, Nagad and Rocket to complete deposits and withdrawals, and we may disclose records to regulatory or law-enforcement authorities when required by local law in eligible regions. We do not sell or rent your data to advertisers or marketing firms.
Reference

Privacy Policy

Service availability depends on eligible regions and local law. Users should check local rules before opening an account.

Access may be available only where local law permits.