Spinrise Privacy Policy

How player data is collected, used, shared and retained across the Spinrise platform.

Spinrise Casino Privacy Policy

Who Controls Your Data

Hollycorn N.V., registration number 144359, registered at Heelsumstraat 51 E-Commerce Park, Willemstad, Curaçao, is the data controller for information collected through Spinrise. Any question about how your data is handled should be directed to the operator through the contact address at the end of this policy rather than to a third-party provider.

Information We Collect

Registration collects your email address, a chosen password and your date of birth to confirm you meet the 18 and over requirement. Depositing and withdrawing adds payment details specific to the method used, whether a card number fragment, an e-wallet account identifier such as a Skrill or Neteller email, or a cryptocurrency wallet address. Verification (KYC) adds government-issued identity documents, such as an Australian driver’s licence or passport, and proof-of-address documents such as a utility bill or bank statement. Technical data collected automatically includes IP address, device type, browser version and session logs of gameplay and account activity. Cookies are placed on your device to keep you logged in and to measure how the site is used.

Why We Process This Data

Account and payment data is processed to operate your account, verify your identity, process transactions and detect fraud. Technical and session data supports account security and is used to investigate disputed rounds. Cookie-based analytics data is processed to understand which pages and games are used, so the platform can be maintained and improved.

Cookies and Analytics

Spinrise sets essential cookies needed for login sessions and cart-style bonus selection, plus analytics cookies that track aggregate site usage. Essential cookies cannot be disabled without breaking login functionality. Analytics cookies can be blocked or deleted through your browser’s cookie settings at any time, and doing so does not affect access to your account or the ability to play.

Who We Share Data With

Payment data is shared with the payment providers used for a given transaction, including Skrill, Neteller, MuchBetter, MiFinity and the PayAnyBank bank transfer network, solely to process that transaction. Identity documents submitted for KYC are shared with the verification service engaged to confirm them. Gameplay data is shared with the relevant game studio, such as Pragmatic Play, Evolution Gaming, NetEnt, Play’n GO or BGaming, to the extent needed to run the game session and settle results, and with SoftSwiss as the platform provider underlying the Spinrise gaming system. None of these parties receive more data than is required for their specific function.

International Data Transfers

Spinrise’s servers and the operator’s registered office are located in Curaçao, outside Australia. By registering, you agree that your data is transferred to and processed in that jurisdiction, which may not offer the same statutory data protection framework as Australia.

How Long We Keep Your Data

Account and transaction records are retained for as long as the account remains open and for a further period after closure to meet the operator’s licensing and anti-fraud obligations. Closing your account does not delete transaction history immediately; it is retained for the mandatory period and then removed from active systems. KYC documents are held only as long as necessary to satisfy verification and audit requirements tied to your account.

Your Rights Over Your Data

You may request access to the personal data Spinrise holds about you, ask for inaccurate data to be corrected, request deletion where retention is not legally required, object to or restrict certain processing, and request a portable copy of data you provided directly. Requests are handled through the contact address below and are typically actioned within 30 days. Where a request cannot be completed in full, for example because a transaction record must be kept to satisfy a licensing obligation, you are told which part of the request could not be actioned and why.

Account Security

Data in transit between your device and Spinrise is protected with 256-bit SSL encryption, the same standard used across the payment and login flows. Two-factor authentication is available as an optional additional layer on your account and, once enabled, is treated as part of the access control measures covered by this policy. Passwords are stored in hashed form and are not visible to Spinrise staff at any point, including during a support interaction.

Marketing Communications

If you opt in to marketing emails during registration or later in your account settings, Spinrise uses your email address to send bonus and promotional updates. This is separate from transactional emails, such as withdrawal confirmations or KYC requests, which continue regardless of your marketing preference because they relate directly to operating your account. You can withdraw consent to marketing emails at any time through the unsubscribe link included in each message or by updating your preference in account settings.

Complaints

If you believe your data has been mishandled, you may raise the matter directly with Spinrise in the first instance, and, if unresolved, escalate a complaint to the data protection authority with jurisdiction over the operator’s registration in Curaçao.

Contact for Data Requests

Data-related requests and questions can be sent to [email protected], using the same registered email as your Spinrise account so the request can be matched and actioned.