Privacy Policy
Last Updated: June 4, 2025
1. Data Controller and Contact Information
Data Controller: Konstatine Consulting LTD
Business ID: 3165866-5 (Finland)
Contact Email: support@uberwager.com
Data Protection Officer: support@uberwager.com
For EU/EEA residents, Konstatine Consulting LTD acts as the primary data controller for your personal information under GDPR.
2. Information We Collect
Account and Profile Information
- Email address (required for account creation)
- Name and contact information (optional profile completion)
- Date of birth (age verification for gambling compliance)
- Experience level and betting preferences (service personalization)
- Avatar and profile customization data
Financial and Wallet Data
- Stripe customer ID and payment methods (processed by Stripe)
- Wallet balance, deposit, and withdrawal history
- Transaction metadata for escrow and dispute resolution
- Stripe Connect account information for withdrawals
- Tax information as required by payment processors
Platform Usage and Token Data
- Subscription plan, status, and billing history
- Token allocation, consumption, and usage patterns
- Betting instructions generated and accessed
- Bookmaker bonus journey progress and completions
- API usage logs and rate limiting data
- Feature usage analytics and platform interactions
Technical and Security Information
- IP address, browser type, and device information
- Login timestamps and session data
- Security logs for fraud prevention and account protection
- Cookie preferences and consent records
- Error logs and debugging information
Communication and Support Data
- Support ticket conversations and resolution history
- Email communication preferences and unsubscribe status
- Marketing consent and communication history
- Feedback, surveys, and user-generated content
3. Third-Party Data Processors
Supabase (Database and Authentication)
- Purpose: User authentication, database storage, and platform analytics
- Data Processed: Account data, subscription information, usage analytics
- Location: EU servers with GDPR compliance
- Retention: As per our retention policies below
Stripe (Payment Processing)
- Purpose: Payment processing, wallet management, fraud prevention
- Data Processed: Payment methods, transaction history, financial data
- Location: Global with adequate safeguards
- Terms: Subject to Stripe's privacy policy and terms of service
Microsoft Graph (Email Services)
- Purpose: Automated email notifications and communication
- Data Processed: Email addresses, notification preferences, message content
- Location: Microsoft data centers with enterprise-grade security
- Integration: Limited to transactional and service-related emails
4. Legal Basis for Processing (GDPR)
Contract Performance: Processing necessary for service delivery, account management, and subscription fulfillment
Legitimate Interest: Fraud prevention, security monitoring, platform improvement, and customer support
Legal Obligation: Age verification, financial regulations, tax compliance, and anti-money laundering
Consent: Marketing communications, optional features, and cookie preferences (withdrawable at any time)
5. Data Retention Periods
Active Accounts: Data retained while account is active and for legitimate business purposes
Closed Accounts: Personal data deleted within 30 days unless required for legal/regulatory compliance
Financial Records: 7 years retention for tax and audit purposes (regulatory requirement)
Support Communications: 3 years for service quality and dispute resolution
Security Logs: 2 years for fraud prevention and security analysis
Marketing Data: Until consent is withdrawn or 3 years from last interaction
6. Your Rights Under GDPR
Right of Access: Request a copy of your personal data and information about how it's processed
Right to Rectification: Correct inaccurate or incomplete personal data
Right to Erasure: Request deletion of your personal data (subject to legal retention requirements)
Right to Restrict Processing: Limit how we process your data in specific circumstances
Right to Data Portability: Receive your data in a structured, machine-readable format
Right to Object: Object to processing based on legitimate interest or for marketing purposes
Right to Withdraw Consent: Withdraw previously given consent for marketing or optional features
Right to Lodge Complaint: File a complaint with your local data protection authority
To exercise these rights, contact us at support@uberwager.com. We will respond within 30 days.
7. Automated Decision Making and Profiling
Betting Instruction Generation: Automated algorithms calculate arbitrage opportunities and betting strategies based on odds data and user preferences
Risk Assessment: Automated fraud detection systems may flag unusual account activity or payment patterns
Personalization: Platform features and recommendations are personalized based on usage patterns and preferences
User Rights: You can request human review of automated decisions that significantly affect you
8. International Data Transfers
EU/EEA Processing: Primary data processing occurs within the EU/EEA through Supabase EU servers
Third-Party Services: Some processors (Stripe, Microsoft) may transfer data globally under adequate safeguards
Protection Measures: All international transfers are protected by standard contractual clauses or adequacy decisions
User Control: Contact us for specific information about data transfer locations for your account
9. Data Security Measures
Encryption: Data encrypted in transit (TLS) and at rest using industry-standard methods
Access Controls: Role-based access limits and multi-factor authentication for administrative access
Monitoring: Continuous security monitoring and incident response procedures
Regular Audits: Periodic security assessments and compliance reviews
Employee Training: Staff training on data protection and security best practices
10. Cookies and Tracking Technologies
Essential Cookies: Required for platform functionality, authentication, and security
Analytics Cookies: Used to understand platform usage and improve user experience (with consent)
Preference Cookies: Store user settings and preferences for personalized experience
Marketing Cookies: Track engagement for marketing optimization (with explicit consent)
Cookie Management: Use our cookie preference center to control non-essential cookies
11. Children's Privacy
Our platform is not intended for users under 18 years old. We do not knowingly collect personal information from minors. If we discover that a child under 18 has provided personal information, we will immediately delete such information. If you believe a child has provided us with personal information, please contact us at support@uberwager.com.
12. Privacy Policy Updates
We may update this privacy policy to reflect changes in our practices, legal requirements, or platform features. Significant changes will be communicated via email and platform notifications. The "Last Updated" date indicates the most recent revision. Continued use of our platform after updates constitutes acceptance of the revised privacy policy.
13. Contact Us
For privacy-related questions, data protection requests, or to exercise your rights, contact us at:
Email: support@uberwager.com
Subject Line: "Privacy Request" for faster processing
Response Time: We aim to respond to privacy requests within 30 days as required by GDPR