php33 Privacy Policy — How We Collect, Use & Protect Your Data
Your privacy matters to php33. This Privacy Policy explains what personal information we collect from Filipino players, why we collect it, how we use and protect it, and what rights you have under the Philippine Data Privacy Act of 2012 (Republic Act No. 10173). By registering an account or using the php33 platform, you acknowledge that you have read and understood this Policy.
php33's Core Privacy Commitments
These cards summarize the most important aspects of how php33 handles your personal data. The full legal text in the sections below governs in all cases.
DPA 2012 Compliant
php33 processes your personal data in full compliance with the Philippine Data Privacy Act of 2012 (RA 10173) and the National Privacy Commission's implementing rules and regulations. Your data rights as a Filipino are respected and upheld at every step.
256-Bit SSL Encryption
All data transmitted between your device and the php33 platform is encrypted using industry-standard 256-bit SSL/TLS protocols — the same level used by major Philippine banks including BPI, BDO, and Metrobank. Your credentials, financial data, and personal details travel securely at all times.
No Third-Party Data Sales
php33 does not sell, rent, or trade your personal information to any third party for their own marketing purposes. Data shared with third parties is limited strictly to what is necessary for service delivery, regulatory compliance, or payment processing — and is always governed by data processing agreements.
KYC & AML Obligations
As a PAGCOR-regulated platform, php33 is legally required to verify your identity and monitor transactions for anti-money laundering (AML) compliance. KYC data is processed and retained only to the extent required by Philippine law and PAGCOR regulations.
You Control Your Data
Filipino players have full rights under the DPA 2012 to access, correct, and request deletion of their personal data held by php33, subject to our legal retention obligations. You can exercise these rights at any time by contacting our Data Protection Officer.
Cookie Transparency
php33 uses cookies and similar tracking technologies to improve your experience and for analytics purposes. Non-essential cookies require your consent. You can manage cookie preferences from your browser settings or through the cookie preference tool displayed on your first visit to the platform.
Full Privacy Policy
This Privacy Policy ("Policy") describes how php33 ("the Company," "we," "us," or "our"), operating the online gaming platform at php33.lat, collects, uses, stores, shares, and protects personal data relating to registered players and platform visitors ("you" or "the Data Subject"). This Policy is issued in compliance with Republic Act No. 10173 (Philippine Data Privacy Act of 2012) and its Implementing Rules and Regulations, and with the requirements of the Philippine Amusement and Gaming Corporation (PAGCOR).
Data Controller
php33 is the personal information controller (PIC) for all personal data processed in connection with the operation of the php33 platform. As PIC, php33 determines the purposes and means of processing your personal data and is responsible for ensuring that such processing complies with the Data Privacy Act of 2012 and all relevant PAGCOR compliance requirements.
php33 has designated a Data Protection Officer (DPO) who oversees compliance with this Policy and with the DPA 2012. Contact details for the DPO are provided in Section 13 of this Policy.
Personal Data We Collect
php33 collects the following categories of personal data from players and platform visitors:
Identity & Contact Data
- Full legal name as it appears on your government-issued Philippine ID
- Date of birth (for age verification — players must be 21+)
- Residential address (barangay, city/municipality, province)
- Philippine mobile number (Globe, Smart, DITO, or equivalent)
- Email address
- Nationality and country of residence
Identity Verification (KYC) Data
- Copy of government-issued Philippine ID (passport, driver's license, PhilSys ID, SSS/GSIS card, Postal ID, or Voter's ID)
- Selfie photograph for identity matching
- Proof of address documents where required
- Source of funds documentation where required under AML regulations
Financial & Transaction Data
- GCash, Maya, or bank account reference numbers used for deposits and withdrawals
- Transaction history including deposit amounts, dates, and payment methods
- Withdrawal requests and settlement records
Technical & Usage Data
- IP address and approximate geolocation at the time of login
- Device type, operating system, and browser information
- Session duration, pages visited, games played, and betting history
- Cookie identifiers and analytics data
Sensitive Personal Information: Government ID numbers and biometric data (selfie photographs used for identity matching) qualify as sensitive personal information under the DPA 2012. php33 collects this data only for KYC compliance purposes and applies enhanced security controls to its storage and processing.
How We Collect Your Data
php33 collects personal data through the following channels:
- Directly from you — when you register an Account, complete KYC verification, make a deposit or withdrawal, contact customer support, or respond to a promotion.
- Automatically — through cookies, server logs, and analytics tools when you access the php33 platform via desktop or mobile browser.
- From payment providers — GCash, Maya, BPI, BDO, and other Philippine payment processors may share transaction confirmation data with php33 to facilitate deposit and withdrawal settlement.
- From identity verification partners — third-party KYC service providers used to verify government-issued ID documents transmit verification results to php33 upon completion of the verification process.
- From regulatory authorities — PAGCOR and other Philippine government bodies may share information relevant to the regulation of your Account or our operations.
Purposes of Processing
php33 processes your personal data for the following purposes:
| Purpose | Data Categories Used |
|---|---|
| Account registration and management | Identity, contact, KYC data |
| Age and identity verification (KYC) | KYC documents, biometric data |
| Payment processing — deposits & withdrawals | Financial data, identity data |
| Anti-money laundering (AML) compliance | Transaction data, KYC data, financial data |
| PAGCOR regulatory reporting | Identity, transaction, and betting data |
| Customer support and dispute resolution | Identity, contact, transaction data |
| Fraud prevention and security monitoring | Technical data, transaction data |
| Responsible gaming monitoring | Betting history, session data |
| Platform analytics and improvement | Usage data, technical data (anonymized) |
| Marketing communications (with consent) | Contact data, game preference data |
Legal Basis for Processing
Under the Data Privacy Act of 2012, php33 relies on the following legal bases for processing your personal data:
- Performance of a contract — processing your identity, contact, and financial data is necessary to deliver the services you have contracted for when creating a php33 Account.
- Legal obligation — KYC verification, AML monitoring, and regulatory reporting are required by PAGCOR regulations and Philippine anti-money laundering law (AMLA, RA 9160 as amended).
- Legitimate interests — fraud detection, security monitoring, and platform analytics are conducted on the basis of php33's legitimate interest in maintaining a safe and functional platform for all players.
- Consent — marketing communications and non-essential cookies are processed only with your specific, freely given, and informed consent. You may withdraw consent for marketing at any time.
Data Sharing & Third Parties
php33 does not sell your personal data. We share personal data with third parties only in the following limited circumstances and always under contractual data protection obligations:
- Payment processors — GCash, Maya, BPI, BDO, Metrobank, and other Philippine payment providers receive the minimum data necessary to process your transactions.
- KYC / identity verification providers — third-party identity verification services receive your ID documents and selfie to conduct age and identity checks on php33's behalf.
- Game software providers — Pragmatic Play, PG Soft, Evolution Gaming, and other game studios may receive anonymized or pseudonymized player identifiers for game session management.
- PAGCOR and Philippine regulatory authorities — player and transaction data is reported to PAGCOR as required under our operating license, and to AMLC (Anti-Money Laundering Council) as required under Philippine AML law.
- Law enforcement — personal data may be disclosed to Philippine law enforcement authorities in response to a lawful court order or warrant.
- Professional advisers — lawyers, accountants, and auditors may access personal data as necessary and are bound by professional confidentiality obligations.
php33 does not transfer personal data outside the Philippines unless the recipient country provides an adequate level of protection for personal data as determined by the National Privacy Commission, or unless appropriate safeguards (such as data processing agreements incorporating standard contractual clauses) are in place.
Data Retention
php33 retains personal data only for as long as necessary for the purposes for which it was collected, or as required by applicable Philippine law and PAGCOR regulations. The following retention periods apply:
| Data Category | Retention Period | Basis |
|---|---|---|
| Account registration data | Duration of account + 5 years | PAGCOR license conditions |
| KYC / identity documents | Duration of account + 5 years | AMLA requirements |
| Transaction records | 5 years from transaction date | AMLA, BIR requirements |
| Betting / wagering history | 3 years from last activity | PAGCOR audit requirements |
| Customer support communications | 2 years from last contact | Legitimate interests |
| Marketing consent records | Until consent is withdrawn + 1 year | DPA 2012 accountability |
Upon expiry of the applicable retention period, personal data is securely deleted or anonymized so that it can no longer be attributed to any individual. Data that has been anonymized is not subject to DPA 2012 requirements and may be retained for analytical purposes indefinitely.
Data Security
php33 implements technical and organizational security measures appropriate to the risk level of personal data processing. These measures include but are not limited to:
- 256-bit SSL/TLS encryption for all data transmitted between your device and php33 servers.
- Encryption at rest for sensitive personal data and KYC documents stored on php33 infrastructure.
- Role-based access controls limiting employee access to personal data to those with a business need.
- Multi-factor authentication requirements for php33 staff accessing systems containing personal data.
- Regular independent security audits and penetration testing of the php33 platform.
- Incident response procedures designed to detect, contain, and report personal data breaches in accordance with NPC notification requirements.
Data Breach Notification: In the event of a personal data breach affecting your information, php33 will notify the National Privacy Commission (NPC) within 72 hours of becoming aware of the breach, and will notify affected players without undue delay where the breach is likely to result in high risk to their rights and freedoms.
Cookies & Tracking Technologies
php33 uses cookies and similar technologies (including pixels, web beacons, and local storage) on the platform. Cookies are small text files placed on your device that help php33 recognize you, maintain your session, and understand how the platform is being used.
Types of Cookies Used
- Strictly Necessary Cookies — required for the platform to function. These include session cookies that keep you logged in and security cookies that protect against CSRF attacks. These cookies cannot be disabled without disabling core platform functionality.
- Functional Cookies — remember your language preferences, data-saver mode settings, and other personalization choices. Disabling these may affect your experience on php33.
- Analytics Cookies — collect anonymized data about how players use the platform to help php33 improve performance and usability. These require your consent.
- Marketing Cookies — used to deliver relevant promotions to registered players. These require your explicit consent and can be withdrawn at any time.
You can manage cookie settings through your browser's privacy controls or through the cookie preference panel accessible from the platform footer. Withdrawing consent for non-essential cookies will not affect the lawfulness of processing carried out before withdrawal.
Your Rights Under the DPA 2012
As a data subject under the Philippine Data Privacy Act of 2012, you have the following rights with respect to your personal data held by php33:
- Right to be Informed — you have the right to be notified of the purposes for which your personal data is collected and processed before or at the time of collection. This Policy fulfils that obligation.
- Right to Access — you may request a copy of the personal data php33 holds about you, along with information about how it is being processed.
- Right to Correction — if any personal data php33 holds about you is inaccurate or incomplete, you have the right to request correction. You can update most Account details directly from your Account settings.
- Right to Erasure — you may request deletion of your personal data where it is no longer necessary for the purposes for which it was collected, subject to php33's legal retention obligations under PAGCOR and AMLA requirements.
- Right to Object — you have the right to object to processing based on legitimate interests or for direct marketing purposes. An objection to direct marketing will be actioned immediately.
- Right to Data Portability — you may request that php33 provide your personal data in a structured, commonly used, and machine-readable format where technically feasible.
- Right to Lodge a Complaint — if you believe php33 has processed your personal data in violation of the DPA 2012, you have the right to lodge a complaint with the National Privacy Commission (NPC) of the Philippines.
To exercise any of the above rights, submit a written request to php33's Data Protection Officer using the contact details in Section 13. php33 will respond to verified requests within thirty (30) calendar days. Identity verification may be required before a request is actioned.
Children's Privacy — Strict 21+ Policy
php33 does not knowingly collect personal data from any person under the age of 21. The php33 platform is strictly for adults aged 21 and above in accordance with Philippine gaming regulations applicable to casino-style gambling.
If php33 discovers or has reason to believe that personal data belonging to a person under 21 has been collected — whether through misrepresentation during registration or any other means — the Account will be immediately suspended, all real-money activity will be frozen pending investigation, and the data will be handled in accordance with the NPC's guidelines on processing personal data of minors.
If You Believe a Minor Has Registered: If you have reason to believe that a person under 21 has registered an Account on php33, contact our support team or DPO immediately. php33 takes underage access seriously and will act without delay upon receiving a credible report.
Updates to This Privacy Policy
php33 may update this Privacy Policy from time to time to reflect changes in our data processing practices, regulatory requirements, or platform features. When a material change is made, we will notify registered players via their registered email address or through a prominent notice on the platform at least fourteen (14) days before the change takes effect.
The "Last Updated" date at the top of this Policy indicates when it was most recently revised. We encourage you to review this Policy periodically. Your continued use of the php33 platform following the effective date of any update constitutes your acknowledgment of the revised Policy.
Contact & Data Protection Officer
For any questions, concerns, or requests relating to this Privacy Policy or the processing of your personal data by php33, please contact our Data Protection Officer:
- Data Protection Officer: php33 DPO Office
- Email: [email protected] (mark subject line "DPO / Privacy Request")
- Customer Support Hours: 8 AM – 2 AM PHT, seven days a week
- Platform: php33.lat
Registered players may also raise privacy-related concerns directly through the live chat function available after logging in to the php33 platform. Our support agents will escalate data privacy matters to the DPO on your behalf.
National Privacy Commission: If you are not satisfied with php33's handling of your privacy concern, you have the right to file a complaint with the National Privacy Commission of the Philippines. The NPC is the government body responsible for enforcing the Data Privacy Act of 2012 and protecting the privacy rights of Filipino data subjects.
Data Rights for Filipino Players
Under the Philippine Data Privacy Act of 2012, you have clear rights over your personal data. Here's a quick-reference summary.
Right to Access
Request a full copy of all personal data php33 holds about you, including how it is being used and with whom it has been shared.
Right to Correct
Request correction of any inaccurate or outdated personal information in your php33 Account, including name, address, and contact details.
Right to Erasure
Request deletion of your personal data when it is no longer needed — subject to legal retention periods under PAGCOR and AMLA regulations.
Right to Portability
Request your personal data in a machine-readable format so you can transfer it to another service provider if you choose to do so.
Right to Object
Object to processing of your data for direct marketing or based on legitimate interests. Marketing objections are actioned immediately upon receipt.
Right to Complain
Lodge a complaint with the National Privacy Commission of the Philippines if you believe php33 has violated your data privacy rights under the DPA 2012.
Questions About Your php33 Privacy?
Our Data Protection Officer and customer support team are here to help. Reach out any day between 8 AM and 2 AM PHT, or explore our FAQ for quick answers.