Privacy Policy

Last updated: January 2026. This policy explains how U2 Official Casino Malaysia collects, uses, and protects your personal information.

1. Who We Are

U2 Official Casino Malaysia ("we," "us," "our") operates the online gaming platform accessible at u2officialcasinomy.com and the U2 mobile application. We are the data controller for personal information collected through our platform.

Contact for privacy matters: [email protected]

2. Information We Collect

Registration data: Mobile number, email address, date of birth, name, and password (stored as a hashed value — we never store plain-text passwords).

Identity verification (KYC): Malaysian IC or passport photo, uploaded once during first withdrawal verification. Stored encrypted and used solely for identity verification and AML compliance.

Financial data: Deposit amounts, withdrawal amounts, payment method identifiers (account numbers, wallet IDs). We do not store full bank account numbers or card numbers — payment processing uses tokenized references only.

Game activity: Bets placed, games played, session duration, win/loss records. Required for game integrity, bonus compliance, and responsible gaming monitoring.

Device and technical data: IP address, device type, operating system, browser type, device fingerprint (for fraud prevention). Not used for marketing profiling.

Communications: WhatsApp messages, emails, and live chat logs with our support team. Retained for quality assurance and dispute resolution.

3. How We Use Your Information

  • Account creation, authentication, and security
  • Processing deposits and withdrawals
  • KYC verification and AML compliance (legal requirement)
  • Providing and personalizing gaming services
  • Bonus tracking and wagering compliance
  • Responsible gaming monitoring and intervention
  • Customer support and dispute resolution
  • Fraud detection and prevention
  • Platform improvement and analytics (aggregated, anonymized)
  • Regulatory reporting where legally required

4. Data Sharing

We do not sell your personal information to third parties. We share data only in the following circumstances:

  • Game providers: Your player ID and bet data are shared with game studios (Pragmatic Play, JILI, Evolution, etc.) to deliver the games. Providers are contractually bound to data protection standards.
  • Payment processors: Name and payment details shared with FPX, DuitNow, TNG, and other payment providers to process transactions.
  • Regulatory authorities: We comply with lawful requests from licensing and regulatory authorities.
  • Fraud prevention: We may share fraud signals with payment networks to protect players.

5. Cookies

We use essential cookies (session management, security), functional cookies (preferences, language), and analytics cookies (aggregate usage metrics). We do not use advertising tracking cookies. You may disable non-essential cookies in your browser settings without affecting core platform functionality.

6. Data Retention

Account data is retained for the duration of your account and for 7 years after account closure (regulatory requirement). KYC documents are retained for 5 years post-closure. Game logs are retained for 2 years. Support communications for 3 years. You may request earlier deletion of non-regulatory data by contacting us.

7. Your Rights

You have the right to: access a copy of your data; correct inaccurate data; request deletion (subject to legal retention obligations); restrict processing in specific circumstances; and lodge a complaint with relevant authorities. Submit requests to [email protected] — we respond within 14 days.

8. Security

We protect your data using AES-256 encryption at rest, TLS 1.3 in transit, access controls limiting data to staff who need it, and regular security audits. In the event of a data breach that affects your personal information, we will notify you and relevant authorities within 72 hours of discovery.

9. Children

Our platform is strictly 18+. We do not knowingly collect data from persons under 18. If we discover an underage account, we close it immediately and delete associated data. If you believe a minor has accessed our platform, contact us immediately.

10. Changes to This Policy

We will notify registered players of material changes to this policy via email and in-platform notification before changes take effect. The most recent version is always published at this URL.

💬