Data protection

Crizytime Privacy Policy

Your personal data matters to us. This Privacy Policy clearly explains how your data is collected, used, stored, and protected.

Last updated: January 2026

1 Scope and applicability

Welcome to Crizytime. We believe privacy is a fundamental right for every user. This Privacy Policy explains what information is collected when you use the Crizytime platform, how it is used, and how we keep it secure.

This policy applies to the Crizytime website, mobile app, and all associated services. By using our platform, you are considered to have accepted the terms set out in this Privacy Policy.

Please note: This policy may be updated at any time. We will notify you at your registered email address and display the update date at the top of the page.

2 What Data We Collect

Crizytime collects various types of information to deliver our services. We only collect what is genuinely necessary to operate the platform.

Personally identifiable information

  • Full name and username
  • Email Address & Mobile Number
  • Date of birth (for age verification)
  • Home address and country
  • National ID or passport number (for KYC verification)

Financial Information

  • Payment method details (Mobile Banking, Nagad, Rocket, last 4 digits of card number)
  • Transaction history & amounts
  • Withdrawal & Deposit Dates and Times

Technical information

  • IP Address & Device ID
  • Browser type and operating system
  • Login times & session details
  • Cookies & Local Storage Data

Gaming activity

  • Game history, bet amounts, and results
  • Preferred game categories and slots preferences
  • Bonus usage record

Important: We never collect or store your full card number, CVV, or bank account password. Payment information is processed through secure third-party payment gateways.

3 Purpose of data use

Crizytime uses your personal data solely for the purposes outlined below. We never use your data for unrelated purposes.

Purpose Data used Legal Basis
Account Management Name, email, password Contractual obligations
Identity verification (KYC) ID document, address Legal Obligations
Payment processing Financial Information Contractual obligations
Customer Service Contact details, history Legitimate interest
Fraud prevention IP, Device & Transactions Legal Obligations
Personalized experience Gaming history, preferences Consent

4 Data sharing and third parties

Crizytime never sells your personal data. However, in certain circumstances necessary for operating our services, information may be shared with trusted partners.

When Data Is Shared

  • Payment provider: With Mobile Banking, Nagad, Rocket, or card payment gateways to complete transactions.
  • Game provider: With software partners for game operation.
  • Identity verifier: With authorized verification services for KYC confirmation.
  • Legal Authorities: In response to a court order or a legitimate request from a regulatory authority.
  • Anti-fraud organization: For AML and fraud prevention.

All our third-party partners are contractually bound to uphold the same data protection standards. They are not permitted to share your information with anyone else.

5 Cookies & Tracking Technologies

Crizytime uses cookies and similar technologies to enhance platform functionality and improve the user experience.

Cookie Types

  • Essential Cookies: Maintaining login sessions and ensuring security — these cannot be disabled.
  • Functional Cookies: Language preference, layout settings — used to remember your preferences.
  • Analytics cookies: To understand platform usage statistics, on a fully anonymous basis.
  • Marketing cookies: To show personalized offers, subject to your consent.

You can manage all non-essential cookies at any time through your browser settings.

6 Data security measures

Crizytime protects your data using industry-leading security measures. Our technical and organizational safeguards are fully aligned with international standards.

  • All data transfers are secured with 256-bit SSL/TLS encryption.
  • All data is stored in encrypted form in the database.
  • Regular security audits and penetration testing are conducted.
  • Staff access to data is restricted on a need-to-know basis.
  • Server firewall and intrusion detection systems are active.
  • In the event of a data breach, affected users will be notified within 72 hours.

Your Role: Security is a shared responsibility. Keep your password strong, never share it with anyone, and avoid logging in over public Wi-Fi.

7 Data retention period

Crizytime retains your data only for as long as it is needed. Once that purpose is fulfilled, your information is securely deleted or anonymized.

  • Active account: All profile data is retained for the duration of the active account.
  • Financial Records: Retained for 5–7 years due to legal obligations.
  • KYC Documents: Up to 5 years, in accordance with regulatory requirements.
  • Log & Activity Data: Up to 2 years, then automatically deleted.
  • Closed accounts: Personal data is deleted within 30 days of account closure.

8 Your Rights

Under GDPR and international data protection laws, you have several important rights over your own data. Crizytime fully upholds each of these rights.

Right of Access

You can find out what data we hold about you and request a copy of it.

Right to Rectification

You may request correction of any inaccurate or incomplete information.

Right to Erasure

In certain circumstances, you may request permanent deletion of your data.

Right to restriction of processing

A request to temporarily suspend processing of your data while an investigation is ongoing.

Right to data portability

You may request an export of your data in a standard format.

Right to Object

You may object to the use of your data for marketing or profiling purposes.

To exercise any of these rights, contact our support team. We will respond within 30 days.

9 Protection of Minors' Data

Crizytime strictly does not provide services to anyone under 18. Our platform is for adults only.

  • Age verification is mandatory at the time of registration.
  • If we become aware that data has been collected from a minor, it will be deleted immediately.
  • If a parent or guardian discovers their child has an account, please notify us immediately.

10 Contact & Complaints

For any privacy-related questions, requests, or complaints, please contact our Data Protection Team. Our Bengali-speaking support team is available 24/7.

Email: [email protected]
Response time: Usually within 24–48 hours.

If you believe your privacy rights have been violated and our response is unsatisfactory, you have the right to lodge a complaint with the relevant data protection authority.

Our Commitment to Protecting Your Data

At every step, we ensure your personal data is kept with the highest level of security.

End-to-end encryption

Every data transfer is encrypted with 256-bit SSL/TLS, making it virtually impossible for anyone to access your information without authorization.

No data selling

Crizytime never sells your personal data to third parties. Your data belongs to you.

User controls

You have direct control over your data — view, correct, download, or delete it. No complicated process involved.

GDPR Compliance

Our Privacy Policy fully complies with the European GDPR and international data protection standards.

Freedom to Opt Out

Opt out of marketing communications at any time. We respect your preferences.

Regular security audits

Independent security experts regularly audit our systems to ensure there are no vulnerabilities.

Privacy Policy FAQs

We have answered the questions you are most likely to have.

Never. Crizytime does not sell your personal data to third parties under any circumstances. We only share specific information with essential service partners, strictly under formal agreements.

Your personal profile data is deleted within 30 days of account closure. However, financial transaction records must be retained for 5–7 years due to legal obligations under international AML regulations.

Disabling essential cookies will prevent login sessions and security features from functioning, making the platform unusable. Analytics and marketing cookies, however, can be turned off without affecting your access to the platform.

To obtain a copy of your data, email [email protected] with the subject line "Data Access Request". After verifying your identity, we will send your data in a standard format within 30 days.

In the event of a data breach that puts your information at risk, you will be notified at your registered email address within 72 hours of the incident. We will simultaneously take the necessary steps to mitigate the risk and guide you on what actions to take.

Start gaming in a safe environment

Your data is fully protected on Crizytime. Register today on a platform you can trust and enjoy the best gaming experience in Bangladesh.

বাংলা