365aec Privacy Policy
Your privacy matters at 365aec. This policy explains exactly what personal data we collect, why we collect it, how we use it, and the rights you have over your information as a player on our platform.
1. Introduction & Scope
This Privacy Policy ("Policy") describes how 365aec ("we", "us", "our", "the Platform") collects, processes, stores, shares, and protects the personal data of individuals ("you", "your", "the Player") who access or use the website at https://365aec.org and all associated services, games, payment functions, and promotional features (collectively, the "Services").
This Policy applies to all visitors, registered players, and former players of 365aec. It covers data collected through the website, through interactions with our support team, through payment processing, and through any other channel by which personal data is provided to us directly or indirectly.
By accessing the 365aec platform or registering an account, you confirm that you have read and understood this Privacy Policy and consent to the collection and use of your personal data as described herein. If you do not agree with any part of this Policy, please do not access or use the 365aec Services.
We reserve the right to update this Policy at any time. The most current version will always be published on this page with a revised effective date. Material changes will be communicated to registered players via the contact information held on their account.
2. Data Controller
Who is responsible for your personal data
For the purposes of this Privacy Policy, 365aec is the data controller — the entity that determines the purposes and means of processing your personal data. All data collected through the 365aec platform is controlled and processed by 365aec in accordance with this Policy.
If you have any questions about this Policy, wish to exercise any of your data rights, or need to report a data concern, please contact our Data Protection team using the email address displayed in the footer of this page. All data-related enquiries are handled with priority and will receive a response within 5 business days.
3. Personal Data We Collect
The categories of information 365aec collects about players
365aec collects personal data that is necessary to provide a safe, compliant, and functional gaming platform. We do not collect personal data beyond what is reasonably required for the purposes described in this Policy. The categories of personal data we collect include the following:
4. How We Collect Your Data
The methods through which 365aec gathers personal information
365aec collects personal data through the following channels:
- Direct submission at registration: When you create an account, you provide your name, mobile number, date of birth, and chosen credentials directly through our registration form.
- KYC verification uploads: When you submit identity documents (NID, passport, driving licence, proof of address, and selfie photographs) to complete account verification, this data is collected and stored securely.
- Payment transactions: When you make a deposit or request a withdrawal via bKash, Nagad, Rocket, Upay, or bank transfer, transaction metadata including account numbers and amounts are recorded.
- Gameplay activity: All game sessions, bet placements, outcomes, and interactions with games provided by Evolution Gaming, Pragmatic Play, Spribe, NetEnt, Microgaming, and Ezugi are logged automatically as part of normal platform operation.
- Automated technical collection: Cookies, local storage tokens, and server logs automatically capture technical data including IP addresses, device identifiers, session duration, and page interaction patterns every time you visit 365aec.
- Support interactions: When you contact our support team via the platform email, any information you share in that correspondence is collected and linked to your account record.
- Responsible gaming tools: When you set deposit limits, activate a time-out, or request self-exclusion, the details of those elections are recorded and stored to ensure enforcement.
5. How We Use Your Personal Data
The lawful purposes for which 365aec processes your information
We process your identity and contact data to create and maintain your 365aec account, verify your identity and age (21+ requirement), and ensure each player holds only one account on the platform. KYC data is retained for the duration of your account and for a minimum of 5 years after closure as required by applicable compliance obligations.
Financial data is processed to execute your deposit and withdrawal requests via bKash, Nagad, Rocket, Upay, and partnered banks. We also use financial and technical data to detect, investigate, and prevent fraudulent transactions, money laundering, and unauthorised account access. This processing is necessary to protect both the player and the integrity of the platform.
Gaming data is used to display your bet history, calculate bonus wagering progress, resolve game-outcome disputes, and personalise content recommendations within the 365aec platform. Aggregated, anonymised gameplay data is also used to improve platform performance and game selection. No individual gaming profiles are shared with third parties for marketing purposes.
We use gaming activity data, session data, and your self-declared responsible gaming preferences to monitor for signs of problem gambling, enforce deposit limits and self-exclusion elections, and provide timely intervention or referrals where appropriate. This processing is carried out in your best interest and is a core part of 365aec's commitment to player welfare.
Contact data and communications data are processed to respond to your support queries, investigate complaints, and resolve disputes regarding game outcomes, payment delays, or account issues. Support records are retained for a minimum of 3 years to support dispute escalation and audit requirements.
Certain processing activities — including identity retention, transaction record-keeping, and audit log maintenance — are carried out because 365aec is legally obliged to do so under applicable anti-money laundering, know-your-customer, and platform accountability requirements. This data cannot be deleted upon request where a legal retention obligation exists.
6. Cookies & Tracking Technologies
How 365aec uses cookies on the platform
365aec uses cookies and similar tracking technologies (including local storage tokens and session identifiers) to operate the platform, maintain login sessions, personalise your experience, and analyse platform usage. The categories of cookies used are as follows:
- Strictly Necessary Cookies: Required for the platform to function. These include session cookies that keep you logged in during your visit and security tokens that protect against cross-site request forgery. These cookies cannot be disabled without preventing core platform functionality.
- Functional Cookies: Remember your preferences such as language settings, display options, and your responsible gaming limit elections so that they are applied consistently across sessions.
- Analytics Cookies: Collect aggregated, anonymised data about how players navigate and use the 365aec platform. This information is used internally to improve page performance, identify technical issues, and optimise user experience. No individual player is identified in analytics reports.
- Security & Fraud Prevention Cookies: Support our fraud detection systems by tracking session consistency, login behaviour, and unusual activity patterns. These are essential to protecting player accounts.
By continuing to use the 365aec platform, you consent to the placement of cookies as described above. You may manage cookie preferences through your browser settings; however, disabling strictly necessary cookies will impair your ability to use the platform. 365aec does not use cookies to track your activity on external websites.
7. Sharing Your Personal Data
When and with whom 365aec shares player information
365aec does not sell, rent, or trade your personal data to any third party for commercial purposes. Personal data is shared only in the following limited, controlled circumstances:
- Game Content Providers: Providers such as Evolution Gaming, Pragmatic Play, Spribe, NetEnt, Microgaming, and Ezugi receive limited technical data (session tokens, stake amounts) necessary to operate game rounds on their platforms. These providers are bound by contractual data processing agreements that restrict their use of your data to game delivery only.
- Payment Service Partners: bKash, Nagad, Rocket, Upay, and partnered banks receive only the transaction data necessary to execute your requested deposit or withdrawal. These entities operate under their own privacy frameworks and are regulated financial institutions.
- Identity Verification Services: Where automated or manual KYC review is required, document data may be shared with a contracted identity verification service provider. These providers process your data solely for verification purposes under strict data processing agreements with 365aec.
- Legal & Regulatory Authorities: 365aec will disclose personal data to law enforcement agencies, regulatory bodies, or courts when required to do so by applicable law, court order, or when necessary to prevent or report fraud, money laundering, or other criminal activity.
- Business Transfers: In the event of a merger, acquisition, or sale of assets involving 365aec, player data may be transferred to the successor entity, subject to the same data protection obligations described in this Policy. Players will be notified of any such transfer in advance where practicable.
8. Data Security
How 365aec protects your personal information
365aec takes data security seriously and implements industry-standard technical and organisational measures to protect your personal data against unauthorised access, accidental loss, alteration, disclosure, or destruction. Our security measures include:
- SSL/TLS Encryption: All data transmitted between your device and the 365aec platform is encrypted using SSL/TLS protocols. The padlock icon in your browser's address bar confirms that your connection is secure at all times.
- Encrypted Data Storage: Sensitive personal data — including identity documents, payment details, and passwords — is stored in encrypted form in our secured database infrastructure. Passwords are hashed using modern one-way algorithms and are never stored in recoverable plain text.
- Access Controls: Access to player personal data is restricted on a strict need-to-know basis. 365aec staff members are granted access only to the data categories necessary for their specific operational role. All access is logged and subject to regular audit.
- Intrusion Detection: Our platform runs continuous security monitoring and intrusion detection systems. Anomalous access patterns, login attempts from unusual locations, and large-volume data queries trigger automated alerts for human review.
- Regular Security Reviews: 365aec conducts regular internal security assessments and works with third-party security specialists to identify and remediate vulnerabilities in our platform infrastructure.
While 365aec takes all reasonable steps to protect your data, no internet-based platform can guarantee absolute security. You are responsible for maintaining the confidentiality of your own account credentials. If you suspect your account has been compromised, contact our support team immediately via the email in the footer of this page.
9. Data Retention
How long 365aec keeps your personal data
365aec retains personal data only for as long as it is necessary to fulfil the purposes for which it was collected, or as required by applicable law. Our standard retention periods are as follows:
- Account and Identity Data: Retained for the lifetime of the account and for a minimum of 5 years following account closure. This retention period supports our legal obligations related to KYC compliance and audit requirements.
- Transaction Records: Deposit and withdrawal records are retained for a minimum of 5 years from the date of each transaction to support financial audit and anti-money laundering compliance.
- Gaming History: Individual bet records are retained for 3 years from the date of each session. Aggregated and anonymised gaming data may be retained indefinitely for platform analytics purposes.
- Support Communications: Customer support correspondence is retained for 3 years from the date of last interaction to support dispute resolution and audit processes.
- Self-Exclusion Records: Records of self-exclusion elections are retained permanently (or for the maximum permitted period under applicable law) to prevent re-registration attempts by excluded players.
- Technical & Log Data: Server logs and technical session data are retained for 12 months on a rolling basis, after which they are permanently deleted or anonymised.
At the end of any applicable retention period, personal data is securely deleted or irreversibly anonymised in accordance with our internal data disposal procedures.
10. Your Data Rights
The rights you hold over your personal information at 365aec
As a player on 365aec, you have the following rights with respect to your personal data. To exercise any of these rights, contact our Data Protection team using the email address shown in the footer of this page. All requests will be processed within 30 days of receipt.
- Right of Access: You may request a copy of all personal data that 365aec holds about you. We will provide this in a structured, readable format.
- Right to Rectification: If any personal data we hold about you is inaccurate or incomplete, you may request that it be corrected. Identity data corrections may require supporting document verification.
- Right to Erasure ("Right to be Forgotten"): You may request deletion of your personal data where it is no longer necessary for the purpose for which it was collected and where no legal retention obligation overrides your request. Note that legal and compliance retention requirements (as set out in Section 9) may mean that certain data cannot be deleted at your request.
- Right to Restriction: You may request that we restrict the processing of your personal data in certain circumstances — for example, while a dispute about data accuracy is being resolved.
- Right to Data Portability: Where processing is based on your consent or contractual necessity, you may request that we provide your personal data in a commonly used, machine-readable format for transfer to another service.
- Right to Withdraw Consent: Where processing is based on your consent, you may withdraw that consent at any time by contacting us. Withdrawal of consent does not affect the lawfulness of processing carried out before the withdrawal.
- Right to Object: You may object to the processing of your personal data for direct marketing purposes at any time. 365aec does not currently send unsolicited marketing communications, but if you receive any promotional message from us and wish to opt out, you may do so by contacting support.
11. Third-Party Services & Links
External services that may interact with the 365aec platform
The 365aec platform integrates with a number of third-party service providers to deliver its core functionality — including game providers (Evolution Gaming, Pragmatic Play, Spribe, etc.) and payment processors (bKash, Nagad, Rocket, Upay, and banking partners). Each of these providers operates under its own privacy policy and data protection framework. 365aec is not responsible for the privacy practices of third-party providers, and we encourage you to review the privacy policies of any external service you interact with.
The 365aec website does not contain links to external third-party websites for advertising or referral purposes. All navigation on the platform remains within the 365aec domain.
12. Players Under 21
Age restriction and data protection for underage individuals
The 365aec platform is strictly for adults aged 21 years and over. We do not knowingly collect personal data from individuals under the age of 21. If we become aware that personal data has been submitted by or on behalf of an individual under 21, that data will be deleted immediately and the associated account permanently closed.
If you believe that a person under the age of 21 has registered on 365aec or provided personal data to us, please contact our support team immediately using the email address in the footer. We will investigate and take appropriate action within 48 hours of receiving a report.
Parents and guardians are encouraged to use parental control software to prevent underage individuals from accessing online gaming platforms. 365aec supports the goals of responsible gaming organisations and takes underage access prevention seriously as part of our broader player welfare obligations.
13. Changes to This Privacy Policy
How 365aec notifies players of policy updates
365aec may update this Privacy Policy from time to time to reflect changes in our data practices, legal requirements, or platform functionality. All updates will be published on this page with a revised effective date at the top of the document.
For significant changes that materially affect how we process your personal data — such as introducing new data categories, new processing purposes, or new sharing arrangements — we will provide advance notice to registered players via the contact information held on their account. Minor clarifications or administrative updates may be made without direct notification.
Your continued use of the 365aec platform following the publication of a revised Privacy Policy constitutes your acceptance of the updated terms. If you do not agree with the changes, you should cease using the platform and close your account before the revised Policy takes effect.
🎯 Continue at 365aec
Your data is protected — now enjoy the platform
With your data protected by industry-standard security and full SSL encryption, explore over 1,000 slots, live casino tables, and cricket betting markets. Deposit from ৳100 via bKash or Nagad. 21+ only. Play Responsibly.
Login to 365aec Explore 365aec Casino Browse Slots Read our FAQ Responsible Gaming