🔒 Data & Privacy

bbsiot Privacy Policy – How We Protect Your Personal Data

At bbsiot, your privacy is not an afterthought. This policy explains exactly what data we collect, why we collect it, how we use it, and what rights you have as a player in Bangladesh. No vague language, no hidden practices.

Last Updated: January 2025

Six Ways bbsiot Keeps Your Data Safe

Before reading the full policy, here are the six most important things every bbsiot player in Bangladesh should know about how we handle personal data.

End-to-End Encryption

Every piece of data you send to bbsiot — from your registration details to your payment information — is encrypted using industry-standard TLS encryption. This means your data is protected in transit and cannot be intercepted by third parties while it travels between your device and the bbsiot platform.

No Data Sold to Third Parties

bbsiot does not sell, rent, or trade your personal data to any third party for marketing or commercial purposes. Your information is used only for the purposes described in this privacy policy — running your account, processing payments, verifying your identity, and keeping the platform secure.

Minimal Data Collection

bbsiot only collects the data that is genuinely necessary to operate your account and comply with legal obligations. We do not collect data speculatively or build profiles beyond what is needed for account management, payment processing, fraud prevention, and responsible gaming compliance.

Strict Internal Access Controls

Access to player data within bbsiot is restricted on a need-to-know basis. Only team members who require access to your data to perform their specific job function are permitted to view it. All internal access is logged and audited regularly to ensure compliance with our internal data governance policies.

You Control Your Data

bbsiot gives you meaningful control over your personal data. You can request a copy of the data we hold about you, ask us to correct inaccurate information, or request deletion of your data subject to legal retention requirements. All data requests are handled by the bbsiot compliance team within a reasonable timeframe.

Regular Security Reviews

The bbsiot security team conducts regular reviews of the platform's data protection infrastructure. This includes penetration testing, vulnerability assessments, and reviews of third-party service providers who handle data on our behalf. Security is treated as an ongoing process, not a one-time setup.

What Rights You Have Over Your Data on bbsiot

As a bbsiot player in Bangladesh, you have specific rights regarding your personal data. Here is a clear summary of each right and what it means in practice.

Right to Access

You can request a full copy of all personal data that bbsiot holds about you at any time by contacting our support team.

Right to Rectification

If any personal data we hold about you is inaccurate or incomplete, you have the right to ask us to correct it without undue delay.

Right to Erasure

You can request deletion of your personal data where it is no longer necessary for the purposes it was collected, subject to legal retention obligations.

Right to Object

You have the right to object to the processing of your personal data for certain purposes, including direct marketing communications from bbsiot.

Right to Restriction

You can ask bbsiot to restrict the processing of your data in certain circumstances, for example while a dispute about accuracy is being resolved.

Right to Portability

Where technically feasible, you can request that your personal data be provided to you in a structured, machine-readable format for transfer to another service.

This Privacy Policy applies to all players who register and use the bbsiot platform. By creating an account on bbsiot, you confirm that you have read and understood this policy and that you consent to the collection and use of your personal data as described here.

1 Who We Are

bbsiot is an online gaming platform operating at bbsiot.net, providing casino games, live dealer experiences, fishing games, and slot titles to players in Bangladesh. When this privacy policy refers to "bbsiot", "we", "us", or "our", it refers to the bbsiot platform and the team responsible for operating it.

bbsiot acts as the data controller for all personal data collected through the platform. This means we are responsible for deciding how and why your personal data is processed. If you have any questions about how bbsiot handles your data, you can contact us at any time using the details provided in Section 12 of this policy.

We take our responsibilities as a data controller seriously. The bbsiot privacy policy is reviewed and updated regularly to reflect changes in our data practices, changes in applicable law, and feedback from our player community. The date of the most recent update is always shown at the top of this page.

2 Data We Collect

bbsiot collects personal data that is necessary to operate your account, process your transactions, verify your identity, and keep the platform secure. The categories of data we collect are described below.

Data Category Examples Purpose
Identity Data Full name, date of birth, gender Account registration, age verification, KYC compliance
Contact Data Email address, mobile number Account communication, support, security alerts
Financial Data bKash/Nagad/Rocket number, transaction history Payment processing, withdrawal verification, fraud prevention
Technical Data IP address, device type, browser, OS Security monitoring, fraud detection, platform optimisation
Usage Data Games played, session duration, bet history Responsible gaming monitoring, account management
Verification Data Government ID, proof of address KYC verification, withdrawal processing

bbsiot does not collect sensitive personal data such as racial or ethnic origin, political opinions, religious beliefs, or health data unless specifically required for responsible gaming purposes and with your explicit consent.

3 How We Collect Your Data

bbsiot collects personal data through several channels, all of which are described transparently below. We do not collect data through any hidden or undisclosed method.

  • Direct registration: When you create a bbsiot account, you provide your name, date of birth, email address, and mobile number directly through the registration form.
  • Payment transactions: When you make a deposit or request a withdrawal, your payment method details and transaction data are collected and processed through the relevant payment gateway.
  • Identity verification: When bbsiot requests KYC documents, you upload copies of your identification documents directly through the secure verification portal within your account dashboard.
  • Platform usage: As you use the bbsiot platform, technical and usage data is automatically collected through server logs, cookies, and analytics tools. This includes your IP address, device information, and gameplay activity.
  • Support interactions: When you contact bbsiot support via live chat or email, the content of those communications is recorded and stored as part of your account record.
  • Third-party verification services: bbsiot may receive data about you from third-party identity verification providers when processing KYC checks. This data is used solely for verification purposes.

4 How We Use Your Data

bbsiot uses your personal data only for the purposes described in this privacy policy. We do not use your data for any purpose that is incompatible with the reason it was originally collected. The primary ways in which bbsiot uses your personal data are as follows:

  • To create and manage your bbsiot account, including processing your registration and maintaining your account settings.
  • To process deposits and withdrawals, verify payment methods, and maintain accurate financial records for your account.
  • To verify your identity and age in compliance with our KYC obligations, ensuring that only eligible players can access the platform.
  • To detect and prevent fraud, money laundering, and other prohibited activities on the bbsiot platform.
  • To monitor gameplay patterns for responsible gaming purposes and to identify players who may need support.
  • To send you account-related communications such as transaction confirmations, security alerts, and important policy updates.
  • To respond to your support queries and resolve any disputes or complaints you raise with the bbsiot team.
  • To improve the bbsiot platform by analysing aggregated, anonymised usage data to understand how players interact with the site and games.
  • To comply with applicable legal and regulatory obligations, including data retention requirements and law enforcement requests where legally required.

bbsiot does not use your personal data for automated decision-making that produces legal or similarly significant effects without human review. All account suspension and bonus forfeiture decisions involve review by a member of the bbsiot compliance team.

5 Legal Basis for Processing

bbsiot processes your personal data on the following legal bases, depending on the specific purpose of the processing:

  • Contract performance: Processing your registration data, payment data, and account management data is necessary to fulfil the contract between you and bbsiot when you create an account and use the platform.
  • Legal obligation: Processing your identity verification data and maintaining financial records is required to comply with applicable anti-money laundering, KYC, and data retention laws.
  • Legitimate interests: Processing technical and usage data for fraud prevention, security monitoring, and platform improvement is based on bbsiot's legitimate interest in operating a safe and fair gaming environment.
  • Consent: Where bbsiot sends you optional marketing communications or processes sensitive data for responsible gaming purposes, this is done on the basis of your explicit consent, which you can withdraw at any time.

6 Data Sharing and Third Parties

bbsiot does not sell your personal data to any third party. We share your data only in the limited circumstances described below, and only with parties who are contractually required to handle your data in accordance with this privacy policy and applicable data protection law.

  • Payment processors: Your payment method details are shared with bKash, Nagad, Rocket, and other payment network providers solely for the purpose of processing your deposits and withdrawals.
  • Identity verification providers: Your KYC documents may be shared with third-party identity verification services to confirm your identity and age. These providers are bound by strict data processing agreements.
  • Fraud prevention services: Technical data such as IP addresses and device fingerprints may be shared with fraud detection services to identify and prevent fraudulent activity on the platform.
  • Game software providers: When you play a game on bbsiot, your gameplay data is processed by the game software provider. These providers operate under data processing agreements with bbsiot.
  • Legal authorities: bbsiot will disclose personal data to law enforcement or regulatory authorities where required to do so by applicable law, court order, or regulatory directive.

All third-party service providers who handle personal data on behalf of bbsiot are required to sign data processing agreements that obligate them to protect your data and use it only for the specific purpose for which it was shared.

7 Cookies and Tracking Technologies

bbsiot uses cookies and similar tracking technologies to operate the platform, remember your preferences, and analyse how the site is used. A cookie is a small text file that is stored on your device when you visit a website. Cookies do not contain executable code and cannot access other files on your device.

  • Essential cookies: These are required for the bbsiot platform to function. They manage your login session, remember your language preference, and ensure that the platform operates correctly. These cookies cannot be disabled without affecting platform functionality.
  • Analytics cookies: bbsiot uses anonymised analytics data to understand how players navigate the platform. This helps us identify areas for improvement and optimise the user experience. Analytics data is aggregated and does not identify individual players.
  • Security cookies: These cookies help bbsiot detect and prevent fraudulent activity by identifying unusual patterns in how the platform is accessed.

You can manage cookie preferences through your browser settings. Note that disabling essential cookies may prevent you from logging in or using certain features of the bbsiot platform. bbsiot does not use third-party advertising cookies or tracking pixels for cross-site advertising purposes.

8 Data Retention

bbsiot retains your personal data for as long as is necessary to fulfil the purposes for which it was collected, or as required by applicable law. The general retention periods that apply to different categories of data are described below.

  • Account data: Retained for the duration of your account and for a minimum of five years after account closure, in accordance with anti-money laundering record-keeping requirements.
  • Financial transaction records: Retained for a minimum of five years from the date of the transaction, as required by applicable financial regulations.
  • KYC verification documents: Retained for a minimum of five years after the verification was completed or after account closure, whichever is later.
  • Support communications: Retained for three years from the date of the communication, or longer if the communication relates to an ongoing dispute or legal matter.
  • Technical and usage data: Retained for up to 24 months from the date of collection, after which it is anonymised or deleted.

When personal data is no longer required and the applicable retention period has expired, bbsiot securely deletes or anonymises the data so that it can no longer be linked to an individual player.

9 Data Security

bbsiot implements a range of technical and organisational security measures to protect your personal data against unauthorised access, loss, destruction, or alteration. These measures include but are not limited to:

  • TLS encryption for all data transmitted between your device and the bbsiot platform.
  • Encryption of sensitive data at rest, including payment method details and identity verification documents.
  • Role-based access controls that restrict internal access to personal data on a strict need-to-know basis.
  • Regular security audits and penetration testing conducted by qualified security professionals.
  • Automated monitoring systems that detect and alert the security team to unusual access patterns or potential breaches.
  • Secure data backup procedures to ensure that player data can be recovered in the event of a system failure.

In the event of a data breach that is likely to result in a risk to your rights and freedoms, bbsiot will notify affected players without undue delay and will take all reasonable steps to contain and remediate the breach. bbsiot will also notify relevant regulatory authorities where required by applicable law.

10 Children's Privacy

The bbsiot platform is strictly for adults aged 18 and over. bbsiot does not knowingly collect personal data from anyone under the age of 18. If you are a parent or guardian and you believe that a minor has registered an account on bbsiot, please contact us immediately at [email protected] so that we can investigate and take appropriate action.

If bbsiot discovers that personal data has been collected from a player who is under 18 years of age, the account will be closed immediately, all data will be deleted as soon as legally permissible, and any deposits made will be returned to the payment method from which they originated.

11 Changes to This Privacy Policy

bbsiot may update this Privacy Policy from time to time to reflect changes in our data practices, changes in applicable law, or improvements to the platform. When material changes are made, we will notify registered players via email or via a notice displayed prominently on the bbsiot platform. The updated policy will take effect from the date stated in the notification.

Minor changes — such as clarifications or corrections that do not materially affect how your data is processed — may be made without prior notice. The "Last Updated" date at the top of this page will always reflect the date of the most recent revision. We encourage you to review this policy periodically to stay informed about how bbsiot protects your privacy.

If you do not agree with any changes to this Privacy Policy, you should stop using the bbsiot platform and contact support to request account closure. Continued use of bbsiot after a policy update has been published constitutes acceptance of the updated policy.

12 Contact Us

If you have any questions about this Privacy Policy, wish to exercise any of your data rights, or want to raise a concern about how bbsiot handles your personal data, you can reach us through the following channels:

  • Live Chat: Available 24/7 from within your bbsiot account dashboard — the fastest way to get a response.
  • Email: [email protected] — for formal data requests and written complaints.
  • FAQ: Visit the FAQ page for answers to common questions about your account and data.

Data access requests and formal privacy complaints submitted in writing will be acknowledged within two business days and resolved within 30 days. If your request is complex or involves a large volume of data, we will notify you if additional time is required and explain the reason for the delay.

For your security, bbsiot will verify your identity before processing any data access, rectification, or deletion request. This is to ensure that we do not disclose or modify your personal data in response to a request from an unauthorised third party.

Your Privacy is Protected – Join bbsiot Today

Now that you know exactly how bbsiot handles your personal data, you can play with complete confidence. Register your free account today and enjoy fast BDT payouts, certified fair games, and a platform that genuinely respects your privacy.