Privacy Policy U2 CasinoYour Data is Protected

At u2 casino, player privacy is more than a legal obligation — it is a core commitment. This document transparently explains how we collect, use, store, and protect your personal information while you use our platform. Please read it carefully so you fully understand the rights and protections available to you.

Updated: January 2026 256-bit SSL Version 2.5

1 Introduction

Welcome to the u2 casino Privacy Policy. This document explains the privacy practices of our platform, which operates under the domain u2casino.app. We understand that your personal information is a trust placed in us, and we take every aspect of data protection seriously.

This policy applies to all players who register, browse, or use any services offered through the u2 casino platform, including our website, mobile app, and all related communication channels. By registering an account or using our services, you agree to the collection and use of information as described in this document.

U2 casino complies with Malaysia's Personal Data Protection Act 2010 (PDPA) and applicable international data protection standards. We are committed to ensuring that all data processing we carry out is lawful, fair, and fully transparent to our users.

Important Note: This Privacy Policy may be updated from time to time. Whenever there are material changes, we will notify you via your registered email or in-app notification at least 7 days before the changes take effect. The latest update date is always displayed at the top of this document.

2 Data We Collect

We only collect data that is strictly necessary for clearly stated purposes. Below are the categories of data we collect from our players:

Data Category Example Information Purpose of Collection
Identity Data Full name, date of birth, identity card number Identity verification (KYC), legal compliance
Contact Data Phone number, email address Account communications, security verification
Financial Data Bank account details, transaction history Payment processing, fraud detection
Technical Data IP address, device type, operating system, web browser Account security, platform improvements
Usage Data Game history, activity logs, game preferences Experience personalisation, platform analytics
Communication Data Support conversation records, user feedback Dispute resolution, service improvement

We never collect sensitive data such as health information, political views, or religious beliefs unless voluntarily shared in the context of responsible gambling at the player's own request.

Data Minimisation Principle: u2 casino practises the principle of data minimisation — we only request information that is strictly necessary for platform operations and legal compliance. You will not be asked to provide excessive or irrelevant information.

3 How We Use Your Data

Every piece of data we collect has a clear and specific purpose. We do not use your data for purposes not stated in this policy without first obtaining your additional consent.

  • Account Management: Creating and maintaining your account, processing registration, and verifying your identity.
  • Payment Processing: Processing deposits and withdrawals securely through licensed payment gateways.
  • Platform Security: Detecting and preventing fraud, unauthorized access, and suspicious activity in real time.
  • Customer Support: Providing technical support, resolving disputes, and responding to player enquiries.
  • Legal Compliance: Meeting anti-money laundering (AML) reporting requirements and other compliance obligations.
  • Personalise Your Experience: Personalizing game recommendations and promotions based on your preferences and gameplay habits.
  • Marketing Communications: Sending promotional information and exclusive offers — only if you have consented to receive them.
  • Responsible Gaming: Monitoring gameplay patterns to identify players who may need support or early intervention.

If you no longer wish to receive marketing communications from us, you may unsubscribe at any time via the unsubscribe link included in every marketing email, or by contacting our support team.

4 Data Sharing with Third Parties

U2 casino does not sell, rent, or trade players' personal data to any third party for their own marketing purposes. However, there are certain situations where we need to share data with trusted parties to enable our platform to function properly:

  • Payment Service Providers: Licensed and PCI-DSS certified payment gateways that process your financial transactions. They receive only the information necessary to complete the payment.
  • Game Software Providers: Companies that supply casino game and fish shooting game software to us may receive game statistical data that cannot personally identify you.
  • Identity Verification Services: Third-party KYC providers who assist us in verifying player identities in accordance with anti-fraud regulations.
  • Legal Authorities: In cases required by law, we will disclose information to the relevant authorities such as the police, courts, or regulatory bodies.
  • Analytics Providers: Analytics tools that help us understand how the platform is used — all data is transmitted in anonymised or aggregated form.

Confidentiality Agreement: All third parties who receive data from us are bound by strict confidentiality agreements and are required to comply with our data protection policy. They are not permitted to use that data for any purpose other than what is specified in the respective agreement.

5 Data Security

We invest seriously in security infrastructure to ensure your personal data is always protected. Our security measures encompass multiple layers of defence:

  • 256-bit SSL encryption for all communications between your device and our servers — the same technology used by Malaysia's leading banking institutions.
  • Fully encrypted database with strict access controls based on the principle of least privilege.
  • Intrusion detection systems (IDS) and 24/7 monitoring by our cybersecurity team.
  • Two-factor authentication (2FA) is available for all player accounts — we strongly recommend enabling it.
  • Regular security audits conducted by certified independent cybersecurity firms.
  • Passwords are stored using a one-way hashing algorithm that cannot be decrypted — even by our own staff.
  • Separation of production and development environments to prevent data leaks during the development process.

Report Suspicious Activity: If you suspect your account has been accessed without authorization, or if you receive suspicious emails or messages claiming to be from u2 casino, please contact our support team via live chat immediately. We will investigate and take action within 24 hours.

While we take all reasonable steps to protect your data, no system can be guaranteed 100% secure. We encourage players to also take precautions such as not sharing passwords, using public Wi-Fi networks with care, and keeping devices regularly updated.

6 Cookies & Tracking Technologies

The u2 casino platform uses cookies and similar tracking technologies to enhance the user experience and ensure the platform functions correctly. Below are the types of cookies we use:

  • Essential Cookies: Required for core platform operations such as login, session security, and transaction security. These cookies cannot be disabled without affecting platform functionality.
  • Performance Cookies: Collecting information about how you use the platform — pages visited, time spent, and errors encountered. This data is used solely to improve the platform.
  • Functional Cookies: Saving your preferences such as language, time zone, and display settings to deliver a more personalized experience.
  • Analytics Cookies: Helping us understand aggregate usage patterns to make better product development decisions.

You can manage cookie settings through your web browser preferences. However, disabling certain cookies may affect platform functionality. For non-essential cookies, you will be prompted to give consent via a cookie notice when you first browse our platform.

7 Your Rights as a User

Under Malaysia's Personal Data Protection Act 2010 (PDPA), you have several important rights regarding the personal data we hold about you. We are committed to making it easy for you to exercise these rights without any barriers:

1
Right of Access

You have the right to request a copy of all personal data we hold about you. This request will be processed within 21 business days.

2
Right to Rectification

If any of your personal data is inaccurate or out of date, you have the right to request that we correct it promptly.

3
Right to Erasure

You may request the deletion of your personal data, subject to our legal obligations to retain certain records.

4
Right to Object

You have the right to object to the processing of your data for direct marketing purposes at any time, without providing a reason.

5
Right to Restriction

In certain circumstances, you may request that we restrict the processing of your data while a dispute or investigation is ongoing.

6
Right to Data Portability

You have the right to receive your personal data in a machine-readable format for transfer to another platform if desired.

How to Exercise Your Rights: To exercise any of the above rights, contact our support team via in-app live chat or email us at [email protected]. Include your account number and the type of request. We will acknowledge receipt within 3 business days and resolve it within the legally required timeframe.

8 Data Storage & Deletion

We only retain your personal data for as long as necessary to fulfil the purpose for which it was collected, or as required by law. Below are our data retention guidelines:

  • Active Account Data: Retained for the duration your account remains active and for 5 years after account closure for AML compliance purposes.
  • Financial Transaction Records: Retained for 7 years in accordance with applicable Malaysian financial legislation.
  • Security Logs: Retained for 12 months for fraud detection and security incident investigation purposes.
  • Customer Support Records: Retained for 3 years to allow historical reference in the event of future disputes.
  • Marketing Data: Deleted within 30 days after you unsubscribe from our marketing communications.

Once the retention period expires, your data will be securely deleted using methods that ensure it cannot be recovered. If you request account deletion before the mandatory retention period ends, data tied to legal obligations will be retained, but access to your account will be fully disabled.

9 Third-Party Links

The u2 casino platform may contain links to third-party websites or services in certain contexts. This Privacy Policy applies solely to the u2 casino platform and does not cover the privacy practices of those third parties.

We are not responsible for the content, privacy policies, or practices of any third-party websites. We encourage you to read the privacy policy of every website you visit. The presence of links to third-party websites on our platform does not constitute an endorsement or validation of those sites.

10 Privacy Policy Amendments

U2 casino reserves the right to update this Privacy Policy from time to time to reflect changes in our practices, legal requirements, or new services we offer. The latest version is always available on this page with a clear update date.

  • Material changes will be communicated via registered email at least 7 days before they take effect.
  • Minor changes such as grammar corrections or clarifications that do not alter the substance of the policy may be made without prior notice.
  • Continued use of the platform after changes take effect will be considered acceptance of the amended terms.

Contact Our Privacy Officer: If you have any questions, concerns, or complaints regarding this Privacy Policy or how we handle your personal data, please contact us via 24/7 live chat in the app or email us at [email protected]. We are committed to addressing every concern seriously and within a reasonable timeframe.

Six Core Pillars Privacy Protection U2 Casino

These are the core principles that set u2 casino apart in protecting the privacy of Malaysia players compared to other platforms.

Bank-Level Encryption

Every bit of data travelling between your device and our servers is protected with 256-bit SSL encryption — the same standard used by Malaysia's leading banking and financial institutions. Your data never travels unencrypted.

No Data Sales

This is our absolute promise: your personal data will never be sold, rented, or traded to any third party for marketing purposes. Your data is not our product. You play on our platform — you are not the product.

Restricted Staff Access

Only staff who genuinely need access to your data to carry out their duties are permitted to do so. Our systems enforce strict role-based access controls, and every access is logged and regularly audited.

Full Control in Your Hands

Through your account settings, you can update personal information, manage communication preferences, request a copy of your data, or close your account at any time. We ensure this process is straightforward and does not require lengthy waits or complicated procedures.

Malaysia PDPA Compliance

U2 casino operates in full compliance with Malaysia's Personal Data Protection Act 2010 (PDPA). This means every instance of data processing has a valid legal basis, and your rights as a data subject are protected by the laws of this country.

Data Deletion Guaranteed

Once the mandatory retention period ends, your data is deleted using methods that ensure it cannot be recovered. We do not keep your data longer than necessary — no hidden archives or indefinite backups.

Question Common About Privacy

Not at all. u2 casino has never sold, rented, or traded players' personal data to any third party for marketing purposes. Your data is only shared with parties required for platform operations, such as payment providers and KYC partners, and only subject to strict confidentiality agreements.

You may request a copy of your personal data by contacting our support team via 24/7 in-app live chat or by emailing [email protected]. Include your registered account number and specify the type of data you wish to access. Requests will be processed within 21 business days in accordance with Malaysia's PDPA requirements.

After account closure, basic account data is retained for 5 years and financial transaction records are retained for 7 years in accordance with Malaysia's financial regulatory requirements. This is a legal obligation that cannot be waived. After these periods, all data is permanently deleted using methods that do not allow recovery.

Yes, you may request the deletion of your personal data. However, such requests are subject to our legal retention obligations. Data related to financial records and AML compliance must be retained for the period prescribed by Malaysian law. Data not subject to those obligations will be deleted within 30 days of the request being received.

Yes. The u2 casino mobile app uses the same 256-bit SSL encryption as the web version. In addition, our app supports two-factor authentication (2FA), biometric locking, and instant login notifications so you are always aware of every access to your account. We recommend downloading the app from official sources only.

In any merger, acquisition, or asset sale, player personal data will be treated as a transferred asset. However, we will notify all players in advance via email and in-app notification, and provide the option to delete your account before the transfer takes place if you do not agree to the new terms.

Play with Confident — Your Data Always Protected

Now you know how u2 casino protects your privacy. Register an account today and enjoy a wide range of exciting games — slots, fish shooting, bingo, live betting, and more — with the peace of mind that your personal data is in responsible hands.

256-bit SSL Encrypted Data PDPA Compliance 24/7 Support
Privacy Protection Summary
  • 256-bit SSL encryption for all data in transit
  • No selling of data to third parties — fully guaranteed
  • Full compliance with Malaysia's Personal Data Protection Act (PDPA) 2010
  • Strict role-based access controls for staff
  • Full user rights — access, correct, and delete your data at any time
  • Permanent data deletion after the mandatory retention period expires
Bahasa Melayu