Privacy Policy

Version 1.1

Last Updated: January 21, 2026

 

At Lucky Buddha Casino (“Lucky Buddha,” “we,” “us,” “our”),we value your privacy. This Privacy Policy explains what personal information we collect, how we use and share it, and the choices you have. By using our website, games, and services (the “Platform”),you agree to this Policy. If you do not agree, please do not use the Platform.

 

 

1) NOTICE AT COLLECTION (SUMMARY)

 

We collect the following categories of personal information for the purposes noted below and retain them for the periods in Section 9.

 

Identifiers & Contact: name, username, email, phone, residential address, date of birth (operate the Platform, eligibility/KYC, support, security, communications).

KYC/Verification: government ID data, selfie/liveness (if used),verification metadata (identity/age checks, fraud prevention, prize redemptions).

Transactional: purchase and redemption records, payout details (operate services, accounting, tax reporting).

Tax: information required to issue IRS forms (e.g., W-9/1099) when legally required (tax compliance).

Technical/Fraud: device info, IP address, approximate geolocation, anti-fraud/device signals (security, geolocation eligibility, abuse prevention).

Communications/Consent: support messages, marketing opt-ins/opt-outs, SMS consent logs (support, compliance).

Cookies/Analytics: browsing and interaction data (site performance, personalization).

 

We do not sell personal information and we do not share it for cross-context behavioral advertising. If that ever changes, we will update this Policy and provide a “Do Not Sell or Share” link.

 

 

2) INFORMATION WE COLLECT

 

2.1 Personal Information You Provide

 

Account & Profile: name, email, phone number, date of birth, residential address.

Identity & Eligibility (KYC): government-issued ID details, selfie/liveness data (if used),and related verification metadata.

Purchases/Redemptions: transaction records (card data handled by our payment processors),payout details, SC/GC balances and history.

Tax Data (as required): e.g., IRS Form W-9 when your prizes reach the legal reporting threshold.

Support, AMOE & Promotions: content of messages, AMOE mail-in details as required, surveys, and promo participation.

 

2.2 Information Collected Automatically

 

Device/Usage: device type, OS/browser, IP address, session data, pages/features used.

Approximate Geolocation: derived from IP/device to enforce eligibility and state restrictions.

Anti-Fraud Signals: device identifiers and related telemetry to protect accounts and the Platform.

Cookies & Similar Technologies: see Section 6.

 

2.3 Communications & Consent Data

 

We keep records of your communications with us (e.g., support tickets) and your consent preferences (e.g., email/SMS marketing opt-ins and opt-outs).

 

2.4 Biometric Information (if used)

 

If we use biometric identifiers or information (e.g., facial geometry for liveness/ID matching): we will provide written notice and obtain your written consent, will not sell biometric information, will keep a public retention/destruction policy, and will delete it when the purpose is satisfied or within three (3) years of your last interaction unless law requires longer.

 

 

3) HOW WE USE PERSONAL INFORMATION

 

We use personal information to:

 

Operate the Platform: manage accounts, enable gameplay, administer GC purchases and SC redemptions.

Eligibility & Security: verify age/identity (KYC),enforce geolocation, prevent fraud/abuse, secure accounts.

Legal Compliance: conduct sanctions screening (e.g., OFAC),keep required records, and perform tax reporting (e.g., issuing IRS Form 1099-MISC at applicable thresholds).

Customer Support: respond to inquiries and resolve issues.

Communications: send account/security messages (e.g., two-factor codes, fraud alerts). Marketing emails/SMS are sent only with your consent and you can opt out anytime.

Personalize & Improve: analyze usage to improve performance and user experience.

With Your Consent: for any additional purpose we disclose at collection.

 

 

EEA/UK legal bases (if applicable): performance of a contract (providing the Platform),legal obligation (tax/sanctions),legitimate interests (fraud prevention, service improvement),and consent (e.g., marketing SMS/email, biometrics).

 

 

4) SMS/TEXT MESSAGING (TCPA/CTIA)

 

Non-marketing communications: By providing a phone number, you consent to receive account/security messages (e.g., 2FA codes, fraud alerts). These are not marketing.

Marketing SMS/MMS: Sent only with your prior express written consent specific to us. Consent is not required to use the service. Msg & data rates may apply. Reply STOP to opt-out, HELP for help. We maintain consent/opt-out logs and follow CTIA best practices and A2P 10DLC requirements.

 

 

5) HOW WE SHARE INFORMATION

 

5.1 Service Providers (Processors)

 

We share personal information with vendors under contract who process it for us (and only for us),including:

 

payment processors (PCI-DSS compliant),

KYC/verification providers,

sanctions-screening/compliance providers,

hosting, analytics, email/SMS delivery, and customer-support tools,

fraud prevention and security vendors.

 

5.2 Legal, Safety, and Compliance

 

We may disclose information to comply with law, legal process, or lawful requests; to protect our rights, users, the public, or the Platform; to investigate, prevent, or respond to suspected illegal activity or policy violations.

 

5.3 Corporate Transactions

 

If we undergo a merger, acquisition, or asset transfer, personal information may be transferred to the new entity subject to this Policy (or a successor policy with materially similar protections).

 

We do not sell personal information and we do not share personal information for cross-context behavioral advertising.

 

 

6) COOKIES, ANALYTICS, AND AD CHOICES

 

We and our service providers use cookies, SDKs, and similar technologies to operate the site, remember preferences, measure performance, and understand usage.

 

Your choices:

Browser settings to block/clear cookies (some features may not work without cookies).

Device settings to limit ad tracking.

Industry tools (e.g., NAI/DAA) to opt out of interest-based advertising in browsers.

We honor Global Privacy Control (GPC) signals where required.

 

 

7) YOUR PRIVACY CHOICES & RIGHTS

 

7.1 Marketing Preferences

 

Email: use the unsubscribe link in our emails.

SMS: reply STOP to opt out (HELP for help).

You can also contact us via the methods in Section 12.

 

7.2 State Privacy Rights (e.g. VA, CO, UT, TX)

 

Depending on your state, you may have rights to access/know, correct, delete, obtain a portable copy, and opt out of targeted advertising or certain profiling; and an appeal right if we decline your request.

We will verify your request and respond within the timeframe required by law. You may use an authorized agent as permitted by law.

 

California: We do not sell personal information and do not share it for cross-context behavioral advertising. If that changes, we will provide a “Do Not Sell or Share My Personal Information” link and update this Policy. You may also limit the use/disclosure of sensitive personal information where applicable.

 

 

8) PAYMENT PROCESSING AND SECURITY

 

8.1 Payments

 

We do not process or store payment card numbers; payments are handled by PCI-DSS-compliant processors.

 

8.2 Security Measures

 

We maintain a written information-security program with administrative, technical, and physical safeguards appropriate to the data we handle, including encryption (in transit and, where appropriate, at rest),access controls/least-privilege, logging/monitoring, vulnerability management, vendor due diligence, and secure disposal. No method of transmission or storage is 100% secure.

 

 

9) DATA RETENTION

 

We keep personal information only as long as needed for the purposes in this Policy or as required by law. Typical periods:

 

Account basics (name, contact, account history): while your account is active + up to 2 years after closure for fraud prevention and records.

KYC images/ID & verification meta deleted after verification unless needed for fraud/legal obligations; typical maximum 2 years from last interaction.

Sanctions-screening logs: up to 10 years (legal compliance).

Tax records (e.g., W-9, 1099): at least 3 years from reporting/filing or longer if required.

Transactional/redemption records: typically 5 years for audit/compliance.

 

We may retain longer where required to comply with law, resolve disputes, or ensure security.

 

 

10) CHILDREN’S PRIVACY

 

The Platform is intended for users 18+ (or higher where required). We do not knowingly collect personal information from children under 13. If we learn that we have collected such information, we will delete it and disable the account.

 

 

11) DISPUTE RESOLUTION

 

This Policy is governed by our Terms of Use. Disputes concerning this Policy will first be addressed with Customer Support. If needed, disputes may be resolved through arbitration as described in the Terms of Use.

 

 

12) INTERNATIONAL TRANSFERS

 

We primarily process data in the United States. If we transfer personal information internationally (e.g., to service providers),we use appropriate safeguards (such as Standard Contractual Clauses, and the UK Addendum/IDTA where applicable).

 

 

13) CHANGES TO THIS POLICY

 

We may update this Policy to reflect changes to our practices or legal requirements. We will post updates here with a new “Last Updated” date and, where appropriate, provide additional notice (e.g., in-app or email).

 

 

14) CONTACT US

 

Questions or requests?

Email: support@luckybuddhacasino.com

 

 

This Policy is provided for general information and does not constitute legal or tax advice.