PPPLAYPESA
← Back to Home

Privacy Policy

Last updated: January 15, 2025

1. Introduction

PlayPesa Limited ("PlayPesa", "we", "us", "our") is committed to protecting your privacy and personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our website, mobile applications, and services (collectively, the "Platform").

This policy is in compliance with the Kenya Data Protection Act, 2019 and the General Data Protection Regulation (GDPR) where applicable. By using our Platform, you consent to the collection and use of your information as described in this policy.

2. Information We Collect

2.1 Personal Information

When you create an account or use our Services, we may collect:

  • Full name and date of birth
  • Phone number (primary identifier for your account)
  • Username chosen during registration
  • National ID or passport number (for KYC verification)
  • M-Pesa or other mobile money account details
  • Email address (if provided)

2.2 Transaction Data

  • Deposit and withdrawal history
  • Betting history including stakes, outcomes, and payouts
  • Payment method details and transaction references
  • Account balance and financial activity

2.3 Technical Data

  • IP address and approximate location
  • Device type, operating system, and browser information
  • Session data, login times, and usage patterns
  • Cookies and similar tracking technologies

3. How We Use Your Information

We use the collected information for the following purposes:

  • Account Management: To create, maintain, and secure your account.
  • Service Delivery: To process bets, deposits, withdrawals, and provide customer support.
  • Legal Compliance: To comply with KYC/AML regulations, BCLB requirements, and Kenyan law.
  • Fraud Prevention: To detect, prevent, and investigate fraudulent or unauthorized activity.
  • Responsible Gaming: To monitor gaming patterns and implement responsible gaming measures.
  • Communication: To send transactional notifications, service updates, and promotional materials (with your consent).
  • Platform Improvement: To analyze usage data and improve our services, features, and user experience.

4. Data Sharing and Disclosure

We may share your personal data with:

  • Payment Processors: Safaricom (M-Pesa), Paystack, and other payment service providers to process financial transactions.
  • Regulatory Authorities: The Betting Control and Licensing Board (BCLB) and other government bodies as required by law.
  • Law Enforcement: When required by a valid court order, subpoena, or legal process.
  • Service Providers: Third-party vendors who assist in operating our Platform (hosting, analytics, customer support), bound by data protection agreements.

We do not sell your personal data to third parties for marketing purposes.

5. Data Security

We implement industry-standard security measures to protect your personal data:

  • SSL/TLS encryption for all data in transit
  • Encrypted storage of passwords using bcrypt hashing
  • JWT-based authentication with automatic token expiration
  • Rate limiting to prevent brute-force attacks
  • Regular security audits and vulnerability assessments
  • Access controls limiting employee access to personal data on a need-to-know basis

While we strive to protect your data, no method of electronic transmission or storage is 100% secure. We cannot guarantee absolute security.

6. Data Retention

We retain your personal data for as long as your account is active and for a period of 5 years after account closure to comply with regulatory requirements. Transaction records are retained for 7 years as required by Kenyan financial regulations. You may request earlier deletion of non-essential data by contacting our support team.

7. Your Rights

Under the Kenya Data Protection Act, 2019, you have the right to:

  • Access: Request a copy of the personal data we hold about you.
  • Correction: Request correction of inaccurate or incomplete personal data.
  • Deletion: Request deletion of your personal data, subject to legal retention requirements.
  • Restriction: Request restriction of processing in certain circumstances.
  • Portability: Request transfer of your data in a structured, commonly used format.
  • Objection: Object to processing based on legitimate interests or for direct marketing.

To exercise these rights, contact us at privacy@playpesa.co.ke. We will respond within 30 days.

8. Cookies

We use cookies and similar technologies to enhance your experience on our Platform:

  • Essential Cookies: Required for basic Platform functionality (authentication, session management).
  • Analytics Cookies: Help us understand how users interact with our Platform.
  • Preference Cookies: Remember your settings and preferences.

You can manage cookie preferences through your browser settings. Disabling essential cookies may affect Platform functionality.

9. Children's Privacy

Our Platform is not intended for persons under 18 years of age. We do not knowingly collect personal data from minors. If we discover that we have collected data from a person under 18, we will delete it immediately and suspend the associated account.

10. Changes to This Policy

We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated "Last updated" date. Significant changes will be communicated via email or in-platform notification. Continued use of our Platform after changes constitutes acceptance of the updated policy.

11. Contact Us

For privacy-related inquiries:

  • Data Protection Officer: privacy@playpesa.co.ke
  • General Support: support@playpesa.co.ke
  • Phone: +254 700 000 000
  • Address: PlayPesa Limited, Nairobi, Kenya

You may also lodge a complaint with the Office of the Data Protection Commissioner (ODPC) of Kenya at www.odpc.go.ke.