Privacy Policy
Last updated: May 2025 · GDPR compliant

We take your privacy seriously. This policy explains what data we collect, why we collect it, and your rights. We do not sell your personal data to third parties.

1. Who We Are

VirtuAce is a social casino entertainment platform operated by its founder. For privacy enquiries, contact us at: [email protected]

For the purposes of GDPR, we act as the data controller for information you provide to us directly.

2. Data We Collect

2.1 Account Data

DataPurposeBasis
Email addressAccount creation, login, communicationsContract
UsernameDisplay name, leaderboardsContract
Password (hashed)Authentication — never stored in plain textContract

2.2 Game & Activity Data

DataPurposeBasis
Game session historyProfile stats, session history displayLegitimate interest
ACE chip balance & transactionsGame economy, purchase deliveryContract
Prestige level & badgesProgression systemContract
Prediction market betsMarket settlement, portfolio displayContract
Stake tier & settingsGame configuration, personalisationContract

2.3 Payment Data

We do not store your payment card details. All payment processing is handled by Stripe, Inc. We receive only a payment confirmation and the amount. Stripe is a PCI-DSS Level 1 certified processor.

See Stripe's Privacy Policy for how they handle your payment data.

2.4 Technical Data

DataPurposeBasis
IP addressSecurity, fraud prevention (via Firebase)Legitimate interest
Browser / device typeCompatibility (via Firebase)Legitimate interest
Usage timestampsLast active, session trackingLegitimate interest

2.5 Deletion Feedback

If you choose to delete your account, we ask for an optional reason. This is stored anonymously to help us improve the platform. Your account data is deleted immediately upon confirmation.

3. How We Use Your Data

We do not use your data for advertising, profiling for third parties, or sell it in any form.

4. Third-Party Services

ServicePurposePrivacy Policy
Firebase (Google)Authentication, database, hostingfirebase.google.com/support/privacy
StripePayment processingstripe.com/privacy
Google FontsTypography (loaded from Google CDN)policies.google.com/privacy

These services may process data outside the EU/EEA. Firebase and Stripe provide appropriate safeguards under GDPR (Standard Contractual Clauses).

5. Data Retention

6. Your Rights (GDPR)

If you are in the EU/EEA or Switzerland, you have the following rights:

To exercise any of these rights, contact us at [email protected]. We will respond within 30 days.

7. Cookies & Local Storage

We use browser localStorage (not traditional cookies) to store:

We do not use third-party tracking or advertising cookies.

8. Children's Privacy

This Service is strictly for users aged 18 and over. We do not knowingly collect data from children. If you believe a child has created an account, contact us immediately and we will delete it.

9. Data Security

We implement appropriate technical and organisational measures to protect your data, including encrypted transmission (HTTPS), hashed passwords via Firebase Authentication, and restricted database access rules. However, no system is 100% secure and we cannot guarantee absolute security.

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes via the platform. Continued use of the Service after changes take effect constitutes acceptance of the revised policy.

11. Contact & Complaints

Privacy questions: [email protected]

If you are unsatisfied with our response, you have the right to lodge a complaint with your national data protection authority. In Switzerland: Federal Data Protection and Information Commissioner (FDPIC).