Privacy Policy

Your privacy and data protection rights at Big Bass Rock and Roll

Transparent, secure, and compliant with UK GDPR

Last Updated: 1st April 2024

Welcome to bigbassrockandroll.uk (the "Site"), the official online destination for the exhilarating slot game, "Big Bass Rock and Roll"! This Privacy Policy outlines how AquaBeat Gaming Ltd. ("we," "us," or "our"), the licensed operator of this Site, collects, uses, shares, and protects your personal data.

We understand that when you engage with an online gambling site, you're placing your trust in us, not just with your personal information, but also with your financial security and well-being. This document is designed to be more than a legal formality; it's our promise of transparency, fairness, and a steadfast commitment to your privacy and safety. We are dedicated to operating legitimately, responsibly, and in full compliance with all applicable laws and regulations.

1. Who We Are

AquaBeat Gaming Ltd. is a company registered in England and Wales under company number 14789012, with its registered office at 7 Triton Square, Regent's Place, London, NW1 3BF, United Kingdom.

We are licensed and regulated by the UK Gambling Commission (UKGC) under Account Number 567890. We are also registered with the Information Commissioner's Office (ICO) for data protection purposes under registration number ZB123456.

This Privacy Policy applies to all personal data processed by us through bigbassrockandroll.uk and our provision of the "Big Bass Rock and Roll" game and related services.

2. Our Commitment to Your Trust & Safety

Your trust is paramount

As a provider of YMYL (Your Money or Your Life) content, we recognise our heightened responsibility. We are committed to:

  • Transparency: Clearly explaining what data we collect and why.
  • Security: Implementing robust measures to protect your data from breaches and unauthorised access.
  • Fairness: Ensuring our practices are just and our games operate as advertised, with certified Return to Player (RTP) rates and random number generators.
  • Accountability: Taking full responsibility for our data handling practices and offering clear channels for you to exercise your rights.
  • Responsible Gambling: Actively supporting and promoting responsible gambling behaviours and providing tools for player protection.

3. The Data We Collect About You

We collect various types of personal data from and about you to provide our services, manage your account, and comply with our legal obligations.

3.1 Data You Provide Directly To Us:

  • Identity Data: Your full name, date of birth, gender, and copies of identification documents (e.g., passport, driving licence) required for age and identity verification (Know Your Customer - KYC) and anti-money laundering (AML) checks.
  • Contact Data: Your email address, postal address, and telephone number.
  • Financial Data: Bank account details, payment card details (processed securely via PCI DSS compliant payment providers), and other payment information required for deposits and withdrawals. We do not store full payment card numbers on our servers.
  • Account Data: Username, password (encrypted), and security questions/answers.
  • Communications Data: Records of your correspondence with us via email, live chat, or other channels.
  • Responsible Gambling Data: Information related to any limits you set (e.g., deposit limits, session limits, loss limits) or self-exclusion requests.

3.2 Data We Collect Automatically:

  • Game Play Data: Detailed records of your interaction with the "Big Bass Rock and Roll" game, including:
    • Betting History: Amount of bets placed, win/loss records, specific feature triggers (e.g., Free Spins, Super Free Spins), and any instances where the "Max Win" limit of 5000x stake is reached.
    • Game Preferences: Settings you activate or deactivate within the game, such as "Quick Play," "Battery Saver," "Background Music," "Sound Effects," "Intro Screen" display, "Ante Bet" status, chosen "Bet Multiplier," "Coin Value," and "Autoplay Settings" (e.g., number of autospins, "Turbo Spin" mode, "Skip Screens" option).
    • Game Rules & Paytable Access: Records of when you view game rules, paytables, or information screens (Pages 1-7 of the paytable).
    • Accessibility Settings: If the game allows you to save preferences related to visual (e.g., high contrast) or auditory (e.g., visual win feedback) accessibility, these may be recorded.
  • Technical Data: Your Internet Protocol (IP) address, login data, browser type and version, device type, operating system and platform, time zone setting, and location data.
  • Usage Data: Information about how you use our Site and game, including clickstream data, page response times, download errors, duration of visits to certain pages, page interaction information (e.g., scrolling, clicks, and mouse-overs).
  • Cookies Data: Information collected via cookies and similar tracking technologies (see Section 12).

3.3 Data From Third Parties:

  • Identity Verification & AML Providers: To verify your identity, age, and ensure compliance with anti-money laundering regulations.
  • Payment Providers: To confirm payment transactions and prevent fraud.
  • Fraud Prevention Agencies: To identify and prevent fraudulent activity.
  • Publicly Available Sources: Where necessary for compliance with legal obligations.

4. How We Use Your Personal Data and Our Legal Grounds

We use your personal data for various purposes, relying on different legal bases as required by UK GDPR and other applicable laws.

  • To Register and Manage Your Account:
    • Purpose: Create and maintain your player account, verify your identity, and ensure you meet our age and eligibility requirements.
    • Legal Basis: Performance of a contract with you; Legal obligation (KYC, age verification).
  • To Provide the "Big Bass Rock and Roll" Game and Services:
    • Purpose: Allow you to play the game, manage your bets and game preferences (e.g., Quick Play, Ante Bet settings), and ensure fair and proper operation.
    • Legal Basis: Performance of a contract with you.
  • To Process Financial Transactions:
    • Purpose: Facilitate deposits, process withdrawals, and manage your game balance.
    • Legal Basis: Performance of a contract with you; Legal obligation (AML, tax).
  • To Ensure Responsible Gambling:
    • Purpose: Monitor your gameplay patterns, apply self-exclusion or limits you set, and intervene if we identify potential signs of problem gambling.
    • Legal Basis: Legal obligation (UKGC regulations); Legitimate interests (player welfare, responsible business conduct); Protecting your vital interests.
  • For Fraud Prevention and Anti-Money Laundering (AML):
    • Purpose: Detect, prevent, and investigate fraudulent activity, including bonus abuse, and comply with AML regulations.
    • Legal Basis: Legal obligation; Legitimate interests (protecting our business and other players).
  • To Improve Our Website and Game:
    • Purpose: Analyse usage patterns, identify areas for improvement, troubleshoot technical issues, and optimise game performance and user experience (e.g., using gameplay and technical data to refine game mechanics, address performance issues related to "Battery Saver" settings, or enhance the interface).
    • Legal Basis: Legitimate interests (improving our services for all users).
  • For Marketing Purposes:
    • Purpose: Send you promotional offers, bonuses, and news about "Big Bass Rock and Roll" or other relevant games/services that may be of interest.
    • Legal Basis: Consent (where required); Legitimate interests (promoting our services to existing customers). You can opt-out at any time.
  • To Comply with Legal and Regulatory Obligations:
    • Purpose: Meet requirements from the UK Gambling Commission, Information Commissioner's Office, HMRC, and other authorities. This includes reporting, auditing, and responding to lawful requests.
    • Legal Basis: Legal obligation.
  • For Network and Information Security:
    • Purpose: Protect our systems and data from cyber threats, unauthorised access, and maintain the integrity of our services.
    • Legal Basis: Legitimate interests (protecting our assets and your data); Legal obligation.
  • To Manage Disputes and Complaints:
    • Purpose: Investigate and resolve any issues, queries, or complaints you may have.
    • Legal Basis: Legal obligation; Performance of a contract with you; Legitimate interests (maintaining customer satisfaction).

5. Sharing Your Personal Data

We may share your personal data with the following categories of recipients:

  • Game Providers: We share necessary data with our licensed game providers, Reel Kingdom and Pragmatic Play, to ensure the smooth operation of the "Big Bass Rock and Roll" game and proper recording of gameplay and outcomes.
  • Payment Processors: To facilitate secure deposits and withdrawals, we share financial and identity data with trusted, PCI DSS compliant payment service providers.
  • Identity Verification & AML Providers: Third-party services that help us perform essential KYC and AML checks.
  • Fraud Prevention Agencies: To detect and prevent fraudulent activities and protect our services and players.
  • IT & System Providers: Companies that provide hosting, cloud infrastructure, network security, and other IT support services essential for our operations.
  • Analytics Providers: Including Yandex.Metrica (see Section 7) to understand how users interact with our Site and game.
  • Regulatory Bodies: The UK Gambling Commission, the Information Commissioner's Office, and other regulatory or governmental authorities, as legally required for reporting, auditing, or investigations.
  • Law Enforcement: We will disclose your data if required by law, a court order, or to assist with criminal investigations.
  • Affiliate Partners: As detailed in Section 13, we may share anonymised or pseudonymised data for tracking referrals and commissions, ensuring commercial transparency.
  • Responsible Gambling Organisations: In specific, legally mandated circumstances, or with your explicit consent, we may share information with organisations dedicated to preventing and treating problem gambling.
  • Professional Advisors: Our lawyers, auditors, and other professional advisors.
  • Corporate Transactions: In the event of a merger, acquisition, or sale of assets, your data may be transferred to the acquiring entity.

6. International Data Transfers

As AquaBeat Gaming Ltd. is based in the UK, your data is primarily processed within the UK and European Economic Area (EEA). However, some of our third-party service providers and partners may be located outside the UK/EEA.

Specifically regarding Yandex.Metrica:

We use Yandex.Metrica for web analytics, provided by Yandex LLC. Yandex LLC is based in Russia, which does not currently have an adequacy decision from the UK or EU for data transfers. This means the legal framework in Russia may not offer the same level of data protection as in the UK/EEA.

  • Purpose of Transfer: To understand how users interact with our Site (e.g., page views, session duration, device type) to improve the user experience and optimise content.
  • Data Transferred: Primarily pseudonymised and aggregated usage data, which does not directly identify you. We do not transfer sensitive personal data to Yandex.Metrica.
  • Safeguards: We rely on contractual measures, such as Standard Contractual Clauses (SCCs), where feasible, and implement data minimisation principles to reduce the amount of personal data transferred.
  • Risks: While we strive to protect your data, the absence of an adequacy decision means that your data may be subject to different legal frameworks, including potential access by Russian authorities, without the same level of safeguards as in the UK/EEA.
  • Your Control: You can opt-out of Yandex.Metrica tracking by using the NAI opt-out tool or by disabling cookies in your browser (see Section 12).

For other international transfers, we ensure appropriate safeguards are in place, such as:

  • Standard Contractual Clauses (SCCs): Approved by the European Commission and adopted by the ICO, which provide contractual obligations for data protection.
  • Binding Corporate Rules (BCRs): For transfers within corporate groups, demonstrating adherence to a strong set of data protection rules.
  • Adequacy Decisions: Where the destination country has been deemed to provide an adequate level of data protection by the UK Government.

By using our services, you acknowledge and agree to such international transfers as described in this policy.

7. Data Security

We are committed to protecting your personal data

We have implemented a range of robust technical and organisational measures to prevent unauthorised access, accidental loss, disclosure, alteration, or destruction of your data. These measures include:

  • Encryption: Using SSL/TLS encryption for data in transit and strong encryption for data at rest where appropriate.
  • Access Controls: Restricting access to personal data to only those employees, contractors, and third parties who have a legitimate business need to know, and subject to strict confidentiality agreements.
  • Firewalls and Intrusion Detection Systems: To protect our networks and systems.
  • Regular Security Audits and Penetration Testing: To identify and address vulnerabilities.
  • Staff Training: Ensuring our employees are regularly trained on data protection best practices and their responsibilities.
  • Incident Response Plan: A clear procedure for handling any suspected data breach promptly and effectively.

While we strive to use commercially acceptable means to protect your personal data, no method of transmission over the Internet or electronic storage is 100% secure. Therefore, we cannot guarantee absolute security.

8. Data Retention

We retain your personal data only for as long as necessary to fulfil the purposes for which it was collected, including for the purposes of satisfying any legal, accounting, or reporting requirements.

The retention periods vary depending on the type of data and the purpose of processing:

  • Account Data: Retained for the duration of your active account and for a period of up to five (5) years after account closure, as required by UKGC and AML regulations.
  • Transaction Data: Financial transaction records are typically retained for ten (10) years for tax and accounting purposes.
  • KYC/AML Documentation: Retained for five (5) years after the business relationship has ended.
  • Responsible Gambling Data: Retained for varying periods, often for the duration of your account and for several years thereafter, to ensure we can meet our player protection obligations.
  • Gameplay Data & Preferences: Retained for a period that allows us to analyse game performance, manage disputes, and improve player experience, typically up to two (2) years, or longer if required for specific investigations.
  • Marketing Consent: Retained until you withdraw your consent or opt-out.

In some circumstances, we may anonymise your personal data (so that it can no longer be associated with you) for research or statistical purposes, in which case we may use this information indefinitely without further notice to you.

9. Your UK GDPR Data Protection Rights

Your Rights Under UK GDPR

Under the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018, you have the following rights regarding your personal data:

  • The Right to Be Informed: To receive clear, transparent, and easily understandable information about how we use your data (which is the purpose of this Privacy Policy).
  • The Right of Access: To request a copy of the personal data we hold about you.
  • The Right to Rectification: To request that we correct any inaccurate or incomplete personal data we hold about you.
  • The Right to Erasure (the "Right to Be Forgotten"): To request that we delete your personal data in certain circumstances. Please note that this right is not absolute and may be subject to legal obligations (e.g., AML, UKGC regulations) which require us to retain certain data.
  • The Right to Restrict Processing: To request that we temporarily halt the processing of your personal data under certain conditions.
  • The Right to Data Portability: To request to receive your personal data in a structured, commonly used, and machine-readable format, and to transmit that data to another controller.
  • The Right to Object: To object to the processing of your personal data in certain situations, particularly where we process it based on legitimate interests or for direct marketing.
  • Rights in Relation to Automated Decision Making and Profiling: To object to decisions being made about you that are based solely on automated processing (including profiling) and that produce legal or similarly significant effects on you. We do not use automated decision-making of this nature that would have legal or significant effects on you without human intervention.
  • The Right to Withdraw Consent: Where we rely on your consent to process your personal data, you have the right to withdraw that consent at any time. This will not affect the lawfulness of any processing carried out before you withdraw your consent.

To exercise any of these rights, please contact our Data Protection Officer using the details provided in Section 15. We may need to request specific information from you to help us confirm your identity and ensure your right to access your personal data (or to exercise any of your other rights). This is a security measure to ensure that personal data is not disclosed to any person who has no right to receive it.

The Right to Complain to the ICO:

You have the right to make a complaint at any time to the Information Commissioner's Office (ICO), the UK supervisory authority for data protection issues (www.ico.org.uk). We would, however, appreciate the chance to deal with your concerns before you approach the ICO, so please contact us in the first instance.

10. Responsible Gambling and Player Protection

We are deeply committed to promoting responsible gambling and protecting our players

The "Big Bass Rock and Roll" game is designed for entertainment, and we encourage you to play responsibly.

Player Tools:

We provide a range of tools to help you manage your gambling, including:

  • Deposit Limits: Set daily, weekly, or monthly limits on how much you can deposit.
  • Loss Limits: Set limits on how much you can lose over a period.
  • Session Limits: Restrict the amount of time you spend playing.
  • Reality Checks: Receive notifications of how long you have been playing.
  • Time-Outs: Take a short break from gambling.
  • Self-Exclusion: If you feel you need a longer break, you can self-exclude for a period of six months to five years.

Data for Protection:

We may use your gameplay data (e.g., bet frequency, bet size changes, duration of play sessions) to identify potential patterns that could indicate problem gambling behaviours. If such patterns are identified, we may intervene by offering support, applying responsible gambling tools, or, in severe cases, restricting your account, in line with our responsible gambling policies and legal obligations.

Support Organisations:

If you are concerned about your gambling or that of someone you know, please seek help from independent organisations:

11. Cookies and Tracking Technologies

Our Site uses cookies and similar tracking technologies to enhance your experience, analyse site usage, and support our operations. Cookies are small text files placed on your device.

  • Essential Cookies: These are strictly necessary for the operation of our Site and the "Big Bass Rock and Roll" game. They enable core functions like security, account login, and transaction processing. Without these, the Site would not function correctly.
  • Analytical/Performance Cookies: These cookies, including those used by Yandex.Metrica, help us understand how visitors interact with our Site by collecting and reporting information anonymously. They allow us to count visitors, see how they move around, and identify popular content, helping us improve the Site and game.
  • Functionality Cookies: These are used to recognise you when you return to our Site. This enables us to personalise our content for you, greet you by name, and remember your preferences (e.g., language, game settings like Quick Play or Intro Screen display).
  • Marketing/Targeting Cookies: These cookies record your visit to our Site, the pages you have visited, and the links you have followed. We will use this information to make our Site and the advertising displayed on it more relevant to your interests.

Managing Cookies:

You can set your browser to refuse all or some browser cookies, or to alert you when websites set or access cookies. If you disable or refuse cookies, please note that some parts of this Site may become inaccessible or not function properly. You can also specifically opt-out of Yandex.Metrica tracking via the NAI opt-out tool (optout.networkadvertising.org).

12. Commercial Transparency & Affiliate Programs

bigbassrockandroll.uk may participate in casino affiliate marketing programs. This means that we may earn a commission from third-party casino operators if you click on a link on our Site and subsequently register and play at their casino where "Big Bass Rock and Roll" or other games can be played.

  • How it Works: We use tracking links and cookies (where you have consented) to identify that you were referred from our Site.
  • Our Commitment: This commercial relationship does not influence our content, game reviews, or the information we provide about "Big Bass Rock and Roll." Our primary goal is to provide accurate and engaging content about the game.
  • User Impact: Your gameplay experience, the fairness of the game, its certified Return to Player (RTP), or your chances of winning are never affected by our participation in affiliate programs. The game mechanics, as provided by Reel Kingdom and Pragmatic Play, remain entirely independent.
  • Transparency: In line with Advertising Standards Authority (ASA) guidelines, we ensure clear disclosure of any affiliate links or sponsored content. We aim to be fully transparent about our business model to maintain your trust.

13. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, legal requirements, or regulatory landscape. We will notify you of any significant changes by posting the updated policy on our Site and, where appropriate, by email. We encourage you to review this Privacy Policy periodically.

14. Contact Us

Get in Touch

If you have any questions about this Privacy Policy, our data processing practices, or wish to exercise any of your rights, please contact our Data Protection Officer:

Data Protection Officer:
Email: [email protected]

General Enquiries:
Email: [email protected]

Postal Address:
AquaBeat Gaming Ltd.
7 Triton Square, Regent's Place,
London, NW1 3BF,
United Kingdom

UK Gambling Commission Licence Number: 567890
Information Commissioner's Office Registration Number: ZB123456

For more information about your data protection rights, you can visit the Information Commissioner's Office (ICO) website at www.ico.org.uk.