BetJohn.
Your data

Privacy Policy

This page says what we collect, why, who else touches it and what you can make us do about it. No legalese where a plain sentence works.

Last updated: 9 September 2026 · BetJohn Casino, licensed by the Curacao Gaming Control Board

You can read every word of this before you hand us a single detail. That is the point of putting it up front.

01

Who we are and what this covers

BetJohn Casino has run under a Curacao Gaming Control Board licence since 2021. When this page says we, it means the licensed operator behind betjohn.org and the staff who run the cashier, the support desk and the games lobby.

This policy covers everything that happens on betjohn.org: browsing the lobby, opening an account, depositing, withdrawing, claiming a bonus, talking to support. It does not cover other websites you reach from ours — once you leave, their policies apply, not this one.

Short version: we collect what running a licensed casino requires, we keep it only as long as the licence and Australian record-keeping expectations demand, and we do not sell it.
02

What we collect when you open an account

An account cannot exist without some of this. The rest is optional and marked as such at the point we ask.

  • Identity: full name, date of birth, and the country you live in. Age is not optional — we are not allowed to serve anyone under 18.
  • Contact: email address, and a mobile number if you turn on login alerts.
  • Account settings: your chosen currency (AUD, USD, GBP, CAD, BTC or USDT), interface language, and any deposit or session limits you set.
  • Payment details: the wallet, card token or crypto address you fund from. We store a reference to the instrument, not the full card number.
  • Verification documents: photo ID and a proof of address when a withdrawal or a compliance check requires them.
  • What you write to us: live chat transcripts, emails and phone notes.
03

What we collect automatically

Some of this is generated the moment your browser asks our server for a page. We do not need your permission to receive it; we do need a reason to keep it.

WhatWhy we keep it
IP addressBlocking access from jurisdictions we are not licensed in, and spotting one person running several accounts.
Device and browserRendering the site correctly and recognising a login from an unfamiliar device.
Session activityReconstructing a disputed round, a stuck deposit or a bonus that did not credit.
Game and bet historyLicence requirement. It is also the only way we can settle a complaint in your favour.
Cookie identifiersKeeping you logged in and remembering your settings. Detailed in our Cookies Policy.
04

Why we are allowed to hold it

Four reasons cover everything on this page. If a piece of data does not fit one of them, we should not have it.

  • To run your account. We cannot pay out a withdrawal to a person we cannot identify.
  • Because our licence requires it. Curacao licensing, anti-money-laundering rules and tax record-keeping all set minimum retention.
  • Because we have a real interest in it. Fraud checks, bonus abuse checks, keeping the site up.
  • Because you said yes. Marketing email is the main one, and consent can be withdrawn at any time without affecting your account.
05

Verification and anti-money-laundering checks

Before a first withdrawal — and sometimes sooner, if a deposit pattern trips a rule — we ask you to prove you are who you say you are. This is not us being difficult; it is the condition on which we are allowed to hold money for you.

  1. We ask for photo ID and a proof of address dated within the last three months.
  2. A trained assessor, not an algorithm alone, checks that the documents match the account.
  3. Where the law requires it, we screen the name against sanctions and politically-exposed-person lists.
  4. Documents are stored encrypted, access-logged, and destroyed on the retention schedule below.
If we ask twice, it is usually because the first upload was cropped or expired, not because we lost it. Live chat can tell you exactly which field failed.
06

Who we share it with

We do not sell personal data and we do not rent mailing lists. Data leaves us in four directions only.

  • Payment processors — the wallet, card or crypto rail you chose needs enough detail to move the money.
  • Game studios — the 48 providers behind our lobby receive a session token and your play, not your name or address.
  • Verification and fraud partners — the specialists who check documents and screen for money laundering.
  • Regulators, auditors and law enforcement — when a properly issued order or our licence conditions require it.

Every supplier is bound by contract to use the data only for the job we hired them for, and to delete it when that job ends.

07

Where it is stored and for how long

Data sits on servers inside the European Economic Area and in the licensing jurisdiction. Where a supplier operates elsewhere, the transfer runs on standard contractual clauses.

CategoryKept for
Account and identity recordsThe life of the account plus five years, as licensing requires.
Transactions and bet historyFive years from the transaction date.
Verification documentsFive years from account closure, then destroyed.
Support conversationsTwo years, or longer if a complaint is open.
Marketing preferencesUntil you withdraw consent, plus a suppression record so we do not email you again by accident.
Self-exclusion recordsKept permanently. That is the whole point of self-exclusion.
08

How we keep it safe

  • Traffic between your browser and our servers is encrypted in transit; stored documents and payment references are encrypted at rest.
  • Staff see only what their role needs. Access to verification documents is restricted and every view is logged and audited.
  • Payment card numbers are tokenised by the processor. We never hold a full card number, and we will never ask for one in chat or by email.
  • If a breach ever affects your data in a way that creates real risk, we will tell you and the regulator without sitting on it.
We will never ask for your password, a full card number or a one-time code. Anyone who does is not us. Forward the message to support and delete it.
09

Your rights over your data

Ask through live chat or by email from the address on your account, and we will answer within 30 days.

  • See it — a copy of what we hold about you.
  • Fix it — correct anything wrong. Name and date of birth changes need a document.
  • Delete it — we will erase everything we are not legally required to keep. Transaction records and self-exclusion entries stay.
  • Take it with you — a machine-readable export of the data you gave us.
  • Object — tell us to stop processing for a given purpose, and we will unless a legal duty overrides it.
  • Complain — to us first, then to the supervisory authority in your jurisdiction if our answer is not good enough.
10

Marketing and how to stop it

Promotional email goes out only to players who opted in. Every message carries a working unsubscribe link, and unsubscribing takes effect on the next send, not eventually.

Turning off marketing does not turn off the emails your account needs: withdrawal confirmations, security alerts and changes to these terms will still arrive. Those are not marketing.

If you have self-excluded, marketing stops permanently and we do not need you to ask twice.

11

Changes and how to reach us

When this policy changes materially, we date-stamp it at the top of the page and tell account holders by email before the change takes effect. Minor wording fixes just get the new date.

Privacy questions go through the same doors as everything else: 24/7 live chat, the international phone line, or email through the help centre. Our contact page lists all three and what each is best for.

Questions about your data?

Our live chat runs 24/7 and can pass a privacy request straight to the team that handles them. You can also write in and we will answer inside 30 days.