pisoph is committed to protecting the personal data of every Filipino player on our platform. This Privacy Policy explains exactly what we collect, why we collect it, how we protect it, and what rights you have over your information.
DPA 2012 Compliant. This policy is written in accordance with the Philippine Data Privacy Act (RA 10173) and its Implementing Rules and Regulations.
1.1 pisoph ("pisoph", "we", "us", "our") is committed to safeguarding the privacy and personal data of every person who interacts with the pisoph platform at pisoph.club. This Privacy Policy sets out in clear terms how pisoph collects, uses, stores, shares, and protects personal data, and what rights you hold as a data subject under Philippine law.
1.2 This Privacy Policy applies to:
1.3 This Privacy Policy should be read together with the pisoph Terms & Conditions and the pisoph Responsible Gaming Policy, both of which are incorporated herein by reference.
1.4 pisoph operates as a PAGCOR-licensed online gaming platform. As such, certain data collection, retention, and disclosure obligations are imposed upon pisoph by Philippine gaming regulations, the Anti-Money Laundering Act of 2001 (RA 9160, as amended), and PAGCOR licensing requirements. These regulatory obligations take precedence over any general data minimisation preferences a User may have.
2.1 For the purposes of the Philippine Data Privacy Act of 2012 (Republic Act No. 10173) and its Implementing Rules and Regulations, pisoph acts as the Personal Information Controller (PIC) in respect of all personal data collected through the pisoph.club platform.
2.2 pisoph has designated a Data Protection Officer (DPO) who is responsible for overseeing pisoph's data protection compliance programme and who acts as the point of contact for data privacy concerns. To contact pisoph's DPO, please use the email address provided in Section 16 of this Policy and address your correspondence to the attention of the Data Protection Officer.
2.3 pisoph's contact details for data privacy matters:
pisoph — Data Protection Officer
Platform: pisoph.club
Email: support at pisoph.club (Subject: Data Privacy / DPO)
Live Chat: Available 24/7 via your pisoph account dashboard
3.1 pisoph collects the following categories of personal data, the extent of which varies depending on your level of account activity and the Services you access:
| Category | Specific Data Points |
|---|---|
| Identity Data | Full legal name, date of birth, nationality, government-issued ID number (passport, SSS/UMID, driver's license), photograph from ID document, selfie for liveness verification. |
| Contact Data | Philippine mobile number (primary account identifier), email address, residential address (Province/City/Municipality, Barangay, street). |
| Financial Data | GCash mobile wallet number, Maya wallet details, bank account name and number (BPI, BDO, UnionBank, Metrobank), deposit and withdrawal transaction records, account balance history. |
| KYC Documentation | Copies of government-issued identity documents, proof of address documents (utility bills, bank statements), source-of-funds declarations where required by AML thresholds. |
| Gaming Activity Data | Bet history, game session records, round-by-round results, bonus usage, loyalty tier status, responsible gaming limit settings. |
| Technical & Device Data | IP address, device type, operating system, browser type and version, approximate geolocation (region-level), session timestamps, login history. |
| Communications Data | Live chat transcripts, email correspondence with pisoph support, SMS/OTP records, feedback and survey responses. |
| Preferences & Marketing | Game type preferences inferred from session history, promotional opt-in/opt-out status, communication channel preferences. |
3.2 pisoph does not collect sensitive personal information (as defined under the Philippine DPA) beyond what is strictly necessary for identity verification and compliance with PAGCOR's KYC requirements. Where biometric data (such as a facial liveness check image) is collected during KYC, it is processed solely for identity verification and is not retained beyond the verification process unless required by applicable law.
4.1 pisoph collects your personal data through the following means:
5.1 pisoph processes your personal data on one or more of the following legal bases as set out under the Philippine Data Privacy Act of 2012:
6.1 pisoph uses the personal data we collect for the following purposes:
pisoph does not sell your personal data. We do not sell, rent, or trade your personal information to third-party advertisers, data brokers, or any commercial entity for their own marketing purposes. Full stop.
7.1 pisoph may share your personal data with the following categories of recipients, strictly for the purposes described in this Policy:
7.2 All third-party subprocessors engaged by pisoph are subject to data processing agreements that require them to maintain appropriate technical and organisational security measures and to process personal data only for the purposes authorised by pisoph.
8.1 Some of pisoph's technology infrastructure and service providers operate servers or facilities outside the Philippines. Where personal data is transferred outside the Philippines, pisoph takes steps to ensure that appropriate safeguards are in place consistent with the requirements of the Philippine Data Privacy Act and NPC issuances on cross-border data transfers.
8.2 These safeguards may include:
8.3 By using the pisoph platform, you acknowledge that your personal data may be transferred to and processed in countries outside the Philippines where pisoph or its subprocessors maintain infrastructure. pisoph will only permit such transfers where the safeguards described above are in place.
9.1 pisoph retains personal data only for as long as is necessary to fulfil the purposes for which it was collected, or as required by applicable Philippine law. The following retention periods apply as a general guide:
| Data Category | Retention Period |
|---|---|
| Account and KYC records | Duration of the account plus 5 years from account closure, as required by PAGCOR regulations and Philippine AML law. |
| Financial transaction records | 5 years from the date of the transaction, consistent with AMLC record-keeping requirements under RA 9160. |
| Gaming activity logs | 3 years from the date of the session, retained for game integrity and dispute resolution purposes. |
| Communications and support records | 2 years from the date of the interaction, unless the subject matter relates to an ongoing dispute or regulatory inquiry. |
| Self-exclusion records | Duration of the exclusion period plus 5 years, to prevent circumvention of exclusion orders. |
| Technical and device logs | Up to 12 months from collection, unless retained longer for fraud investigation purposes. |
9.2 On expiry of the applicable retention period, pisoph will securely delete or anonymise the relevant personal data in accordance with NPC-approved disposal procedures.
10.1 pisoph implements a layered set of technical and organisational security measures designed to protect your personal data against unauthorised access, disclosure, alteration, and destruction. These include:
Your responsibility: pisoph's security measures protect data within the platform. You are responsible for maintaining the confidentiality of your pisoph account credentials and for the security of the device you use to access pisoph. Never share your password or OTP with anyone — pisoph staff will never ask for these.
11.1 pisoph uses cookies and similar tracking technologies on pisoph.club. A cookie is a small text file stored on your device by your browser. pisoph uses the following categories of cookies:
11.2 pisoph does not use third-party advertising or behavioural retargeting cookies. Your pisoph browsing activity is not shared with external advertising networks.
11.3 You may manage cookie preferences through your browser settings. Note that disabling strictly necessary cookies will impair or prevent your ability to use the pisoph platform. Disabling analytics cookies will not affect your gameplay experience.
12.1 As a data subject under the Philippine Data Privacy Act of 2012 (RA 10173), you hold the following rights in respect of your personal data processed by pisoph. You may exercise any of these rights by contacting pisoph's Data Protection Officer using the details in Section 16.
You have the right to know what personal data pisoph holds about you, the purposes for which it is processed, and how long it is retained.
You may request a copy of the personal data pisoph holds about your account. pisoph will respond within 15 business days of a verified request.
You may request correction of inaccurate or incomplete personal data. Some corrections require re-verification of KYC documents.
You may request deletion of personal data that is no longer necessary, subject to pisoph's overriding legal obligations under AML and PAGCOR retention requirements.
You may object to processing based on legitimate interests or for direct marketing purposes. Objections to marketing are honoured immediately upon receipt.
You may request a structured, machine-readable copy of personal data you have provided to pisoph, where technically feasible.
You are entitled to claim compensation for damages sustained as a result of inaccurate, incomplete, or unauthorised processing of your personal data by pisoph.
If you are unsatisfied with pisoph's response to a data privacy request, you may file a complaint with the National Privacy Commission (NPC) of the Philippines.
12.2 pisoph will not charge a fee for responding to data subject requests in the ordinary course. Where requests are manifestly unfounded or excessive, pisoph reserves the right to charge a reasonable administrative fee or refuse the request, with written explanation, as permitted under the DPA's IRR.
13.1 The pisoph platform is strictly prohibited for persons under 21 years of age, consistent with PAGCOR's minimum age requirement for Philippine-licensed online gaming. pisoph does not knowingly collect personal data from individuals under 21.
13.2 If pisoph becomes aware that personal data has been collected from a person under the age of 21, pisoph will immediately close the relevant account, delete the associated personal data (subject to any mandatory retention obligations for fraud investigation purposes), and report the incident to PAGCOR as required by our licensing terms.
Under 21? Do not register. pisoph's age verification system is specifically designed to detect and reject registration attempts by persons under 21. Any attempt to circumvent age verification constitutes a breach of the pisoph Terms & Conditions and may be reported to PAGCOR.
14.1 The pisoph platform integrates with third-party services including payment gateways (GCash, Maya), game content providers, and KYC verification tools. Each of these third parties operates under its own privacy policy and terms of service, which are separate from this Policy.
14.2 When you transact via GCash, Maya, or a Philippine bank, your interactions with those services are governed by their respective privacy policies. pisoph receives only the minimum data necessary to process your transaction and does not have visibility into the broader data practices of those payment providers.
14.3 pisoph takes reasonable steps to ensure that third-party subprocessors maintain data protection standards consistent with Philippine law. However, pisoph is not responsible for the privacy practices of independent third parties acting outside their role as pisoph subprocessors.
15.1 pisoph may update this Privacy Policy from time to time to reflect changes in our data processing practices, changes in Philippine law or NPC guidance, or improvements to our platform. The "Last Revised" date at the top of this page indicates when the Policy was most recently updated.
15.2 Where changes to this Policy are material — meaning they significantly affect how we use your personal data or the rights available to you — pisoph will provide at least seven (7) calendar days' advance notice via email to your registered address and/or a prominent notice on the pisoph platform upon your next login.
15.3 Your continued use of the pisoph platform following the effective date of any updated Privacy Policy constitutes your acknowledgement of the updated Policy. If you do not accept the updated Policy, please discontinue using the platform and contact pisoph support to request account closure and data handling instructions.
16.1 For any data privacy query, subject access request, correction request, erasure request, or complaint regarding pisoph's handling of your personal data, please contact pisoph's Data Protection Officer using the details below:
pisoph Data Protection Officer
Email: support at pisoph.club (Subject line: DPO / Data Privacy Request)
Live Chat: Available 24/7 via your pisoph account dashboard
Response time: Within 15 business days of a verified, complete request
16.2 If you are not satisfied with pisoph's response to a data privacy concern after following our internal process, you have the right to escalate your complaint to the National Privacy Commission of the Philippines (NPC). The NPC accepts complaints from Philippine data subjects and provides a formal adjudication mechanism under RA 10173.
16.3 For concerns related to pisoph's PAGCOR licensing obligations, responsible gaming practices, or AML compliance, you may also contact PAGCOR through its official public-facing channels. pisoph cooperates fully with PAGCOR's oversight functions and will not obstruct any legitimate regulatory inquiry.
These cards summarise pisoph's key data protection commitments. The full legally binding text is in the Policy above.
pisoph's privacy practices are built around Republic Act No. 10173 — the Philippine Data Privacy Act of 2012 — and the NPC's Implementing Rules. A dedicated Data Protection Officer oversees compliance for all pisoph players.
pisoph does not sell, rent, or trade your personal information to any third-party advertiser, data broker, or marketing company. Your data exists to operate your pisoph account — not to generate revenue for anyone else.
Every data transmission between your device and pisoph is protected by 256-bit TLS/SSL encryption. Your login credentials, payment details, and personal information travel encrypted at all times. Your password is never stored in plain text.
Filipino players hold real, enforceable rights under the DPA — including the right to access, correct, erase, and port your data. pisoph's DPO responds to verified requests within 15 business days. Unresolved concerns can be escalated to the NPC.
pisoph is legally required to share certain data with PAGCOR, the AMLC, and other Philippine authorities under our gaming license and AML obligations. These disclosures are legal requirements — not commercial arrangements — and protect the integrity of Philippine gaming.
pisoph holds your data only as long as necessary. Account and KYC records are retained for 5 years post-closure per AML law. Game logs are kept for 3 years for dispute resolution. Technical logs are cleared within 12 months.
Your data is protected. Your rights are real. And 1,200+ games are waiting — slots, live casino, bingo, and more — all in Philippine Peso with GCash. PAGCOR regulated, 24/7 Filipino support.
21+ Gambling is entertainment. Please play responsibly. PAGCOR regulated.