Lottery casino Privacy Policy
Before a single spin is placed, every UK player hands over a meaningful amount of personal data — identity documents, payment credentials, behavioural records. This page examines, in detail, what information Lottery casino collects, how the operator processes it under UK Gambling Commission regulation and UK GDPR, and what rights players hold over their own data.
Table of contents
Information We Collect
Lottery casino collects the standard data set required of any UK-facing licensed operator: identity details for age and identity verification, payment information for deposits and withdrawals, and gameplay records for regulatory and responsible-gambling purposes. The collection is not optional — UK Gambling Commission rules require operators to verify that every player is 18 or over before gambling commences, and identity checks are mandatory before any withdrawal is processed.
Personal Data Collected During Registration
Registration requires the player’s full name, date of birth, residential address, email address and telephone number. Because the operator enforces a strict 18+ policy, the date of birth is checked against verification databases at sign-up. Before the first withdrawal, Lottery casino requires documentary proof of identity, which according to the operator’s published requirements includes:
- A passport, UK driving licence or national identity card;
- A recent household bill (gas, electricity, water) or council tax statement dated within the last three months;
- A bank or credit card statement from a UK credit institution dated within the last 90 days;
- A photo of the front of the debit card showing only the last four digits;
- Occasionally, a selfie holding the ID document for liveness checks.
Verification takes up to 3 working days from the moment documents are received, and the operator states that most UK verifications are completed within one working day. These documents are retained as part of the compliance record rather than discarded after the check.
Payment and Transaction Information
Every deposit and withdrawal generates a transaction record. Lottery casino supports the familiar British fiat rails — Visa debit card, Mastercard debit card, PayPal, Skrill, Neteller, Paysafecard, Apple Pay, Google Pay and bank/wire transfer — and each method leaves a different data footprint. Card payments record the card type and last four digits (full card numbers are handled by the payment processor, not stored in plain form by the casino). E-wallet transactions record the wallet identifier. The minimum deposit across these methods is £10, and the operator charges no deposit fee. Withdrawal requests are processed within 3 business days, after which an email confirmation is sent; wire transfer withdrawals carry a £50 minimum, while other methods allow withdrawals from £2.50.
Gaming Activity and Behavioural Data
Like all UK-licensed casinos, Lottery casino logs gameplay: stakes, wins, losses, session length, game choices across its slots, table games, live dealer tables from Evolution, Playtech Live and Pragmatic Play Live, scratchcards, jackpots, Slingo and lottery-style draws. This data serves a dual purpose — it feeds the responsible-gambling monitoring that UK regulation demands (identifying patterns of harmful play, triggering affordability checks) and it supports dispute resolution. Titles from providers such as Inspired Gaming, Onlyplay, NetEnt, Microgaming, Pragmatic Play, Big Time Gaming, Novomatic and Games Global are covered by the same logging framework, since bets are settled on the operator’s platform rather than the studio’s.
Cookies and Tracking Technologies
The site deploys cookies for session management, security, load balancing and analytics. Full detail sits in the dedicated section further down this page, but in outline: strictly necessary cookies keep a player logged in and protect the cashier; analytics cookies measure site performance; advertising cookies only operate where consent has been given.
How We Use Your Information
The operator’s stated purposes align with what UK regulation permits and requires: running the account, moving money, preventing fraud and money laundering, meeting licence conditions, and — only with consent — marketing. Nothing in the documented purposes extends to selling personal data, which would be incompatible with both UK GDPR and Gambling Commission licence conditions.
Account Management and Service Provision
Registration data creates and maintains the player account, enables login, and powers customer support interactions. The operator advertises 24/7 customer support, and support staff need access to account records — recent transactions, verification status, gameplay history — to resolve queries. This processing rests on the contractual necessity basis under UK GDPR.
Payment Processing and Fraud Prevention
Transaction data is used to execute deposits and withdrawals, but also for anti-money-laundering screening, source-of-funds checks and duplicate-account detection. UK-licensed operators are obliged to monitor for suspicious patterns; this is one area where the operator processes data under legal obligation rather than consent, meaning a player cannot opt out of it while holding an account. Withdrawal requests pass through this review layer, which is part of why processing runs to 3 business days before funds are released.
Marketing Communications (With Consent)
Promotional emails, SMS messages and on-site offers — including communications about offers such as the welcome bonus — are sent only where the player has opted in. Consent can be withdrawn at any point through account settings or the unsubscribe link in each message, and withdrawal of consent does not affect the core account. The welcome offer itself (100% up to £200 + 100 Free Spins on a minimum £10 deposit, 35x wagering on the bonus and 25x on spins, £5 max bet while wagering) is publicised on-site; marketing consent governs whether it is also pushed to the player’s inbox.
Legal and Regulatory Compliance
The UK Gambling Commission licence obliges the operator to keep records, report suspicious activity, enforce self-exclusion and cooperate with problem-gambling frameworks. Lottery casino documents support for BeGambleAware and GamStop-related controls; GamStop integration means the operator shares and checks player identity data against the national self-exclusion register. For the full picture of player-protection tooling, our responsible gambling page covers the operator’s controls in detail: Lottery casino responsible gambling.
Data Sharing & Third Parties
Sharing is limited to the categories a licensed UK operator genuinely needs: payment processors, verification services, regulators and — only on an opt-in basis — marketing partners. The operator’s documentation does not indicate any sale of personal data to data brokers, and such a practice would put the UK Gambling Commission licence at direct risk.
Payment Processors and Service Providers
Deposits and withdrawals route through third-party processors and the payment networks behind Visa, Mastercard, PayPal, Skrill, Neteller, Paysafecard, Apple Pay and Google Pay. Each processor receives only the data needed to execute the transaction. Identity verification is typically handled by specialist KYC vendors that check the passport, UK driving licence or national identity card and proof-of-address documents against reference databases. Payments on the platform are SSL-encrypted, as the operator states on its own pages.
Regulatory Authorities and Licence Requirements
Player data is disclosed to the UK Gambling Commission where required, to HMRC for tax purposes, and to law enforcement or the National Crime Agency under anti-money-laundering legislation. Self-exclusion data flows to GamStop so that an exclusion holds across every participating UK operator, not just this one.
Marketing Partners (Opt-In Only)
Advertising and affiliate partners receive data only where the player has consented to marketing cookies or communications. Without that consent, no player-level data should reach an advertising network.
Data Transfer Outside United Kingdom
Some service providers — cloud hosting, analytics platforms, game studios — process data outside the United Kingdom. Where that happens, UK GDPR requires adequacy regulations or standard contractual clauses to protect the transfer. Players can request details of the safeguards applied to their data through the operator’s support channel.
Data Security & Retention
The operator documents SSL encryption across payments and account pages, and its RNG systems are independently tested — both baseline expectations for a UK-licensed site. Security, however, is only half the picture; retention rules determine how long personal data sits on the operator’s servers after a player walks away.
Security Measures and Encryption
SSL encryption protects data in transit between the player’s browser and the operator’s servers, covering login credentials, cashier transactions and document uploads. Account-level protections include password controls, and the KYC process itself functions as a security layer by tying the account to a verified identity, which makes account takeover and fraudulent withdrawal materially harder.
Data Retention Periods
UK anti-money-laundering rules require operators to retain identity and transaction records for a minimum of five years after the business relationship ends. This overrides deletion requests for that core compliance record — a point players frequently misunderstand. Marketing data and cookie-derived data are held for shorter periods and can be removed on request.
| Data Category | Typical Retention | Basis |
|---|---|---|
| Identity and KYC documents | Minimum 5 years after account closure | AML legal obligation |
| Transaction records | Minimum 5 years after account closure | AML / tax legal obligation |
| Marketing consent and preferences | Until consent is withdrawn | Consent |
| Analytics and cookie data | Defined per cookie; see browser settings | Consent / legitimate interest |
Your Rights (Access, Deletion, Portability)
UK players hold the full suite of UK GDPR rights: access to a copy of their data, rectification of errors, erasure where no overriding legal obligation applies, restriction of processing, data portability in a machine-readable format, and objection to processing based on legitimate interests. Requests go through the operator’s 24/7 customer support or its designated data protection contact, and the operator must respond within one calendar month. The five-year AML retention noted above is the main lawful ground on which an erasure request can be partially refused.
GDPR Compliance
As a UK-facing operation, Lottery casino falls under UK GDPR and the Data Protection Act 2018. Players who believe their data has been mishandled can escalate first to the operator and then to the Information Commissioner’s Office, which supervises data protection across Great Britain. The contractual terms governing the account, including privacy-related clauses, are analysed on a separate page: Lottery casino terms and conditions.
Cookies & Tracking
The site uses the standard three-tier cookie model found across licensed UK casinos: strictly necessary cookies that cannot be switched off, and analytics plus advertising cookies that require consent under the Privacy and Electronic Communications Regulations.
Types of Cookies Used
Strictly necessary cookies handle session authentication, cashier security and fraud detection — without them, login and payments simply do not function. Functional cookies remember preferences such as language and lobby layout. Analytics cookies aggregate usage data to show which pages and game categories perform. Advertising cookies, where consented to, measure campaign effectiveness and may support retargeting.
Managing Cookie Preferences
A consent banner appears on first visit, allowing acceptance or rejection of non-essential cookies, and preferences can be revisited afterwards. Every major browser also allows cookies to be blocked or deleted at browser level, though blocking strictly necessary cookies will break login and payment functionality. Rejecting analytics and advertising cookies has no effect on the ability to play.
Third-Party Analytics and Advertising
Third-party analytics tools receive pseudonymised usage data rather than directly identifying information. Advertising trackers operate only within the scope of the consent given on the banner; where consent is refused, no advertising cookies are set. Players curious about who stands behind this review site — as distinct from the operator — can find that here: about Lottery casino.
Frequently Asked Questions about Lottery casino
How does Lottery casino protect my personal data?
According to the operator, all payments and account pages are SSL-encrypted, and identity documents are stored as part of the regulated compliance record. KYC verification ties each account to a verified identity, which limits account takeover and fraudulent withdrawals across its UK platform.
What information does Lottery casino collect?
The operator collects registration details (name, date of birth, address, email, phone), KYC documents such as a passport or UK driving licence plus proof of address, payment and transaction records for methods like Visa, Mastercard, PayPal and Skrill, and gameplay and session data required by UK Gambling Commission rules.
Can I request deletion of my Lottery casino account data?
Yes, under UK GDPR players can request erasure through customer support. However, anti-money-laundering law obliges the operator to retain identity and transaction records for at least five years after account closure, so deletion applies to marketing and non-essential data first, with core compliance records following later.
Does Lottery casino share my data with third parties?
Sharing is limited to payment processors, identity-verification vendors, the UK Gambling Commission, HMRC, law enforcement where legally required, and the GamStop self-exclusion register. Marketing partners receive data only where the player has explicitly opted in; the operator’s documentation indicates no sale of personal data.
How long does Lottery casino keep my data?
Identity documents and transaction records are kept for a minimum of five years after the account closes, as UK anti-money-laundering rules demand. Marketing preferences are held until consent is withdrawn, and cookie or analytics data expires according to each cookie’s defined lifespan, which players can clear via browser settings.
Readers satisfied with how the operator handles personal data can visit Lottery casino directly and review the current terms before registering.
