tdaje Privacy
Policy
At tdaje, your privacy is a core commitment, not an afterthought. This Privacy Policy explains exactly what personal data we collect when you use our platform, why we collect it, how we use and store it, who we share it with, and what rights you have over your own information. We are transparent by design.
How We Protect Your Information
tdaje processes player data only for legitimate, clearly stated purposes. The following principles underpin everything we do with your personal information.
1. Data We Collect
1.1 Information You Provide Directly
When you register an account, make a deposit, request a withdrawal, or contact our support team, tdaje collects personal data that you voluntarily provide. This includes, but is not limited to:
- Identity data: Full legal name, date of birth, gender, and nationality
- Contact data: Email address, mobile number, and residential address (including city — Dhaka, Chittagong, Sylhet, Khulna, Rajshahi, or other)
- Account credentials: Username and hashed password (we never store passwords in plain text)
- Verification documents: National ID, passport, driving licence, proof of address, and source-of-funds declarations submitted for KYC purposes
- Payment data: Mobile wallet identifiers for bKash, Nagad, Rocket, and Upay accounts; bank account details where bank transfer is used; partial card numbers for Visa/Mastercard transactions (full card numbers are never retained by tdaje)
- Communication records: Support tickets, live chat transcripts, and email correspondence
1.2 Data We Collect Automatically
When you visit and interact with the tdaje platform, certain technical data is collected automatically by our systems. This data is used primarily for security, fraud prevention, and service optimisation:
- Device data: IP address, device type, operating system, browser type and version, and screen resolution
- Usage data: Pages visited, features used, time spent on each section, game history, betting activity, and session duration
- Location data: Approximate geolocation derived from your IP address (city-level only; we do not access GPS data)
- Cookie data: See Section 3 (Cookies & Tracking) for full details
1.3 Data From Third Parties
In limited circumstances, tdaje may receive personal data about you from trusted third parties, including:
- Identity verification partners who validate documents submitted during KYC
- Payment processors who confirm transaction status and wallet ownership
- Fraud detection and AML screening services
- Game providers (Pragmatic Play, Evolution Gaming, NetEnt, Microgaming, Spribe, Ezugi) who report game session data and transaction records
Data received from third parties is treated with the same degree of care and protection as data you provide directly.
2. How We Use Your Data
2.1 Lawful Bases for Processing
tdaje processes personal data only where a lawful basis exists. The following table summarises the primary purposes for which we use your data and the corresponding legal basis for each:
| Purpose | Data Used | Legal Basis |
|---|---|---|
| Account creation and management | Identity, contact, credentials | Contractual necessity |
| Processing deposits and withdrawals | Payment data, identity data | Contractual necessity |
| Identity and age verification (KYC) | Verification documents | Legal obligation (AML/KYC regulations) |
| Fraud prevention and security monitoring | Device data, usage data, IP address | Legitimate interest |
| Customer support | Contact data, communication records | Contractual necessity |
| Personalised promotions and offers | Betting history, usage data | Consent (opt-in) |
| Platform analytics and improvement | Anonymised usage data | Legitimate interest |
| Responsible gaming monitoring | Betting history, session data | Legal obligation / legitimate interest |
2.2 Marketing Communications
tdaje will only send you promotional emails, SMS messages, or in-platform notifications if you have explicitly opted in to receive them during registration or via your account settings. You may withdraw consent to marketing communications at any time by updating your notification preferences in your account dashboard or by contacting [email protected]. Withdrawal of marketing consent does not affect the lawfulness of any processing carried out prior to withdrawal.
2.3 Automated Decision-Making
tdaje uses automated systems for fraud detection, unusual betting pattern identification, and responsible gaming alerts. Where an automated process results in a significant decision affecting your account — such as a temporary account restriction — you have the right to request human review of that decision by contacting our support team. We will review the matter and respond within 5 business days.
3. Cookies & Tracking
3.1 What Are Cookies
Cookies are small text files stored on your device when you visit a website. tdaje uses cookies and similar tracking technologies (including local storage and session tokens) to keep you logged in, remember your preferences, maintain session security, and understand how players interact with our platform so we can improve it.
3.2 Categories of Cookies We Use
- Essential cookies: Required for the platform to function. These include session authentication tokens and security cookies. They cannot be disabled without breaking core functionality.
- Functional cookies: Remember your preferences such as language selection, preferred currency (BDT or INR), and display settings.
- Analytics cookies: Collect anonymised data about how players navigate the platform. This helps us identify popular features and pages that need improvement. No personally identifiable information is linked to analytics cookies.
- Marketing cookies: Used only if you have consented to promotional communications. These help us measure the effectiveness of campaigns and present relevant offers. You may opt out at any time.
3.3 Managing Cookies
You can control and delete cookies through your browser settings. Most modern browsers allow you to block third-party cookies, clear existing cookies, and receive alerts when new cookies are set. Please note that disabling essential cookies will prevent you from logging into your tdaje account. For detailed instructions, refer to your browser's help documentation.
4. Data Sharing & Third Parties
4.1 Who We Share Data With
tdaje does not sell or rent personal data to any third party. We share data only in the following limited and controlled circumstances:
- Payment service providers: bKash, Nagad, Rocket, Upay, Dutch-Bangla Bank, City Bank, BRAC Bank, Islami Bank, Sonali Bank, Visa, and Mastercard receive only the transaction data necessary to process payments and verify wallet ownership.
- KYC and identity verification partners: Document verification services receive identity documents solely to confirm your age and identity as required by our compliance obligations.
- Game providers: Studios including Pragmatic Play, Evolution Gaming, NetEnt, Microgaming, Spribe, and Ezugi receive session identifiers and wallet balance data sufficient to deliver their games. They do not receive your full personal profile.
- Fraud prevention and AML services: Anonymised or pseudonymised transaction data may be processed by screening services to detect money laundering, fraud, or match-fixing indicators.
- Legal and regulatory authorities: Where required by applicable law, court order, or regulatory instruction, tdaje will disclose personal data to the relevant authority. We will notify you of such disclosure unless legally prohibited from doing so.
4.2 International Data Transfers
Some of tdaje's service partners are located outside Bangladesh. Where personal data is transferred internationally, tdaje ensures that appropriate contractual protections are in place, including data processing agreements that require the recipient to protect your data to a standard at least equivalent to that described in this policy.
5. Data Retention & Storage
5.1 Retention Periods
tdaje retains personal data for the minimum period necessary to fulfil the purpose for which it was collected, comply with legal obligations, and resolve disputes. The following retention periods apply as a general guide:
- Account data: Retained for the duration of your account and for 5 years following closure, in line with AML and KYC obligations.
- Transaction and payment records: Retained for a minimum of 5 years from the date of the transaction.
- KYC documents: Retained for 5 years from the date of submission or account closure, whichever is later.
- Support and communication records: Retained for 3 years from the date of the last interaction.
- Marketing preference records: Retained until you withdraw consent, plus 1 year for audit purposes.
- Analytics data: Anonymised within 12 months of collection and retained indefinitely in aggregate form.
5.2 Secure Deletion
When personal data is no longer required and no legal retention obligation applies, tdaje securely deletes or irreversibly anonymises it using industry-standard methods. Physical media containing personal data is destroyed in accordance with secure disposal procedures. You may request early deletion of your data under the conditions described in Section 6 (Your Privacy Rights).
5.3 Data Storage Location
tdaje's primary data infrastructure is hosted on servers protected by physical security controls, access management, and continuous monitoring. Backups are encrypted and stored in geographically separate secure facilities. All storage arrangements comply with the data protection commitments described in this policy.
6. Your Privacy Rights
As a tdaje player, you have meaningful rights over your personal data. tdaje is committed to honouring these rights promptly and without unnecessary barriers. To exercise any of the rights listed below, contact us at [email protected] with the subject line "Privacy Rights Request". We will respond within 30 calendar days.
Please note that certain rights are subject to exceptions. For example, we cannot delete data that we are legally required to retain under AML regulations, and we cannot provide data portability for data processed solely on the basis of legal obligation. Where an exception applies, we will explain the reason clearly in our response.
7. Security Measures
7.1 Technical Safeguards
tdaje implements a multi-layered security architecture to protect your personal data from unauthorised access, disclosure, alteration, and destruction. Key technical measures include:
- 256-bit TLS/SSL encryption for all data in transit between your browser and our servers
- AES-256 encryption for sensitive data stored at rest in our databases
- Bcrypt hashing with salting for all account passwords — plain-text passwords are never stored
- Payment tokenisation: full card numbers and mobile wallet credentials are tokenised; only tokens are stored by tdaje
- Two-factor authentication (2FA) available to all registered players and mandatory for staff accounts
- Intrusion detection and prevention systems with 24/7 automated monitoring and alerting
- Regular third-party penetration testing and vulnerability assessments
7.2 Organisational Safeguards
Access to personal data within tdaje's organisation is restricted on a strict need-to-know basis. Staff who handle personal data are trained in data protection obligations before being granted access. All internal systems are access-controlled with role-based permissions, and access logs are retained and audited regularly.
7.3 Data Breach Response
In the unlikely event of a personal data breach that poses a risk to your rights and freedoms, tdaje will notify affected players as promptly as possible and take immediate steps to contain and remediate the incident. Our internal breach response procedure includes containment, impact assessment, notification, and a post-incident review to prevent recurrence.
8. Policy Updates & Contact
8.1 Changes to This Policy
tdaje reviews and updates this Privacy Policy periodically to reflect changes in our practices, legal requirements, or the services we offer. When a material change is made, we will notify registered players by email and display a prominent notice on the platform at least 14 days before the updated policy takes effect. The "Last updated" date at the top of this document always reflects the most recent revision. We encourage you to review this policy periodically.
8.2 Contact Us
If you have questions about this Privacy Policy, wish to exercise any of your privacy rights, or want to report a privacy concern, please contact our data protection team at:
- Email: [email protected] (plain text — not a clickable link)
- Subject line: "Privacy Policy Enquiry" or "Privacy Rights Request"
- Response time: We aim to respond to all privacy-related enquiries within 5 business days and will provide a substantive response within 30 calendar days.
8.3 Minors
tdaje is strictly for adults aged 18 and above. We do not knowingly collect personal data from individuals under the age of 18. If we become aware that a person under 18 has registered an account or provided personal data, we will immediately suspend the account, delete the data, and return any deposited funds. If you believe a minor has accessed tdaje, please notify us immediately at [email protected].
Your Data Is Safe — Now Enjoy the Platform
tdaje takes your privacy seriously so you can focus on what matters: cricket betting, live casino games, slots, and more. Explore our full range of games and sports markets, or check our FAQ if you have any remaining questions. 18+ only — please play responsibly.