Privacy Policy
This privacy policy explains how pointsbet, operating exclusively through pointsbetz.com, collects, uses, stores, and protects your personal information when you use our services and website. It applies to all site visitors, registered players, and users of our interactive features. The policy takes effect from 1 January 2025.
Who We Are
OBSERVE: The operator providing services on pointsbetz.com is required to clearly identify itself with legal and contact details.
EXPAND: Although some specific contact details are missing in the profile, under AU Privacy Act 1988, transparency and verifiability are mandatory. We ensure compliance by providing all available legal and regulatory identifiers.
REFLECT: The following information is provided to meet regulatory obligations and enable you to exercise your data protection rights effectively:
- Operator: pointsbet Pty Ltd
- ABN (Australian Business Number): 91 606 814 920
- Headquarters: Melbourne, Victoria, Australia
- Regulatory License: Sports Bookmaker License issued by Northern Territory Racing Commission (NTRC), valid until 1 February 2027
- Website: https://pointsbetz.com
- Contact for Data Protection: Please address all privacy-related enquiries to Lachlan Byrne (Data Protection Officer). While a direct email or phone number is not specified, contact can be initiated via official website resources.
Regional Compliance Note: You have the right to request further verifiable contact information by contacting our support team, pursuant to Australian privacy regulations.
What Personal Data We Collect
OBSERVE: AU law defines personal information broadly, and gambling operators are obligated to clearly specify categories of data collected. This is reinforced under the Privacy Act and Interactive Gambling Act (IGA).
EXPAND: Data is collected both directly (e.g., registration) and indirectly (e.g., device information, activity logs). Cookies and tracking technologies are used for essential operations, analytics, and compliance.
REFLECT: We collect the following categories of personal data:
- Personal Identification Data: Full name, date of birth, residential address, e-mail address, phone number, government-issued IDs (for KYC/AML requirements)
- Technical Data: IP address, device type, device identifiers, browser type, operating system, log files, access times
- Payment and Transaction Data: Bank account details, payment card information, transaction history, withdrawal and deposit records
- Behavioral and Usage Data: Account activity, betting history, wager amounts, game interactions, site navigation (clickstream data)
- Cookies and Tracking Technologies: Usage of session, persistent, and third-party cookies for authentication, preferences, analytics, and advertising (see relevant section below)
- Communication Data: Customer support queries, feedback, complaint correspondence, call and chat recordings (where legally permitted)
Collection is undertaken in line with legislative requirements and industry standards in Australia.
Legal Basis for Processing
OBSERVE: In Australia, the Privacy Act 1988 requires notification of legal grounds for any personal information processing.
EXPAND: Processing may be required by law, for performance of a contract, by explicit user consent, or in pursuit of the legitimate interests of the operator (pointsbetz.com) consistent with gambling regulation and consumer protection mandates.
REFLECT: The principal legal bases for processing your data are:
- User Consent: Obtained for account creation, marketing communications, and use of cookies or location data where not strictly necessary for service provision.
- Contractual Necessity: Processing required for account management, payment processing, bet settlement, and customer support, fulfilling the agreement between you and pointsbetz.com.
- Legal Obligations: Compliance with applicable laws, including identity verification (KYC), anti-money laundering (AML), counter-terrorism financing (CTF) requirements, record-keeping, and reporting to regulators such as NTRC and AUSTRAC.
- Legitimate Interests: Fraud detection and prevention, website security, service improvement, responsible gambling monitoring, and statistical analysis, balanced against your privacy rights.
Processing is always conducted within the boundaries of AU law and is not excessive or unrelated to legitimate business or regulatory purposes.
Purpose of Processing
OBSERVE: AU privacy regulations require explicit notification of purposes for which data is used.
EXPAND: Data processing purposes include both operational and compliance-related obligations.
REFLECT: Your data is processed by pointsbetz.com for the following purposes:
- Service Delivery: To register and maintain your gaming account, process wagers, and execute payments
- Regulatory Compliance: To fulfill obligations under AU gambling legislation, including KYC/AML requirements
- Fraud Detection & Security: To monitor and prevent suspicious or unlawful activity
- Analytics & Improvement: To analyze user behavior and service use, optimize website performance and features
- Marketing & Communication: To send marketing materials, service updates, and tailored offers (subject to your consent)
- Customer Support: To respond to enquiries, resolve complaints, and improve user experience
Processing is limited to these purposes unless otherwise required by law.
Disclosure & Sharing
OBSERVE: Operators must disclose categories of recipients and conditions of sharing personal information under the Privacy Act and AU gambling law.
EXPAND: Disclosure is restricted to essential third parties, supported by appropriate contractual safeguards and, where needed, user consent.
REFLECT: We may disclose your personal data to:
- Payment Service Providers: For transaction processing, withdrawals, and fraud checks
- Third-Party Suppliers: IT and analytics service providers, support platforms, and cloud hosting partners
- Regulatory Authorities: The Northern Territory Racing Commission (NTRC), AUSTRAC, and other regulators for auditing, investigations, and compliance reporting
- Affiliates and Marketing Partners: For marketing activities, with your prior consent where required
- Legal and Professional Advisors: Where necessary to defend legal interests or comply with legal processes
Personal data is never sold or exchanged for commercial benefit outside these listed scenarios. All third-party partners are contractually obligated to apply equivalent data protection standards.
International Transfers
OBSERVE: It is mandatory under Australian Privacy Principle 8 to notify users if personal information is transferred overseas, and explain safeguarding measures.
EXPAND: As pointsbetz.com may process or store data using global cloud platforms or service providers (potentially in Canada and other regions where clients access services), we implement rigorous contractual and technical controls.
REFLECT: Information may be transferred to:
- Countries of Service or Hosting: Including, but not limited to, Australia (primary operations), Canada (client support), and other regions required for technical service delivery
- Safeguards Implemented:
- Binding contractual arrangements requiring third parties to comply with AU-standard privacy regulations
- Data encryption in transit and at rest
- Transfer only to jurisdictions with legally recognized data protections or, where not possible, use of standard contractual clauses
Transfers are conducted only where essential for service provision or legal compliance.
Data Retention
OBSERVE: Pointsbetz.com must retain personal information only as long as is necessary for legal or operational reasons, as required by AU privacy and gambling regulations.
EXPAND: KYC, AML, and transactional records are subject to mandatory minimum retention periods set by law. User requests may also trigger earlier deletion of specific information unless legal retention overrides apply.
REFLECT: Retention timeframes:
- Gaming Account Data: Retained for no more than 5 years after account closure or last transaction, unless a longer period is required by law
- Transaction and AML Records: Retained for 7 years following the completion of the last relevant transaction, pursuant to AUSTRAC guidelines
- Cookies and Session Data: Session cookies are removed immediately after browser closure, persistent cookies as detailed in the Cookies section (see below)
- Deletion Criteria:
- User request (subject to overriding legal requirements)
- Expiration of statutory periods
- End of business need for processing
Once data is no longer required, it will be securely deleted or anonymised in accordance with prevailing legal and technical standards.
Your Rights
OBSERVE: Site users are granted a number of rights regarding their personal information under the Australian Privacy Principles.
EXPAND: Some rights can only be exercised where not restricted by overriding legal obligations, such as anti-money laundering or record-keeping requirements.
REFLECT: You have the following rights with respect to your personal information:
- Access: Request a copy of the data held about you
- Correction: Request correction or completion of inaccurate or incomplete data
- Deletion: Request erasure of your data where no lawful basis for retention exists
- Restriction: Request restriction of processing under certain conditions
- Objection: Object to processing of data for marketing or non-essential purposes
- Data Portability: Request an electronic copy of your data in a structured, commonly used format
- Withdraw Consent: Revoke consent for marketing or optional data uses at any time
To exercise any of these rights, or if you require further information, please contact the Data Protection Officer using the details provided above.
Cookies & Tracking Technologies
OBSERVE: The use of cookies and similar tracking tools must be transparent and include user control options.
EXPAND: AU and international best practice require detailed categorization and clear management instructions for each cookie type.
REFLECT: pointsbetz.com uses the following:
- Session Cookies: Essential for maintaining login and account sessions; deleted upon browser closure
- Persistent Cookies: Used for storing user preferences and login information, duration up to 24 months or until manually cleared
- Third-Party Cookies: Placed by analytics and advertising networks, enabled only with user consent
- Purposes:
- Functional: Enable core website operations and security
- Analytics: Allow performance measurement and service improvements
- Advertising: Deliver tailored offers with your consent
- Management: Users can manage or disable cookies through browser settings or by opting out via the internal panel where available
Refer to your browser's help documentation for specific instructions on cookie management.
Data Security
OBSERVE: The Privacy Act and gambling regulations require gambling operators to implement robust security controls over user data.
EXPAND: Both technical and organisational measures must be documented, regularly reviewed, and capable of withstanding cyber and insider threats.
REFLECT: Data security practices at pointsbetz.com include:
- Encryption: All personal and financial data is encrypted both in transit (SSL/TLS) and at rest
- Access Control: Strict role-based access to user data, with personnel given access only as necessary for their duties
- Regular Audits: Frequent internal and external security audits to ensure compliance and identify vulnerabilities
- Security Training: All staff receive regular training on data protection responsibilities and incident response procedures
- Monitoring: Continuous monitoring for suspicious activity or unauthorised data access
Security measures are regularly assessed against industry standards to maintain data integrity, confidentiality, and availability.
Complaints & Contacts
OBSERVE: Users are entitled to accessible and transparent complaint mechanisms regarding privacy practices under AU law.
EXPAND: Comprehensive contact methods are to be provided, with escalation rights to authorities where necessary.
REFLECT: If you have concerns about how your personal information is managed by pointsbetz.com or wish to make a complaint:
- Contact the Data Protection Officer: Lachlan Byrne (contact through the official website at pointsbetz.com)
- Procedure:
- Submit your inquiry or complaint via the website's contact resources, specifying the nature of your concern.
- We will acknowledge all complaints within 7 business days and seek to resolve them within 30 days.
- If you are not satisfied with our response, you may escalate your complaint to the Office of the Australian Information Commissioner (OAIC).
Your complaint will be handled with confidentiality and in accordance with prevailing legal requirements.
Updates
OBSERVE: Privacy legislation requires ongoing notification of any substantive changes to data handling practices.
EXPAND: Change notifications must be made accessible and timely to all users affected by policy amendments.
REFLECT: We reserve the right to update this Privacy Policy as legal or operational needs require. All updates will be:
- Posted prominently on the pointsbetz.com website
- Effective from the date of publication indicated below
- Communicated by email or in-platform notifications where practical and where you have registered contact details
The most recent policy revision was made on 1 January 2025. Please check this page regularly for future updates.