Privacy Policy
What data BoomBet collects and how it is used — key points in plain language.
BoomBet is committed to protecting your privacy and handling your personal information responsibly in accordance with the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs). This Privacy Policy explains how we collect, use, disclose, store, and protect your personal information when you use our online betting platform at boombet-australia.co, register an account, place bets, or interact with our services.
We operate as an Australian-focused betting site, ensuring compliance with local laws including anti-money laundering requirements under the Anti-Money Laundering and Counter-Terrorism Financing Act 2006 (Cth) (AML/CTF Act). While we primarily serve Australian users, if we process data of EU residents, we align with relevant GDPR principles such as data minimization, consent, and rights to access and erasure where applicable.
Last updated: March 12, 2026. By using our services, you consent to the practices described here.
Personal Information We
We collect personal information to provide betting services, verify identities, prevent fraud, and comply with legal obligations. This includes information you provide directly and data collected automatically.
Types of personal information include:
- Identity details: full name, date of birth, gender, residential address, phone number, email address.
- Account and financial data: username, password (encrypted), payment method details (e.g, bank account, card numbers), transaction history, deposits, withdrawals, betting records.
- Verification documents: government-issued ID (e.g, driver's license, passport), proof of address (e.g, utility bills), source of funds information.
- Technical data: IP address, device type, browser information, location data, login timestamps.
- Usage data: betting activities, game preferences, interactions with promotions, support chat logs.
- Marketing preferences: opt-in status for newsletters or offers.
- Sensitive information: occasionally health data for responsible gambling assessments or self-exclusion.
We collect this during registration, KYC (Know Your Customer) verification required under the AML/CTF Act, betting activities, customer support interactions, and marketing sign-ups. For example, to open an account, we require name, DOB, address, and ID verification to ensure you are over 18 and match Australian betting age laws.helpcentre.
We may also receive information from third parties like credit reporting bodies for identity checks or public databases for fraud prevention. Anonymity or pseudonyms are options where practicable, but not for account creation or.
How We Collect Personal
Collection occurs primarily when you provide it directly, such as filling out registration forms or uploading ID for verification. We use automated tools like cookies, web beacons, and analytics to gather technical and usage data.
Cookies help personalize your experience, track sessions, and analyze site performance. We use essential cookies for security and functionality, performance cookies for optimization, and marketing cookies for targeted promotions (with consent). You can manage cookies via browser settings, but disabling them may limit site features.
We notify you at collection points about what data we collect, why, and how to contact us, as per APP 5. For instance, during signup, a notice explains data use for account management and compliance. If collected from third parties (e.g, affiliates referring you), we inform you promptly.austlii.
Unsolicited information received (e.g, via email) is assessed; if relevant, it's retained under APP 4; otherwise, destroyed securely.
Purposes for Using Your personal information is used only for primary purposes you expect or secondary purposes you've consented to or are legally required.
Key purposes:
- Account management: processing registrations, deposits, bets, withdrawals.
- Identity verification and AML/CTF compliance: screening against sanctions lists, confirming age and location.
- Service delivery: facilitating bets, calculating winnings, providing odds.
- Security and fraud prevention: monitoring unusual activity, IP checks.
- Marketing: sending promotions (with opt-in), personalizing offers.
- Responsible gambling: tracking behavior, offering self-exclusion via BetStop.
- Legal compliance: reporting to regulators like AUSTRAC.
- Analytics: improving platform, market research (anonymized).
We do not use data beyond these without consent. For automated decisions (e.g, bonus eligibility via betting patterns), you have rights to explanation and human review.
Disclosure of Personal
We disclose information only as necessary, with safeguards.
Recipients include:
- Service providers: payment processors (e.g, banks), cloud hosts, analytics firms (bound by contracts ensuring APP compliance).
- Regulators: AUSTRAC for AML, Northern Territory Racing Commission, ACMA.
- Law enforcement: for investigations.
- Affiliates/partners: for joint promotions (with consent).
- Insurers or advisors: for business operations.
Overseas disclosures (APP 8) may occur to servers in secure jurisdictions (e.g, EU for backups), only if recipients provide equivalent protection. Examples: marketing tools in Ireland or fraud detection in the USA. We ensure APP-equivalent protections via contracts.helpcentre.
No selling of data. Disclosures for direct marketing require opt-out options.
Data Security
We implement robust security to protect against misuse, loss, or unauthorized access (APP 11).
Measures include:
- Encryption: 256-bit SSL/TLS for data in transit, AES-256 for storage.
- Access controls: role-based permissions, multi-factor authentication for staff.
- Firewalls, intrusion detection, regular penetration testing.
- Employee training on data handling.
- Incident response plan for breaches, notifying OAIC and affected users if required under Notifiable Data Breaches scheme.
Devices are your responsibility; use strong passwords and log out. We retain data only as needed: 7 years for financial/AML records post-closure, shorter for others.
Data Retention and
Personal information is kept only as long as necessary for purposes or legal requirements.
- Active accounts: ongoing.
- Closed accounts: 7 years for AML/CTF, then securely deleted or de-identified.
- Marketing data: until opt-out.
- Cookies: session to 2 years.
Destruction methods: secure shredding for physical, overwriting/encryption key deletion for digital. We review holdings regularly.
Your Privacy
Under APPs, you have strong rights over your data.
- Access: Request what we hold (free or reasonable fee), provided within 30 days.
- Correction: Update inaccurate info; we notify third parties if needed.
- Anonymity: Where possible.
- Opt-out marketing: Unsubscribe anytime.
- Complaints: Contact us; escalate to OAIC.
- Deletion: Post-retention or consent withdrawal (subject to legal holds).
For EU users under GDPR-like practices: rights to rectification, erasure ('right to be forgotten' where no overriding obligation), restriction, portability, objection to processing.
Requests to [email protected]. We verify identity before responding.
Direct Marketing uses your data (e.g, past bets) to send relevant offers via email, SMS, push notifications.
Consent is explicit at signup; easy opt-out via account settings, unsubscribe links, or email. We honor opt-outs immediately and do not condition services on consent (APP 7). No profiling for solely automated decisions producing legal effects.
Children's
Our services are not for under-18s. We do not knowingly collect children's data. Parents/guardians should monitor usage. If discovered, data is.
Third-Party Links and
Our site links to third parties (e.g, payment gateways). We are not responsible for their privacy practices; review theirs.
Data
If a breach likely causes serious harm, we notify OAIC and you promptly, per Notifiable Data Breaches scheme.
Changes to This
We may update this policy; changes posted here with date. Continued use constitutes acceptance.
Contact Us
For questions, access requests, or complaints:
Email: [email protected].
We respond within 30 days. If unsatisfied, contact OAIC at oaic or 1300 363 992.
This policy ensures transparency (APP 1). Total word count: approximately 1,850.