How phsoin Treats Your Personal Data
These cards summarize phsoin's core data protection commitments. They are not a substitute for the full legal text below — please read the complete Privacy Policy carefully.
All data transmitted between your device and phsoin's servers is protected by industry-standard 256-bit SSL/TLS encryption. This applies to every login, every deposit, every withdrawal request, and every support conversation — your data travels securely, not in the open.
phsoin follows the principle of data minimization. We collect only the personal information that is genuinely necessary for account operation, KYC compliance, payment processing, and responsible gaming enforcement. We do not collect data for its own sake, and we do not sell your personal data to third-party marketers under any circumstances.
phsoin operates in full compliance with the Data Privacy Act of 2012 (Republic Act No. 10173) of the Philippines, its implementing rules and regulations, and the guidelines issued by the National Privacy Commission (NPC). Your rights as a Philippine data subject are recognized and upheld at every step.
phsoin does not sell, rent, lease, or trade your personal information to third parties for their own commercial purposes. Any sharing of data with third parties — such as payment processors or game providers — is strictly limited to what is required to deliver the services you use, and is governed by data processing agreements that bind those parties to confidentiality.
phsoin gives you direct control over your data. You can access, correct, update, or request deletion of your personal information through your account settings or by contacting phsoin support. You can also withdraw marketing consent at any time and have your data ported to another service where technically feasible under applicable law.
In the unlikely event of a personal data breach that poses a real risk to your rights and freedoms, phsoin will notify affected players and the National Privacy Commission within the timeframes required under the Data Privacy Act and NPC regulations. You will be informed of what happened, what data was involved, and what steps phsoin is taking to address it.
Introduction
This Privacy Policy ("Policy") is issued by phsoin ("phsoin", "we", "us", "our"), the operator of the online gaming platform accessible at phsoin.net and its associated subdomains and mobile interfaces (collectively, the "Platform"). It describes how phsoin collects, uses, stores, discloses, and protects the personal information of individuals ("you", "User", "Player") who access or use the Platform.
phsoin is committed to protecting your privacy and handling your personal data with transparency, integrity, and in full compliance with the Data Privacy Act of 2012 (Republic Act No. 10173), its Implementing Rules and Regulations, and the applicable guidelines of the National Privacy Commission (NPC) of the Philippines.
By registering an account on phsoin or otherwise using the Platform, you acknowledge that you have read and understood this Policy and consent to the collection and processing of your personal data as described herein. If you do not agree to this Policy, you must not access or use the phsoin Platform.
Personal Data We Collect
phsoin collects the following categories of personal data, limited to what is necessary for the purposes described in this Policy:
| Category | Examples | Purpose |
|---|---|---|
| Identity Data | Full legal name, date of birth, government ID number, nationality | Account registration, KYC verification, age verification (21+) |
| Contact Data | Email address, mobile number, residential address | Account communication, support, regulatory correspondence |
| Financial Data | Payment method details (GCash/PayMaya account reference, bank account name), transaction history | Payment processing, fraud prevention, AML compliance |
| Gaming Data | Wager history, game preferences, session durations, win/loss records | Game operation, responsible gaming monitoring, bonus eligibility |
| Technical Data | IP address, device type, browser type, operating system, cookie identifiers | Platform security, fraud detection, platform optimization |
| Communication Data | Live chat transcripts, email correspondence, support ticket content | Customer support, dispute resolution, quality assurance |
| Verification Documents | Copies of government-issued IDs, proof of address, payment method screenshots | KYC compliance, AML obligations, regulatory requirements |
phsoin does not intentionally collect sensitive personal information beyond what is required for identity verification and regulatory compliance. Where sensitive information is collected — such as a copy of a government ID — it is processed solely for the stated compliance purpose and is subject to enhanced protection measures.
How We Collect Your Data
phsoin collects personal data through the following channels:
- Direct Provision: Information you provide when registering your phsoin account, completing KYC verification, making deposits or withdrawal requests, contacting phsoin support, or participating in promotions.
- Automated Collection: Technical data collected automatically when you access the Platform, including IP addresses, device identifiers, browser information, and session data, through cookies, web beacons, and similar tracking technologies (see Section 7).
- Third-Party Sources: Identity and fraud-screening data received from third-party KYC verification providers, payment processors (such as GCash, PayMaya, BPI, BDO, and Metrobank), and anti-money laundering screening services, where you have authorized such sharing or where phsoin is legally required to perform such checks.
- Publicly Available Sources: Information that is publicly available and relevant to regulatory compliance or fraud prevention, including records from Philippine government databases where legally accessible.
phsoin does not purchase personal data lists from third-party data brokers or use deceptive means to collect personal information.
How We Use Your Personal Data
phsoin uses the personal data we collect for the following purposes:
- Account Management: To create, maintain, verify, and manage your phsoin player account, including authentication and security.
- Service Delivery: To provide access to phsoin's games, process deposits and withdrawals, apply bonuses, and operate all Platform features you use.
- Identity & Age Verification: To verify that you meet the 21+ age requirement and satisfy all eligibility conditions under our Terms and Conditions and applicable Philippine law.
- Regulatory Compliance: To fulfill phsoin's obligations under PAGCOR regulations, the Anti-Money Laundering Act (AMLA), the Data Privacy Act of 2012, and any other applicable Philippine law or regulation.
- Fraud Prevention & Security: To detect, investigate, and prevent fraud, money laundering, account takeovers, bot activity, and other prohibited conduct on the Platform.
- Responsible Gaming: To monitor gaming patterns and enforce responsible gaming measures, including the application of deposit limits, loss limits, and self-exclusion where applicable.
- Customer Support: To respond to your inquiries, process complaints, and resolve disputes efficiently.
- Marketing Communications: To send you promotional offers, bonus notifications, and phsoin news, where you have provided your consent. You may withdraw this consent at any time.
- Platform Improvement: To analyze usage patterns, optimize game performance, and enhance the phsoin user experience through aggregated, anonymized analytics.
- Legal Proceedings: To establish, exercise, or defend legal claims involving phsoin.
Legal Basis for Processing
phsoin processes your personal data on the following legal bases under the Data Privacy Act of 2012 and its Implementing Rules and Regulations:
- Consent: Where you have given phsoin your explicit consent to process your data for a specific purpose, such as receiving marketing communications or optional profile enhancements. You may withdraw consent at any time without affecting the lawfulness of processing based on consent before its withdrawal.
- Contractual Necessity: Where processing is necessary to perform the contract between you and phsoin — specifically, to operate your player account, process transactions, and deliver the gaming services you have requested.
- Legal Obligation: Where phsoin is required to process your data to comply with a legal obligation, including KYC verification requirements under PAGCOR regulations, anti-money laundering obligations under AMLA, and tax reporting requirements.
- Legitimate Interest: Where processing is necessary for phsoin's legitimate interests, including fraud prevention, Platform security, responsible gaming monitoring, and the improvement of phsoin's services, provided that such interests are not overridden by your rights and freedoms.
- Vital Interests: In exceptional circumstances, where processing is necessary to protect life or physical safety.
Where phsoin relies on consent as the legal basis for processing, you have the right to withdraw that consent at any time by contacting phsoin support or updating your account preferences. Withdrawal of consent does not affect the lawfulness of any processing carried out prior to withdrawal.
Sharing Your Personal Data
phsoin does not sell or rent your personal data. We may share your data with the following categories of recipients, strictly on a need-to-know basis and subject to appropriate data protection safeguards:
- Payment Processors: GCash, PayMaya, BPI, BDO, Metrobank, InstaPay, and other payment providers require your financial data to process deposits and withdrawals. These providers operate under their own privacy policies and are subject to Philippine financial regulations.
- KYC & Fraud Prevention Providers: Third-party identity verification and fraud screening services that assist phsoin in fulfilling its regulatory compliance obligations. These providers are contractually bound to process your data only for the purposes specified by phsoin.
- Game Software Providers: Licensed game providers whose titles are available on the phsoin Platform may receive anonymized or pseudonymized gaming data necessary to operate their games and detect cheating or technical issues.
- Regulatory & Law Enforcement Authorities: phsoin will disclose personal data to PAGCOR, the Anti-Money Laundering Council (AMLC), the National Privacy Commission (NPC), the Bureau of Internal Revenue (BIR), or other competent Philippine authorities where required by law, regulation, court order, or legal process.
- Professional Advisers: Legal counsel, auditors, and consultants who are bound by professional confidentiality obligations.
- Business Transfers: In the event of a merger, acquisition, or sale of all or substantially all of phsoin's assets, your personal data may be transferred to the successor entity, subject to equivalent data protection standards. You will be notified of any such transfer in advance.
Cookies & Tracking Technologies
phsoin uses cookies and similar tracking technologies to operate, secure, and improve the Platform. A cookie is a small text file placed on your device by the Platform when you visit. Cookies allow phsoin to recognize your device, maintain your session, remember your preferences, and analyze Platform usage.
phsoin uses the following types of cookies:
- Strictly Necessary Cookies: Essential for the Platform to function. These include session authentication cookies and security tokens. You cannot opt out of strictly necessary cookies without ceasing to use the Platform.
- Functional Cookies: Remember your language preferences, display settings, and other personalization choices to improve your phsoin experience.
- Analytics Cookies: Collect anonymized data about how users interact with the Platform — such as pages visited, session duration, and error events — to help phsoin identify and fix issues and optimize the user experience.
- Marketing Cookies: Used only where you have consented, to track your response to phsoin's promotional offers and deliver relevant content. You may withdraw consent for marketing cookies at any time through your browser settings or the phsoin cookie preference center.
You can manage or delete cookies through your browser settings at any time. Disabling non-essential cookies will not prevent you from using the core phsoin Platform, though some features may function differently.
Data Retention
phsoin retains your personal data only for as long as is necessary to fulfill the purposes for which it was collected, or as required by applicable Philippine law and regulation. The following general retention periods apply:
- Account Data: Retained for the duration of your active phsoin account, plus a minimum of five (5) years following account closure, as required by PAGCOR regulations and AMLA record-keeping obligations.
- Transaction Records: Financial transaction data, including deposit and withdrawal records, is retained for a minimum of five (5) years from the date of the transaction, in compliance with AMLA and BIR requirements.
- KYC Documents: Identity verification documents are retained for a minimum of five (5) years after the end of the business relationship, as required by AMLA regulations.
- Support Communications: Customer support records are retained for three (3) years from the date of the last interaction, to support dispute resolution and quality assurance.
- Marketing Data: Retained until you withdraw consent or request erasure, whichever comes first.
- Technical/Log Data: Server logs and technical data are retained for up to twelve (12) months, unless retention is required for an ongoing investigation or legal proceeding.
Upon expiry of the applicable retention period, phsoin will securely delete or anonymize your personal data in a manner that prevents reconstruction or identification.
Your Data Subject Rights
Under the Data Privacy Act of 2012 (RA 10173) and its Implementing Rules and Regulations, you have the following rights with respect to your personal data held by phsoin:
Request a copy of the personal data phsoin holds about you and information about how it is being processed.
Request correction of inaccurate or incomplete personal data phsoin holds about you.
Request deletion of your personal data where it is no longer necessary, consent has been withdrawn, or processing is unlawful — subject to phsoin's legal retention obligations.
Object to phsoin's processing of your data for direct marketing or on grounds relating to your particular situation where processing is based on legitimate interest.
Receive your personal data in a structured, commonly used format and transmit it to another controller, where technically feasible.
File a complaint with the National Privacy Commission (NPC) if you believe phsoin has processed your data in violation of the Data Privacy Act of 2012.
To exercise any of these rights, please contact phsoin's Data Protection Officer at the details provided in Section 13. phsoin will respond to all verified data subject requests within fifteen (15) business days, as required under the Data Privacy Act.
Data Security
phsoin implements a comprehensive set of technical and organizational security measures designed to protect your personal data against unauthorized access, disclosure, alteration, loss, or destruction. These measures include:
- Encryption: All data in transit is protected by 256-bit SSL/TLS encryption. Sensitive data at rest — including payment credentials and KYC documents — is encrypted using industry-standard algorithms.
- Access Controls: Access to personal data within phsoin's systems is restricted on a strict need-to-know basis. Staff who handle personal data are subject to confidentiality obligations and receive regular data protection training.
- Two-Factor Authentication: phsoin supports and encourages the use of two-factor authentication on all player accounts as an additional layer of protection against unauthorized access.
- Penetration Testing & Security Audits: phsoin's Platform undergoes regular independent security assessments, including penetration testing, to identify and remediate vulnerabilities before they can be exploited.
- Incident Response: phsoin maintains a documented data breach response procedure. In the event of a confirmed breach affecting your personal data, phsoin will notify you and the NPC in accordance with mandatory breach notification requirements.
- Vendor Security: All third-party processors who handle personal data on phsoin's behalf are required to maintain equivalent security standards and are subject to regular compliance reviews.
Despite these measures, no online platform can guarantee absolute security. phsoin encourages you to protect your own account by using a strong, unique password for your phsoin account and enabling two-factor authentication.
Children's Privacy
The phsoin Platform is strictly intended for adults aged 21 years and above, in compliance with PAGCOR regulations and Philippine law governing online gaming. phsoin does not knowingly collect, use, or store personal data from individuals under the age of 21.
If phsoin becomes aware that personal data has been collected from a person under 21 — whether through misrepresentation during registration or any other means — phsoin will:
- Immediately suspend and permanently close the relevant account.
- Delete all personal data associated with that account as soon as it is legally permissible to do so.
- Refund any real-money deposits made by the underage individual to the verified source of funds, and void any associated wagers or bonus credits.
If you are a parent or guardian and believe your child has registered on phsoin, please contact phsoin support immediately at [email protected] so that we can take prompt action.
Changes to This Policy
phsoin may update this Privacy Policy from time to time to reflect changes in our data practices, the services we offer, or applicable Philippine law. When we make material changes to this Policy, we will notify you by:
- Sending an email notification to your registered phsoin email address at least seven (7) days before the changes take effect; and/or
- Displaying a prominent notice on the phsoin Platform when you next log in.
Your continued use of the phsoin Platform after the effective date of any revised Policy constitutes your acknowledgment of, and where applicable your consent to, the updated terms. If you do not agree to the revised Policy, you must cease using the Platform and may request account closure.
The effective date at the top of this document reflects the date on which the current version of this Policy came into force. All previous versions of this Policy are available upon request by contacting phsoin's Data Protection Officer.
Contact & Data Protection Officer
phsoin has appointed a Data Protection Officer (DPO) in accordance with the requirements of the Data Privacy Act of 2012. If you have any questions, concerns, or requests relating to this Privacy Policy or phsoin's data processing practices, or if you wish to exercise any of your data subject rights under Section 9, please contact us through the following channels:
- Data Protection Officer: [email protected]
- General Support: [email protected]
- Live Chat: Available 24/7 through the phsoin Platform — average response time under 2 minutes.
phsoin will acknowledge all privacy-related inquiries within 48 hours and provide a substantive response within fifteen (15) business days. For complex requests, phsoin may extend this period by a further fifteen (15) business days where necessary, and will notify you of the extension and the reason for it.
If you are not satisfied with phsoin's response to your privacy concern, you have the right to lodge a complaint directly with the National Privacy Commission of the Philippines (NPC). Information about the NPC's complaint process is available through official Philippine government channels.
Your Data Is Safe with phsoin
Now that you know how phsoin protects your privacy, you can play with complete peace of mind. Thousands of games, fast GCash and PayMaya payouts, and 24/7 Filipino support — all backed by a transparent data protection commitment.
21+ only | Play responsibly | Philippine Peso deposits & withdrawals