1. Controller details
[Insert AFFINEX legal entity name, registration number, registered address, business address, jurisdiction, VAT details if applicable, official email and regulatory/licence disclosures after legal review.]
Legal
This Privacy Policy explains how AFFINEX Network may collect, use, disclose and protect personal data when visitors, applicants, approved agents, admins and support users interact with the website, application process, portal and support tools.
Draft for legal review. AFFINEX should obtain Cyprus/EU and target-market gambling, advertising, privacy and contract-law advice before launch.
[Insert AFFINEX legal entity name, registration number, registered address, business address, jurisdiction, VAT details if applicable, official email and regulatory/licence disclosures after legal review.]
Users may authenticate using email/password, Google or Apple where enabled. AFFINEX admins must never view or set user passwords. Password resets use secure reset flows, and Google/Apple credentials remain controlled by those providers.
AFFINEX may provide an AI support assistant for common questions. AI responses are informational and may be inaccurate. Human admins are intended to make final application and approval decisions; AFFINEX does not intend to make legally or similarly significant decisions solely by automated processing without required safeguards.
AFFINEX may use vendors and third parties such as Lovable, Supabase, hosting providers, email providers, Google authentication, Apple authentication, analytics providers, AI providers, payment or security services and the underlying casino/platform where necessary for approved partner operations. AFFINEX should maintain appropriate processor agreements, transfer safeguards and vendor disclosures.
Personal data may be processed outside the user’s country or outside the EEA depending on vendor infrastructure and support workflows. Where required, AFFINEX should use appropriate transfer mechanisms such as adequacy decisions, Standard Contractual Clauses, transfer impact assessments and supplementary safeguards.
Depending on applicable law, users may have rights to access, rectification, erasure, restriction, objection, portability, withdrawal of consent and complaint to a supervisory authority. AFFINEX should provide a clear contact channel for GDPR and privacy requests.
Essential authentication, session and security cookies may be used without consent where strictly necessary. Analytics, advertising, preference and some third-party technologies may require prior consent, a cookie banner, preference controls and a standalone Cookie Policy depending on jurisdiction and configuration.
AFFINEX uses reasonable technical and organizational measures designed to protect accounts and personal data, including role-based access, MFA support for sensitive access, secure password-reset flows, access controls, audit logging and monitoring. No system can be guaranteed completely secure.
Users can request access to or export of their personal information by contacting partners@affinexnetwork.com or using the data-request page. Identity verification may be required before fulfilling requests.
These documents should be reviewed by qualified counsel before AFFINEX relies on them for launch or partner onboarding.