php555 Privacy Policy
php555 is committed to protecting the personal data of every player on our platform. This Privacy Policy explains what information we collect, why we collect it, how it is used and protected, and what rights you hold under Philippine law.
Your Privacy at php555 — Key Principles
These summaries highlight our core data commitments. The full legal text in the sections below governs in all cases.
We Protect Your Data
php555 applies 256-bit SSL encryption to all data transmissions, stores personal data on secured servers, and enforces strict internal access controls. Your information is never exposed to unnecessary personnel or systems within or outside the php555 organisation.
We Don't Sell Your Data
php555 does not sell, rent, or trade your personal information to third-party marketers. Data sharing is limited to service partners operating on our behalf, PAGCOR and other regulatory bodies with lawful authority, and law enforcement agencies when required by Philippine law.
You Control Your Data
Under Republic Act No. 10173 (Data Privacy Act of 2012), you have the right to access, correct, object to, and request erasure of your personal data held by php555. These rights can be exercised by contacting our Data Protection Officer through our support channels.
PAGCOR & DPA Compliant
php555 is a PAGCOR-licensed operator and is required to comply with both PAGCOR's data handling standards and the Philippine Data Privacy Act of 2012. All data collection and processing activities on the php555 platform comply with these regulatory frameworks.
Minimal Data Collection
php555 applies a data minimisation principle — we collect only the personal information that is necessary for account operations, regulatory compliance, and service delivery. We do not collect data for speculative or undefined future purposes.
Transparent Communications
Any marketing or promotional communications from php555 are sent only where you have provided consent or where a legitimate interest applies under applicable law. You may opt out of marketing communications at any time through your account settings or by contacting our support team.
01 Introduction
1.1 php555 is a PAGCOR-regulated online casino and sports betting platform built for Filipino players across the Philippines — from Manila and Quezon City to Cebu, Davao, Iloilo, and beyond. As an operator licensed under the Philippine Amusement and Gaming Corporation (PAGCOR), php555 is legally required to collect, verify, and retain certain personal data about its account holders in order to comply with KYC (Know Your Customer), AML (Anti-Money Laundering), and responsible gaming obligations under Philippine law.
1.2 Beyond regulatory obligations, php555 processes personal data to deliver, maintain, and improve the services offered to players, to communicate account-relevant information, and to personalise the platform experience where you have provided consent for such activities.
1.3 php555 is committed to processing personal data lawfully, fairly, and transparently — using the minimum data necessary for each defined purpose and retaining it for no longer than required. This Policy is designed to give you a clear and complete understanding of how your data is handled every time you interact with the php555 platform.
02 Data Controller
2.1 For the purposes of the Data Privacy Act of 2012, the data controller responsible for the personal data collected through the php555 platform is php555, the licensed operator of https://php555.cam.
2.2 php555 has appointed a Data Protection Officer (DPO) who is responsible for overseeing compliance with the DPA and this Policy. Contact details for the DPO are provided in Section 15 of this Policy.
2.3 Any third-party service providers engaged by php555 to process personal data on our behalf (including payment processors, KYC verification providers, and game software suppliers) do so in the capacity of data processors, bound by written data processing agreements that obligate them to process personal data only in accordance with php555's instructions and in compliance with applicable Philippine data protection law.
03 Personal Data We Collect
3.1 php555 collects the following categories of personal data from players:
| Category | Examples | When Collected |
|---|---|---|
| Identity Data | Full legal name, date of birth, government-issued ID type and number, photograph | Registration and KYC verification |
| Contact Data | Email address, Philippine mobile number, residential address | Registration and account updates |
| Financial Data | GCash account details, PayMaya details, bank account numbers (BPI, BDO, Metrobank), transaction history | Deposit and withdrawal processing |
| Technical Data | IP address, device type, browser type, operating system, session timestamps | Platform access and session activity |
| Usage Data | Games played, wager amounts, session duration, bonus usage, preferred game categories | Ongoing platform use |
| Communications Data | Support chat transcripts, emails sent to php555, feedback submissions | Customer support interactions |
| Marketing Preferences | Consent status, opted-in communication channels, promotion claim history | Consent collection and promotional activity |
3.2 php555 does not intentionally collect special categories of personal data (as defined under the DPA) such as data concerning health, religious beliefs, political opinions, or biometric data, except where expressly required by regulatory authority or provided voluntarily by the player in the context of a responsible gaming request.
04 How We Collect Your Data
php555 collects personal data through the following channels and methods:
- Direct submission: Information you provide during account registration, KYC document upload, deposit/withdrawal requests, responsible gaming tool activation, support communications, or promotional opt-ins;
- Automated collection: Technical and usage data collected automatically when you access the php555 platform, including through cookies, web beacons, log files, and similar technologies (see Section 8 for details);
- Third-party sources: Identity verification and fraud screening information received from authorised KYC verification service providers, and payment confirmation data from payment processors such as GCash, PayMaya, BPI, BDO, and Metrobank;
- Public sources: Where necessary for fraud prevention or regulatory compliance, php555 may supplement account records with information from publicly available sources, such as official government databases or sanctions lists.
05 Purposes of Processing
php555 processes personal data for the following defined purposes:
- Account creation and management: To register and maintain your php555 player account, verify your identity, and administer your account settings;
- Service delivery: To provide access to games, process wagers, record results, and operate all features of the php555 platform;
- Financial transactions: To process deposits via GCash, PayMaya, BPI, BDO, and Metrobank, and to process withdrawals to your nominated payment method;
- Regulatory compliance: To fulfil our KYC, AML, and responsible gaming obligations under PAGCOR licensing conditions and applicable Philippine law;
- Fraud prevention and security: To detect, investigate, and prevent fraudulent transactions, unauthorised account access, and other unlawful activities on the platform;
- Customer support: To respond to queries, complaints, and account issues submitted through our live chat or email support channels;
- Responsible gaming: To monitor gaming patterns for indicators of problem gambling and to administer responsible gaming tools including deposit limits, cool-off periods, and self-exclusion at a player's request;
- Marketing and promotions: To send promotional communications, bonus offers, and platform updates where you have provided consent or where a legitimate interest applies;
- Platform improvement: To analyse aggregate usage data for the purpose of improving platform performance, game selection, and user experience;
- Legal proceedings: To exercise or defend legal rights in any dispute, regulatory proceeding, or legal action involving php555.
06 Legal Bases for Processing
6.1 Under the Data Privacy Act of 2012, php555 relies on the following legal bases for processing personal data:
- Contractual necessity: Processing required to perform our obligations under the Terms & Conditions you agreed to upon account registration — including account management, game delivery, and payment processing;
- Legal obligation: Processing required to comply with PAGCOR licensing conditions, AML obligations under Republic Act No. 9160 (as amended), the DPA, and other applicable Philippine laws and regulations;
- Consent: Processing for marketing communications, promotional profiling, and non-essential cookies, where you have provided explicit consent. You may withdraw consent at any time without affecting the lawfulness of prior processing;
- Legitimate interest: Processing for fraud prevention, platform security, and platform improvement, where such processing does not override your rights and freedoms as a data subject.
07 Data Sharing & Disclosure
7.1 php555 does not sell, rent, or trade your personal data to any third party for commercial purposes. Data is shared only with the following categories of recipients, and only to the extent necessary for the stated purpose:
- Payment processors: GCash, PayMaya, BPI, BDO, Metrobank, and associated payment infrastructure providers — for the processing of deposits and withdrawals;
- KYC and identity verification providers: Third-party verification service providers engaged by php555 to perform document verification and identity screening as required by our PAGCOR licence;
- Game software providers: Licensed game developers and platform providers whose game titles are offered on the php555 platform may receive technical session data necessary for game operation and dispute resolution;
- PAGCOR: The Philippine Amusement and Gaming Corporation as php555's licensing authority may require access to player account data, transaction records, or gaming activity logs in the exercise of its regulatory functions;
- Law enforcement and regulatory bodies: Government agencies, courts, or regulatory authorities where disclosure is required by law, court order, or in response to a lawful request from a competent authority;
- Professional advisors: Legal counsel, accountants, and auditors, subject to confidentiality obligations, where necessary for corporate governance or legal proceedings;
- Business successors: In the event of a merger, acquisition, or sale of substantially all of php555's assets, player data may be transferred to the successor entity, subject to the protections of this Policy.
7.2 All third-party data processors engaged by php555 are bound by written data processing agreements requiring them to maintain appropriate technical and organisational security measures and to process data only on php555's documented instructions.
08 Cookies & Tracking Technologies
8.1 The php555 platform uses cookies and similar tracking technologies to operate certain platform functions, analyse usage patterns, and where consent is provided, to deliver personalised content and promotions. A cookie is a small text file stored on your device when you visit the php555 website.
8.2 php555 uses the following categories of cookies:
- Strictly necessary cookies: Required for the php555 platform to function — these enable session management, login authentication, and security features. These cookies cannot be disabled without impairing your ability to use the platform;
- Functional cookies: Used to remember your preferences and settings, such as language and display options, to provide a more personalised experience;
- Analytics cookies: Used to collect aggregated, anonymised data about how players navigate and use the php555 platform, for the purpose of platform improvement. These cookies are deployed only where consent has been obtained;
- Marketing cookies: Used to track promotional campaign effectiveness and, where consent has been given, to deliver relevant bonus offers and promotions. These cookies are deployed only with explicit consent.
8.3 You can manage or disable non-essential cookies through your browser settings at any time. Note that disabling certain cookies may affect the functionality of the php555 platform. Consent for non-essential cookies can also be withdrawn or adjusted through the cookie preference centre accessible on the php555 platform.
09 Data Retention
9.1 php555 retains personal data for no longer than is necessary to fulfil the purpose for which it was collected, subject to the minimum retention periods required by applicable law and PAGCOR licensing conditions.
9.2 The following general retention guidelines apply:
- Active account data: Retained for the duration of the account relationship and for a period thereafter as required by law;
- KYC and identity verification documents: Retained for a minimum of five (5) years from the date of account closure, as required under AML regulations;
- Financial transaction records: Retained for a minimum of five (5) years from the date of the transaction in accordance with financial regulatory requirements;
- Support communications: Retained for a period sufficient to resolve disputes and address regulatory inquiries, typically two (2) to three (3) years;
- Marketing consent records: Retained for the period of the active marketing relationship and for a reasonable period thereafter as evidence of consent.
9.3 Upon expiry of the applicable retention period, personal data is securely deleted or anonymised in accordance with php555's data destruction procedures.
10 Data Security
10.1 php555 implements appropriate technical and organisational security measures designed to protect personal data against unauthorised access, disclosure, alteration, loss, or destruction. These measures include:
- 256-bit SSL/TLS encryption for all data transmitted between your device and the php555 platform;
- Encrypted storage of sensitive data at rest, including financial data and identity documents;
- Role-based access controls ensuring that only authorised personnel access personal data for legitimate operational or regulatory purposes;
- Multi-factor authentication requirements for administrative system access;
- Regular security audits, penetration testing, and vulnerability assessments;
- Staff training and confidentiality obligations for all personnel with access to personal data.
10.2 While php555 takes all reasonable precautions to protect your personal data, no data transmission over the internet or electronic storage system is completely secure. php555 cannot guarantee absolute security but commits to notifying affected players and the National Privacy Commission in the event of a data breach that is likely to result in risk to your rights and freedoms, as required by the DPA.
11 Your Rights as a Data Subject
11.1 Under the Data Privacy Act of 2012, you have the following rights with respect to your personal data held by php555:
- Right to be informed: The right to be informed of how your personal data is collected, processed, and used — as fulfilled by this Privacy Policy;
- Right of access: The right to obtain a copy of the personal data php555 holds about you, along with information about how it is being processed;
- Right to rectification: The right to request correction of inaccurate or incomplete personal data in your account records;
- Right to erasure: The right to request deletion of your personal data where it is no longer necessary for the purpose for which it was collected, subject to legal retention obligations that may override this right in specific cases;
- Right to object: The right to object to the processing of your personal data for direct marketing purposes or where processing is based on legitimate interest, in circumstances where your interests override those of php555;
- Right to data portability: The right to receive your personal data in a structured, commonly used, and machine-readable format where processing is based on consent or contractual necessity and is carried out by automated means;
- Right to lodge a complaint: The right to lodge a complaint with the National Privacy Commission (NPC) of the Philippines if you believe that php555 has not handled your personal data in compliance with the DPA.
11.2 To exercise any of the above rights, please contact php555's Data Protection Officer using the details provided in Section 15. php555 will respond to all data subject requests within thirty (30) days of receipt. In complex cases, this period may be extended by a further thirty (30) days with notification provided to you.
11.3 php555 will not charge a fee for data subject requests unless a request is manifestly unfounded or excessive, in which case a reasonable fee may be applied in accordance with the DPA's Implementing Rules.
12 Children's Privacy
12.1 The php555 platform is strictly for individuals who are twenty-one (21) years of age or older. php555 does not knowingly collect personal data from any person below the age of 21.
12.2 If php555 becomes aware that personal data has been collected from a person below the minimum age without appropriate parental or guardian consent, that data will be deleted promptly and the associated account will be closed.
12.3 Parents and guardians who believe that a minor may have provided personal data to php555 should contact our support team immediately via the channels listed in Section 15.
13 International Data Transfers
13.1 In some cases, personal data processed by php555 may be transferred to, or accessed by, third-party service providers located outside the Philippines — for example, game software providers or cloud infrastructure providers operating international data centres.
13.2 Where personal data is transferred internationally, php555 ensures that appropriate safeguards are in place to protect the data in accordance with the standards required under the DPA and the regulations issued by the National Privacy Commission. Such safeguards include contractual data transfer agreements that impose equivalent data protection obligations on the receiving party.
13.3 php555 will not transfer personal data to a jurisdiction that does not provide an adequate level of data protection without first implementing appropriate contractual, technical, or organisational safeguards.
14 Amendments to This Policy
14.1 php555 reserves the right to update or amend this Privacy Policy from time to time to reflect changes in our data processing practices, legal obligations, or regulatory requirements.
14.2 Material changes to this Policy will be communicated to registered players via email to their registered address and/or through a prominent notice on the php555 platform at least seven (7) days before the changes take effect, except where immediate changes are required by law or regulatory direction.
14.3 The current version of this Policy, along with the effective date, will always be available at https://php555.cam/privacy-policy. Continued use of the php555 platform following any amendment constitutes acceptance of the revised Policy.
15 Contact & Data Protection Officer
For any questions, concerns, or requests relating to this Privacy Policy or the processing of your personal data by php555, please contact our Data Protection Officer through the following channels:
- Email: [email protected] (plain text — not a clickable link)
- Live Chat: Available 24/7 via the Help section of your php555 account
- Subject line: Include "Privacy / DPO Request" in your subject line for priority routing
If you are not satisfied with php555's response to a data privacy concern, you have the right to lodge a complaint with the National Privacy Commission (NPC) of the Philippines, the independent supervisory authority responsible for enforcing the Data Privacy Act of 2012 in the Philippines.
Your Data Is Safe with php555
256-bit SSL, PAGCOR-licensed, DPA-compliant. Play over 1,000 games on a platform that takes your privacy as seriously as your entertainment. 21+ only.