Official Platform Documents

GGC365 Privacy Policy – Data Protection & Privacy for Malaysian Players

At GGC365, your privacy is not merely a formality — it is our priority. This Privacy Policy transparently explains how we collect, use, store, and protect your personal data as a player on the ggc365 gaming platform. Please take a moment to understand our commitment to the security of your information.

Updated: June 2026 Bahasa Malaysia PDPA Compliant
Main Contents
Data We Collect
How We Use Your Data
Encryption & Security
Third-Party Data Sharing
Player Rights Over Their Data
Cookie Usage
Contact the Privacy Team

GGC365's Six Core Data Protection Pillars

GGC365 takes a comprehensive approach to protecting player privacy. The following are the six key pillars of our commitment to your data security.

256-bit SSL Encryption

All data transmitted between your device and GGC365 servers is protected by bank-grade 256-bit SSL encryption. This means your login credentials, transaction data, and personal details cannot be intercepted or read by any third party during transmission.

Secure & Confidential KYC

The KYC identity verification documents you submit are stored in a protected server environment and are only accessible by staff with specific authorisation. GGC365 never shares your KYC documents with third parties without a legitimate reason and clear legal requirement.

No Data Sales

GGC365 has never and will never sell players' personal information to advertisers, data brokers, or any third party for commercial purposes. Your data belongs to you — we use it solely for platform operations and service improvements.

Secured Database

Player data is stored in databases protected by multi-layered firewalls and strict access controls. Internal security audits are conducted regularly to identify any system vulnerabilities and ensure your data is always maintained to the latest security standards.

Privacy Controls in Your Hands

GGC365 players have the full right to access, correct, or request deletion of their personal data at any time. You can also manage your marketing communication preferences through your account settings or by contacting our support team.

Malaysia PDPA Compliance

GGC365 operates in compliance with the principles of Malaysia's Personal Data Protection Act 2010 (PDPA). This includes the principles of notice, choice, disclosure, security, data integrity, access, and accountability in the handling of all players' personal information.

Important Note: This Privacy Policy explains how GGC365 collects and uses your personal data when you use the ggc365.win platform. By registering or using our platform, you agree to the terms set out in this document. If you have any questions, our privacy team is ready to assist via email at [email protected].

1. Personal Data We Collect

GGC365 collects various types of personal information from players in the course of operating our platform. Below are the categories of data we collect and how they are obtained:

  • Registration information: Full name, date of birth, national ID or passport number, email address, mobile phone number, and encrypted password provided when you register a GGC365 account.
  • KYC Information (Identity Verification): Digital copies of a valid national ID, passport, or driving licence; a verification selfie to confirm identity; and proof of residential address such as a recent utility bill or bank statement.
  • Financial & payment data: Bank account or eWallet numbers (TNG, GrabPay, Boost, DuitNow) used for deposits and withdrawals, transaction history, and FPX information. GGC365 does not directly store credit or debit card numbers — all transactions are processed through licensed third-party secure payment gateways.
  • Platform usage data: Game and betting history, favourite games, active session logs, amounts wagered, wins and losses, and interactions with bonus and promotional features.
  • Technical data: IP address, browser type, operating system, device type, screen resolution, device ID, network information, and cookie data collected automatically when you use the ggc365 platform.
  • Communication with us: Live Chat conversation records, emails sent to the support team, complaints, feedback, and any other written communications with GGC365 staff.

GGC365 only collects data that is strictly necessary to provide platform services, meet legal compliance requirements, and ensure the safety of the platform and its players. We do not collect excessive or irrelevant data beyond the scope of our operations.

2. How GGC365 Uses Your Data

Personal data collected by GGC365 is used for the following purposes, which are interconnected with platform operations and compliance requirements:

  • Account management: Creating, managing, and verifying player accounts; processing logins; and enabling access to all features of the GGC365 platform.
  • Financial transaction processing: Processing deposits and withdrawals securely, verifying payment account ownership, and resolving any financial disputes that may arise.
  • Legal compliance and fraud prevention: Meeting KYC requirements, and detecting and investigating fraudulent activity, money laundering, or identity fraud occurring on the platform. This includes monitoring suspicious transaction patterns.
  • User experience enhancement: Analyzing platform usage patterns to develop new features, enhance the user interface, optimize game performance, and tailor promotional content to player interests.
  • Service communications: Sending transaction notifications, important account updates, security alerts, and information related to changes in platform terms or policies.
  • Marketing (with consent): Sending promotional offers, the latest bonus information, and platform news via email or SMS — only to players who have consented to receive marketing communications.
  • Responsible gaming: Monitoring gameplay patterns to identify early signs of problem gambling and reaching out to players who need assistance through GGC365's responsible gaming programme.
  • Dispute resolution: Investigating and resolving complaints, game disputes, or technical issues reported by players using relevant system log data.

3. Legal Basis for Data Processing

GGC365 processes your personal data on valid legal bases as stipulated by Malaysia's Personal Data Protection Act 2010 (PDPA):

  • Consent: For marketing activities, promotional communications, and any data processing beyond core operational needs — we obtain your explicit consent in advance. You may withdraw this consent at any time.
  • Contract fulfillment: Data processing required to fulfill the service agreement between you and GGC365, including account management, processing deposits and withdrawals, and access to games.
  • Legitimate interest: Data processing for platform security, fraud prevention, internal analytics, and service improvement — where these interests do not override your fundamental privacy rights.
  • Legal obligation: Data processing required to comply with Malaysia's legal obligations, including anti-money laundering (AML) reporting requirements, KYC regulations, and directives from competent authorities.

4. Data Sharing with Third Parties

GGC365 does not sell your data. However, in the course of platform operations, we may share certain data with selected third parties on legitimate grounds:

Third Parties Data Shared Purpose Controls
Payment Gateways (DuitNow, FPX, TNG, GrabPay) Name, account number, transaction amount Deposit & withdrawal processing Minimum required data only
Game Software Provider Anonymous player ID, game history Game operations, technical dispute resolution Anonymised personal data
KYC Verification Provider Identity documents, verification selfie Verified player identity Shared only during the KYC process
Legal Authorities Data required by law Legal compliance, court orders, official investigations Only upon valid legal requirement
Internal Analytics Platform Anonymised personal usage data Performance & user experience improvement Aggregated and anonymised data

5. Data Storage & Retention Period

GGC365 retains your personal data only for as long as necessary for the purposes stated in this Privacy Policy, or as required by applicable law:

  • Active account data: Retained for as long as your account is active and operational. This data is required for the smooth running of the ggc365 platform services.
  • Financial transaction data: Retained for a minimum of 7 years from the transaction date, in line with Malaysia's accounting and anti-money laundering legal requirements.
  • KYC Documents: Retained for the duration of the active account period plus 5 years after account closure, or as required by the relevant authorities.
  • Support communication logs: Retained for 2 years from the date of last interaction for dispute resolution and customer service improvement purposes.
  • Marketing data: Retained until you withdraw consent or request deletion, whichever comes first.
  • After account closure: Personal data that is no longer required will be deleted or anonymised within 90 days after the minimum retention requirement expires, unless there is a legal obligation preventing deletion.

All stored data is protected by the same security measures applied to active account data, regardless of how long it is retained.

6. GGC365 Data Security Measures

GGC365 implements a comprehensive range of technical and organisational security measures to protect your personal data from unauthorised access, loss, destruction, or unintended disclosure:

  • 256-bit SSL/TLS Encryption: All data communications between your device and the ggc365 server infrastructure are encrypted using the latest SSL/TLS protocols, ensuring no third party can intercept or read data in transit.
  • Layered access control: Access to the player database is granted only to staff with a legitimate business need. All access is logged and regularly audited to detect any anomalies.
  • Two-factor authentication (2FA): GGC365 provides two-factor authentication (2FA) for all player accounts. Players are strongly encouraged to enable 2FA to add an extra layer of security to their accounts.
  • 24/7 threat monitoring: The GGC365 security monitoring system operates around the clock to detect intrusion attempts, suspicious activity, and cyberattacks. Our security team responds promptly to any identified threats.
  • Regular security audits: Independent security assessments are conducted periodically by qualified third parties to identify and address any vulnerabilities in the ggc365 system before they can be exploited.
  • Incident response plan: GGC365 has a structured data security incident response procedure. In the event of a data breach affecting your personal information, we will notify you within 72 hours of the incident being confirmed, in line with industry best practices.
Shared Responsibility: While ggc365 implements robust technical safeguards, the security of your account also depends on your own actions. Please use a strong and unique password, enable 2FA, never share your login credentials with anyone, and log out of your account after each session — especially when using a public or shared device.

7. Your Rights as a Data Owner

As a registered GGC365 player, you have the following rights regarding your personal data, in accordance with Malaysia's Personal Data Protection Act 2010 (PDPA):

  • Right of access: You have the right to know what personal data we hold about you and how it is used. Data access requests can be submitted to our privacy team and will be processed within 21 business days.
  • Right to rectification: If you find that any personal information we hold is inaccurate, incomplete, or outdated, you have the right to request a correction by contacting the ggc365 support team.
  • Right to erasure: Under certain circumstances, you may request deletion of your personal data. However, some data may need to be retained to fulfil legal obligations even after account closure.
  • Right to restrict processing: You may request that ggc365 restrict the processing of your data under certain circumstances, such as while a data accuracy verification process is underway.
  • Right to object: You may object to the processing of your data for direct marketing purposes at any time by updating your communication preferences in your account settings or by contacting us.
  • Right to data portability: You have the right to receive a copy of your personal data in a machine-readable format (such as CSV or JSON) for the purpose of transferring it to another service.

To exercise any of the above rights, please contact the ggc365 privacy team via email at [email protected], stating the type of request and your account details. We will respond within 21 business days from the date your request is received.

8. Use of Cookies & Tracking Technologies

GGC365 uses cookies and similar tracking technologies to enhance your experience on the ggc365.win platform. Below is an explanation of the types of cookies we use:

  • Essential cookies (required): These cookies are required for the basic operation of the platform, including maintaining your login session, saving language and currency preferences, and ensuring transaction security. Without these cookies, the platform cannot function properly.
  • Performance & analytics cookies: We use analytics cookies to understand how players interact with the platform — which pages are visited most frequently, time spent, and navigation patterns. This information is used in aggregated form to improve platform design.
  • Functional cookies: These cookies remember your personal preferences and settings — such as game layout, sound settings, and favourite displays — to deliver a more personalised experience on your next visit.
  • Security cookies: Used to detect suspicious activity, prevent fraud, and verify player identity during active sessions on the ggc365 platform.

You can manage your cookie settings through your browser settings. Please note, however, that disabling essential cookies may affect your ability to access or fully use certain features of the GGC365 platform.

9. Children's Privacy

The GGC365 platform is exclusively for users aged 18 years and above only. ggc365 does not intentionally collect, store, or process any personal data from individuals under the age of 18.

  • If GGC365 discovers that personal data of a minor has been inadvertently collected through a breach of the age requirement, we will take immediate steps to delete that data and close the account in question.
  • Parents and guardians who believe their minor child has registered a GGC365 account or submitted personal data without consent are advised to contact us immediately at [email protected] so that prompt action can be taken.
  • GGC365 applies age verification measures during the KYC process to ensure that only adults can fully access our platform services.

10. Amendments to the Privacy Policy

GGC365 reserves the right to update or amend this Privacy Policy from time to time to reflect changes in our data practices, the latest legal requirements, or platform service improvements.

  • Whenever this Privacy Policy is updated, the "Last Updated" date displayed at the top of this page will be revised to reflect the most recent update.
  • For significant amendments that directly affect players' privacy rights, ggc365 will endeavour to notify players via in-platform notifications or their registered email at least 14 days before the changes take effect.
  • Continued use of the GGC365 platform after the effective date of any amended Privacy Policy constitutes your acceptance of the updated privacy terms.
  • You are advised to review this Privacy Policy page periodically to ensure you are always informed of how GGC365 manages your personal data.

11. Contact the GGC365 Privacy Team

If you have any questions, concerns, or wish to exercise your privacy rights, the GGC365 team is ready to assist:

  • Privacy Email: [email protected] — Please use "Privacy Enquiry" as your email subject for faster handling.
  • Platform Live Chat: Reach us directly via Live Chat on the GGC365 platform, available 24 hours a day, 7 days a week in Bahasa Melayu.
  • Response time: Privacy inquiries and data access requests are processed within 21 business days from the date the request is received.

Please include your account username in all privacy-related communications to help us process your request more quickly and accurately. The GGC365 privacy team is available in both Malay and English.

Frequently Asked Questions About GGC365 Privacy

GGC365 does not sell or rent your personal data to any third party for commercial purposes. We only share necessary data with service providers that support platform operations — such as licensed payment gateways, KYC providers, and gaming software vendors — and only the minimum data required for those purposes. Each of our service partners is bound by strict confidentiality agreements. Additionally, we may be required to disclose data to legal authorities when mandated by applicable Malaysian law.

To request deletion of your personal data, contact the ggc365 privacy team via email at [email protected] with the subject line "Data Deletion Request". Include your account username and specify the data you wish to have deleted. Our team will process the request within 21 business days. Please note that certain data such as financial transaction records must be retained for the period prescribed by Malaysian law even after a deletion request is accepted. Data not subject to legal retention obligations will be fully deleted or anonymised.

Yes, completely safe. ggc365 does not store credit or debit card numbers directly on our servers. All financial transactions are processed through licensed third-party payment gateways that meet PCI-DSS security standards. For deposits and withdrawals, ggc365 supports methods such as DuitNow, FPX, TNG eWallet, GrabPay, and Boost — all of which operate on banking security infrastructure established by Bank Negara Malaysia. Your financial data is encrypted in transit and is not accessible to ggc365 staff.

Yes, you can stop receiving promotional emails from ggc365 at any time. There are two simple ways to do so: first, click the "Unsubscribe" link found at the bottom of any promotional email you receive; or second, log in to your ggc365 account, go to Account Settings, and deactivate the marketing communications preference. Changes will take effect within 5 to 7 business days. Please note that unsubscribing from promotional emails does not affect transactional emails and important security notifications related to your account.

When you close your GGC365 account, we will retain your data only for as long as required by Malaysian law — in particular, financial and transaction records must be kept for a minimum of 7 years in accordance with accounting and anti-money laundering regulations. KYC documents will be retained for 5 years after account closure. Data not subject to legal retention obligations will be deleted or anonymised within 90 days of account closure. You will not receive any marketing communications after your account is closed.

Yes, ggc365 is fully committed to complying with Malaysia's Personal Data Protection Act 2010 (PDPA) in all aspects of collecting, using, storing, and processing players' personal data. This covers the seven core PDPA principles: the general principle, the notice and choice principle, the disclosure principle, the security principle, the data integrity principle, the access principle, and the accountability principle. We conduct regular internal compliance reviews and update our privacy practices whenever relevant legislative amendments occur.
Malaysia's Trusted Gaming Platform

Your Privacy is Protected — Start Your GGC365 Experience Today

Create a free account and enjoy over 1,000 hand-picked games backed by the highest level of personal data protection. GGC365 is trusted by more than 500,000 players in Malaysia.

SSL-Protected Data No Data Sales PDPA Compliant 24/7 Privacy Support
Bahasa Melayu