PlayFi Global

Privacy Policy & Legal Notice

Last updated: June 05, 2026

1. Legal Notice (Aviso Legal)

1.1. Platform Owner and Operator: PlayFi Global (formerly PlayFi Global Casino, hereinafter "PlayFi") is a digital investment and entertainment platform operating on blockchain technology (Polygon/MATIC network). The Platform is accessible at myplayfi.io.

1.2. Nature of the Platform: PlayFi is a decentralized crypto-based platform that integrates investment contracts, casino gaming, a lottery system, and a referral network. All operations are secured through a verified smart contract (PlayFi Vault) deployed on the Polygon blockchain.

1.3. Regulatory Status: PlayFi operates as a decentralized blockchain-based platform. Users are solely responsible for ensuring that their use of the Platform complies with the laws and regulations of their jurisdiction. The Platform does not target users in jurisdictions where cryptocurrency investments or online gaming are prohibited.

1.4. Investment Disclaimer: The information provided on the Platform does not constitute financial advice, investment advice, or any form of professional advisory service. All investment decisions are made at the user's own discretion and risk. While investments are collateralized through the PlayFi Vault smart contract and the associated PLFI token, users should understand that all digital asset investments involve some degree of risk.

1.5. No Guarantee of Returns: While the Platform is designed to generate returns through its integrated ecosystem (casino revenue, network commissions and smart contract yields), past performance does not guarantee future results. The fixed 1% daily ROI of the UPO v2 model, the 70% Vault recovery threshold, the 300% lifetime cap and the proportional UPO distribution are system design parameters, not guaranteed outcomes. Actual delivery depends on platform activity, deposit inflows and casino revenue. See the Terms and Conditions, Section 5 for the full economic model.

2. Information We Collect

PlayFi collects the following categories of information:

2.1. Account Information:

  • Full name (first and last name)
  • Email address (verified before deposits, withdrawals or gameplay)
  • Username
  • Country of residence (also derived from IP for compliance & geo-blocking purposes)
  • Phone number (optional)
  • Referral/sponsor information (username of the user who invited you)

2.2. Financial Information:

  • Blockchain wallet addresses (MetaMask, Phantom)
  • Transaction history (deposits, withdrawals, investments, ROI, UPO, commissions, lottery, BTC Bet, casino bets)
  • Investment contract details (amount, vault, phase, daily ROI, UPO share, lifetime payout)
  • Wallet balances (Funding, Earnings, Commissions, Gaming)

2.3. Technical Information:

  • IP addresses (used for geolocation, fraud detection, rate-limiting and audit logging)
  • Browser type, version and User-Agent string
  • Device information
  • Session data and cookies (essential session cookie only)
  • Access logs, authentication events and timestamps

2.4. Security Information (when 2FA is enabled). If you enable two-factor authentication on your account, PlayFi will additionally store the encrypted TOTP secret (a 32-byte shared key) and/or a hashed numeric PIN, plus single-use recovery codes (stored hashed). These secrets are used exclusively to validate the 6-digit codes you submit during sensitive actions (withdrawals, password change, email change, wallet-address change). PlayFi will never display or transmit these secrets back to the user after the initial setup; recovery codes are shown once at activation and the user is responsible for storing them safely.

2.5. Audit Trail. The Platform maintains an admin activity log and a user audit trail recording sensitive events — login, password change, email change, withdrawal request, withdrawal approval, contract creation, account quarantine and similar actions — along with the IP address and timestamp of each event. These records are retained for security, compliance and fraud-investigation purposes.

3. How We Use Your Information

We use collected information for the following purposes:

  • Account Management: To create, maintain, and secure your account.
  • Service Delivery: To process deposits, withdrawals, investment contracts, commissions, lottery entries, and casino gameplay.
  • Communication: To send transactional notifications, support responses, and important platform updates.
  • Security: To detect fraud, prevent abuse, and protect the Platform and its users.
  • Compliance: To comply with applicable legal and regulatory requirements.
  • Platform Improvement: To analyze usage patterns and improve our services.

4. Data Storage and Security

4.1. User data is stored on secure servers with encryption at rest and in transit (HTTPS / TLS).

4.2. Passwords are hashed using industry-standard bcrypt and are never stored in plain text. TOTP secrets are encrypted with a server-side key and numeric PINs (if used) are hashed with bcrypt.

4.3. Blockchain-related data (transactions, investments, commissions) is also recorded on the Polygon blockchain, which is publicly accessible and immutable by design.

4.4. Defensive controls. The Platform implements multiple layers of defense, including: HTTPS-only access, CSRF protection on all sensitive endpoints, same-origin checks on the admin panel, server-side rate-limiting (burst and sustained) on login / deposit / withdrawal / game endpoints, IP blocking on repeated abuse, server-authoritative game logic (no client-side trust), atomic wallet operations with row-level database locks, manual review for first-time-wallet withdrawals and large amounts, and quarantine of accounts conclusively proven to commit fraud or exploitation.

4.5. Despite our security measures, no method of electronic storage or transmission is 100% secure. Users acknowledge and accept this inherent limitation.

5. Data Sharing

5.1. PlayFi does not sell, rent, or trade user personal information to third parties.

5.2. We may share information with:

  • Service Providers: Third-party services that assist with payment processing (NowPayments), email delivery, and infrastructure hosting.
  • Blockchain Networks: Transaction data is inherently published on the Polygon blockchain as part of normal blockchain operations.
  • Legal Requirements: When required by law, court order, or governmental authority.
  • Security: When necessary to investigate fraud, protect our rights, or ensure the safety of users.

6. Cookies and Tracking

6.1. The Platform uses session cookies essential for authentication and user experience.

6.2. We do not use third-party advertising cookies or tracking pixels.

6.3. Session cookies are automatically deleted when the user logs out or the session expires.

7. User Rights

Users have the right to:

  • Access: Request a copy of their personal data held by the Platform.
  • Correction: Request correction of inaccurate personal data via their profile settings or by contacting support.
  • Deletion: Request deletion of their account and associated personal data, subject to legal and contractual obligations.
  • Portability: Request their data in a structured, machine-readable format (transaction CSV exports are available within the Platform).
  • Objection: Object to the processing of personal data under certain circumstances.

To exercise any of these rights, contact us at support@myplayfi.io.

8. Data Retention

8.1. Account data is retained for as long as the account is active, plus a reasonable period thereafter for legal and compliance purposes.

8.2. Transaction records and blockchain data are retained indefinitely due to the immutable nature of blockchain technology.

8.3. Upon account deletion request, personal identifiers will be removed or anonymized within 30 days, while financial records may be retained as required by law.

8.4. Quarantined accounts. Accounts placed in quarantine for conclusively proven fraud, multi-accounting or exploitation of vulnerabilities are removed from all public-facing surfaces (chat, network trees, leaderboards, search and standard admin listings). Their data remains in the database for auditing, compliance and potential legal proceedings; quarantine is not a refund of any kind. See Terms & Conditions Section 13 for further detail.

9. Children's Privacy

The Platform is not intended for use by individuals under the age of 18 (or the age of majority in their jurisdiction). We do not knowingly collect personal information from minors. If we become aware that a minor has registered, the account will be terminated immediately.

10. International Data Transfers

As a blockchain-based platform, data may be processed and stored in various jurisdictions. By using the Platform, you consent to the transfer of your information to jurisdictions that may have different data protection laws than your country of residence.

11. Changes to This Policy

We reserve the right to modify this Privacy Policy at any time. Material changes will be communicated via email or platform notification. Continued use of the Platform after changes constitutes acceptance of the updated policy.

12. Contact

For questions or concerns regarding this Privacy Policy or Legal Notice:

© 2026 PlayFi Global. All rights reserved.