Privacy Policy
Last updated: February 2026 ยท Effective immediately
1. Introduction
This Privacy Policy explains how straptastic.co.uk ("we", "us", "our", "the Site") collects, uses, stores and protects your personal data when you visit our website. We are committed to safeguarding your privacy in full compliance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018 (DPA 2018).
Straptastic is an independent information and comparison portal for UK-licensed online casinos. We are not a casino operator and do not process any gambling transactions, hold player funds or manage casino accounts.
2. Data Controller
The data controller responsible for your personal data is:
Straptastic
27 Old Gloucester Street
London WC1N 3AX
United Kingdom
๐ง [email protected]
3. What Data We Collect
3.1 Data You Provide Directly
- Contact form & email: Name, email address and message content when you contact us
- Newsletter: Email address if you subscribe to updates (optional)
3.2 Data Collected Automatically
- Technical data: IP address (anonymised), browser type, operating system, device type, screen resolution
- Usage data: Pages visited, time on site, referral source, click behaviour and scroll depth
- Cookie data: See Section 8 (Cookie Policy) below
3.3 Data We Do Not Collect
We do not collect financial data, gambling history, casino account details, payment card information, government ID numbers or any other sensitive personal data.
4. How We Use Your Data
- To respond to your enquiries and provide customer support
- To deliver newsletter content you have subscribed to
- To analyse website traffic and improve content, structure and performance
- To detect and prevent fraud, abuse and security threats
- To comply with legal obligations under UK law
5. Legal Basis for Processing
Under UK GDPR, we process your data on the following lawful bases:
- Consent (Article 6(1)(a)): Cookie consent, newsletter subscription
- Legitimate interest (Article 6(1)(f)): Website analytics, fraud prevention, content improvement
- Legal obligation (Article 6(1)(c)): Compliance with UK law and regulatory requirements
- Contractual necessity (Article 6(1)(b)): Responding to enquiries you initiate
6. Data Sharing
We may share your data with:
- Analytics providers: Google Analytics (anonymised IP, aggregate statistics)
- Hosting provider: Our web hosting company processes data on our behalf under a data processing agreement
- Affiliate partners: If you click an outbound link to a casino, the destination site has its own privacy policy. We may share a referral identifier (not personal data) with the casino for attribution purposes
We never sell your personal data to third parties. We do not share personal data with advertisers or data brokers.
7. Data Retention
- Contact enquiries: 24 months from your last communication, then deleted
- Newsletter subscribers: Until you unsubscribe, then deleted within 30 days
- Analytics data: Anonymised and aggregated โ retained for up to 26 months
- Server logs: Automatically purged after 90 days
8. Cookie Policy
8.1 What Are Cookies?
Cookies are small text files placed on your device when you visit a website. They help us understand how visitors use our site and enable certain features to work properly.
8.2 Types of Cookies We Use
- Strictly necessary cookies: Essential for the site to function (e.g., cookie consent preferences). These cannot be disabled. Legal basis: legitimate interest.
- Analytics cookies: Google Analytics โ track page views, sessions, referral sources. All data is anonymised. Legal basis: consent.
- Functional cookies: Remember preferences such as theme or language settings. Legal basis: consent.
- Affiliate tracking cookies: When you click an outbound casino link, a cookie may be set to attribute the referral. This does not contain personal data. Legal basis: consent.
8.3 Managing Cookies
You can manage or delete cookies through your browser settings at any time. You can also withdraw cookie consent by clearing cookies and reloading the site. Disabling analytics and affiliate cookies does not affect the core functionality of straptastic.co.uk.
9. Your Rights Under UK GDPR
As a UK data subject, you have the following rights:
- Right of access: Request a copy of the personal data we hold about you
- Right to rectification: Request correction of inaccurate or incomplete data
- Right to erasure: Request deletion of your personal data ("right to be forgotten")
- Right to restriction: Request that we limit processing of your data
- Right to data portability: Receive your data in a structured, machine-readable format
- Right to object: Object to processing based on legitimate interest or direct marketing
- Right to withdraw consent: Withdraw consent at any time for processing based on consent
To exercise any of these rights, email [email protected]. We will respond within 30 days as required by UK GDPR.
10. International Transfers
Your data is primarily stored and processed within the United Kingdom and the European Economic Area (EEA). Where data is transferred outside the UK/EEA (e.g., Google Analytics servers), it is protected by appropriate safeguards including Standard Contractual Clauses (SCCs) approved by the ICO.
11. Data Security
We implement appropriate technical and organisational measures to protect your data, including SSL/TLS encryption on all pages, secure hosting infrastructure, access controls and regular security reviews.
12. Children's Privacy
Straptastic.co.uk is intended for users aged 18 and over only. We do not knowingly collect personal data from anyone under 18. If we become aware that a minor's data has been collected, it will be deleted immediately.
13. Complaints
If you are unsatisfied with how we handle your data, you have the right to lodge a complaint with the Information Commissioner's Office (ICO):
Information Commissioner's Office
Wycliffe House, Water Lane
Wilmslow, Cheshire SK9 5AF
๐ 0303 123 1113
๐ ico.org.uk
14. Changes to This Policy
We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated "Last updated" date. We encourage you to review this page periodically.
Summary: We collect minimal data, never sell it, comply fully with UK GDPR and DPA 2018, and give you complete control over your information. If you have any questions, contact [email protected].