Reference

How cclub Protects Your Personal Information

We handle your account data, payment details and activity logs with care. This policy explains what we collect, why we collect it, and how you can request changes or deletion — all shaped around our bKash, Nagad and Rocket payment environment.

Data Collection TransparencyAccount-Level ControlLocal Payment PrivacyEncryption in TransitRight to Request Deletion
cclub How cclub Protects Your Personal Information
DATA HANDLING PRACTICES

Explore How We Secure and Manage Your Information

We take a layered approach to keeping your data safe — from the moment you enter your bKash PIN to confirm a deposit, through to the encrypted logs that record your session activity. Below are the six areas that define our data-handling framework, each one designed around the mobile-first payment flow our users rely on daily.

Encryption Standards

All data transmitted between your device and our servers travels through SSL-encrypted channels. This applies to login credentials, payment confirmations from bKash, Nagad or Rocket, and any personal details you update in your profile.

Cookie Usage

We use session cookies to keep you logged in and preference cookies to remember your language and layout choices. No advertising cookies track you across other sites.

Account Security

Your account is protected by your chosen password plus OTP verification on sensitive actions like withdrawal requests. If we detect a login from an unfamiliar device, we send a verification code to your registered number.

Data Retention

We keep your transaction records and account information for as long as your account is active plus any retention period required by applicable local law. Once that window ends, we permanently delete or anonymise the data.

Third-Party Sharing

We share data only with payment processors (bKash, Nagad, Rocket) to complete your transactions and with compliance bodies where local regulation requires it. We do not sell, rent or trade your personal information to marketing companies.

Your Rights and Requests

You can ask us for a full export of the data we hold on you, request corrections to inaccurate details, or ask for deletion of your account and records. Submit a request through live chat, email or the in-app form.

PRIVACY HELP CHANNELS

Reach Us About Your Data Concerns

If you have a question about how your information is stored, shared or deleted, reach out through any of the channels below. Our team handles privacy-related requests with priority so your concern does not sit in a general queue. Mention that your query relates to personal data and we route it directly to the relevant team.

Live Chat Open the chat icon on any page and select the privacy category. A support agent will confirm your identity through your registered phone number before discussing account-level data. This is the fastest route for straightforward questions about what we hold on file.
Email Request Send a message to our support email with the subject line containing your account ID. We respond within a working day for data access requests and typically faster for simple correction queries. Attach any supporting documents if you need to verify ownership of the account.
In-App Request Form Inside your account settings on mobile, there is a dedicated form for privacy requests. Fill in whether you want data access, correction or deletion. The form auto-attaches your account reference so you do not need to type it manually, and you receive a confirmation once submitted.

Check Answers to Common Data Questions

Below are the questions we receive most often about how personal data is handled on our platform. If your specific concern is not covered here, reach out through the support channels above and we will address it directly.

We collect your full name, phone number, email address and the mobile wallet you select for deposits (bKash, Nagad or Rocket). We also record your device type and IP address for security purposes. No additional documents are required unless a withdrawal verification step is triggered.

Your payment details are shared only with the relevant mobile wallet provider to process your transaction — for example, bKash receives only the data needed to confirm a deposit. We do not pass your financial information to advertisers, data brokers or unrelated third parties under any circumstance.

Open the in-app privacy request form or send an email to our support team with your account ID. We will compile a readable export of your stored data — personal details, transaction history and session logs — and deliver it to your registered email. The process typically completes within a few working days.

Yes. Submit a deletion request through live chat, email or the in-app form. Once verified, we remove your personal data and close the account. Any data we are legally required to retain under applicable local law stays on file for the mandated period and is then permanently deleted.

We use session cookies to maintain your login and preference cookies to remember layout choices. There are no cross-site advertising trackers. You can clear or block cookies in your mobile browser settings — doing so may log you out but will not affect your balance or transaction records.

Every transaction between your mobile wallet and our platform is encrypted with SSL. The transfer confirmation travels through secure channels and your wallet PIN is never stored on our servers. Once a deposit or withdrawal completes, only the transaction reference and amount appear in your account history.

Access is restricted to authorised personnel in our support and compliance teams, and only when handling a specific request or obligation. Role-based controls mean a general staff member cannot view your payment details or identity documents. All internal access is logged and auditable.

This policy covers all users who access our platform regardless of location. However, the availability of our services depends on your local law and eligible regions. If you access the platform from a jurisdiction with stricter data-protection requirements, we comply with those standards for your account.

After account closure, we retain your records only for the period required by applicable local regulation — typically to satisfy financial reporting or dispute-resolution obligations. Once that retention window expires, your data is permanently deleted or fully anonymised so it cannot be linked back to you.

Go to your account settings on mobile and update fields like your name or email directly. For changes to your registered phone number or linked wallet, contact support through live chat so we can verify your identity first. Corrections are applied immediately once confirmed and reflected across all stored records.