nustar Privacy Policy
At nustar, your privacy is not an afterthought — it is a core part of how we build and operate our platform. This Privacy Policy explains exactly what data we collect, why we collect it, and how we keep it safe.
1. Overview
This Privacy Policy ("Policy") describes how nustar ("nustar," "we," "us," or "our"), the operator of the online gaming platform at nustar.club, collects, processes, stores, and protects the personal information of users ("you," "Player," or "User") who access or use the nustar platform.
nustar is committed to protecting the privacy and personal data of all players, particularly in accordance with the Republic Act No. 10173, also known as the Data Privacy Act of 2012 of the Philippines ("DPA"), and its Implementing Rules and Regulations. We are also guided by the principles of transparency, legitimate purpose, and proportionality in all our data processing activities.
By registering for a nustar account or using any part of the nustar platform, you acknowledge that you have read and understood this Policy and consent to the collection and processing of your personal data as described herein. If you do not agree with this Policy, you must not use the nustar platform.
2. Data We Collect
nustar collects personal data through several channels: directly from you during registration and account use, automatically through your interaction with the platform, and from third-party service providers where necessary for compliance and payment processing.
2.1 Data You Provide Directly
- Registration data: Full legal name, date of birth, email address, mobile number, and residential address (including city — e.g., Manila, Cebu, Davao, Quezon City, or Makati).
- Identity verification (KYC) data: Government-issued photo ID (e.g., PhilSys ID, passport, driver's license), proof of address, and selfie verification where required.
- Payment data: GCash account number, PayMaya account details, BPI/BDO/Metrobank account information, or card details (Visa/Mastercard). Full card numbers are never stored by nustar — they are processed directly by our PCI-DSS compliant payment partners.
- Communications data: Messages, emails, and chat transcripts exchanged with nustar's support team.
- Responsible gaming data: Self-exclusion requests, deposit limit settings, and cooling-off period preferences.
2.2 Data Collected Automatically
- Device and technical data: IP address, browser type and version, operating system, device identifiers, and screen resolution.
- Usage data: Pages visited, games played, session duration, bet history, win/loss records, and navigation patterns within the nustar platform.
- Location data: General geographic location derived from your IP address, used for compliance and fraud prevention purposes.
- Cookie data: Session cookies, preference cookies, and analytics cookies as described in Section 8 of this Policy.
2.3 Data from Third Parties
- Payment processors: Transaction confirmation, payment status, and fraud signals from GCash, PayMaya, and banking partners.
- Identity verification providers: Results of automated identity checks conducted during KYC verification.
- Fraud prevention services: Risk scores and flagged activity patterns from third-party fraud detection systems.
| Data Category | Examples | Source |
|---|---|---|
| Identity Data | Name, date of birth, government ID | You / KYC provider |
| Contact Data | Email, mobile number, address | You |
| Financial Data | GCash number, bank account, transaction history | You / Payment processors |
| Technical Data | IP address, device ID, browser type | Automatically collected |
| Usage Data | Games played, session length, bet history | Automatically collected |
| Communications Data | Support chat logs, email correspondence | You |
3. How We Use Your Data
nustar uses your personal data only for the purposes described below. We do not use your data for purposes incompatible with those for which it was originally collected without your explicit consent.
- Account creation and management: To register your nustar account, verify your identity, and maintain your account in good standing.
- Service delivery: To provide access to games, process deposits and withdrawals, and deliver the full nustar gaming experience.
- Legal and regulatory compliance: To fulfill our obligations under PAGCOR regulations, the Data Privacy Act of 2012, and applicable anti-money laundering (AML) laws.
- Fraud prevention and security: To detect, investigate, and prevent fraudulent activity, unauthorized account access, and other security threats.
- Responsible gaming: To monitor gaming patterns, enforce self-exclusion requests, apply deposit limits, and identify players who may need support.
- Customer support: To respond to your inquiries, resolve disputes, and improve our support services.
- Platform improvement: To analyze usage patterns and improve the nustar platform's performance, design, and game selection.
- Communications: To send you account-related notifications, security alerts, and — where you have opted in — promotional communications about nustar offers.
4. Legal Basis for Processing
nustar processes your personal data on the following legal bases under the Data Privacy Act of 2012 and applicable regulations:
- Contractual necessity: Processing required to fulfill our obligations under the nustar Terms & Conditions, including account management, payment processing, and game delivery.
- Legal obligation: Processing required to comply with PAGCOR licensing requirements, AML regulations, tax obligations, and other applicable Philippine laws.
- Legitimate interests: Processing for fraud prevention, platform security, and responsible gaming monitoring, where our legitimate interests are not overridden by your data protection rights.
- Consent: Processing for marketing communications and non-essential cookies, where you have provided explicit, informed consent. You may withdraw consent at any time without affecting the lawfulness of prior processing.
5. Data Sharing and Disclosure
nustar does not sell, rent, or trade your personal data to any third party for commercial purposes. We share your data only in the following limited circumstances:
- Payment processors: GCash, PayMaya, BPI, BDO, Metrobank, Visa, and Mastercard receive the minimum data necessary to process your transactions securely.
- Identity verification providers: KYC and AML compliance partners receive identity documents and verification data solely for the purpose of regulatory compliance.
- Fraud prevention services: Third-party fraud detection providers receive technical and behavioral data to identify and prevent fraudulent activity on the nustar platform.
- Regulatory authorities: PAGCOR and other competent Philippine government authorities may receive data where required by law, court order, or regulatory directive.
- IT and infrastructure providers: Cloud hosting and technical service providers who process data on nustar's behalf under strict data processing agreements and confidentiality obligations.
6. Data Retention
nustar retains your personal data only for as long as necessary to fulfill the purposes for which it was collected, or as required by applicable law and regulatory obligations. The following general retention periods apply:
- Account data: Retained for the duration of your active nustar account, plus a minimum of five (5) years following account closure, as required by PAGCOR regulations and AML compliance requirements.
- Transaction records: Retained for a minimum of five (5) years from the date of each transaction, in accordance with Philippine AML laws and PAGCOR reporting requirements.
- KYC and identity documents: Retained for the duration of your account plus five (5) years following closure, or longer if required by a regulatory investigation or legal proceeding.
- Support communications: Retained for two (2) years from the date of the last interaction, unless the communication relates to an ongoing dispute or investigation.
- Cookie and analytics data: Retained for up to thirteen (13) months from the date of collection, after which it is anonymized or deleted.
When your personal data is no longer required for any lawful purpose, nustar will securely delete or anonymize it in accordance with our internal data disposal procedures.
7. Security Measures
nustar implements a comprehensive set of technical and organizational security measures to protect your personal data against unauthorized access, disclosure, alteration, or destruction. These measures include:
- Encryption in transit: All data transmitted between your device and the nustar platform is encrypted using TLS 1.2 or higher.
- Encryption at rest: Sensitive personal data stored on nustar's servers is encrypted using AES-256 encryption.
- Access controls: Access to personal data is restricted to nustar personnel and authorized third parties on a strict need-to-know basis, enforced through role-based access controls and multi-factor authentication.
- Payment security: nustar does not store full card numbers. All card payment data is handled by PCI-DSS Level 1 compliant payment processors.
- Intrusion detection: nustar employs continuous monitoring, intrusion detection systems, and regular security audits to identify and respond to potential threats.
- Staff training: All nustar personnel with access to personal data receive regular data protection and security awareness training.
While nustar takes all reasonable steps to protect your data, no online platform can guarantee absolute security. You are responsible for maintaining the confidentiality of your nustar login credentials and for notifying us immediately if you suspect any unauthorized access to your account.
8. Cookies & Tracking Technologies
nustar uses cookies and similar tracking technologies to operate the platform, remember your preferences, and analyze usage patterns. The following categories of cookies are used on the nustar platform:
- Strictly necessary cookies: Essential for the platform to function. These include session authentication cookies and security tokens. These cookies cannot be disabled without affecting core platform functionality.
- Functional cookies: Used to remember your preferences, such as language settings and display options, to provide a more personalized experience on nustar.
- Analytics cookies: Used to collect aggregated, anonymized data about how players use the nustar platform, helping us identify areas for improvement. These cookies do not identify you personally.
- Responsible gaming cookies: Used to track session duration and enforce responsible gaming limits you have set on your nustar account.
You may manage your cookie preferences through your browser settings. Please note that disabling certain cookies may affect the functionality of the nustar platform. nustar does not use third-party advertising or tracking cookies.
9. Your Data Rights
Under the Data Privacy Act of 2012 of the Philippines, you have the following rights with respect to your personal data held by nustar. To exercise any of these rights, please contact our Data Protection Officer using the details in Section 13.
Right to Access
Request a copy of the personal data nustar holds about you and information about how it is being processed.
Right to Rectification
Request correction of any inaccurate or incomplete personal data nustar holds about you.
Right to Erasure
Request deletion of your personal data where it is no longer necessary for the purpose it was collected, subject to legal retention obligations.
Right to Object
Object to the processing of your personal data for direct marketing or where processing is based on legitimate interests.
Right to Portability
Request a structured, machine-readable copy of the personal data you have provided to nustar, where technically feasible.
Right to Withdraw Consent
Withdraw consent for processing activities based on consent (e.g., marketing emails) at any time, without affecting prior lawful processing.
nustar will respond to all verified data rights requests within thirty (30) calendar days of receipt. In complex cases, this period may be extended by a further thirty (30) days, with prior notice to you. nustar will not charge a fee for handling data rights requests unless they are manifestly unfounded or excessive.
10. Minors and Age Restriction
If nustar discovers or has reason to believe that personal data has been collected from a person under 21 years of age, we will immediately suspend the associated account, delete the collected data, and reverse any transactions where technically and legally possible. If you believe that a minor has registered on the nustar platform, please contact our support team immediately.
nustar employs age verification measures during the registration process and through KYC document checks to enforce this requirement. Parents and guardians are encouraged to use device-level parental controls to prevent minors from accessing online gaming platforms.
11. International Data Transfers
nustar primarily stores and processes your personal data within the Philippines. In certain circumstances, your data may be transferred to and processed in countries outside the Philippines — for example, where nustar uses cloud infrastructure or third-party service providers with operations in other jurisdictions.
Where such transfers occur, nustar ensures that appropriate safeguards are in place to protect your personal data to a standard equivalent to that required under the Data Privacy Act of 2012. These safeguards may include contractual clauses, data processing agreements, and assessments of the recipient country's data protection framework.
12. Changes to This Policy
nustar reserves the right to update or modify this Privacy Policy at any time to reflect changes in our data practices, legal obligations, or platform features. When material changes are made, nustar will notify registered players via email or a prominent notice on the platform prior to the changes taking effect. The date of the most recent revision is displayed at the top of this page.
Your continued use of the nustar platform following the effective date of any updated Policy constitutes your acknowledgment of the changes. We encourage you to review this Policy periodically to stay informed about how nustar protects your personal data.
13. Contact & Data Protection Officer
nustar has appointed a Data Protection Officer (DPO) in accordance with the requirements of the National Privacy Commission of the Philippines. If you have any questions, concerns, or requests relating to this Privacy Policy or the processing of your personal data, please contact us through the following channels:
DPO Email: [email protected]
General Support: [email protected]
Response Time: Within 30 calendar days of receipt
You also have the right to lodge a complaint with the National Privacy Commission (NPC) of the Philippines if you believe that nustar has not handled your personal data in accordance with the Data Privacy Act of 2012. For more information on your rights and how to file a complaint, please refer to the NPC's official resources.
For responsible gaming concerns, please visit our Responsible Gaming page. For general platform questions, visit our FAQ page.
How nustar Keeps Your Data Safe
Six reasons Filipino players trust nustar with their personal information.
End-to-End Encryption
Every piece of data you send to nustar travels over TLS-encrypted connections. Sensitive stored data is protected with AES-256 encryption — the same standard used by major financial institutions.
DPA 2012 Compliant
nustar's data practices are built around the Republic Act No. 10173 — the Data Privacy Act of 2012. We are registered with the National Privacy Commission and maintain a dedicated Data Protection Officer.
PCI-DSS Payment Security
nustar never stores your full card number. All GCash, PayMaya, BPI, BDO, and card transactions are handled by PCI-DSS Level 1 certified payment processors, keeping your financial data out of our servers entirely.
No Data Selling — Ever
nustar does not sell, rent, or trade your personal data to advertisers, data brokers, or any third party for commercial gain. Your data is used only to operate and improve the nustar platform for you.
You Control Your Data
nustar gives you clear, accessible tools to access, correct, or delete your personal data. Submit a data rights request anytime and our DPO team will respond within 30 days — no runaround, no delays.
Responsible Gaming Privacy
Your responsible gaming settings — deposit limits, self-exclusion requests, and session reminders — are treated as sensitive data and handled with the highest level of confidentiality within the nustar platform.
Play with Confidence on nustar
Your privacy is protected, your data is secure, and your rights are respected. Join the nustar community and experience online gaming the way it should be — fair, safe, and built for Filipino players.
21+ Must be 21 years or older to register and play. Please game responsibly.