Reference

What keyword Does With Your Account Information

Your account details, wallet activity and device data all fall under how we handle privacy here at keyword — and we want you to know exactly what that means before you share anything with us.

Data You Share With UsHow We Use ItYour Control OptionsThird-Party LimitsAccount Security Practices
keyword What keyword Does With Your Account Information
HOW WE HANDLE DATA

Six Ways We Protect Your Account Information

Trust in a privacy framework is built through specific, consistent practices — not a paragraph of assurances. These six points describe exactly how keyword manages your data at the account and infrastructure level.

Encrypted Storage

Personal details, identity documents and wallet numbers are stored using encryption at rest. This means even if a storage system were accessed without authorisation, your raw data would not be readable without the decryption key held separately by our security…

SSL on Every Page

Every page of keyword — from the login screen to your account wallet — runs over SSL. Data moving between your phone and our servers is encrypted in transit, including the transaction confirmation messages you receive after a bKash or…

No Third-Party Data Sales

We do not sell your personal data — name, phone number, wallet details — to external advertising networks or data brokers.

Session Monitoring

Unusual session behaviour — multiple logins from different devices in a short window, or an unfamiliar location — triggers an internal flag on your account.

Data Retention Limits

We keep your account data only as long as is necessary for operations or as required by applicable rules in eligible regions.

Your Right to Access

You can request a copy of the personal data we hold about you at any time by contacting our support team.

keyword What Our Privacy Practices Actually Cover

What Our Privacy Practices Actually Cover

When you open an account with keyword, you share a few things with us: your name, contact details, and — when you make a deposit via bKash, Nagad, or Rocket — your mobile wallet number. We collect that information to run your account, process transactions, and keep your wallet activity secure. We do not sell your personal data to unrelated third parties,

and we do not share your bKash or Nagad transaction history with marketing networks outside the platform. Device data — the type of phone you use, your browser session — helps us keep your login consistent across sessions. If you switch from mobile to desktop mid-session, we use that device signal to maintain continuity, not to build a profile on you. Any

data we hold is kept only as long as it is needed for account operations or as required by applicable rules in eligible regions. You can contact our support team to ask what we hold about you.

PRIVACY HELP PATHS

How to Get Help With a Privacy Question

If something about your data does not look right — or you want to understand what we hold about your account — our support team can walk you through it. Here are the three paths available to you.

Live Chat Support Reach the support team directly through the live chat widget inside your account. If your question involves wallet data from bKash, Nagad, or Rocket, have your registered mobile number ready. Support is available around the clock, and privacy-related queries are routed to account operations staff who can access your data records.
Email Data Request For formal data access or correction requests, send a message to our support email address listed in the contact section of your account page. Include your registered account name and mobile number so we can verify your identity before pulling any records. We aim to respond within a reasonable timeframe in line with applicable regional rules.
Account Settings Panel Your account settings panel lets you review the personal details we have on file, update your contact information, and check which devices have active sessions. You do not need to contact support for routine data reviews — the settings panel is the quickest path for checking and editing what we hold about you.
MOBILE PRIVACY FLOW

How Privacy Works When You Access keyword on Your Phone

Most account activity on keyword happens on mobile — topping up via bKash between commutes, checking your wallet balance, or picking up a session left open earlier in the day. Because of that, our privacy practices are built with the mobile environment in mind. When you return to a session on your phone, we use a secure token rather than asking you to re-enter your full credentials each time — that token is stored locally on your device and does not transmit your password. If you clear your browser or switch devices, the token expires and a fresh login is required.

Secure session token on return login
Masked wallet number in external comms
Notification alerts for account events only
Auto-session expiry on device switch
keyword mobile gaming
THREE PRIVACY AREAS

Key Areas Our Privacy Practices Address

Privacy at keyword is not a single policy paragraph — it touches your wallet, your login, and how your account data moves. Here are three specific areas we keep a close eye on for you.

keyword mobile gaming
bKash, Nagad and Rocket Transaction Records
Every deposit or withdrawal you make through bKash, Nagad, or Rocket generates a transaction record on your account.
Device and Session Logs
We log the device type and session time each time you access keyword — on mobile or desktop.
Name, Contact and Identity Records
Your name, phone number and any identity document you submit for account verification are stored in an encrypted environment.
WHAT MAKES IT WORK

Six Elements That Define Our Privacy Framework

A privacy framework is only as solid as the specific practices behind it. These six elements are the ones that have the most direct impact on your account experience at keyword — from your first deposit via bKash to how your data is stored long after a session ends.

Account Verification Flow When you submit identity documents for account verification, the files are transferred over SSL and stored in an encrypted environment. Staff with access to verification records are limited to the account operations team, and access is logged. Verification status is visible to you inside your account dashboard at all times.
Wallet Transaction Privacy Deposits and withdrawals through bKash, Nagad, and Rocket are processed through a payment gateway that receives only the transaction amount and your account reference — not your full personal profile. Your transaction history within keyword is visible only to you in your wallet page and to account operations staff when resolving a query.
Cookie and Device Data We use cookies to maintain your login session and remember your preferences — not to build an advertising profile. Device data (phone model, browser type, operating system) is used for session continuity so you can pick up where you left off when switching between mobile and desktop within the same account.
Marketing Communications Opt-Out If we send you account-related messages — wallet updates, session alerts — those are tied to your account and cannot be opted out of without closing the account. Promotional messages, where applicable, can be managed from your notification settings. We do not pass your contact details to external marketing partners.
Minor Account Prevention Account verification checks are in place to ensure the platform is accessed only by eligible individuals in supported regions. Where local law sets an eligibility age, our verification process is designed to screen for that. Availability depends on your local law and eligible region at the time of access.
Policy Update Notices When our privacy practices change in a way that affects how your data is used, we notify you via your registered contact — either by message to your account or to your registered mobile number. We do not silently update practices that affect wallet data or identity records without giving you a heads-up first.

Privacy Terms You Should Know Before You Start

Some of the language in a privacy framework can feel abstract. Here is a plain-language breakdown of the terms most relevant to your account at keyword — so you know exactly what is meant when we use them.

01
What is personal data in the context of my account?

Personal data is any information that identifies you — your name, phone number, mobile wallet number (bKash, Nagad, Rocket), email address, or identity documents. It includes anything you submit when opening or verifying your account with keyword.

02
What does data encryption mean for my account?

Encryption converts your stored information into an unreadable format that can only be decoded with a specific key. For your account at keyword, this means personal details and transaction records cannot be read directly even if a storage system is accessed without permission.

03
What is a session token and how does it affect my login?

A session token is a temporary, secure code stored on your device after you log in. It lets keyword recognise your returning session without you re-entering your password. The token expires automatically if you switch devices or clear your browser.

04
What does KYC mean in account verification?

KYC stands for Know Your Customer — a process where you submit identity documents so keyword can confirm who you are. This is required before withdrawals are processed and helps protect your account from unauthorised use. Applicable requirements vary by eligible region.

05
What is a data retention period?

A data retention period is the length of time keyword keeps your personal information after it is no longer needed for active account operations. Once the period ends and your account is closed, personal data is deleted or anonymised from our live systems.

06
What are cookies and why does keyword use them?

Cookies are small files stored on your device by your browser when you visit keyword. We use them to maintain your login session, remember your preferences, and support device continuity between mobile and desktop. We do not use cookies to build advertising profiles.

07
What is a third-party data processor?

A third-party data processor is an external service that handles some of your data on our behalf — for example, the payment gateway that processes your bKash or Rocket deposit. They receive only the data needed for that specific task and cannot use it for their own purposes.

08
What does 'data subject access request' mean?

A data subject access request is when you formally ask keyword to show you what personal information we hold about you. You can make this request via our support email. We verify your identity first, then provide the information within a reasonable period.

09
What is SSL and why does it matter on a casino platform?

SSL (Secure Sockets Layer) encrypts the connection between your phone or browser and keyword's servers. Every page — including your wallet page and login screen — runs over SSL, so data like your bKash wallet number or account credentials cannot be intercepted in transit.

Questions We Get Asked About Privacy at keyword

These are the questions that come through support most often when it comes to account privacy, data handling and wallet security. If your question is not here, the live chat team can help you directly — around the clock.

We share your bKash or Nagad number only with the payment processor handling your specific transaction, and only for that purpose. We do not pass wallet numbers to marketing partners, affiliates or any unrelated third party. Your wallet activity stays within your account records and our payment operations team.

Yes. Send a data access request to our support email with your registered name and mobile number. We will verify your identity and then provide a clear summary of what we hold. You can also review and update your contact details directly from your account settings panel without contacting support.

When you permanently close your account, we retain your data for the period required by applicable rules in your eligible region. After that retention period ends, personal data is deleted or anonymised from our active systems. We do not keep your wallet number or identity documents indefinitely after closure.

Yes. Login on mobile uses an SSL-encrypted connection, and after your initial login a session token keeps your session active without re-transmitting your password. If you access keyword from a new device or clear your browser, the existing token expires and a fresh, verified login is required.

Your account settings panel shows active sessions, including the device type and approximate time of each login. If you see a session you do not recognise, you can end it from the panel immediately and then contact our live chat support to report the activity and secure your account.

No. Data you share with keyword — your name, phone number, wallet details — is used for account operations and transaction processing, not for building advertising profiles. Cookies on the platform are scoped to session management and preference storage, not to external ad networks.

At account opening, we collect your name and a contact method — usually a mobile number. When you make your first withdrawal, we ask for identity verification documents. The exact requirements depend on applicable rules in your eligible region. We do not collect more than what is needed for each stage of account operation.

Rocket transactions processed through keyword are handled by a payment gateway that receives your account reference and transaction amount only — not your full personal profile. Your Rocket number is stored in your account in masked form and is not shared with parties outside the payment processing chain for that specific transaction.

Promotional communications — where applicable — can be managed from the notification settings inside your account. Essential account messages (wallet confirmations, login alerts) cannot be turned off while your account is active, as these are part of keeping your account secure. Contact support if you need help adjusting your notification preferences.

Contact our support team immediately — via live chat or the support email listed in your account page. Describe what you think happened and include your registered mobile number so we can pull up your account quickly. We will investigate and respond with findings. Availability of formal complaint channels depends on applicable rules in your eligible region.