Last Updated: 1 June 2026
1. Who We Are
This Privacy Policy applies to best66.win (hereinafter "best66", "we", "us", or "our"), an online gaming and sportsbook platform serving Malaysian-market users. best66 operates as the data controller for all personal data collected through the best66.win website and associated services.
For all privacy-related enquiries, please contact our data protection team at [email protected].
2. Personal Data We Collect
best66 collects personal data in the following categories, depending on the nature of your interaction with our Platform:
- Identity Data: Full legal name, date of birth, nationality, and government-issued identification details collected during account registration and KYC verification.
- Contact Data: Email address, Malaysian mobile number, and correspondence address provided at registration or subsequently updated in your account profile.
- Financial Data: Payment method information, transaction history, deposit and withdrawal records, and account balance history. best66 does not store full card numbers — payment processing is handled by PCI-DSS compliant third-party payment processors.
- Technical Data: IP address, browser type and version, device identifiers, operating system, time zone, and access logs collected automatically when you visit best66.win.
- Usage Data: Information about how you use the Platform — game sessions, betting activity, pages visited, features used, and session duration — collected for platform improvement, responsible gaming monitoring, and fraud prevention.
- Communications Data: Records of your communications with best66 customer support, including live chat transcripts and email correspondence, retained for quality assurance and dispute resolution purposes.
3. How We Use Your Personal Data
best66 uses your personal data for the following purposes:
- Account management: Creating, maintaining, and administering your best66 Account, including identity verification and age verification to ensure compliance with the 21+ eligibility requirement.
- Service delivery: Processing your deposits and withdrawals, settling bets, crediting bonuses, and providing access to all Platform features.
- Regulatory compliance: Fulfilling anti-money laundering (AML), know-your-customer (KYC), and reporting obligations under applicable international gaming authority regulations and financial crime prevention laws.
- Responsible gaming: Monitoring player activity for indicators of problem gambling behaviour, enforcing self-exclusion requests, and administering responsible gaming tools and limits set by users.
- Fraud prevention and security: Detecting and preventing fraudulent activity, unauthorised account access, and abuse of best66 promotions and services.
- Platform improvement: Analysing aggregated usage data to improve best66's products, user interface, game selection, and overall service quality.
- Marketing communications: Sending you promotional offers, bonus notifications, and news about best66 — only where you have provided consent or where there is a legitimate interest basis. You may opt out of marketing communications at any time.
- Customer support: Responding to your enquiries, resolving disputes, and providing technical assistance.
4. Legal Basis for Processing
best66 processes your personal data on the following legal bases:
- Contractual necessity: Processing required to perform our obligations under your Account Terms & Conditions — including account management, game provision, payment processing, and customer support.
- Legal obligation: Processing required to comply with AML legislation, KYC requirements, and other applicable regulatory obligations imposed by international gaming authority standards.
- Legitimate interests: Processing for fraud prevention, platform security, responsible gaming monitoring, and internal analytics — where such interests are not overridden by your data protection rights.
- Consent: Processing for direct marketing communications, where you have provided explicit opt-in consent. You may withdraw consent for marketing at any time without affecting the lawfulness of processing based on consent before withdrawal.
5. Data Sharing and Disclosure
best66 does not sell, rent, or trade your personal data. We share your data with third parties only in the following circumstances:
- Service providers: Payment processors, KYC verification providers, fraud detection vendors, cloud hosting providers, and customer support platform providers — all operating under contractual data processing agreements that prohibit secondary use of your data.
- Game providers: Where necessary to deliver third-party games on the Platform. Game providers may receive session data required to operate the game. They do not receive your financial or full identity data.
- Regulatory and law enforcement authorities: Where required by applicable law, court order, or a valid regulatory request from a licensing authority or financial intelligence unit.
- Business transfers: In the event of a merger, acquisition, or sale of all or a substantial portion of best66's business assets, personal data may be transferred to the acquiring entity, subject to equivalent data protection commitments.
6. Cookies and Tracking Technologies
best66 uses the following categories of cookies on best66.win:
- Strictly necessary cookies: Essential for the Platform to function. These include session authentication cookies, CSRF protection tokens, and load balancing cookies. These cannot be disabled.
- Functional cookies: Remember your preferences such as language, theme, and last accessed game category to improve your user experience across sessions.
- Analytics cookies: Collect anonymised, aggregated data about how visitors interact with best66.win to help us improve page performance and user journeys. best66 uses internal analytics only — no third-party advertising analytics platforms are used.
You may manage cookie preferences through your browser settings. Disabling strictly necessary cookies will impair your ability to use Platform features including the best66 login function.
7. Data Security
best66 implements appropriate technical and organisational security measures to protect your personal data against accidental or unlawful destruction, loss, alteration, unauthorised disclosure, or access. These measures include:
- 256-bit TLS/SSL encryption for all data in transit between your device and best66.win
- Encryption of sensitive personal data at rest within our database infrastructure
- Role-based access controls limiting internal access to personal data on a strict need-to-know basis
- Regular security assessments and penetration testing of the Platform
- Incident response procedures including breach notification protocols
Whilst best66 takes all reasonable precautions, no internet transmission is entirely secure. You are responsible for maintaining the confidentiality of your best66 login credentials and for notifying us immediately of any suspected unauthorised access.
8. Data Retention
best66 retains personal data for the following periods:
- Active accounts: All personal data associated with an active best66 Account is retained for the duration of the Account's active status.
- Closed accounts: Following Account closure, personal data is retained for a minimum of five (5) years from the date of closure to comply with AML, KYC, and gaming regulatory record-keeping obligations.
- Transaction records: Financial transaction records are retained for a minimum of seven (7) years in compliance with applicable financial record-keeping requirements.
- Support communications: Customer support records are retained for three (3) years following the resolution of the relevant enquiry or complaint.
- Technical logs: Server access logs and technical data are retained for up to twelve (12) months for security and fraud prevention purposes.
Following the expiry of the applicable retention period, your personal data will be securely deleted or anonymised.
9. Your Privacy Rights
Subject to applicable law and regulatory restrictions, you have the following rights in relation to your personal data held by best66:
- Right of access: The right to request a copy of the personal data best66 holds about you.
- Right to rectification: The right to request correction of inaccurate or incomplete personal data in your best66 Account.
- Right to erasure: The right to request deletion of your personal data, subject to our legal retention obligations under AML and gaming regulations.
- Right to restrict processing: The right to request that we limit our use of your personal data in certain circumstances.
- Right to data portability: The right to receive a structured, machine-readable copy of personal data you have provided to us directly.
- Right to object: The right to object to processing based on legitimate interests, including profiling for marketing purposes.
- Right to withdraw consent: Where processing is based on consent, the right to withdraw that consent at any time without affecting the lawfulness of prior processing.
To exercise any of the above rights, please submit a written request to [email protected]. best66 will respond within 30 calendar days. Identity verification may be required before your request is actioned.
10. Children's Privacy
The best66 Platform is strictly intended for adults aged 21 years and over. best66 does not knowingly collect personal data from individuals under the age of 21. If we become aware that personal data has been collected from a person under 21 years of age, that account will be immediately suspended, all personal data will be deleted, and any associated funds will be handled in accordance with our regulatory obligations.
If you believe that a minor has registered a best66 Account, please contact us immediately at [email protected].
11. International Data Transfers
best66 operates internationally and may transfer your personal data to service providers located outside of Malaysia. Where such transfers occur, best66 ensures that appropriate safeguards are in place — including standard contractual clauses, data processing agreements, and adequacy assessments — to protect your personal data to a standard equivalent to that required under applicable data protection law.
12. Changes to This Privacy Policy
best66 reserves the right to update this Privacy Policy at any time. The most current version will always be published at best66.win/privacy-policy, with the effective date noted at the top of the document. Where changes are material, best66 will notify registered account holders by email prior to the changes taking effect.
Your continued use of the best66 Platform following notification of Privacy Policy changes constitutes your acknowledgement of the updated terms.
13. How to Contact Us
For all privacy enquiries, data subject access requests, or concerns about our data handling practices, please contact the best66 data protection team:
- Email: [email protected]
- Subject line: "Privacy Request — [Your Account Username]"
- Response time: Within 30 calendar days of receipt
- Support hours: 24 hours per day, 7 days per week (GMT+8)
We take all privacy enquiries seriously and are committed to resolving them promptly and transparently. For more information about your rights and best66's gaming standards, please also review our Terms & Conditions and Responsible Gaming pages.