Section 01
1. Introduction
This Privacy Policy ("Policy") describes how pktk ("pktk", "we", "us", "our") collects, uses, stores, and protects personal data belonging to individuals ("Player", "User", "you") who access or use the pktk online casino and sports betting platform at pktk.bio. This Policy forms part of the agreement between you and pktk and should be read together with pktk's Terms & Conditions.
pktk respects your privacy and is firmly committed to handling your personal data responsibly, transparently, and securely. We collect only the data that is necessary to deliver our services, verify your identity, process your transactions, and comply with applicable legal obligations. We do not sell your personal data to third parties for marketing purposes.
Your Consent: By registering an Account on pktk.bio, you acknowledge that you have read and understood this Privacy Policy and consent to the collection and processing of your personal data as described herein. If you do not agree with this Policy, please do not create an Account or continue using the platform.
This Policy applies to all personal data we collect through the pktk website, mobile web interface, customer support communications, and any other interactions you have with pktk. It does not apply to third-party websites or services that may be linked from our platform.
Section 02
2. Who We Are
pktk is an online casino and sports betting platform operating at pktk.bio, serving players across Bangladesh including Dhaka, Chittagong, Sylhet, Khulna, Rajshahi, Barisal, Rangpur, Mymensingh, and Cox's Bazar. pktk provides a range of gaming and wagering services including live cricket betting, slot games, live dealer casino tables, instant games such as Money Wheel, and sports betting markets covering BPL, IPL, T20 World Cup, ICC events, football, kabaddi, and other sports popular in Bangladesh.
For the purposes of this Privacy Policy, pktk acts as the data controller in respect of personal data collected from Players using the pktk.bio platform. As data controller, pktk determines the purposes and means by which your personal data is processed.
If you have any questions about how pktk handles your personal data, or wish to exercise any of the rights described in Section 12 of this Policy, you may contact our Data Protection team at the address provided in Section 16.
Section 03
3. Data We Collect
pktk collects the following categories of personal data from Players. We collect only what is necessary for the purposes described in Section 5 of this Policy:
| Category |
Examples of Data Collected |
Required / Optional |
| Identity Data |
Full legal name, date of birth, gender, National Identity Card (NID) number, passport number, photograph |
Required |
| Contact Data |
Email address, mobile phone number, residential address (city, district, division) |
Required |
| Account Data |
Username, encrypted password, account creation date, account status, session history |
Required |
| Financial Data |
bKash/Nagad/Rocket wallet numbers, bank account details (where applicable), deposit and withdrawal transaction records, balances |
Required |
| Transaction Data |
Betting history, game play records, wager amounts, winnings, bonus usage, cashback claims |
Automatic |
| Technical Data |
IP address, browser type and version, device type, operating system, time zone, screen resolution, session duration |
Automatic |
| Usage Data |
Pages visited, games played, features accessed, search queries, click-through paths, time spent per page |
Automatic |
| Communication Data |
Support chat transcripts, email correspondence, feedback submissions, complaint records |
When applicable |
| Verification Data |
Copies of identity documents submitted for KYC/AML verification, selfies or biometric images where requested |
Required for withdrawals |
We Do Not Collect: pktk does not collect sensitive personal data such as racial or ethnic origin, political opinions, religious beliefs, trade union membership, genetic data, or health data except where strictly required by responsible gaming obligations (e.g., self-exclusion records linked to a Player's own request).
Section 04
4. How We Collect Your Data
pktk collects personal data through the following methods and touchpoints:
- Direct submission: Data you provide when registering an Account, completing identity verification (KYC), making a deposit or withdrawal request, contacting our support team, or submitting a complaint.
- Automated technical collection: Data collected automatically when you access pktk.bio, including IP addresses, device identifiers, browser fingerprints, and session activity logs. This data is captured via server logs, analytics tools, and cookie technology as described in Section 11.
- Payment processors: Transaction confirmation data passed to pktk by approved payment providers including bKash, Nagad, Rocket, Upay, Dutch-Bangla Bank, City Bank, BRAC Bank, Islami Bank, Sonali Bank, Visa, and Mastercard, as necessary to verify and record completed transactions.
- Identity verification partners: Data returned by third-party KYC/AML verification services when they process identity documents you have submitted in connection with your Account.
- Fraud prevention services: Risk signals and device reputation data shared by fraud detection partners to help pktk identify suspicious account activity, bonus abuse, and money laundering patterns.
- Publicly available sources: In limited circumstances, pktk may verify information against publicly available records (such as electoral registers or court databases) as part of AML due diligence obligations.
Section 05
5. Why We Use Your Data
pktk processes your personal data for the following specific purposes. In each case, we have identified the legal basis for that processing in Section 6.
- Account registration and management: To create and maintain your pktk Account, authenticate your identity at login, and manage your Account preferences and settings.
- Identity verification (KYC): To verify that you are who you claim to be, that you are aged 18 or above, and that your Account is not being used for fraudulent or money-laundering purposes.
- Payment processing: To execute deposits and withdrawals via bKash, Nagad, Rocket, Upay, and other approved payment methods, and to maintain accurate financial records of all transactions.
- Delivery of gaming and betting services: To provide access to casino games, live dealer tables, cricket betting markets, slot games, Money Wheel, and other features available on pktk.bio.
- Bonus and promotion management: To administer welcome bonuses, reload bonuses, free bets, cashback offers, and seasonal promotions including Eid, Pohela Boishakh, and BPL season offers, and to enforce applicable wagering requirements.
- Customer support: To respond to your queries, resolve disputes, manage complaints, and provide technical assistance through our live chat and email support channels.
- Fraud prevention and security: To detect, investigate, and prevent fraudulent activity, money laundering, collusion, bonus abuse, and unauthorised Account access.
- Responsible gaming: To monitor gambling behaviour for indicators of problem gambling, to apply deposit limits, cooling-off periods, and self-exclusion measures at your request or where pktk determines intervention is appropriate.
- Legal and regulatory compliance: To comply with applicable anti-money laundering (AML) obligations, age verification requirements, and any court orders or regulatory directions requiring disclosure of Account information.
- Platform improvement and analytics: To analyse usage patterns, improve platform performance, identify popular features, and develop new products and enhancements — using aggregated or anonymised data where possible.
- Direct communications: To send you transactional messages (deposit confirmations, withdrawal receipts, security alerts) and, where you have given consent, promotional communications about relevant offers and platform updates.
Section 06
6. Legal Basis for Processing
pktk relies on the following legal bases when processing your personal data:
- Contractual necessity: Processing required to perform the contract between you and pktk — including account creation, payment processing, and delivering the gaming and betting services you have requested.
- Legal obligation: Processing required to comply with applicable laws, including identity verification and KYC obligations under anti-money laundering frameworks, age verification requirements, and disclosures required by court orders or regulatory authorities.
- Legitimate interests: Processing necessary for pktk's legitimate business interests where those interests are not overridden by your privacy rights — including fraud prevention, platform security, internal analytics, and responsible gaming monitoring.
- Consent: Processing based on your freely given, specific, informed consent — primarily for optional marketing and promotional communications. Where we rely on consent, you may withdraw it at any time by contacting [email protected] or by updating your Account communication preferences.
Withdrawing Consent: If you wish to withdraw consent for marketing communications, you may do so at any time through your Account dashboard or by contacting our support team. Withdrawal of consent for marketing will not affect the lawfulness of processing carried out prior to withdrawal, nor will it affect processing carried out on other legal bases such as contractual necessity or legal obligation.
Section 07
7. Data Sharing & Disclosure
pktk does not sell, rent, or trade your personal data to third parties for their own commercial purposes. We share your data only in the limited circumstances described below, and only to the minimum extent necessary:
- Payment service providers: We share transaction data with approved payment processors (bKash, Nagad, Rocket, Upay, Visa, Mastercard, and partner banks) to the extent necessary to execute your deposits and withdrawals.
- Identity verification and KYC partners: We share identity documents and personal details with accredited third-party verification service providers for the purposes of age verification and AML due diligence.
- Fraud prevention and security partners: We share technical data (IP addresses, device fingerprints, behavioural signals) with fraud detection providers to protect the platform and its players from fraudulent activity.
- Game content providers: Where games are provided by third-party studios — including Pragmatic Play, Evolution Gaming, NetEnt, Microgaming, Spribe, and Ezugi — limited session and wagering data may be shared with those providers to the extent required to deliver the relevant game experience.
- IT and hosting infrastructure providers: Data is stored and processed on servers managed by pktk's hosting and cloud infrastructure partners. These providers act as data processors under written agreements and are not permitted to use your data for their own purposes.
- Legal authorities: pktk may disclose personal data to law enforcement agencies, regulatory authorities, or courts where required by law, where we receive a valid court order, or where disclosure is necessary to protect the rights, property, or safety of pktk, its players, or the public.
- Business transfers: In the event of a merger, acquisition, or sale of all or part of pktk's business assets, your personal data may be transferred to the acquiring entity as part of that transaction. You will be notified of any such transfer via the platform's notification system or by email.
All third parties with whom pktk shares personal data are required to maintain appropriate technical and organisational security measures and to process your data only for the specified purpose and in accordance with pktk's instructions.
Section 08
8. International Data Transfers
pktk's primary operations and data processing activities are directed at users in Bangladesh. In some cases, personal data may be processed by service providers or infrastructure partners located outside Bangladesh. Where such international transfers occur, pktk takes steps to ensure that your data receives an equivalent level of protection to that afforded within Bangladesh.
Safeguards applied to international data transfers include contractual clauses requiring recipient organisations to adhere to data protection standards consistent with this Policy, and technical security measures including encryption in transit and at rest. Where you have concerns about international data transfers affecting your Account data, you may raise these with us using the contact details in Section 16.
Section 09
9. Data Retention
pktk retains your personal data only for as long as is necessary to fulfil the purposes for which it was collected, as set out in this Policy, and to comply with applicable legal obligations. The following general retention guidelines apply:
- Active Account data: Retained for the full duration of your Account's active lifetime and for a minimum of 5 years following permanent Account closure, in order to satisfy AML record-keeping obligations.
- Financial transaction records: Retained for a minimum of 5 years following the date of each transaction, as required by applicable financial regulations.
- Identity verification documents: Retained for a minimum of 5 years following Account closure, or longer where required by applicable AML or regulatory obligations.
- Customer support communications: Retained for a minimum of 2 years from the date of the most recent communication in a support thread.
- Marketing consent records: Retained for as long as you hold an active Account and for 1 year following Account closure or withdrawal of consent, whichever is earlier.
- Technical and usage logs: Typically retained for 12 months on a rolling basis, unless a longer period is required for fraud investigation or legal proceedings.
- Self-exclusion records: Retained indefinitely to ensure that previously self-excluded individuals cannot re-register without completing the required re-admission process.
Following the expiry of the applicable retention period, personal data is securely deleted or anonymised in accordance with pktk's internal data disposal procedures, such that it can no longer be attributed to any identifiable individual.
Section 10
10. Data Security
pktk implements comprehensive technical and organisational security measures to protect your personal data against unauthorised access, accidental loss, destruction, alteration, or disclosure. Our security framework includes the following controls:
- 256-bit SSL/TLS encryption: All data transmitted between your device and pktk.bio is encrypted using industry-standard 256-bit SSL/TLS protocols, the same encryption standard used by major international banking institutions.
- Encrypted data storage: Sensitive personal data and financial information stored on pktk's servers is encrypted at rest using strong cryptographic algorithms. Passwords are hashed using a secure one-way hashing function and are never stored in plaintext.
- Access controls: Access to personal data within pktk's internal systems is restricted on a strict need-to-know basis. All personnel with access to Player data undergo security training and are bound by confidentiality obligations.
- Multi-factor authentication: Administrative access to pktk's internal systems requires multi-factor authentication. Players are encouraged to enable available account security features.
- Penetration testing and vulnerability management: pktk conducts regular security assessments and vulnerability scans of its platform infrastructure to identify and remediate security weaknesses proactively.
- Incident response: pktk maintains a documented security incident response procedure. In the event of a data breach that is likely to result in risk to your rights or freedoms, pktk will notify affected Players without undue delay.
Your Responsibility: While pktk employs robust technical safeguards, the security of your Account also depends on your own practices. Use a strong, unique password for your pktk Account. Never share your login credentials. Access your Account only from trusted devices. Log out after each session, particularly on shared devices. If you suspect your Account has been compromised, contact
[email protected] immediately.
Section 11
11. Cookies & Tracking Technologies
pktk uses cookies and similar tracking technologies to operate and improve the pktk.bio platform, personalise your experience, and understand how players interact with the site. This section explains what cookies we use and why.
What is a cookie? A cookie is a small text file that a website stores on your device when you visit it. Cookies allow the website to remember your preferences and actions over a period of time so you do not have to re-enter them each time you return.
pktk uses the following categories of cookies:
- Strictly necessary cookies: Essential for the pktk platform to function correctly. These include session authentication cookies that keep you logged in, security tokens, and load-balancing cookies. These cannot be disabled without breaking core platform functionality.
- Functional cookies: Used to remember your preferences such as language settings, display preferences, and previously selected game categories, so that your experience is consistent across sessions.
- Performance and analytics cookies: Used to collect aggregated data about how Players navigate the platform — which pages are visited most often, how long sessions last, and which features generate the most engagement. This data is used in anonymised or aggregated form to improve platform performance.
- Fraud detection cookies: Used to generate a persistent device identifier that helps pktk identify suspicious login attempts, detect the use of multiple Accounts from the same device, and flag unusual betting patterns that may indicate fraudulent activity.
You can manage cookie preferences through your browser settings. However, please note that disabling strictly necessary cookies will impair your ability to use the pktk platform and may prevent you from logging in or completing transactions. pktk does not use third-party advertising or retargeting cookies.
Section 12
12. Your Privacy Rights
As a Player on the pktk platform, you have the following rights in relation to your personal data. To exercise any of these rights, please contact us using the details provided in Section 16. pktk will respond to all valid requests within 30 days of receipt.
👁️
Right of Access
Request a copy of the personal data pktk holds about you and information about how it is being used.
✏️
Right to Rectification
Request correction of any inaccurate or incomplete personal data we hold about you.
🗑️
Right to Erasure
Request deletion of your personal data where it is no longer necessary for the purposes it was collected, subject to legal retention obligations.
⏸️
Right to Restriction
Request that we restrict processing of your data in certain circumstances, such as while a rectification request is being reviewed.
📦
Right to Portability
Request a structured, machine-readable copy of the personal data you provided to pktk, where technically feasible.
🚫
Right to Object
Object to processing of your personal data where pktk relies on legitimate interests as the legal basis, including objecting to direct marketing at any time.
Please note that certain rights are subject to exceptions. For example, the right to erasure does not apply where pktk is required to retain data to comply with a legal obligation (such as AML record-keeping) or to establish, exercise, or defend legal claims. Where an exception applies, pktk will explain the reason when responding to your request.
pktk will not charge a fee for exercising your privacy rights unless a request is manifestly unfounded, repetitive, or excessive. In such cases, pktk reserves the right to charge a reasonable administrative fee or to decline the request, with written reasons provided.
Section 13
13. Children's Privacy
🔞 Strictly 18+ Only: The pktk platform is intended exclusively for adults aged 18 years and above. pktk does not knowingly collect, process, or retain personal data from any individual under the age of 18.
Age verification is a mandatory requirement for all players at registration and prior to any withdrawal. If pktk becomes aware that personal data belonging to an individual under 18 has been collected — whether through a false age declaration during registration or through any other means — the affected Account will be immediately suspended, all associated data will be deleted or anonymised as soon as practicable, and any funds held in that Account will be handled in accordance with applicable legal requirements.
If you are a parent or guardian and believe that a minor has created an Account on pktk.bio, please contact us immediately at [email protected] so that we can take prompt action. pktk cooperates fully with responsible gaming authorities and law enforcement agencies in all matters relating to underage gambling.
Section 14
14. Third-Party Links
The pktk.bio platform may from time to time display references to third-party game providers or payment services. Where any such third-party service is accessed, that service operates under its own independent privacy policy and data practices. pktk is not responsible for the privacy practices, data collection activities, or content of any third-party service, and the inclusion of a reference to such a service does not constitute an endorsement of its privacy practices.
Players are encouraged to review the privacy policies of any third-party service they interact with, particularly when providing personal or financial information.
Section 15
15. Changes to This Privacy Policy
pktk reserves the right to update, modify, or replace this Privacy Policy at any time to reflect changes in our data practices, platform features, or applicable legal requirements. Where changes are material — meaning they meaningfully affect your privacy rights or the way we use your personal data — pktk will provide reasonable advance notice through the platform's notification system and, where appropriate, by email to registered Players.
The "Last Revised" date displayed at the top of this Policy reflects the date of the most recent update. Your continued use of the pktk platform following the effective date of any revised Policy constitutes your acceptance of the updated terms. If you do not agree with the revised Policy, you must cease using the platform and request Account closure before the revised Policy takes effect.
The most current version of this Privacy Policy is always available at pktk.bio/privacy-policy. We recommend that you review this page periodically to stay informed of how pktk protects your personal data.
Section 16
16. Contact Us
If you have any questions, concerns, or requests relating to this Privacy Policy or to pktk's handling of your personal data, please contact our Data Protection and Support team using the following details:
- Email (plain text — not a link): [email protected]
- Live Chat: Available 24/7 via the pktk Account dashboard
- Support Hours: 00:00–24:00 Bangladesh Standard Time (BST, UTC+6), every day of the year including Bangladesh public holidays
- Coverage: Serving players in Dhaka, Chittagong, Sylhet, Khulna, Rajshahi, Barisal, Rangpur, Mymensingh, and all of Bangladesh
pktk will acknowledge all privacy-related requests within 48 hours and aims to provide a substantive response within 30 days. Where a request is complex or where a high volume of requests is being processed simultaneously, we will notify you of any expected delay and provide an updated resolution timeline.
18+ Responsible Gaming Reminder: pktk is strictly for adults aged 18 and above. If you feel that gambling is affecting your wellbeing, please visit our
Responsible Gaming page for self-management tools and external support resources. Our support team is available around the clock to assist you.