LEGAL REFERENCE

How club999 Handles Your Personal Information

At club999, your account data is collected only for the purposes we spell out here — account creation, payment processing through Pakistani rails, and service improvements. We do...

No data sellingPakistani payment data protectedAccount info encryptedTransparent retention periodsYou control your data
club999 How club999 Handles Your Personal Information

What This Privacy Policy Covers and Where

Service availability is jurisdiction-dependent. Users are responsible for checking local law before access.

PRIVACY CONTACT PATHS

Reach Us About Your Data Rights

If you have questions about how your personal data is stored, want to request a copy of your account information, or need...

Privacy Email Send a written data request or deletion query...
Live Chat Our support agents can raise a privacy ticket...
Help Centre Our help centre contains step-by-step instructions for downloading...
POLICY REVIEW STANDARDS

How We Keep This Policy Accurate and Current

club999 reviews this privacy policy whenever payment integrations change, new data categories are introduced, or regional legal requirements are updated. Each review cycle involves our compliance, engineering, and payments teams to ensure...

Annual Policy Audit

We conduct a full policy audit at least once per year, cross-referencing every data category listed here against our live data infrastructure to confirm accuracy and remove any practices that have been retired.

Payment Data Review

Each time we update our JazzCash, Easypaisa, SadaPay or Raast integration, our payments team verifies that the new data flows are reflected in this policy before the integration goes live for Pakistani accounts.

Encryption Standards

We document the encryption standards applied to stored account data and rotate our security protocols in line with current industry benchmarks, with each change logged internally and referenced in our policy revision history.

Data Minimisation

Our engineering team reviews every data collection point quarterly to remove fields that are no longer needed for service delivery, ensuring we never hold more of your information than this policy describes.

Third-Party Processor Vetting

Any third-party processor we use — such as payment gateways or analytics providers — is assessed against our data-sharing criteria before access is granted, and those agreements are reviewed annually.

Change Notification

When a material change is made to this policy, we notify you via your registered contact method at least seven days before the change takes effect, giving you time to review it before it applies to your account.

How This Policy Aligns with Our Other Legal Pages

Our privacy policy does not operate in isolation. It connects directly to our terms of use, cookie policy, and account-security practices, all of which share the same data...

Terms of Use
The data categories defined here match the account-data definitions in our terms of use, so there is no conflict between what you agreed to at sign-up and what this policy describes.
Cookie Policy
Our cookie policy references the same session and device identifiers described here, so the data we collect through cookies is fully accounted for in both documents without duplication or omission.
Account Security Page
The encryption and access-control practices described on our account security page are the same mechanisms this policy references, ensuring the technical reality matches the legal description.
Payment Processing Terms
JazzCash, Easypaisa, SadaPay and Raast transaction references are described identically in our payment terms and in this policy, so you have a consistent picture of how financial data is handled.
Data Retention Schedule
The retention periods stated here are enforced by the same automated deletion schedule referenced in our account-closure procedures, so data is not held beyond the periods we have committed to.
Third-Party Disclosure List
The third-party processors named in this policy match the disclosure list maintained on our compliance page, giving you a single source of truth for all external data relationships.
Regional Scope Statement
The supported-regions wording in this policy mirrors the eligibility language in our terms of use, so Pakistani accounts face no ambiguity about which rules apply to their data.
PRIVACY LAYOUT FEATURES

Key Elements That Shape Our Privacy Approach

The way we handle your data at club999 is built around six concrete practices, each of which you can verify through your account settings or by contacting our...

Data Access Portal Your account dashboard includes a data access section where you...
Consent Records Every consent decision you make — marketing emails, analytics tracking...
Breach Notification If a security incident affects your personal data, we commit...
Account Deletion Process Submitting a verified deletion request through our help centre triggers...
Data Portability We provide your personal data in a structured, machine-readable format...
Children's Data Policy We do not knowingly collect data from minors. If our...

Frequently Asked Questions About Your Data at club999

We collect your name, email address, phone number, and the payment identifier you use — such as your JazzCash number or Easypaisa wallet reference. We also log device type and session timestamps for security purposes.

We share data only with processors who are contractually bound to our data standards — for example, payment gateways that handle your JazzCash or Raast transactions. We do not sell personal information to marketing companies or data brokers.

Following a verified account closure, we retain your data for the period required by applicable Pakistani law and then delete it. Our standard retention period post-closure is stated in the data retention schedule within this policy.

Yes. You can submit a data access request through your account dashboard or by contacting our privacy team directly. We provide the data in a structured format within three working days of verifying your identity.

Payment identifiers are encrypted in transit and at rest using current industry-standard protocols. We store only the reference needed to process your transaction — we never store full wallet credentials or PINs on our servers.

We notify you via your registered contact method at least seven days before any material change takes effect. The revised policy is posted here with an updated effective date so you can review exactly what changed before it applies.

Submit a deletion request through the help centre or email our privacy team. After we verify your identity, we begin a 30-day erasure cycle covering your account details, payment references and session history across our active systems.