This Privacy Policy describes how nusstar collects, uses, stores, and protects personal information provided by users of the nusstar platform at nusstar.app and the nusstar mobile application. It is issued in compliance with the Data Privacy Act of 2012 (Republic Act No. 10173) of the Philippines and its Implementing Rules and Regulations.
Six core principles that govern every data processing decision nusstar makes regarding your information.
nusstar collects only the personal data strictly necessary for account registration, KYC compliance, payment processing, and regulatory obligations. We do not collect data that serves no defined lawful purpose.
nusstar does not sell, rent, or trade your personal information to any third party for their own marketing or commercial purposes. Full stop. Your data is used to operate your account — nothing else.
All personal data held by nusstar is encrypted at rest using AES-256 encryption and in transit using TLS 1.3. Access is restricted to authorized personnel on a strict need-to-know basis.
Under RA 10173, you have the right to access, correct, and erase your personal data. nusstar provides tools and a dedicated process to exercise these rights without undue delay or cost to you.
nusstar's data practices comply with the Philippine Data Privacy Act (RA 10173), Anti-Money Laundering Act (RA 9160 as amended), and PAGCOR data sharing requirements applicable to licensed gaming operators.
In the event of a personal data breach that poses a risk to your rights, nusstar will notify you and the National Privacy Commission (NPC) within the timeframes mandated by Philippine law.
Contents
1. Data Controller 2. Data We Collect 3. How We Collect Data 4. Legal Basis for Processing 5. How We Use Your Data 6. Data Sharing & Disclosure 7. Cookies & Tracking 8. Data Retention 9. Data Security 10. Your Rights 11. Minors 12. Cross-Border Transfers 13. Third-Party Links 14. Policy Amendments 15. Contact & DPOFor the purposes of the Philippine Data Privacy Act of 2012 (Republic Act No. 10173) and its Implementing Rules and Regulations, the personal information controller responsible for your data is the operator of the nusstar platform ("nusstar," "we," "us," or "our"), accessible at nusstar.app.
nusstar has appointed a Data Protection Officer (DPO) responsible for overseeing data protection compliance. You may contact the DPO at any time regarding matters covered by this Privacy Policy using the contact details provided in Section 15 of this document.
This Privacy Policy applies to: all personal information collected through the nusstar website (nusstar.app), the nusstar mobile application (iOS and Android), nusstar customer support channels, and any other interaction you have with the nusstar platform or its representatives.
nusstar collects the following categories of personal data, grouped by function:
| Category | Specific Data Points | Purpose |
|---|---|---|
| Identity Data | Full legal name, date of birth, gender, nationality | Account registration, age verification (21+), KYC |
| Contact Data | Email address, Philippine mobile number, residential address | Account communications, OTP delivery, regulatory correspondence |
| Identity Document Data | Government ID type and number, ID images, selfie photograph | KYC identity verification, age compliance, AML obligations |
| Financial Data | GCash / Maya account reference, bank account last digits, transaction history, deposit and withdrawal amounts | Payment processing, AML monitoring, withdrawal verification |
| Gaming Data | Game history, wager amounts, win/loss records, session duration, betting patterns | Account management, responsible gaming monitoring, regulatory reporting |
| Technical Data | IP address, device type and OS, browser type, login timestamps, geolocation (city-level) | Security monitoring, fraud detection, platform optimization |
| Communications Data | Support chat logs, email correspondence, feedback submissions | Customer support, dispute resolution, quality assurance |
| Marketing Preferences | Notification opt-in/opt-out status, preferred communication channel | Promotional communications (only where consent is given) |
nusstar does not collect sensitive personal information as defined under RA 10173 (e.g., health information, political affiliations, religious beliefs) unless specifically required by applicable law or regulation for a defined compliance purpose.
nusstar collects personal data through the following channels:
nusstar processes your personal data under the following lawful bases as provided under the Data Privacy Act of 2012:
nusstar uses the personal data it collects for the following specific purposes:
nusstar does not use your personal data for automated decision-making that produces legal or similarly significant effects on you without human review. Account risk assessments that may affect account status involve human oversight by the nusstar compliance team.
nusstar does not sell your personal data. nusstar shares personal data only in the following limited circumstances:
All third parties to whom nusstar discloses personal data are required by contract or applicable law to process that data only for the specific purpose disclosed and to maintain appropriate security measures.
nusstar uses cookies and similar tracking technologies on the nusstar.app website and mobile application. Cookies are small data files placed on your device that help us operate the platform effectively.
nusstar uses the following categories of cookies:
You may manage cookie preferences through your browser settings or the cookie preference center within the nusstar platform. Withdrawing consent for non-essential cookies will not affect your ability to use core platform functions.
nusstar retains personal data for the minimum period necessary to fulfill the purpose for which it was collected, subject to any longer retention period required by Philippine law.
Upon expiry of the applicable retention period, personal data is securely deleted or anonymized in accordance with nusstar's data destruction procedures.
nusstar implements and maintains appropriate technical and organizational security measures to protect your personal data against unauthorized access, accidental loss, destruction, alteration, or disclosure. These measures include:
Your responsibility: While nusstar employs robust security measures on its end, you are responsible for maintaining the security of your Account credentials. Use a strong, unique password for your nusstar account. Never share your password or OTP codes with anyone — nusstar staff will never ask for your password. Enable SMS 2FA from your account security settings.
Under the Philippine Data Privacy Act of 2012 (RA 10173), you have the following rights with respect to your personal data held by nusstar:
To exercise any of the above rights, submit a written request to nusstar's Data Protection Officer at [email protected] with the subject line "Data Privacy Rights Request." nusstar will verify your identity before processing any request and will respond within the timeframes required by RA 10173.
The nusstar platform is strictly restricted to persons who are 21 years of age or older, as required by PAGCOR regulations applicable to online gaming in the Philippines. nusstar does not knowingly collect personal data from persons under the age of 21.
nusstar enforces this restriction through mandatory age verification during registration, which requires submission of a valid Philippine government-issued ID. Where nusstar discovers or has reason to believe that personal data has been collected from a person under 21, nusstar will immediately suspend the associated account and delete all personal data relating to that individual to the extent permissible by law.
If you are a parent or guardian and believe your child (under 21) has created a nusstar account, please contact nusstar immediately at [email protected].
nusstar's primary data processing infrastructure is located within or in compliance with Philippine data sovereignty requirements. In limited circumstances, personal data may be processed by service providers whose infrastructure is located outside the Philippines — specifically, certain cloud infrastructure and KYC technology providers.
Where personal data is transferred outside the Philippines, nusstar ensures that appropriate safeguards are in place in compliance with RA 10173, including contractual data processing agreements that require the recipient to maintain data protection standards equivalent to Philippine law, or transfers to jurisdictions recognized by the NPC as providing adequate protection.
The nusstar platform does not contain links to third-party websites. However, payment flows may redirect you to third-party payment provider interfaces (e.g., the GCash or Maya app) for transaction authorization. These third-party interfaces are governed by their own privacy policies. nusstar is not responsible for the data practices of payment providers once you have been redirected to their independent applications or websites.
nusstar recommends that you review the privacy policies of GCash (operated by Globe Fintech Innovations, Inc.) and Maya (operated by Maya Philippines, Inc.) to understand how those platforms handle your financial data during payment processing.
nusstar reviews and updates this Privacy Policy periodically to reflect changes in our data practices, applicable Philippine law, or NPC guidance. The effective date of the current version is displayed at the top of this document.
Where amendments are material — meaning they significantly affect your rights or how we use your data — nusstar will notify registered Account holders via email at least 14 days before the amended policy takes effect. For minor or administrative amendments, nusstar may update the policy without advance notice.
Continued use of the nusstar platform following the effective date of any amended Privacy Policy constitutes your acknowledgment of the updated terms. If you do not agree to the amended policy, you must close your nusstar Account before the effective date.
For any questions, concerns, or requests relating to this Privacy Policy or nusstar's data practices, please contact:
Data Protection Officer — nusstar
Email: [email protected]
Subject Line: "Privacy Policy Inquiry" or "Data Privacy Rights Request"
Response Time: Within 3 business days for general inquiries; within 30 days for formal data subject rights requests
Language: English or Filipino accepted
You also have the right to file a complaint with the National Privacy Commission (NPC) of the Philippines if you believe your data privacy rights have been violated. The NPC is the independent government body responsible for enforcing RA 10173. Contact information for the NPC is publicly available through official Philippine government channels.
nusstar is built on transparency — in our games, our payouts, and how we handle your data. Every peso you deposit and every piece of personal information you share is treated with the care it deserves. 21+ only. PAGCOR regulated.
PAGCOR regulated · RA 10173 compliant · 21+ only · Play responsibly