taya20 Privacy Policy
At taya20, we take your privacy seriously. This Privacy Policy explains exactly what personal information we collect, how we use it, who we share it with, and the rights you have over your own data as a taya20 player in the Philippines.
Our Privacy Commitments to You
Before reading the full policy, here are the six core privacy commitments taya20 makes to every registered player.
1Introduction
taya20 ("we," "us," or "our") is committed to protecting the privacy and personal data of every player who uses the taya20 online gaming platform. This Privacy Policy describes how taya20 collects, uses, stores, shares, and protects your personal information when you visit, register, or engage with any service offered through our website at taya20.net.
This policy has been prepared in compliance with Republic Act No. 10173, otherwise known as the Data Privacy Act of 2012 of the Philippines (DPA), its Implementing Rules and Regulations, and all relevant issuances from the National Privacy Commission (NPC). taya20 operates under a framework designed to uphold the rights of data subjects and ensure that personal information is processed lawfully, fairly, and transparently.
By accessing the taya20 platform, creating an account, or making use of any of our services, you acknowledge that you have read and understood this Privacy Policy and agree to the collection and processing of your personal data in accordance with the terms set out herein. If you do not agree with any part of this policy, please discontinue your use of the taya20 platform immediately.
This Privacy Policy should be read in conjunction with taya20's Terms and Conditions and Responsible Gaming Policy, all of which together govern your relationship with taya20.
2Data Controller
For the purposes of the Data Privacy Act of 2012 and its implementing rules, taya20 acts as the personal information controller (PIC) in respect of your personal data. This means taya20 determines the purposes for which, and the manner in which, your personal information is collected, stored, used, and disclosed.
taya20 has appointed a Data Protection Officer (DPO) who is responsible for overseeing compliance with data protection obligations and serving as the primary point of contact for data subject inquiries, requests, and complaints. Contact details for the DPO are provided in Section 15 of this policy.
3Data We Collect
taya20 collects several categories of personal data from players in order to provide, operate, and improve our gaming platform. The categories of data we collect include the following:
| Category | Examples | Purpose |
|---|---|---|
| Identity Data | Full legal name, date of birth, gender, government-issued ID (SSS, UMID, PhilSys, passport, driver's license) | KYC verification, age verification, account registration |
| Contact Data | Email address, mobile number, home address (city/province in the Philippines) | Account communications, security alerts, customer support |
| Financial Data | GCash number, Maya account, bank account details (BPI, BDO, Metrobank), transaction history | Processing deposits and withdrawals, fraud prevention |
| Gaming Activity Data | Game history, bet amounts, win/loss records, session duration, bonus usage | Platform operation, responsible gaming monitoring, dispute resolution |
| Technical Data | IP address, device type, browser type, operating system, cookies, session tokens | Security, fraud detection, platform optimization |
| Behavioral Data | Pages visited, features used, click patterns, time spent on platform | User experience improvement, personalization |
| Communications Data | Live chat transcripts, email correspondence, support ticket content | Customer support quality, dispute resolution, compliance records |
4How We Collect Your Data
taya20 collects your personal data through a variety of means, including directly from you and automatically through your use of the platform. The primary methods of data collection are as follows:
- Account Registration: When you create a taya20 account, you provide identity and contact information directly through the registration form.
- KYC Verification: During the identity verification process, you submit government-issued identification documents and proof of address or payment method ownership.
- Deposits and Withdrawals: Financial data is collected when you initiate deposit or withdrawal transactions through supported payment channels such as GCash, Maya, QR Ph, GrabPay, BPI, BDO, or 7-Eleven CLiQQ.
- Platform Usage: Technical and behavioral data is collected automatically as you interact with the taya20 website and its games, through server logs, cookies, and analytics tools.
- Customer Support: When you contact taya20 via live chat or email, the content of those communications is recorded and stored for quality assurance and compliance purposes.
- Promotions and Surveys: If you participate in a taya20 promotion, contest, or player satisfaction survey, any information you voluntarily submit is collected and processed for that purpose.
- Third-Party Verification Services: taya20 may receive identity and fraud-related data from third-party KYC verification providers or payment processors as part of our compliance workflow.
5How We Use Your Data
taya20 uses your personal data only for legitimate, specified purposes that are directly related to the operation of the gaming platform and fulfillment of our legal obligations. The primary purposes for which we process your data are as follows:
- Account Management: To create, maintain, and administer your taya20 player account, including processing login authentication and account security features.
- Identity and Age Verification: To comply with PAGCOR requirements by verifying that all players are aged 21 years or older and that account holders are who they claim to be.
- Payment Processing: To facilitate the deposit of funds into and withdrawal of funds from your taya20 account wallet via your chosen payment method.
- Platform Delivery: To provide access to taya20's full catalog of games, including slots, live casino tables, sports betting, sabong, bingo, and other gaming content.
- Fraud and Security Monitoring: To detect, investigate, and prevent fraudulent activity, money laundering, bonus abuse, multi-accounting, and other prohibited conduct on the platform.
- Responsible Gaming: To monitor gaming activity and identify players who may be exhibiting problem gambling behaviors, and to administer self-exclusion, cooling-off, and deposit limit tools.
- Customer Support: To respond to your inquiries, resolve disputes, and provide technical assistance in relation to your taya20 account or gaming activity.
- Legal Compliance: To fulfill obligations under applicable Philippine law, PAGCOR regulations, anti-money laundering (AMLA) requirements, and any lawful order issued by a competent authority.
- Marketing Communications: To send you promotional offers, bonus alerts, and gaming-related news via your registered email or mobile number — subject to your stated communication preferences and opt-out rights.
- Platform Improvement: To analyze aggregated usage data in order to improve the design, performance, and features of the taya20 platform for all Filipino players.
6Legal Basis for Processing
Under the Data Privacy Act of 2012, taya20 is required to have a lawful basis for each category of personal data processing it undertakes. The following table summarizes the legal bases on which taya20 relies for its key processing activities:
| Processing Activity | Legal Basis |
|---|---|
| Account registration and identity verification | Performance of a contract; Compliance with legal obligation (PAGCOR/AMLA) |
| Processing deposits and withdrawals | Performance of a contract |
| Fraud detection and security monitoring | Legitimate interest; Compliance with legal obligation |
| Responsible gaming monitoring and interventions | Legitimate interest; Compliance with regulatory obligation |
| Sending marketing and promotional communications | Consent (withdrawable at any time) |
| Responding to legal orders and regulatory inquiries | Compliance with legal obligation |
| Platform analytics and improvement | Legitimate interest (aggregated/anonymized data) |
7Data Sharing & Disclosure
taya20 does not sell, rent, or trade your personal data to unaffiliated third parties. However, in order to operate the platform effectively and comply with applicable legal obligations, taya20 may share your personal data with the following categories of recipients:
- Payment Service Providers: GCash, Maya, GrabPay, BPI, BDO, Metrobank, and other payment processors receive the minimum necessary data required to process your deposit or withdrawal transaction securely.
- KYC and Identity Verification Providers: Third-party identity verification services may process your government-issued ID and facial verification data on taya20's behalf for the purpose of meeting PAGCOR compliance requirements.
- Game Content Providers: Licensed third-party game providers that supply content to the taya20 platform may receive anonymized or pseudonymized player data necessary for game delivery, RNG certification, and dispute resolution.
- Regulatory and Law Enforcement Authorities: taya20 is legally required to disclose certain player data to PAGCOR, the Anti-Money Laundering Council (AMLC), the National Privacy Commission, and other competent Philippine authorities upon receipt of a lawful order, subpoena, or regulatory inquiry.
- IT and Security Service Providers: Third-party cloud hosting, cybersecurity, and data analytics providers who process data strictly on taya20's behalf and under binding data processing agreements.
- Professional Advisors: Legal counsel, auditors, and compliance consultants who are bound by professional confidentiality obligations and require access to relevant records in the course of their engagement with taya20.
All third-party data processors engaged by taya20 are required to enter into formal data processing agreements that impose binding data protection obligations consistent with the Data Privacy Act of 2012 and taya20's internal data governance standards.
8Cookies & Tracking Technologies
taya20 uses cookies and similar tracking technologies on its website to enhance your user experience, maintain session continuity, detect fraud, and gather aggregated analytics data. A cookie is a small text file placed on your device by a website when you visit it.
The categories of cookies used by taya20 are as follows:
- Strictly Necessary Cookies: These cookies are essential for the taya20 platform to function correctly. They enable core features such as user authentication, session management, and secure access to your account. These cannot be disabled.
- Functional Cookies: These cookies remember your preferences, such as language settings and communication options, to provide a more personalized experience.
- Analytics Cookies: These cookies allow taya20 to understand how players interact with the platform, which pages are visited most frequently, and where technical issues occur. Data collected is aggregated and anonymized.
- Security Cookies: These cookies assist taya20 in detecting and preventing fraudulent activity, bot access, and suspicious login patterns.
9Data Security
taya20 implements a comprehensive set of technical, organizational, and physical security measures designed to protect your personal data against unauthorized access, disclosure, alteration, loss, or destruction. Our key security measures include:
- Encryption in Transit: All data transmitted between your device and taya20's servers is encrypted using Transport Layer Security (TLS) with a minimum of 256-bit encryption strength.
- Encryption at Rest: Sensitive personal data stored in taya20's databases, including financial information and government ID scans, is encrypted at rest using AES-256 or equivalent standards.
- Access Controls: Access to personal data is restricted on a strict need-to-know basis. taya20 employees are granted access only to the data necessary to perform their specific job functions, and all access is logged and audited.
- Two-Factor Authentication (2FA): taya20 supports and encourages the use of two-factor authentication for player accounts to add an additional layer of identity verification at login.
- Penetration Testing: taya20's platform undergoes regular independent security assessments and penetration testing to identify and remediate potential vulnerabilities before they can be exploited.
- Incident Response: taya20 maintains a documented data breach response plan. In the event of a personal data breach that poses a risk to data subjects, taya20 will notify the National Privacy Commission within 72 hours and affected players without undue delay, in accordance with NPC Circular No. 16-03.
10Data Retention
taya20 retains personal data only for as long as is necessary to fulfil the purpose for which it was collected, or as required by applicable law or regulatory obligation. The following retention periods apply to the main categories of personal data processed by taya20:
| Data Category | Retention Period | Basis |
|---|---|---|
| Account and identity data | Duration of account + 5 years post-closure | PAGCOR and AMLA regulatory requirements |
| Financial transaction records | 5 years from date of transaction | Anti-Money Laundering Act compliance |
| Gaming activity logs | Duration of account + 3 years post-closure | Dispute resolution; regulatory audit |
| Customer support communications | 3 years from date of interaction | Dispute resolution; quality assurance |
| Marketing consent records | Until consent is withdrawn + 1 year | Evidence of consent; legal compliance |
| Technical and log data | 12 months from collection | Security monitoring; fraud detection |
Upon expiry of the applicable retention period, personal data is securely deleted, anonymized, or archived in a manner that prevents re-identification, in accordance with taya20's data retention and disposal procedures.
11Your Rights as a Data Subject
Under the Data Privacy Act of 2012 and its implementing rules, you have the following rights in respect of your personal data held by taya20. You may exercise any of these rights by submitting a written request to taya20's Data Protection Officer at the contact details provided in Section 15.
- Right to be Informed: You have the right to be informed that your personal data is being collected and processed, including the purposes and basis for that processing — as set out in this Privacy Policy.
- Right to Access: You have the right to request a copy of the personal data taya20 holds about you, along with information about how it is being processed.
- Right to Rectification: If any personal data taya20 holds about you is inaccurate or incomplete, you have the right to request that it be corrected or updated.
- Right to Erasure: Subject to applicable legal retention obligations, you have the right to request the deletion of your personal data where it is no longer necessary for the purpose for which it was collected, or where you have withdrawn consent and no other legal basis for processing applies.
- Right to Object: You have the right to object to the processing of your personal data for direct marketing purposes at any time. You may also object to processing based on legitimate interest, subject to taya20's overriding legitimate grounds.
- Right to Data Portability: Where technically feasible, you have the right to request that taya20 provide your personal data in a structured, commonly used, machine-readable format.
- Right to Lodge a Complaint: If you believe taya20 has violated your data privacy rights, you have the right to file a complaint with the National Privacy Commission (NPC) of the Philippines.
12Children's Privacy
The taya20 platform is strictly intended for adults aged 21 years and older, in accordance with PAGCOR regulations governing online gaming participation in the Philippines. taya20 does not knowingly collect, process, or store personal data from individuals under the age of 21.
If taya20 becomes aware that an account has been created by or on behalf of a person under 21 years of age, that account will be immediately suspended pending investigation, and any remaining balance will be handled in accordance with applicable PAGCOR directives and Philippine law. The relevant personal data will be deleted as soon as practicable following the resolution of the account closure process.
13International Data Transfers
taya20 primarily processes and stores personal data within servers located in the Philippines or in jurisdictions that provide an adequate level of data protection as recognized by the National Privacy Commission. In certain cases, personal data may be transferred to or accessed from servers located outside of the Philippines — for example, when using global cloud infrastructure providers or international game content delivery networks.
Where such international transfers occur, taya20 ensures that appropriate safeguards are in place to protect your personal data, including:
- Transfers only to countries or territories that the NPC has recognized as providing an adequate level of personal data protection.
- Implementation of binding data processing agreements incorporating the standard contractual clauses prescribed or approved by the National Privacy Commission.
- Application of additional technical safeguards such as end-to-end encryption for all cross-border data flows involving personal information.
By using the taya20 platform, you consent to the transfer of your personal data to these jurisdictions under the safeguards described above.
14Updates to This Privacy Policy
taya20 reserves the right to update or revise this Privacy Policy at any time to reflect changes in our data processing practices, new legal or regulatory requirements, or improvements to our platform. When material changes are made to this policy, taya20 will notify registered players by posting a prominent notice on the taya20 website and, where reasonably practicable, by sending a notification to your registered email address at least seven (7) days before the changes take effect.
The date of the most recent revision to this Privacy Policy is clearly indicated at the top of this page. Your continued use of the taya20 platform following the effective date of any revised Privacy Policy constitutes your acceptance of the updated terms. If you do not agree with the changes, you should discontinue your use of the platform and may request account closure as described in our Terms and Conditions.
We encourage you to review this Privacy Policy periodically to stay informed of how taya20 is protecting your personal data.
15Contact & Data Protection Officer
If you have any questions, concerns, or requests regarding this Privacy Policy or taya20's data processing activities, you may contact our Data Protection Officer directly using the details below. All data subject requests and privacy-related complaints should be directed to the DPO in the first instance.
Email: [email protected] (plain text — not a clickable link)
Subject Line: "Data Privacy Request — [Your Account ID]"
Availability: Monday to Friday, 9:00 AM – 6:00 PM (Philippine Standard Time)
Response Time: Acknowledgment within 5 business days; substantive response within 30 calendar days
If you are not satisfied with taya20's response to your data privacy concern, you have the right to escalate your complaint to the National Privacy Commission of the Philippines (NPC) at www.privacy.gov.ph. The NPC serves as the independent regulatory body responsible for the administration and enforcement of the Data Privacy Act of 2012 in the Philippines.
For general customer support inquiries not related to data privacy, please contact our 24/7 support team through the live chat feature available on the taya20 platform.
Your Privacy Is Safe with taya20
Now that you know exactly how taya20 handles your personal data, you can play with full confidence. Enjoy hundreds of certified games, lightning-fast GCash payouts, and 24/7 Filipino support — all on a platform built with your privacy front and center. Must be 21 years or older to participate.