Data Protection

Privacy Policy sga508 — Personal Data Protection for Malaysia Members

Your privacy is not merely a legal obligation for sga508 — it is a core commitment to every member. This document clearly explains what we collect, why we need it, and how we protect it.

Updated: January 2026 256-bit SSL Bahasa Melayu

Important Note: By using the sga508 platform, you agree to the collection and use of your personal information as described in this Privacy Policy. Please read this document carefully and contact us if you have any questions.

1 Introduction & Scope of This Policy

Sga508 values the privacy of every member who uses our platform. This Privacy Policy explains in detail how we collect, use, store, and protect your personal information when you register, log in, and interact with the sga508 platform.

This policy applies to all users of the sga508 platform, including website visitors, registered members, and anyone who interacts with any of the services we offer. By browsing or using the sga508 platform after the effective date of this policy, you are deemed to have fully read and understood its contents.

Sga508 operates in accordance with international data protection standards and is committed to ensuring your personal information is handled in a secure, responsible, and transparent manner. We do not sell, rent, or exchange your personal information to third parties for marketing purposes.

2 Types of Personal Data We Collect

Sga508 collects the personal information necessary to provide a secure and fully functioning platform service. The following are the categories of information we collect:

A. Registration & Identity Information

  • Full name as stated in your official identification document.
  • Date of birth for 18+ age verification.
  • Identity card number (MyKad) or passport number for the KYC process.
  • Active email address for account communications.
  • Mobile number for verification and two-factor authentication.
  • Current residential address.

B. Financial Information

  • Bank account number for withdrawal processing.
  • Registered bank account holder name.
  • E-wallet information (Touch 'n Go, Boost) if used.
  • Deposit and withdrawal transaction history within the platform.

C. Platform Usage Information

  • Game history and wagering records.
  • IP address and device information used for login.
  • Session data and activity logs for security purposes.
  • Game preferences and account settings.

KYC (Know Your Customer): sga508 carries out a strict KYC process before processing your first withdrawal. You may be required to upload a valid copy of your MyKad or passport along with a selfie for identity verification purposes. This is a protective measure for the security of your own account.

3 Data Collection & Processing Purpose

Sga508 only collects and processes your personal information for legitimate and necessary purposes. The following table outlines the specific purposes for which data is used:

Data Type Purpose of Use Legal Basis
Identity Information Account verification, KYC, fraud prevention Contractual requirements & legal obligations
Financial Information Deposit & withdrawal processing, financial audits Contractual requirements & legal obligations
Usage Data Account security, fraud detection, service improvement Legal Legitimacy of sga508
Email Address Account communications, transaction notifications, promotions (with consent) Contractual requirements & consent
Phone Number 2FA verification, emergency account communications Legitimate interests & security

Sga508 will not use your data for purposes unrelated to the provision of platform services without first obtaining your express consent.

4 Security Measures & Data Protection

Sga508 continuously invests in the latest security technology and procedures to ensure your personal data is protected at all times. The following are the protection layers we employ:

  • 256-bit SSL Encryption: All data transmitted between your browser and sga508's servers is encrypted using the latest TLS 1.3 protocol, ensuring no third party can intercept or read your information in transit.
  • Two-Factor Authentication (2FA): An additional security layer using OTP codes sent to your mobile number each time you log in from a new device or perform a sensitive action.
  • 24/7 Monitoring: Real-time threat detection monitors all platform activity to identify suspicious patterns and block unauthorized access.
  • Secure Data Storage: All personal data is stored on servers protected with high-grade encryption, isolated from other systems and safeguarded by multi-layered firewalls.
  • Regular Security Audits: sga508 conducts regular internal and external security audits to ensure data protection systems consistently meet or exceed industry standards.
  • Internal Access Controls: Access to members' personal data within sga508 is restricted to staff with specific job-related needs, with a full audit log maintained for every access.

Security Note: While sga508 takes all reasonable steps to protect your data, no system can guarantee 100% absolute security. You also play a role in protecting your account by using strong password and never sharing your login credentials with anyone.

5 Data Sharing with Third Parties

Sga508 does not sell, rent, or transfer members' personal information to third parties for marketing or commercial purposes. However, there are certain situations where limited data sharing is necessary to keep the platform functioning properly:

  • Payment Providers: Required transaction information is shared with approved payment processors (e.g. FPX, local banks) solely to complete transactions requested by you.
  • Technical Service Providers: Trusted technical service providers that assist in platform operations (IT infrastructure, platform analytics) may have limited access to data necessary for their tasks, subject to strict confidentiality agreements.
  • Legal Requirements: sga508 will disclose personal information when required to do so by a valid court order, regulatory authority, or law enforcement agency with appropriate jurisdiction.
  • Fraud Prevention: In cases of suspected fraud, necessary information may be shared with relevant industry bodies to protect the platform and all its users.

Reminder: sga508 will never sell your personal data to third-party advertisers. If you receive any communication claiming to be from sga508 but requesting sensitive information through channels outside the platform, please report it to our customer support team immediately as it may be a phishing attempt.

6 Cookies & Tracking Technologies

Sga508 uses cookies and similar tracking technologies to enhance the user experience, maintain session security, and understand how members interact with our platform. Cookies are small data files stored on your device when you browse the sga508 website.

Types of cookies we use:

  • Essential Cookies: Required for core platform functions such as login session verification and security. These cookies cannot be disabled without affecting platform functionality.
  • Performance Cookies: Collects anonymous data on how pages are used to help us improve the overall user experience.
  • Preference Cookies: Saves your preference settings such as language, region, and display preferences so you do not need to reconfigure them on every visit.
  • Analytics Cookies: Helps us understand aggregated usage patterns to improve platform features and deliver more relevant content.

You can manage or disable cookies through your browser settings. Please note that disabling certain cookies may affect the functionality of some parts of the sga508 platform.

7 Your Rights Regarding Personal Data

As a sga508 member, you have certain rights regarding the personal data we hold. sga508 is committed to facilitating the exercise of these rights:

Right of Access

You have the right to request a copy of all personal data we hold about you at any time.

Right to Rectification

You may request the correction of inaccurate or incomplete personal data in our records.

Right to Erasure

You may request the deletion of your personal data under certain circumstances, subject to our legal obligations.

Right to Restriction of Processing

You may request the restriction of processing of your personal data in certain permitted situations.

Right to Data Portability

You have the right to receive your personal data in a structured, machine-readable format.

Right to Object

You may object to the processing of your personal data for direct marketing purposes at any time.

To exercise any of the above rights, please contact the sga508 customer support team via live chat on the platform or our official email. sga508 will process your request within 30 business days from the date a complete request is received.

8 Data Retention Period

Sga508 retains your personal data for as long as necessary to fulfil the collection purposes stated in this policy, including to meet legal, accounting, or reporting requirements.

  • Active account data: Retained for as long as your account is active on the sga508 platform.
  • After account closure: Financial transaction records and KYC documents are retained for a minimum of 5 years in accordance with anti-money laundering (AML) legal requirements.
  • Security logs: Retained for 12 months for security investigation and fraud detection purposes.
  • Customer support communications: Retained for 3 years for reference and service improvement purposes.

Once the retention period ends, your data will be securely deleted or anonymised so it can no longer be linked to your identity.

9 Cross-Border Data Transfers

Sga508 operates on server infrastructure that may be located across multiple locations. If your personal data needs to be transferred outside Malaysia, we ensure that such transfers are protected by adequate safeguards, including:

  • Binding data transfer agreements with recipient service providers.
  • Data protection standards equivalent to or exceeding Malaysia's requirements.
  • Data encryption during transmission using internationally recognised protocols.

Sga508 will only transfer data to jurisdictions or recipients that provide an adequate level of data protection. We will not transfer your data to any party in a country that does not offer equivalent protection.

10 Contact Us Regarding Privacy

If you have any questions, concerns, or complaints regarding this Privacy Policy or how sga508 handles your personal data, we encourage you to reach out to us through the following channels:

  • Live Chat: Our fastest channel — our team operates 24/7 and is able to respond within minutes.
  • Email: Send an email to [email protected] with the subject "Privacy Enquiry" for a response within 24 business hours.
  • FAQ Section: Many frequently asked questions about privacy and security are answered in the FAQ page us.

Policy Amendments: sga508 reserves the right to amend this Privacy Policy at any time. Significant changes will be communicated to members via in-platform notifications or registered email at least 14 days before taking effect. Continued use of the platform after changes take effect will be considered acceptance of the updated terms.

Six Data Protection Guarantees We Provide

Privacy is not a marketing slogan for sga508 — it is a daily practice reflected in every system and procedure we operate.

256-bit SSL Encryption

Every bit of data moving between your device and sga508's servers is protected by high-grade TLS 1.3 encryption — the same technology used by world-class banking institutions.

Rigorous KYC Process

Multi-layered identity verification ensures only authorised individuals can access accounts and make withdrawals — protecting you from identity misuse by unauthorised parties.

No Data Sales

Sga508 has never and will never sell, rent, or exchange your personal information to advertisers or third-party companies. Your data belongs to you and we treat it as such.

Two-Factor Authentication

2FA ensures that even if your password is known to others, they still cannot access your account without the OTP code sent to your mobile phone in real time.

Internal Access Controls

Sga508 staff may only access member data on a strictly need-to-know basis — every access is logged and audited regularly to prevent internal misuse.

Regular Security Audits

Sga508 systems and infrastructure undergo regular internal external security audits to ensure we consistently follow the latest data protection best practices.

Your Data Is Safe with sga508

Now you know how sga508 protects your privacy. Register an account today and enjoy a safe, fair, and entertaining online experience — with the peace of mind that your data is always in trusted hands.

Bahasa Melayu