Personal Data Protection

Privacy Policy mr atm — Our Commitment to Your Data Security

At mr atm, your privacy is not merely a legal obligation — it is a responsibility we take seriously. This document clearly explains how we collect, use, store and protect your personal data as a member of our platform.

Updated: 1 January 2026 256-bit SSL Protected
mr atm Privacy Promise
  • Your data is not sold to third parties
  • End-to-end encryption for all transactions
  • Right to Request Deletion of Personal Data
  • Compliance with the Personal Data Protection Act 2010
  • Data storage on secure encrypted servers
  • Immediate notification in the event of a data breach

Mr atm's Six Pillars of Data Security

We ensure every layer of your experience on the mr atm is protected with the latest security technology and responsible privacy practices.

256-bit SSL Encryption

All data transmitted between your device and our servers mr atm is protected with the same 256-bit SSL encryption used by leading banking institutions in Malaysia. This means your login credentials, payment data, and personal details remain fully secured during transit.

Encrypted Data Storage

Your personal data is stored in databases protected with high-grade encryption. Our servers are safeguarded by multi-layer firewalls and an intrusion detection system (IDS) operating around the clock to prevent unauthorised access.

Strict Access Controls

Only authorised personnel may access member personal data, and strictly within the scope of their duties. All access is logged and actively monitored. Our staff undergo regular privacy training to ensure compliance with internal privacy policies.

No Data Selling

We make an absolute commitment: your personal data will never be sold, rented, or traded to any advertiser or third-party company under any circumstances. Your data is used solely for the purposes explicitly stated in this privacy policy.

Immediate Breach Notice

In the event of any data breach that may affect your personal information, we are committed to notifying you within 72 hours of becoming aware of the incident, in line with international data protection best practices.

PDPA 2010 Compliance

Platform mr atm operates in full compliance with Malaysia's Personal Data Protection Act 2010 (PDPA). All our data collection and processing practices are designed to meet or exceed applicable legal requirements.

Important document — please read carefully. By registering or continuing to use the platform mr atm, you are deemed to have read and agreed to all provisions in this Privacy Policy. If you do not agree, please stop using the platform.

1 Scope & Acceptance of This Policy

This Privacy Policy describes how mr atm ("we", "Platform") collects, uses, discloses and protects your personal information when you use our website at mratm.fun, the Android and iOS mobile app, and all related services.

This policy applies to all users of our platform regardless of access method — whether via web browser, mobile app or any other digital channel. It also covers information you provide during registration, KYC verification, deposits, withdrawals and every interaction you have with our platform.

We are committed to respecting and protecting your privacy in accordance with Personal Data Protection Act 2010 (PDPA) Malaysia and internationally recognised data protection principles. By using our platform, you agree that your information is collected and used as described in this document.

2 Information We Collect

We only collect data that is strictly necessary to provide you with a safe, compliant, and high-quality service. Generally, the information we collect falls into three main categories:

2.1 Information You Provide Directly

  • Registration Information: Full name, date of birth, identity card number (MyKad) or passport, email address, mobile phone number, and account password.
  • KYC Verification: Copy of identity document, proof of address (utility bill or bank statement not older than 3 months), a selfie holding the document, and payment method information.
  • Financial Information: Bank account number, digital wallet details (TNG, GrabPay, Boost, ShopeePay), crypto wallet information (USDT, Bitcoin) for deposit and withdrawal purposes.
  • Communications: Any messages, complaints, or feedback you send to our support team via live chat, email, or any other communication channel.

2.2 Information Collected Automatically

  • Technical Data: IP address, browser type and version, device operating system, screen resolution and unique device identifier.
  • Usage Data: Pages visited, time spent on each page, games played, betting amounts, wins and losses, and general usage patterns.
  • Location Data: General location information based on IP address for geographical verification and legal compliance purposes.
  • Cookie Data: Session information, language preferences, and analytics data collected via cookies and similar tracking technologies.

2.3 Information From Third Parties

  • Identity verification information from third-party KYC service providers we engage.
  • Payment processing data from banks, digital wallet providers and payment networks.
  • AML/CFT compliance information from internationally recognised blacklist databases.
Data Category Sample Information Primary Purpose
Identity Name, IC/Passport, Date of Birth KYC & AML Verification
Contact Email, Phone Number Communication & Account Security
Financial Bank Account, Digital Wallet Deposit & Withdrawal
Technical IP, Device, Browser Security & Analytics
Transactions Wagering History, Payments Legal Compliance

3 How We Use Your Data

The personal data we collect is used solely for legitimate and reasonable purposes in operating the platform. We do not process your data beyond the scope stated below:

  1. Account Management: Creating and maintaining your member account, including the registration process, secure login, and password management.
  2. Service Provision: Processing deposits and withdrawals, managing bonuses and promotions, and providing access to all games and platform features.
  3. Identity Verification (KYC): Meeting legal requirements to verify member identity in order to prevent fraud and money laundering.
  4. Platform Security: Detecting and preventing fraudulent activity, unauthorised access, system abuse, and cybersecurity threats.
  5. Customer Support: Responding to enquiries, resolving complaints, and providing technical support to members.
  6. Service Communications: Sending important account notices, security updates, and changes to terms of service.
  7. Marketing Communications: Sending promotional information, exclusive offers, and platform news — only if you have given your consent to receive them.
  8. Legal Compliance: Fulfilling the reporting and record-keeping obligations required under applicable Malaysian law.
  9. Platform Enhancements: Analysing usage data in aggregate and anonymised form to improve service quality and user experience.

You may withdraw consent to receive marketing communications at any time by contacting our support team. Withdrawal of consent will not affect the validity of any data processing that took place prior to withdrawal.

4 Data Sharing with Third Parties

mr atm does not sell, rent, or disclose your personal data to third parties for their own marketing or commercial purposes. However, in the course of operating a secure and legitimate platform, there are certain situations where we may need to share your data:

4.1 Trusted Service Providers

We work with selected companies that help us deliver our services to you. These include KYC and identity verification service providers, payment processors and financial transaction networks, server infrastructure and cloud security providers, and licensed casino game software suppliers. All service providers are contractually bound to protect your data and use it only for specified purposes.

4.2 Legal Obligations

We may be required to disclose your personal data to law enforcement authorities or regulatory bodies when mandated by law, court order, or lawful authority directive. This includes investigations related to anti-money laundering (AML), counter-terrorism financing (CFT), and other financial crimes.

4.3 Protection of Platform Interests

Where necessary to prevent fraud, protect the safety of other members or defend the platform's legitimate interests, we may share relevant information with related parties, including other platform operators within a shared fraud detection network.

Every instance of data sharing is conducted on a minimum-necessity basis — we only disclose data that is strictly required for that specific purpose. All third parties we work with are subject to rigorous security assessments before any data sharing takes place.

5 Cookies & Tracking Technologies

Platform mr atm uses cookies and similar tracking technologies to enhance the user experience and maintain the security of your session. Cookies are small text files stored on your device when you visit our platform.

5.1 Types of Cookies We Use

  • Essential Cookies: Required for core platform functions such as Login verification, session security and language preferences. These cookies cannot be disabled.
  • Performance Cookies: Collecting information on how you use the platform (pages visited, response times) to help us improve performance.
  • Functional Cookies: Storing your preferences such as language selection, display settings, and saved login information for your convenience.
  • Analytics Cookies: Used to understand aggregate usage patterns for product development and service improvement purposes.

You can manage and delete cookies through your browser settings. However, disabling essential cookies may affect platform functionality and your user experience.

6 Data Storage, Transfer & Retention Period

Your personal data is stored on protected servers located in certified data centres. All data is encrypted at rest and in transit using the latest industry-standard security protocols.

6.1 Data Retention Period

We retain your personal data for as long as your account is active, and for an additional period after account closure as required by law:

  • KYC & Identification Data: Minimum 7 years after account closure, in line with AML legal requirements.
  • Financial Transaction Records: Minimum 7 years for audit and tax compliance purposes.
  • Security & Access Logs: 2 years for security incident tracking and investigation purposes.
  • Support Communication Data: 3 years after case resolution.
  • Marketing Data: Until you withdraw your consent or close your account.

Once the specified retention period expires, your data will be securely deleted or permanently anonymised so that it can no longer be linked to your identity.

7 Your Rights as a Data Subject

As a member mr atm and as a data subject under the PDPA 2010, you have the following rights regarding your personal data. We are committed to fulfilling valid requests within a reasonable timeframe:

Right of Access

You have the right to request a copy of the personal data we hold about you. We will provide this information in an easy-to-understand format.

Right to Rectification

If your personal data is inaccurate or outdated, you may request that we correct or update it.

Right to Erasure

You may request the deletion of your personal data, subject to any legal retention obligations binding on us.

Right to Restriction

In certain circumstances, you may request that we restrict the processing of your personal data while a dispute is being resolved.

Right to Data Portability

You have the right to receive your personal data in a structured, machine-readable format for transfer to another service.

Right to Object

You may object to the processing of your personal data for direct marketing purposes at any time without providing a reason.

To exercise any of the above rights, contact our support team via live chat on the platform or by email at [email protected]. We will process your request within 30 working days. For complex requests, this period may be extended with prior notice to you.

8 Data Security

mr atm implements comprehensive technical and organisational security measures to protect your personal data from unauthorised access, loss, destruction, or accidental disclosure. These measures include:

  • 256-bit SSL encryption for all data communications between the platform and users.
  • Data encryption at rest (AES-256) for all databases containing personal information.
  • Two-factor authentication (2FA) available for all member accounts for an added layer of security.
  • Round-the-clock monitoring by our automated threat detection system and cybersecurity team.
  • Periodic penetration testing conducted by independent third-party security experts.
  • Strict role-based access control (RBAC) for all internal staff.
  • Automated data backup procedures and a comprehensive disaster recovery plan.

While we take all reasonable steps to protect your data, no system can guarantee absolute security. We therefore encourage you to play your part in safeguarding your account by using a strong and unique password, enabling two-factor authentication, and never sharing your login credentials with anyone.

9 Children's Privacy

Platform mr atm is intended solely for individuals aged 18 years and above. We do not knowingly collect or process personal data from individuals under the age of 18. Should we discover that a minor's personal data has been collected without our knowledge, we will take immediate action to delete that data and close the relevant account.

If you believe that a minor has registered an account or that a child's data has been collected inadvertently, please contact us immediately through our support channels.

10 Changes to This Policy

mr atm reserves the right to update or amend this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other legitimate reasons. Any material changes will be communicated to you through:

  • Prominent notice on the platform homepage.
  • Email to the address registered in your account.
  • In-app notification during your next login session.

The "Updated" date at the top of this document reflects the date of the most recent revision. Continued use of the platform after changes take effect constitutes your acceptance of the updated policy.

11 How to Contact Us

If you have any questions, concerns, or wish to exercise your rights regarding personal data, our Data Protection Officer (DPO) team is ready to assist you. Please reach us through the following channels:

  • Live Chat: Available 24/7 directly on the mratm.fun platform
  • Email: [email protected]
  • Response Time: Within 2 working days for general enquiries; 30 working days for formal data rights requests

We are committed to handling every enquiry with seriousness and professionalism. Your satisfaction and trust are our top priority at mr atm.

Play With Peace of Mind — Your Data Is Safe Here

At mr atm, we believe that trust is built through transparency and action, not just promises. Our comprehensive privacy policy, multi-layered security systems and commitment to PDPA 2010 ensure you can enjoy your online casino experience with full confidence.

256-bit
SSL Encryption
24/7
Security Monitoring
PDPA
Full 2010 Compliance
0%
Data Sold to Third Parties
Bahasa Melayu