Mega Medusa Casino treats player privacy as a core part of the experience, not a legal footnote. This guide breaks down exactly how the privacy policy works, what it protects, and why it matters to you as a real player.
What the privacy policy actually covers
Most players scroll past the privacy policy, but at Mega Medusa, it is a direct and transparent document. For Australian players, data protection is governed by the Privacy Act 1988 and the Australian Privacy Principles (APPs). Mega Medusa aligns with these standards, laying out precisely what data is held, who it is shared with, and how long it is stored.
What data Mega Medusa Casino collects
Understanding the distinction between voluntary and automatic data collection matters. The table below summarises the main types of information gathered:
| Data type | Examples | Purpose |
|---|---|---|
| Identification | Full name, DOB, address | KYC verification |
| Contact info | Email, phone number | Support & updates |
| Financial details | Transaction history | Processing payouts |
| Technical data | IP address, browser, device | Security & speed |
| Cookies | Session & analytics cookies | User experience |
How your data is used: the honest breakdown
Primary use is account management. Secondary uses include personalisation, fraud detection, and regulatory compliance. Mega Medusa keeps marketing clean — you only receive promo material if you explicitly opt-in during registration, and you can unsubscribe at any time.
- Processing deposits, withdrawals, and refunds.
- Detecting and preventing fraud and bonus abuse.
- Complying with Curacao eGaming licensing requirements.
- Improving site performance through anonymised analytics.
Third-party sharing
Mega Medusa works with external partners who receive limited data. These include payment processors (Visa, BTC, Neosurf), KYC providers, and game developers like Realtime Gaming (RTG). Each partner is bound by their own data protection obligations, and the casino does not grant access beyond what is operationally necessary.
Security measures in 2026
The platform uses several layers of protection, starting with 128-bit SSL encryption. Other measures include:
- Firewall protection and Cloudflare CDN integration.
- Two-factor authentication (2FA) options for account login.
- Cryptographic hashing of passwords (not stored in plain text).
- Strict internal access controls for staff.
Your rights as a player
| Right | What it means in practice |
|---|---|
| Right to access | Request a copy of your stored data |
| Right to rectification | Correct inaccurate personal information |
| Right to deletion | Request data removal (subject to regulations) |
| Right to object | Opt out of marketing at any time |
| Right to portability | Request data in a transferable format |
Cookies and Tracking
Mega Medusa uses cookies for functional purposes: Essential (login state), Functional (preferences), and Analytics (site performance). The casino uses a cookie consent mechanism on the first visit, allowing you to customise your preferences or accept essential cookies only.
Data retention: how long is your info kept?
Retention timelines reflect legal and regulatory obligations after account closure:
- Identity documents: up to 5 years (AML regulations).
- Financial records: up to 7 years (Audit purposes).
- Gameplay history: up to 3 years (then anonymised).
- Marketing preferences: deleted within 30 days of closure.
Privacy comparison: Industry Standards
| Feature | Mega Medusa Casino | Industry Standard |
|---|---|---|
| SSL Encryption | 128-bit | Standard |
| Third-party sale | Never | Varies (often hidden) |
| Retention policy | Documented timelines | Often vague |
| Right to deletion | Available on request | Varies |
Contacting Support
For urgent privacy or security issues, live chat is the fastest route (available 24/7). Support agents can freeze account access and escalate security concerns. For formal data requests or corrections, you can also contact the team by email at [email protected].