// LEGAL DOCUMENT · DATA PRIVACY · phgl

phgl Privacy
Policy

phgl is committed to protecting the personal data of every Filipino player on our platform. This Privacy Policy explains what data we collect, how we use it, who we share it with, and how you can exercise your rights under the Philippine Data Privacy Act of 2012.

Effective Date: January 1, 2026
RA 10173 Compliant PAGCOR Regulated

SCOPE OF THIS POLICY: This Privacy Policy applies to all personal data processed by phgl in connection with your registration, use of the phgl Platform, payment transactions, customer support interactions, and participation in phgl promotions. It applies regardless of whether you access the phgl Platform via desktop browser or mobile device, and regardless of your location within the Philippines.

How phgl Protects Your Data

Six concrete ways phgl delivers on its data protection commitments — backed by RA 10173 compliance, PAGCOR oversight, and technical security standards.

TLS 1.3 ENCRYPTION

Every byte of data transmitted between your device and phgl's servers travels through TLS 1.3 encrypted channels. HTTPS is enforced at all times via HSTS — there is no fallback to unencrypted HTTP. Your personal data never travels in plaintext.

NEED-TO-KNOW ACCESS CONTROLS

Access to your personal data within phgl's systems is restricted strictly on a need-to-know basis. Not every phgl employee can see your KYC documents or financial account details — access is tiered, logged, and regularly reviewed. Unauthorized internal access is treated as a disciplinary matter.

RA 10173 FULL COMPLIANCE

phgl's data processing practices are designed from the ground up to comply with the Philippine Data Privacy Act of 2012. We have an appointed Data Protection Officer, a documented data privacy management program, a breach response protocol, and a data subject rights process — all in place and functional.

AES-256 ENCRYPTION AT REST

Sensitive personal data stored in phgl's databases — including government ID images, KYC documents, and financial account identifiers — is encrypted at rest using AES-256. Even in the unlikely event of a storage-level breach, encrypted data is unreadable without the corresponding decryption keys.

NO DATA SALES — EVER

phgl does not sell, rent, or trade your personal data to third-party marketers, data brokers, or any commercial entity for advertising purposes. Your data is used to run your phgl Account and comply with legal obligations — not to generate revenue from data monetization.

72-HOUR BREACH NOTIFICATION

If a data breach occurs that is likely to cause real harm to you, phgl will notify the National Privacy Commission within 72 hours and notify affected Account holders without undue delay — as required under NPC Circular 16-03. You'll never be kept in the dark about a breach that affects your data.


Your Data is Safe at phgl

phgl is built on a foundation of regulatory compliance, transparent data practices, and genuine respect for player privacy. PAGCOR-regulated, RA 10173 compliant, and committed to protecting every Filipino player's personal data. 21+ only.

RA 10173 Compliant PAGCOR Licensed SSL Secured 21+ Only