Legal
Last updated: February 15, 2026
Privacy Policy
The Gaming Floor ("we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your personal information when you use our website, applications, and services (collectively, the "Service").
By accessing or using the Service, you agree to the collection and use of information in accordance with this policy. If you do not agree with the terms of this policy, please do not access the Service.
1. Information We Collect
1.1 Account Information
When you create an account, we collect information you provide directly, including:
- Username and display name
- Email address
- Password (stored in hashed form; we never store plaintext passwords)
- Region preference (UK or US)
- Account creation date and last login timestamp
1.2 Usage Analytics
We automatically collect certain information about your interaction with the Service, including:
- Pages visited, features used, and time spent on each section
- Gym drill performance data (scores, completion rates, time per question)
- Knowledge base articles viewed and search queries
- Casino directory searches and filters applied
- Device type, browser type, operating system, and screen resolution
- IP address (anonymized after 30 days)
- Referring URL and exit pages
1.3 AI Conversation Data
When you use the "Ask the Pit Boss" AI assistant, we collect:
- Questions and prompts you submit to the AI
- AI-generated responses
- Conversation timestamps and session identifiers
- Feedback you provide on AI responses (thumbs up/down, corrections)
AI conversation data is used to improve the quality and accuracy of the AI assistant. Conversations are processed by our AI providers (see Section 5) and may be used in anonymized, aggregated form for model improvement. You may request deletion of your conversation history at any time.
1.4 Payment Information
If you subscribe to a paid plan, payment processing is handled entirely by Stripe. We do not store your credit card number, CVV, or full billing details on our servers. We receive and store only:
- Stripe customer ID
- Subscription plan type and status
- Last four digits of your payment card (for display purposes)
- Billing cycle dates
2. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve the Service
- Personalize your experience (e.g., region-specific content, drill recommendations)
- Process transactions and manage your subscription
- Communicate with you about updates, new features, and support requests
- Monitor and analyze usage patterns to improve the platform
- Train and improve our AI assistant's accuracy and relevance
- Detect, prevent, and address technical issues and security threats
- Comply with legal obligations
3. GDPR Compliance (European Users)
If you are located in the European Economic Area (EEA) or the United Kingdom, you are entitled to the following rights under the General Data Protection Regulation (GDPR):
3.1 Right of Access
You have the right to request a copy of the personal data we hold about you. You can access most of your data directly through your profile settings. For a comprehensive data export, contact us at privacy@thegamingfloor.com.
3.2 Right to Rectification
You can update your account information at any time through your profile settings. If you believe any data we hold is inaccurate, contact us and we will correct it promptly.
3.3 Right to Erasure
You have the right to request deletion of your personal data. Upon receiving a verified deletion request, we will erase your personal data within 30 days, except where we are required by law to retain it. This includes your account data, drill history, AI conversation logs, and community posts.
3.4 Right to Data Portability
You have the right to receive your personal data in a structured, commonly used, machine-readable format (JSON). You can request a full data export through your profile settings or by contacting us.
3.5 Right to Withdraw Consent
Where we rely on consent as the legal basis for processing, you may withdraw consent at any time. This does not affect the lawfulness of processing carried out before withdrawal.
3.6 Legal Basis for Processing
We process your personal data under the following legal bases:
- Contract performance: Processing necessary to provide the Service you signed up for
- Legitimate interests: Analytics, security, and service improvement
- Consent: Marketing communications and non-essential cookies
- Legal obligation: Tax records, fraud prevention, and regulatory compliance
4. CCPA Compliance (California Users)
If you are a California resident, the California Consumer Privacy Act (CCPA) grants you additional rights regarding your personal information:
- Right to Know: You may request disclosure of the categories and specific pieces of personal information we have collected about you
- Right to Delete: You may request deletion of personal information we have collected, subject to certain exceptions
- Right to Opt-Out of Sale: We do not sell your personal information. If this changes, we will provide a clear opt-out mechanism
- Right to Non-Discrimination: We will not discriminate against you for exercising your CCPA rights
To exercise your CCPA rights, contact us at privacy@thegamingfloor.com or use the tools provided in your account settings. We will verify your identity before processing any request.
5. Third-Party Services
We use the following third-party services that may process your data:
5.1 AI Providers
- OpenAI: Used to generate text embeddings for our knowledge base search and RAG (Retrieval-Augmented Generation) system. Your search queries are sent to OpenAI's API for embedding generation. OpenAI's data processing terms apply.
- DeepSeek: Powers the "Ask the Pit Boss" AI assistant. Your questions and conversation context are sent to DeepSeek's API for response generation. DeepSeek processes data in accordance with their privacy policy.
5.2 Payment Processing
Stripe handles all payment processing. Your payment information is transmitted directly to Stripe and is subject to Stripe's privacy policy. We never have access to your full card details.
5.3 Analytics & Infrastructure
- Hosting: Our services are hosted on secure cloud infrastructure with data stored in the United States and the European Union
- Error tracking: We use error monitoring services to detect and fix bugs quickly. These services may receive anonymized error reports and stack traces
6. Data Retention
We retain your personal data for as long as your account is active or as needed to provide you with the Service. Specific retention periods:
- Account data: Retained until you delete your account
- Usage analytics: Aggregated after 12 months; raw data deleted after 24 months
- AI conversation logs: Retained for 6 months, then anonymized for training purposes
- Payment records: Retained for 7 years as required by tax law
- IP addresses: Anonymized after 30 days
7. Data Security
We implement industry-standard security measures to protect your data, including encryption in transit (TLS 1.3), encryption at rest (AES-256), secure password hashing (bcrypt), regular security audits, and access controls limiting employee access to personal data on a need-to-know basis. No method of transmission or storage is 100% secure, and we cannot guarantee absolute security.
8. Contact Us
For privacy-related inquiries, data access requests, or to exercise your rights under GDPR or CCPA, contact our Data Protection Officer:
- Email: privacy@thegamingfloor.com
- Response time: Within 30 days of receiving a verified request