Your privacy matters to us. This Privacy Policy explains exactly what personal data ap77 collects, why we collect it, how we use and protect it, and what rights you have under Philippine law. We keep things straightforward — no confusing legalese where plain language will do.
This Privacy Policy ("Policy") applies to all personal data collected, processed, and stored by ap77 ("ap77," "we," "us," or "our") in connection with your use of the ap77 website at https://ap77.vip and all related services, features, and content (collectively, the "Platform").
ap77 is committed to protecting the privacy and personal data of all users, particularly Filipino players accessing the Platform from the Philippines. This Policy is drafted in compliance with Republic Act No. 10173, otherwise known as the Data Privacy Act of 2012 (DPA), its Implementing Rules and Regulations (IRR), and the issuances of the National Privacy Commission (NPC) of the Philippines.
By registering an account, accessing, or otherwise using the ap77 Platform, you acknowledge that you have read, understood, and agree to the collection and processing of your personal data as described in this Policy. If you do not agree, please discontinue use of the Platform immediately.
ap77 collects personal data from you in several ways — directly when you register or interact with the Platform, automatically through your device and browsing activity, and from third parties such as payment processors and identity verification providers. Below is a summary of the categories of data we collect:
| Category | Examples | Source |
|---|---|---|
| Identity Data | Full legal name, date of birth, government-issued ID number (passport, UMID, SSS, driver's license) | You (registration / KYC) |
| Contact Data | Email address, Philippine mobile number, residential address | You (registration) |
| Account Data | Username, encrypted password, account preferences, communication preferences | You (registration) |
| Financial Data | GCash / PayMaya account reference, bank account details (BPI, BDO, Metrobank, UnionBank, etc.), transaction history, deposit and withdrawal records | You / Payment processors |
| Gaming Data | Game history, wager amounts, win/loss records, session durations, bonus usage | Platform (automatic) |
| Technical Data | IP address, device type, browser type and version, operating system, time zone, screen resolution | Platform (automatic) |
| Usage Data | Pages visited, links clicked, features used, session timestamps, referral source | Platform (automatic) |
| Communications Data | Support chat transcripts, email correspondence, feedback submissions | You (interactions) |
| Verification Documents | Scanned copies or photographs of government-issued IDs, selfies for liveness checks, proof of address documents | You (KYC process) |
Under the Philippine Data Privacy Act, certain categories of data are classified as sensitive personal information and require a higher standard of protection. ap77 may collect the following sensitive personal information where required by law or necessary for the provision of services:
ap77 processes sensitive personal information only to the extent strictly necessary and in accordance with the lawful bases described in Section 3 below.
ap77 does not collect or store full payment card numbers. ap77 does not accept cryptocurrency payments and therefore does not collect cryptocurrency wallet addresses. ap77 does not collect biometric data beyond what is strictly required for identity verification by our KYC provider.
ap77 processes your personal data only for specific, legitimate purposes and only to the extent necessary for those purposes. The table below sets out the purposes for which we use your data and the corresponding lawful basis under the Data Privacy Act of 2012:
| Purpose | Data Used | Lawful Basis |
|---|---|---|
| Account registration and management | Identity, Contact, Account Data | Performance of contract |
| Age verification (21+ compliance) | Identity Data, Verification Documents | Legal obligation (PAGCOR) |
| KYC / identity verification | Identity Data, Verification Documents | Legal obligation (AMLA) |
| Processing deposits and withdrawals | Financial Data, Identity Data | Performance of contract |
| Fraud prevention and security monitoring | Technical, Usage, Financial Data | Legitimate interest / Legal obligation |
| Responsible gaming monitoring | Gaming Data, Account Data | Legal obligation (PAGCOR) / Legitimate interest |
| Customer support | Communications, Identity, Account Data | Performance of contract |
| Regulatory reporting (PAGCOR, AMLC) | Identity, Financial, Gaming Data | Legal obligation |
| Personalized gaming experience | Gaming, Usage Data | Consent / Legitimate interest |
| Marketing communications (opt-in only) | Contact, Account Data | Consent |
| Platform analytics and improvement | Technical, Usage Data | Legitimate interest |
ap77 does not sell, rent, or trade your personal data to third parties for their own marketing purposes. We share your data only in the following circumstances and only to the extent necessary:
ap77 engages trusted third-party service providers who process personal data on our behalf and under our instructions. These include:
All service providers are contractually bound to process your data only as instructed by ap77, to maintain appropriate security measures, and to comply with applicable Philippine data protection laws.
ap77 is required by Philippine law to disclose personal data to the following authorities in specified circumstances:
In the event of a merger, acquisition, restructuring, or sale of all or part of ap77's business, your personal data may be transferred to the acquiring entity as part of that transaction. You will be notified of any such transfer and any material changes to this Policy that result from it.
ap77 uses cookies and similar tracking technologies (such as web beacons and local storage) to operate the Platform, remember your preferences, analyze usage patterns, and deliver a personalized experience. Here is a breakdown of the types of cookies we use:
| Cookie Type | Purpose | Can Be Disabled? |
|---|---|---|
| Strictly Necessary | Session management, authentication, security (CSRF protection), load balancing | No — required for Platform to function |
| Functional | Remembering language preferences, game settings, responsible gaming limits | Yes — via cookie settings |
| Analytics | Aggregated, anonymized data on page visits, feature usage, and session duration to improve the Platform | Yes — via cookie settings |
| Marketing | Tracking opt-in promotional campaign effectiveness (internal only — no third-party ad networks) | Yes — via cookie settings or account preferences |
You can manage your cookie preferences through your browser settings. Note that disabling strictly necessary cookies will impair the functionality of the Platform and may prevent you from logging in or accessing certain features. For detailed instructions on managing cookies in your specific browser, refer to your browser's help documentation.
ap77 implements a comprehensive set of technical and organizational security measures to protect your personal data against unauthorized access, disclosure, alteration, loss, or destruction. Our security framework includes:
In the event of a personal data breach that is likely to result in a risk to your rights and freedoms, ap77 will notify the National Privacy Commission (NPC) within 72 hours of becoming aware of the breach, as required under the Data Privacy Act. Where the breach is likely to result in a high risk to affected individuals, ap77 will also notify affected users directly without undue delay.
ap77 retains your personal data only for as long as necessary to fulfill the purposes for which it was collected, or as required by applicable Philippine law. The following retention periods apply:
| Data Category | Retention Period | Basis |
|---|---|---|
| Account and identity data | Duration of account + 5 years after closure | AMLA / PAGCOR regulatory requirement |
| Financial transaction records | 10 years from transaction date | Republic Act No. 9160 (AMLA) |
| KYC verification documents | Duration of account + 5 years after closure | AMLA / PAGCOR regulatory requirement |
| Gaming history and session logs | 5 years from date of activity | PAGCOR regulatory requirement |
| Customer support communications | 3 years from last interaction | Legitimate interest (dispute resolution) |
| Marketing consent records | Until consent is withdrawn + 1 year | NPC guidance on consent records |
| Technical / usage logs | 12 months on a rolling basis | Legitimate interest (security / analytics) |
Upon expiry of the applicable retention period, ap77 will securely delete or anonymize your personal data in accordance with NPC-approved data disposal procedures. Anonymized data (which can no longer identify you) may be retained indefinitely for statistical and analytical purposes.
As a data subject under Republic Act No. 10173 (Data Privacy Act of 2012), you have the following rights with respect to your personal data held by ap77. You may exercise any of these rights by contacting our Data Protection Officer (DPO) using the contact details in Section 11.
ap77 will respond to all data subject rights requests within 30 calendar days of receipt. In complex cases, this period may be extended by a further 30 days, in which case you will be notified of the extension and the reason for it. ap77 will not charge a fee for exercising your rights unless requests are manifestly unfounded or excessive.
The ap77 Platform is strictly intended for users who are 21 years of age or older, in compliance with PAGCOR regulations governing online gaming in the Philippines. ap77 does not knowingly collect personal data from individuals under the age of 21.
If ap77 becomes aware that personal data has been collected from a person under 21 years of age, we will immediately suspend the associated account, delete the personal data collected, and return any funds deposited, in accordance with our Terms & Conditions.
If you are a parent or guardian and believe that your child under the age of 21 has registered on the ap77 Platform or provided personal data to ap77, please contact our Data Protection Officer immediately using the contact details in Section 11. We will take prompt action to investigate and remediate the situation.
ap77 may update this Privacy Policy from time to time to reflect changes in our data processing practices, applicable Philippine law, NPC guidance, or PAGCOR regulatory requirements. The date of the most recent revision is always displayed at the top of this page.
When we make material changes to this Policy — meaning changes that significantly affect how we collect, use, or share your personal data — we will notify you by email to your registered address and/or by a prominent notice on the Platform at least seven (7) days before the changes take effect.
Your continued use of the ap77 Platform after the effective date of any updated Policy constitutes your acknowledgment of the changes. If you do not agree with the updated Policy, you must cease using the Platform and may request account closure by contacting customer support.
We encourage you to review this Policy periodically to stay informed about how ap77 protects your personal data. Previous versions of this Policy are available upon request from our Data Protection Officer.
ap77 has appointed a Data Protection Officer (DPO) responsible for overseeing compliance with the Data Privacy Act of 2012 and this Privacy Policy. If you have any questions, concerns, or requests relating to your personal data or this Policy, please contact the ap77 DPO:
For general questions about the Platform, visit our FAQ page or our About Us page. For responsible gaming support, visit our Responsible Gaming page.
Data Protection Commitments
Beyond the legal text, here's what ap77's privacy commitments mean in practice for every Filipino player on the Platform.
Every connection between your device and ap77 is protected by bank-grade SSL/TLS encryption. Your login credentials, financial data, and personal information travel securely — no exceptions.
ap77 operates in full compliance with Republic Act No. 10173, the Philippine Data Privacy Act of 2012. Our processes are aligned with NPC guidelines and regularly reviewed by our appointed Data Protection Officer.
ap77 never sells, rents, or trades your personal data to third-party marketers. Your information is used solely to operate the Platform, comply with Philippine regulations, and improve your experience.
We keep your data only as long as required by PAGCOR and AMLA regulations. Once retention periods expire, data is securely deleted or anonymized using NPC-approved disposal procedures.
Filipino players have the right to access, correct, delete, and port their personal data. Submit a request to our DPO and we'll respond within 30 days — no runaround, no unnecessary delays.
In the unlikely event of a data breach, ap77 is committed to notifying the NPC within 72 hours and affected users without undue delay — fully in line with Data Privacy Act requirements.
Ready to Play?
Now that you know exactly how ap77 handles your personal data, join thousands of Filipino players who trust ap77 for a secure, fair, and responsible gaming experience. Must be 21 years or older to register.
21+ only. Gambling is addictive. Know when to stop. Play responsibly. Responsible Gaming