Skip to main content

Privacy Policy - How We Protect Your Data

Last Updated: June 11, 2026

Changelog

  • Named every analytics service in use (Microsoft Clarity, Google Tag Manager, Cloudflare Web Analytics)
  • Clarified which analytics load only after you grant consent, and which run without cookies
  • Added Global Privacy Control (GPC) honoring and a "Do Not Sell or Share" opt-out control
  • Disclosed our affiliate attribution cookies (_cra and cr_session) by name and purpose

Privacy Policy Summary

  • CasinoRankr uses account, device, analytics, and affiliate signals to run the site and protect vote integrity.
  • Geo and restriction signals help show availability context, but users should still check operator terms directly.
  • Affiliate attribution may be shared after outbound clicks so referrals can be tracked.
  • Users can review the full sections below for cookies, service providers, data rights, and contact details.

1. Introduction

CasinoRankr ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website. Please read this privacy policy carefully.

2. Information We Collect

2.1 Information You Provide

We may collect information that you voluntarily provide to us, including:

  • Voting and rating data
  • Reviews and comments you submit
  • Information provided through contact forms or customer support

2.2 Automatically Collected Information

When you visit our Site, we automatically collect certain information, including:

  • Anonymous authentication identifiers and anti-abuse signals for vote integrity
  • IP address and geolocation data
  • Browser type and version
  • Pages you visit and time spent on pages
  • Referring website addresses
  • Cookieless usage analytics that always run on a legitimate-interest basis (Vercel Analytics and Vercel Speed Insights)
  • Consent-gated analytics that run only after you grant analytics consent (Google Analytics via Google Tag Manager, Microsoft Clarity, and Cloudflare Web Analytics)

2.3 Cookies and Tracking Technologies

We use cookies and similar tracking technologies to track activity on our Site and hold certain information. Cookies are files with a small amount of data that may include an anonymous unique identifier.

When you click an outbound link to a casino operator, our /go redirect sets two first-party, server-side cookies so we can attribute the referral and any resulting conversion:

  • _cra: Affiliate attribution cookie. 30-day lifetime, HttpOnly, Secure, SameSite=Lax. Stores a contextual click identifier so a later conversion can be matched to your click.
  • cr_session: Affiliate session-continuity cookie. 90-day lifetime, HttpOnly, Secure, SameSite=Lax. Set server-side to keep attribution working across browsers that limit client-set cookies (for example Safari ITP).

These attribution cookies are set as part of completing the affiliate redirect you initiated and are not used for advertising profiles. They are independent of the analytics-cookie controls described below.

3. How We Use Your Information

We use the collected information for various purposes:

  • To provide and maintain our service
  • To prevent duplicate voting and detect fraud
  • To enforce geographic restrictions and compliance
  • To track affiliate referrals and attribute conversions
  • To analyze usage patterns and improve our Site
  • To communicate with you about updates and changes
  • To comply with legal obligations

4. Device Fingerprinting

We use Supabase anonymous authentication as the primary mechanism for vote integrity, combined with rate limiting and abuse monitoring. We may also use browser/device-derived hashed identifiers as secondary signals. These secondary signals can help us:

  • Detect suspicious voting patterns and potential abuse
  • Correlate activity for fraud prevention
  • Maintain the integrity of our community ratings
  • Track affiliate referrals accurately

When used, these identifiers are generated from browser and device characteristics and are stored as hashed values. They are designed not to directly include personally identifiable information.

5. Data Sharing and Disclosure

We may share your information in the following situations:

  • Service Providers: We may share data with third-party service providers who perform services on our behalf (e.g., hosting, analytics, payment processing)
  • Affiliate Partners: When you click affiliate links, we share attribution data with casino operators to track referrals
  • Legal Requirements: We may disclose information if required by law or in response to valid legal requests
  • Business Transfers: In connection with a merger, acquisition, or sale of assets

We do not sell your personal information to third parties.

6. Third-Party Services

Our Site uses the following third-party services:

  • Supabase: Database and authentication services
  • Vercel Analytics and Speed Insights: Cookieless website traffic and performance analytics. Always on, on a legitimate-interest basis.
  • Google Analytics and Google Tag Manager: Website traffic and user-behavior analytics, loaded through a same-origin tag-manager proxy. Consent-gated: loads only after you grant analytics consent.
  • Microsoft Clarity: Session analytics, heatmaps, and session replay. Consent-gated: loads only after you grant analytics consent, and never before you make a choice.
  • Cloudflare Web Analytics: Cookieless traffic and Core Web Vitals measurement. Consent-gated: loads only after you grant analytics consent.
  • Upstash Redis: Caching and rate limiting services
  • Cloudflare Turnstile: Bot detection and challenge verification
  • Browser Fingerprinting: Device identification and fraud prevention
  • Sentry: Error and performance diagnostics. We do not run Sentry session replay.

These services have their own privacy policies addressing how they use your information.

Consent basis. Google Analytics, Google Tag Manager, Microsoft Clarity, and Cloudflare Web Analytics load only after you grant analytics consent through our cookie banner, and not before you make a choice. You can withdraw consent at any time through the banner. Vercel Analytics and Vercel Speed Insights are cookieless and run on the basis of our legitimate interest in measuring site performance. Cookies that are strictly necessary to operate and secure the Site, together with the first-party affiliate attribution cookies described in Section 2.3, are used on the basis of our legitimate interest and the affiliate service you request. We honor Global Privacy Control (GPC): when your browser sends a GPC signal, we treat analytics and marketing as denied by default.

7. Data Security

We implement appropriate technical and organizational security measures to protect your information. However, no method of transmission over the internet or electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your data, we cannot guarantee its absolute security.

8. Data Retention

We retain your information only for as long as necessary to fulfill the purposes outlined in this Privacy Policy, unless a longer retention period is required or permitted by law. Voting data and device fingerprints may be retained indefinitely to maintain historical accuracy of ratings.

9. Your Rights

Depending on your location, you may have certain rights regarding your personal information:

  • Access to and the right to know what personal data we hold
  • Correction of inaccurate data
  • Deletion of your data (subject to certain exceptions)
  • Objection to or restriction of processing
  • Data portability
  • The right to opt out of any sale or sharing of personal information

California residents (CCPA/CPRA) have the right to know, delete, correct, and limit the use of their personal information, and to opt out of the sale or sharing of personal information. We do not sell your personal information for money. Residents of the EEA and UK (GDPR/UK GDPR) may exercise access, rectification, erasure, restriction, portability, and objection rights; our legal bases are your consent (for analytics and non-essential cookies) and our legitimate interest in operating and securing the Site.

To opt out of the sale or sharing of your personal information for analytics and marketing on this device, use this control: . We also honor browser-level Global Privacy Control (GPC) automatically: when your browser sends a GPC signal, we treat analytics and marketing as denied by default, so no separate request is required.

To exercise any of these rights, email privacy@casinorankr.com with your request and the email or device context you used on the Site. We will respond within the timeframe required by applicable law.

10. Children's Privacy

Our Site is not intended for individuals under 18 years of age. We do not knowingly collect personal information from children. If you become aware that a child has provided us with personal information, please contact us immediately.

11. International Data Transfers

Your information may be transferred to and maintained on computers located outside of your state, province, country, or other governmental jurisdiction where data protection laws may differ. By using our Site, you consent to this transfer.

12. Changes to This Privacy Policy

We may update our Privacy Policy from time to time. We will notify you of significant changes by posting the new Privacy Policy on this page and updating the "Last Updated" date. You are advised to review this Privacy Policy periodically for any changes.

13. Contact Us

If you have questions about this Privacy Policy, please contact us at:

privacy@casinorankr.com