Legal
Last updated: March 31, 2026
This is a translation provided for convenience. In case of discrepancy, the English version prevails as the legally binding document.
WinThe.watch respects your privacy and is committed to protecting your personal data. This Privacy Policy explains how we collect, use, and safeguard your information in compliance with the General Data Protection Regulation (GDPR) and applicable data protection laws.
The data controller is WinThe.watch, operated from the Principality of Andorra. For any privacy-related inquiries, contact us at privacy@winthe.watch.
When you create an account, we collect your email address and password (stored securely using industry-standard encryption).
When you purchase tickets for premium draws, payment is processed securely by Stripe. We do not store your credit card details — this is handled entirely by Stripe in compliance with PCI DSS standards.
We collect anonymised usage data including pages visited, raffle participation, and device/browser information to improve our platform.
We use your data for the following purposes:
We process your data based on: (a) your consent when creating an account, (b) the performance of a contract when you participate in raffles, (c) our legitimate interest in improving our services, and (d) compliance with legal obligations.
We do not sell your personal data. We share data only with:
We retain your account data for as long as your account is active. If you request account deletion, we will remove your personal data within 30 days, except where retention is required by law.
Under the GDPR, you have the following rights:
To exercise any of these rights, contact us at privacy@winthe.watch.
We use essential cookies for site functionality and age verification. We use anonymised analytics cookies to understand usage patterns. You can manage cookie preferences through your browser settings. See our Cookie Policy for details.
We implement industry-standard security measures including SSL encryption, secure password hashing, and regular security audits. Payment processing is handled by Stripe, a PCI DSS Level 1 certified provider.
Your data is primarily processed within the European Economic Area. Where data is transferred outside the EEA (e.g., to service providers), we ensure appropriate safeguards are in place as required by the GDPR.
We may update this Privacy Policy from time to time. Material changes will be communicated via email to registered users.
For privacy-related inquiries: privacy@winthe.watch