La privacy Politica
La protezione dei vostri dati personali è una priorità assoluta per STOPJEU SAS, la società dietro OFFBET. Questa politica spiega quali informazioni raccogliamo, come le utilizziamo e quali sono i vostri diritti.
01 Titolare del trattamento dei dati
Il titolare del trattamento è:
- STOPJEU SAS — gestore della piattaforma OFFBET
- Forma giuridica: Società per azioni semplificata (SAS) – Diritto francese
- Capitale sociale: €8,000
- Sede legale: 99 avenue Achille Peretti, 92200 Neuilly-sur-Seine, France
- SIREN: 919 454 033
- SIRET: 919 454 033 00011
- Codice attività (APE/NAF): 62.01Z — Programmazione informatica
Per qualsiasi domanda relativa ai vostri dati personali, contattateci all’indirizzo:
📧 [email protected]
02 Dati raccolti
We only collect the data necessary to operate our services.
Web application (my.offbet.app)
- Account data: email address, display name, country of residence.
- Dati tecnici: IP address, User Agent, usage logs.
- Dati di utilizzo delle app: chosen settings, blocking preferences.
- Subscription data: Stripe customer ID and subscription status. No credit card numbers are stored on our servers — Stripe handles all payment data.
Android application
- Anonymous device identifier: a random UUID generated locally on first launch. This identifier has no link to your IMEI, Android ID, or any hardware identifier.
- Device model and Android version: used to adapt the app behavior to your phone (Pixel, Samsung, Xiaomi, etc.).
- Protection status: whether OFFBET protection is active or not, transmitted every 5 to 15 minutes to the OFFBET server for companion monitoring.
- Blocked attempts: the list of gambling domains and applications blocked by the app, with attempt counts. This information is used to generate companion reports.
- Installed applications list: only accessed when you open the “Block a custom app” screen. This list is never transmitted to the OFFBET server — it remains on your device.
- PIN code hash: if you have set a PIN, its bcrypt hash (irreversible) is synchronized between your devices via the OFFBET server. The PIN itself is never transmitted.
What we do NOT collect
We do not collect browsing history, DNS queries, GPS location, contacts, photos, messages, or any sensitive personal data. No financial data is stored on our servers.
03 Come utilizziamo i vostri dati
I vostri dati sono utilizzati esclusivamente per:
- Block access to gambling websites and apps via local DNS filtering on your device.
- Assicurarsi che la prevenzione della disinstallazione protetta da PIN funzioni correttamente.
- Monitor protection status and notify your companion in case of bypass attempts.
- Synchronize your settings and blocklist between your devices.
- Migliorare la stabilità e le prestazioni dei servizi OFFBET.
Non vendiamo mai i vostri dati a terzi.
04 Base legale
In conformità al GDPR, il trattamento dei Suoi dati si basa su:
- Esecuzione del contratto: garantire che il servizio OFFBET funzioni come previsto.
- Il vostro consenso: certain features require your explicit approval (e.g., accessibility permissions, VPN activation).
- Interesse legittimo: improving security, preventing fraud, and protecting vulnerable users from gambling harm.
05 I vostri diritti
L’utente ha i seguenti diritti sui propri dati personali:
- Accesso: ottenere una copia dei dati in nostro possesso.
- Rettifica: correggere eventuali informazioni inesatte.
- Soppressione: richiedere la cancellazione completa dei propri dati.
- Restrizione: limitare temporaneamente alcune attività di trattamento.
- Obiezione: rifiutare determinati usi, come il rinnovo automatico.
- Portabilità: trasferire i vostri dati a un altro fornitore.
- Ritiro del consenso: revocare in qualsiasi momento un’autorizzazione specifica.
Per esercitare i vostri diritti, contattateci all’indirizzo: [email protected]
06 Operazioni tecniche e sicurezza
DNS filtering (100% local)
On Android, OFFBET uses the Android VpnService API to create a local VPN connection on your device. This VPN does not route your traffic to any external server.
Instead, it intercepts DNS queries locally on your phone, blocks gambling-related domains by returning an empty response, and forwards all other queries to Google Public DNS (8.8.8.8).
No DNS query ever leaves your device to reach an OFFBET server. This is the same approach used by well-known apps such as AdGuard, Blokada, and Freedom.to.
Data transmission security
All communication between the OFFBET app and the OFFBET server (my.offbet.app) is encrypted using HTTPS/TLS 1.3.
The heartbeat signal sent every 5 to 15 minutes contains only your anonymous device ID, protection status, and blocked attempt counts — never your browsing history or DNS queries.
App blocking (UsageStatsManager)
OFFBET uses the UsageStatsManager API to detect when a blocked gambling application is launched and bring the user back to the home screen.
This data is processed locally on your device and is not transmitted to the OFFBET server.
AccessibilityService API (optional)
If enabled by the user, OFFBET uses the AccessibilityService API exclusively to:
- Detect attempts to activate a third-party VPN that would bypass the gambling protection.
- Detect changes to the device Private DNS settings.
This service is never used to read, interact with, or collect data from any other application. It is optional and can be skipped during setup.
Device Administrator (optional)
If enabled by the user, OFFBET registers as a Device Administrator to prevent accidental or impulsive uninstallation of the app.
The user can always disable this protection by entering their PIN code. This feature is voluntary and can be skipped during setup.
Protezione con codice PIN
Quando si attiva la protezione PIN:
- Disabling the protection or uninstalling the app requires entering the PIN code.
- The PIN is hashed using bcrypt (irreversible) and verified locally — no network connection is needed.
- If the “hidden PIN” option is chosen, only a trusted person knows the code. The user can request recovery via email after a configurable delay (12h, 24h, 48h, or never).
- After 3 failed PIN attempts, the app locks and notifies the companion.
07 Android Permissions Explained
The OFFBET Android app requests the following permissions. Each permission is explained below with its purpose.
| Permission | Purpose |
|---|---|
| Internet | Communicate with the OFFBET server (heartbeat, blocklist updates, account sync). |
| VpnService | Create a local VPN connection to filter gambling DNS queries on your device. No traffic is sent to an OFFBET server. |
| Foreground Service | Keep the DNS filtering and app blocking services running reliably in the background. |
| Boot Completed | Automatically restart protection after your phone reboots. |
| Notifications | Show a persistent notification confirming that protection is active. |
| Usage Stats Access | Detect when a blocked gambling app is launched and redirect you to the home screen. |
| Query All Packages | Allow you to select custom apps to block in OFFBET settings. |
| Ignore Battery Optimizations | Prevent Android from killing the protection service to save battery. |
| Draw Over Other Apps optional | Display the PIN entry screen on top of other apps when a bypass attempt is detected. |
| Device Administrator optional | Prevent uninstallation of the app without entering the PIN code. |
| Accessibility Service optional | Detect and prevent activation of third-party VPNs that would bypass the gambling protection. |
All optional permissions can be skipped during setup. The app will remind you of missing permissions with a banner, but will never force you to enable them.
GDPR note: OFFBET never sees your DNS queries. Since filtering is 100% local, no browsing data is collected, stored, or transmitted. This eliminates the privacy risks associated with server-side DNS filtering.
08 Conservazione dei dati
I dati tecnici (log, IP, GUID) vengono conservati per un massimo di 12 mesi, a meno che non sia richiesto dalla legge o in caso di controversia.
I dati relativi all’account vengono cancellati immediatamente su richiesta dell’utente.
Non vengono conservati dati oltre quelli necessari per il servizio.
09 Trasferimenti internazionali
Our servers may be hosted by providers located outside the European Union (e.g., AWS).
In questi casi, garantiamo l’adozione di adeguate misure di salvaguardia (clausole contrattuali standard della Commissione europea) per proteggere i vostri dati.
10 Modifiche alla politica
Potremmo aggiornare la presente informativa sulla privacy per riflettere le modifiche apportate ai nostri servizi o alle normative applicabili.
Qualsiasi versione aggiornata sarà pubblicata sul nostro sito web con una nuova data di entrata in vigore.
11 Contatto
Per qualsiasi domanda sui vostri dati personali o sulla presente informativa sulla privacy:
📍 STOPJEU SAS — 99 avenue Achille Peretti, 92200 Neuilly-sur-Seine, France