Privacy Beleid
Het beschermen van uw persoonlijke gegevens is een topprioriteit voor STOPJEU SAS, het bedrijf achter OFFBET. Dit beleid legt uit welke informatie we verzamelen, hoe we deze gebruiken en wat je rechten zijn.
01 Gegevensbeheerder
De verantwoordelijke voor de verwerking van de gegevens is:
- STOPJEU SAS — exploitant van het OFFBET platform
- Rechtsvorm: Vereenvoudigde naamloze vennootschap (SAS) – Franse wet
- Aandelenkapitaal: €8,000
- Geregistreerd kantoor: 99 avenue Achille Peretti, 92200 Neuilly-sur-Seine, France
- SIREN: 919 454 033
- SIRET: 919 454 033 00011
- Code bedrijfsactiviteit (APE/NAF): 62.01Z — Computerprogrammering
Voor vragen over uw persoonlijke gegevens kunt u contact met ons opnemen via:
📧 [email protected]
02 Gegevens die we verzamelen
We only collect the data necessary to operate our services.
Web application (my.offbet.app)
- Account data: email address, display name, country of residence.
- Technische gegevens: IP address, User Agent, usage logs.
- App-gebruiksgegevens: chosen settings, blocking preferences.
- Subscription data: Stripe customer ID and subscription status. No credit card numbers are stored on our servers — Stripe handles all payment data.
Android application
- Anonymous device identifier: a random UUID generated locally on first launch. This identifier has no link to your IMEI, Android ID, or any hardware identifier.
- Device model and Android version: used to adapt the app behavior to your phone (Pixel, Samsung, Xiaomi, etc.).
- Protection status: whether OFFBET protection is active or not, transmitted every 5 to 15 minutes to the OFFBET server for companion monitoring.
- Blocked attempts: the list of gambling domains and applications blocked by the app, with attempt counts. This information is used to generate companion reports.
- Installed applications list: only accessed when you open the “Block a custom app” screen. This list is never transmitted to the OFFBET server — it remains on your device.
- PIN code hash: if you have set a PIN, its bcrypt hash (irreversible) is synchronized between your devices via the OFFBET server. The PIN itself is never transmitted.
What we do NOT collect
We do not collect browsing history, DNS queries, GPS location, contacts, photos, messages, or any sensitive personal data. No financial data is stored on our servers.
03 Hoe we uw gegevens gebruiken
Uw gegevens worden uitsluitend gebruikt om:
- Block access to gambling websites and apps via local DNS filtering on your device.
- Controleer of de PIN-beveiligde de-installatiepreventie correct werkt.
- Monitor protection status and notify your companion in case of bypass attempts.
- Synchronize your settings and blocklist between your devices.
- De stabiliteit en prestaties van de OFFBET-diensten verbeteren.
We verkopen je gegevens nooit aan derden.
04 Wettelijke basis
In overeenstemming met de GDPR is de verwerking van uw gegevens gebaseerd op:
- Uitvoering van het contract: ervoor zorgen dat de OFFBET-service functioneert zoals bedoeld.
- Uw toestemming: certain features require your explicit approval (e.g., accessibility permissions, VPN activation).
- Gerechtvaardigd belang: improving security, preventing fraud, and protecting vulnerable users from gambling harm.
05 Uw rechten
U hebt de volgende rechten op uw persoonlijke gegevens:
- Toegang: een kopie te krijgen van de gegevens die we over u bewaren.
- Rectificatie: onjuiste informatie te corrigeren.
- Verwijdering: verzoeken om volledige verwijdering van uw gegevens.
- Beperking: bepaalde verwerkingsactiviteiten tijdelijk beperken.
- Bezwaar: bepaald gebruik weigeren, zoals automatische verlenging.
- Draagbaarheid: uw gegevens overdragen aan een andere provider.
- Intrekking van toestemming: elke specifieke autorisatie op elk moment intrekken.
Neem contact met ons op als u uw rechten wilt uitoefenen: [email protected]
06 Technische Operaties & Beveiliging
DNS filtering (100% local)
On Android, OFFBET uses the Android VpnService API to create a local VPN connection on your device. This VPN does not route your traffic to any external server.
Instead, it intercepts DNS queries locally on your phone, blocks gambling-related domains by returning an empty response, and forwards all other queries to Google Public DNS (8.8.8.8).
No DNS query ever leaves your device to reach an OFFBET server. This is the same approach used by well-known apps such as AdGuard, Blokada, and Freedom.to.
Data transmission security
All communication between the OFFBET app and the OFFBET server (my.offbet.app) is encrypted using HTTPS/TLS 1.3.
The heartbeat signal sent every 5 to 15 minutes contains only your anonymous device ID, protection status, and blocked attempt counts — never your browsing history or DNS queries.
App blocking (UsageStatsManager)
OFFBET uses the UsageStatsManager API to detect when a blocked gambling application is launched and bring the user back to the home screen.
This data is processed locally on your device and is not transmitted to the OFFBET server.
AccessibilityService API (optional)
If enabled by the user, OFFBET uses the AccessibilityService API exclusively to:
- Detect attempts to activate a third-party VPN that would bypass the gambling protection.
- Detect changes to the device Private DNS settings.
This service is never used to read, interact with, or collect data from any other application. It is optional and can be skipped during setup.
Device Administrator (optional)
If enabled by the user, OFFBET registers as a Device Administrator to prevent accidental or impulsive uninstallation of the app.
The user can always disable this protection by entering their PIN code. This feature is voluntary and can be skipped during setup.
Bescherming met PIN-code
Wanneer u PIN-bescherming inschakelt:
- Disabling the protection or uninstalling the app requires entering the PIN code.
- The PIN is hashed using bcrypt (irreversible) and verified locally — no network connection is needed.
- If the “hidden PIN” option is chosen, only a trusted person knows the code. The user can request recovery via email after a configurable delay (12h, 24h, 48h, or never).
- After 3 failed PIN attempts, the app locks and notifies the companion.
07 Android Permissions Explained
The OFFBET Android app requests the following permissions. Each permission is explained below with its purpose.
| Permission | Purpose |
|---|---|
| Internet | Communicate with the OFFBET server (heartbeat, blocklist updates, account sync). |
| VpnService | Create a local VPN connection to filter gambling DNS queries on your device. No traffic is sent to an OFFBET server. |
| Foreground Service | Keep the DNS filtering and app blocking services running reliably in the background. |
| Boot Completed | Automatically restart protection after your phone reboots. |
| Notifications | Show a persistent notification confirming that protection is active. |
| Usage Stats Access | Detect when a blocked gambling app is launched and redirect you to the home screen. |
| Query All Packages | Allow you to select custom apps to block in OFFBET settings. |
| Ignore Battery Optimizations | Prevent Android from killing the protection service to save battery. |
| Draw Over Other Apps optional | Display the PIN entry screen on top of other apps when a bypass attempt is detected. |
| Device Administrator optional | Prevent uninstallation of the app without entering the PIN code. |
| Accessibility Service optional | Detect and prevent activation of third-party VPNs that would bypass the gambling protection. |
All optional permissions can be skipped during setup. The app will remind you of missing permissions with a banner, but will never force you to enable them.
GDPR note: OFFBET never sees your DNS queries. Since filtering is 100% local, no browsing data is collected, stored, or transmitted. This eliminates the privacy risks associated with server-side DNS filtering.
08 Bewaren van gegevens
Technische gegevens (logs, IP, GUID) worden maximaal 12 maanden bewaard, tenzij dit wettelijk verplicht is of in geval van een geschil.
Accountgerelateerde gegevens worden onmiddellijk verwijderd als u hierom verzoekt.
Er worden geen gegevens langer bewaard dan nodig is voor de service.
09 Internationale overboekingen
Our servers may be hosted by providers located outside the European Union (e.g., AWS).
In dergelijke gevallen zorgen wij ervoor dat er passende waarborgen (standaard contractbepalingen van de Europese Commissie) zijn om uw gegevens te beschermen.
10 Beleidswijzigingen
We kunnen dit privacybeleid bijwerken om wijzigingen in onze diensten of toepasselijke regelgeving weer te geven.
Elke bijgewerkte versie wordt met een nieuwe ingangsdatum op onze website gepubliceerd.
11 Neem contact op met
Voor vragen over uw persoonlijke gegevens of dit privacybeleid:
📍 STOPJEU SAS — 99 avenue Achille Peretti, 92200 Neuilly-sur-Seine, France