← Bettornia

Privacy Policy

Effective: May 28, 2026

Data Controller: By One Click s. r. o.


1. Introduction

1.1. This Privacy Policy (hereinafter: Policy) describes how By One Click s. r. o. (registered seat: Sobieskeho 482/6A, 943 01 Štúrovo, Slovak Republic; IČO: 56524471; DIČ: 2122334137; IČ DPH: SK2122334137; hereinafter: Controller or Bettornia) processes the personal data of users (hereinafter: Data Subject or User) in the course of providing the Bettornia service (hereinafter: Service).

1.2. The processing complies with Regulation (EU) 2016/679 of the European Parliament and of the Council (General Data Protection Regulation, hereinafter: GDPR) and with the applicable Slovak laws.

1.3. For data protection enquiries or to exercise their rights, the User may contact the Controller at support@bettornia.com.

2. What Data We Process

2.1. Registration and profile data: name, e-mail address, password (stored solely in encrypted, irreversible form — see Section 6), as well as the address and billing data provided by the User (postal code, city, street, country, and a tax number where applicable).

2.2. Service usage data: the capital amount and preferences set by the User, data on the bets identified and placed through the Service (betting history) within the Bettornia system, and the weekly settlements.

2.3. Payment and billing data: the data necessary for payments and for issuing invoices. The Controller does not store the full bank card number; card data are processed solely by the payment provider (Stripe).

2.4. Technical data: the minimal technical data necessary for the operation of the Service (for example, session identifier, language setting).

2.5. What we do NOT process: the Controller's server does not store the access credentials of the User's own accounts with third parties (bookmakers, Decodo proxy). These data are stored, encrypted, by the application on the User's own computer (see Section 6). The Decodo proxy service is the User's own separate subscription, which the Controller does not manage and does not see.

3. Purposes and Legal Bases of Processing

3.1. The Controller processes personal data for the following purposes and on the following legal bases:

  • Providing the Service (creating and managing the account, betting recommendations, settlement): the legal basis is the performance of a contract (Article 6(1)(b) GDPR).
  • Invoicing and accounting: the legal basis is compliance with a legal obligation of the Controller (Article 6(1)(c) GDPR), under Slovak tax and accounting laws.
  • Communication and customer support: the legal basis is the performance of a contract, or the legitimate interest of the Controller (Article 6(1)(f) GDPR).
  • Maintaining the security of the Service and preventing abuse: the legal basis is the legitimate interest of the Controller (Article 6(1)(f) GDPR).

3.2. The Controller does not make any decision based solely on automated processing that produces legal effects concerning the User within the meaning of Article 22 GDPR.

4. Processors and Data Transfers

4.1. To provide the Service, the Controller uses the following processors, strictly to the extent necessary:

  • Stripe — payment service (processing of payment and card data);
  • idoclad.sk — electronic invoicing (data required for invoicing);
  • e-mail delivery provider — sending system and notification e-mails.

4.2. The processors act solely on the instructions of the Controller, under an appropriate data processing agreement (Article 28 GDPR).

4.3. Transfers outside the EU: certain processors (for example, Stripe) may process data outside the European Economic Area, including in the United States. In such cases, the transfer takes place subject to the appropriate safeguards required by the GDPR, in particular an adequacy decision of the European Commission (such as the EU–US Data Privacy Framework) or the standard contractual clauses (SCC) adopted by the European Commission.

4.4. The Controller does not sell personal data to third parties.

5. Data Retention Period

5.1. The Controller processes personal data only for as long as necessary to achieve the purposes, or for the period prescribed by law.

5.2. Account and profile data, as well as service usage data, are processed for the duration of the account. Following deletion of the account, these data are deleted or anonymised within 30 days at the latest, unless a longer retention period is required by law.

5.3. Invoicing and accounting data are processed for the period during which their retention is mandatory under Slovak law, namely 10 years.

6. Data Security

6.1. The Controller applies appropriate technical and organisational measures to protect the data.

6.2. The User's Bettornia password is stored by the Controller solely in encrypted, irreversible (hashed) form.

6.3. The access credentials relating to third parties (bookmakers, Decodo) are never transmitted to the Controller's server. They are stored exclusively on the User's own computer, with strong encryption (AES-256), protected by a master password set by the User.

6.4. Payment data are processed by Stripe, in its own system compliant with the payment card industry security standard (PCI-DSS).

7. Cookies

7.1. The Service uses only strictly necessary cookies, in particular those required to maintain the login session and to remember the language setting.

7.2. The Controller does not use analytics, advertising or tracking cookies, and does not embed any third-party tracking tools.

8. Rights of the Data Subject

8.1. Under the GDPR, the User has the following rights:

  • the right of access to the personal data processed about them;
  • the right to rectification of inaccurate data;
  • the right to erasure ("the right to be forgotten"), within the limits of any statutory retention obligation;
  • the right to restriction of processing;
  • the right to data portability (receiving the data in a machine-readable format);
  • the right to object to processing based on legitimate interest.

8.2. To exercise these rights, the User may contact the Controller at support@bettornia.com. The Controller will fulfil the request within the time limit set out in the GDPR.

8.3. Right to lodge a complaint: if the User considers that the processing infringes the GDPR, they may lodge a complaint with the supervisory authority. The Slovak supervisory authority is the Úrad na ochranu osobných údajov Slovenskej republiky (Office for Personal Data Protection of the Slovak Republic), Hraničná 12, 820 07 Bratislava, https://dataprotection.gov.sk. The User may also lodge a complaint with the supervisory authority of the Member State of their habitual residence or place of work.

9. Amendments to the Policy

9.1. The Controller is entitled to amend this Policy. The Controller will notify the User of material amendments through the Service and/or by e-mail. The Policy in force at any given time is available on the Service interface.


Data Controller: By One Click s. r. o., Sobieskeho 482/6A, 943 01 Štúrovo, Slovak Republic — IČO: 56524471, DIČ: 2122334137, IČ DPH: SK2122334137. Contact: support@bettornia.com