Legal
Privacy Policy
Last updated August 19, 2026.
This policy describes how Strata handles data in connection with the Service. It covers two categories of data: information about your account (the operator integrating with us), and data your account submits about its own players in the course of using the API (e.g. player IDs, balances, transaction history).
Account data we collect
Account registration details, billing information, API credentials, team member access, and platform configuration (branding, webhook URLs, game allowlists).
Player data processed on your behalf
When your platform calls our API to launch a game or process a wallet callback, we process the player identifiers, transaction amounts, and session data you send us, strictly to operate the Service for your account. We don't independently market to or contact your players.
How data is used
To operate and secure the Service, process transactions with upstream game providers, maintain your account's ledger and audit trail, and communicate with you about your account.
How data is protected
Upstream provider credentials are encrypted at rest. Account data is scoped so one account can never access another's. See our security page for more detail.
Data retention
We retain account and transaction records for as long as your account is active and as needed to meet financial record-keeping and audit obligations.
Third parties
Launching a game session or processing a wallet callback necessarily involves sharing the relevant session data with the upstream game provider handling that request.
Your rights
If you'd like to access, correct, or delete account-level data we hold about you, contact us via the contact page.
Changes to this policy
We may update this policy from time to time; material changes will be reflected by an updated date at the top of this page.