back icon

Security

Security

Cricket.com is committed to provide its customers a safe and secure platform to play fantasy sports. Player safety and trust are of paramount importance to us and we ensure 100% fairness in the games played on cricket.com by employing multiple security measures, as detailed below.

Mandatory KYC

In order to maintain integrity and transparency at cricket.com and to positively identify users, every user who creates a user account on cricket.com must agree to the  Terms & Conditions , besides complying to the KYC  norms at various stages, as prescribed from time to time. All users playing on Cricket.com need to comply with KYC process which includes verification of email address, mobile number, ID proofs such as PAN card, Aadhaar Card, driving license, address proofs and IP address check.

  • Each user has to provide few KYC details at the time of account creation on cricket.com.
  • Each player needs to furnish more KYC details on cricket.com at various stages of the player journey, for example to add chips more than a certain amount, player needs to verify his/her/their identity with legal proofs.
Play Responsibly

Cricket.com adheres to responsible gaming practices to ensure that our players feels safe within the system and play responsibly. We are committed to integrity, fairness and reliability and we always do our best to prevent gaming-related problems.

Following responsible gaming features are deployed at cricket.com.

  • Add Cash Limits: Each player has his/her/their own defined add cash limit for cash addition. Players have the flexibility to control their add cash limits.
  • Age Checks: Players below 18 years of age are not allowed to play on cricket.com.
  • Account Closure: Players can reach us at support@cricket.com to get their accounts closed with us. Players can ask to close their accounts with cricket.com for a temporary and permanent basis.
  • Territory Checks: Players from certain states of India such as Assam, Nagaland, Meghalaya, Sikkim, Telangana and Andhra Pradesh are not allowed to play on the cricket.com platform. Users from outside India are also not allowed to play as well.

Game Security

At cricket.com, we ensure game level security as a top business priority to maintain trust among players and provide a platform for a fair play. A lot of measures are in place to make sure that players can enjoy fair gaming experience without worrying about any fraudulent behavior.

  • Communication protection: All games played on cricket.com are conducted over a secure communication between the game servers and the devices of the customers (laptop, PC or mobile devices). Also we have dual verification and log protection checks at various levels to prevent data manipulation at both client and server end.
  • Add Cash Security: All add cash transactions are secured with 2048-bit SSL. No credit card/debit card information of player is stored on the cricket.com platform.
  • Fraud and Collusion Protection:cricket.com has deployed multiple fraud protection measures to ensure that our players stay protected from any form of fraud, including collusion fraud.
    • Players found colluding on the platform by our fraud detection system are blocked further from playing on the platform.
    • Anti-fraud algorithms tracks every move during the game play.
    • cricket.com continuously reviews compliance of its security measures.
  • No BOTS Policy: Cricket.com does not have any robotic programs (BOTs) on its gaming platform and does not participate in any games. All players are genuine with appropriate level of KYC verification.
Website Security

All the Company's websites are SSL (Secured Socket Layer) enabled and necessary certification have been obtained from a third party "Digicert". Hence, these websites can only be accessed over https://.

HDWPL has code signing certificate obtained from Digicert to avoid any alterations of software package (DL - Download Client) which is being distributed to customers.

Data Center Security

We avail the services of an International Data Centre having a decade's experience and expertise in providing the infrastructure services for ensuring high availability, seamless performance and reliable security for mission critical applications. As part of this continuous process the Datacentre is certified with ISO 27001 and many other such certifications. Using vast experience of its Centre of Excellence teams, state of the art tools at their disposal and in-depth understanding of infrastructure management, Data centre Operations tries to resolve issues by not only restoring the services after an incident, but also by carrying out a root- cause analysis to avoid repeated issues. Using advanced monitoring and service management platform, the services are monitored 24X7 throughout the year. As part of additional measures like protection from DDOS attacks has also been availed to increase the availability of the infrastructure to the end users/players.

Relogin Checks

It seldom happens, but in case our client hangs or crashes because of player's device hardware limitations (leaving too many apps/windows open) the player logs in again to continue from the same channel or a different one. In such scenarios, we have multiple re-login checks to ensure that the player can resume his game that has gone into 'Autoplay' mode due to the disconnection.

Duplicity Checks

We have robust duplicity checks in place that calculate the duplicity scores of players. Duplicity scores above a certain threshold are marked and we then run programs to get in touch with such players and shut their duplicate accounts. This also plays an important role in players receiving relevant promotional content.

Product Test Accounts s

As a part of policy, all employees of Head Digital Works Private Limited are not allowed to play on cricket.com. To check the health of the system and reproduce customer reported issues, we maintain a handful of test accounts on production system. These accounts are marked as internal test accounts in our back-office systems and no redeem of cash is allowed for such accounts. Also, only the marked internal test accounts can use office premises to login and play in the production system to check the system health if required.

Loader