Security Policy (Account Access & Credentials)


Last updated: September 18, 2025


1) Password Management

    Your password is the primary key to your RockinBet account. Protect it carefully.

  •     Storage & confidentiality: We store passwords using industry-standard, one-way hashing with salts. Team members cannot view your password.

  •     Do not share: Never disclose your password to anyone, including RockinBet staff. We will never ask for it.

  •     Create a strong password: Use a unique passphrase with at least 12 characters (mix of letters, numbers, symbols). Avoid reusing passwords from other sites.

  •     Change cadence: Change your password immediately if you suspect compromise (e.g., unusual logins, lost device). Routine changes are optional; avoid frequent small variations.

  •     Change process: Sign in → Profile → Security → Change Password. Passwords are case-sensitive.

  •     Rate limiting & reuse: For security, we limit password changes to three (3) per 24 hours and may prevent recent password reuse.

  •     Use a password manager: We recommend a reputable password manager to generate and store strong, unique passwords.


2) Two-Factor Authentication (2FA)

    Add a second layer of protection to your account.

  •     Enable 2FA: Go to Profile → Security → Two-Factor Authentication and follow the steps to set up an authenticator app (TOTP).

  •     Backup codes: Safely store your backup codes offline. They let you sign in if you lose your device.

  •     Hardware keys (optional): If supported on your device/browser, consider security keys (WebAuthn) for the strongest protection.

  •     We never ask for codes: RockinBet staff will never ask for your 2FA codes or backup codes. If someone does, it’s a scam.


3) 4-Digit Support PIN (For Customer Support Only)

    Your 4-digit PIN helps our team verify your identity when you contact us.

  •     When it’s used: For phone, email, or chat support, we may ask for your account number and 4-digit PIN. This PIN is not used to log in.

  •     Set/Change your PIN: Sign in → Account → Security Settings → Support PIN.

  •     No reuse window: Recently used PINs may be blocked from immediate reuse.

  •     Forgot your PIN? We’ll verify your identity through alternate methods before resetting it.

  •    Privacy: Your PIN is stored using appropriate security controls.


4) Recovering Your Login

   If you forget your password or account number:

  •    Self-service reset: Click “Forgot Password?” on the sign-in page. Enter your registered email (or account number), complete the CAPTCHA, and submit.

  •    Secure link: We’ll send a time-limited reset link to your email. Follow the instructions to set a new password.

  •    Didn’t get the email? Check spam/junk folders, verify your inbox filters, and ensure you still have access to the registered email.

  •    Need help? If you no longer have access to your email, contact Customer Service for identity verification and assistance.


5) Session & Device Security

   Keep your sessions and devices safe to prevent unauthorized access.

  •    Auto-logout: We may sign you out after periods of inactivity to reduce risk on shared devices.

  •    Trusted devices: Only sign in from devices you control. Keep your OS, browser, and antivirus up to date.

  •    Public networks: Avoid logging in from public/shared networks. If you must, use a reputable VPN and always log out afterwards.


6) Phishing & Fraud Prevention

   Stay alert—most account takeovers start with social engineering.

  •    Official contact: We’ll never ask for your password2FA codesbackup codes, private keys, or seed phrases.

  •    Verify the domain: Only use https://rockin.bet (and subdomains you recognize). Beware of look-alike links.

  •    Deposit safety: Only send funds to deposit addresses shown in your logged-in cashier. We will never DM you a deposit address.

  •    Suspicious message? Do not click links or download attachments. Forward it to security@rockin.bet and contact Support via the website.


7) Unusual Activity & Incident Response

   If something doesn’t look right, act quickly.

  •    Immediate steps: Change your password, and ensure 2FA is enabled.

  •    Notify us: Contact Customer Service right away with relevant details (timestamps, IPs if known, screenshots).

  •    Temporary holds: We may temporarily restrict withdrawals or sign-ins while we investigate and protect your account.

  •    Restoration: Where feasible, we will help you secure the account and restore access after verification.


8) Feedback on Security Settings

   Your feedback helps us improve.

  •    If you have suggestions or notice anything unclear, contact Customer Service or email security@rockin.bet.

  •    We continuously review and enhance our controls in line with industry best practices.




Quick Tips (TL;DR)

  • Use a unique, strong password (12+ characters) and a password manager.

  • Enable 2FA and store backup codes safely.

  • Never share your password, 2FA codes, or PIN.

  • Only use deposit addresses shown inside your logged-in cashier.

  • If in doubt, contact Customer Service—we’re here to help.

lose message image win message image