Operator Dashboard
Real-time platform monitoring — Dev Environment — Auto-refresh every 30s
Player Profile
--
Member since --
--
Jurisdiction: --
--
----
Balance Overview
€0.00
Platform Credits
€0
Total Deposited
€0
Total Withdrawn
+€0
Net P&L
--
Total Players
--
Total Deposits
--
Total Bets
--
Total Wins
--
Active Sessions
--
Game Rounds
--
Active Players
--
Avg Bet Size
Cash-Flow Integrity
checking…
last 5min cron · audit_cashflow_violations
—
Negative balances
—
MV vs live drift
—
Conservation
—
24h RTP / house take
—
Refund storm 5m
| Time | Invariant | Severity | Detail |
|---|---|---|---|
| Loading... | |||
Incident Response — Cash-Flow Playbook
5 actions · Chapter 35b · type "CONFIRM" to fire
No actions taken this session. Buttons require typed confirmation.
30-min playbook (T+0 → T+30):
PRESERVE → IDENTIFY → CONTAIN → COMMUNICATE → REMEDIATE
— see Chapter 35b for full runbook, regulatory matrix, and templates.
Recent WebSocket Events
| Time | Type | Detail |
|---|---|---|
| Waiting for WebSocket events... | ||
User Casino Activity
| Time | Player | Activity | Amount |
|---|---|---|---|
| Waiting for casino user activity... | |||
Backend Metrics
--
Uptime
--
DB Latency
--
Redis Latency
--
DB Pool
--
Redis Mem
Policy
Kafka Tier
--
Services
--
Req/sec
--
P99 Latency
--
Error Rate
--
Avg CPU Time
--
Heap Usage
--
WebSocket Conns
Game Performance
Online Players
0
Playing
0
Online
0
Idle
| Username | Status | Current Game | Balance | VIP Tier | Country | Total Wagered | Total Won |
|---|---|---|---|---|---|---|---|
| Loading players... | |||||||
Auto-refresh every 5s — Last update: --
Platform Deployments
| Platform | Status | Technology | Endpoint |
|---|---|---|---|
| Main Casino | Active | Python/FastAPI + PostgreSQL | acmetocasino.com |
| Brazilian Betting | Active | Go/Python + Kafka KRaft | bet-brazil-landing.pages.dev |
| Fraud Detection | Active | ELK Stack + Kafka | Kibana :5601 |
| Cloudflare Workers | Active | TypeScript + D1/KV/R2 | workers.dev |
Technology Stack
Cloudflare Workers
5 workers deployed for Brazilian platform
Event Backbone Policy
Redis for small/medium scale, Kafka KRaft for enterprise
11 Microservices
9 Brazilian betting + 2 legacy
ELK + Kafka Fraud Pipeline
Elasticsearch, Logstash, Kibana
Python/FastAPI + Go + TypeScript
Core services + streaming + Cloudflare edge
PIX (Brazilian Instant Payment)
Primary payment method — Banco Central do Brasil
Architecture Modernization Timeline
2025
Legacy PHP → Python/FastAPI migration
2026 Q1
Brazilian betting platform (Chapter 46)
2026 Q1
Kafka Zookeeper → KRaft migration
2026 Q1
Cloudflare Workers edge deployment
2026 Q1
Docker security hardening
System Architecture
System Architecture
Player Management -- players
| Username | Status | KYC | VIP Tier | Created | |
|---|---|---|---|---|---|
| Loading... | |||||
--
Total Games
--
Total Rounds
--
Platform RTP
Game Round Statistics
| Game | Rounds | Total Bet | Total Win | Actual RTP | RTP Deviation |
|---|---|---|---|---|---|
| Loading... | |||||
--
Total Deposits
--
Total Bets
--
Total Wins
--
Total Withdrawals
Event Type Breakdown
Event Count Distribution
VIP Player List
| Username | Tier | Status | KYC | |
|---|---|---|---|---|
| Loading... | ||||
Tier Distribution
Revenue by Tier (Estimated Deposits)
Responsible Gaming Overview
Platform-wide responsible gaming metrics derived from player data and deposit limits.
Deposit Limits
Active platform limits enforced via server-side wallet module
Self-Exclusion
Self-exclusion endpoint available at /api/v2/responsible-gaming/self-exclusion
Session Limits
Server-side session duration tracking via GAL module
Velocity Checks
AML velocity checks flag rapid deposits > threshold
Player Status Breakdown
Pending / Inactive Players — Live Feed
| Player | Status | KYC | Last Activity | Action |
|---|---|---|---|---|
| Waiting for data... | ||||
KYC Status by Player
| Username | KYC Status | Player Status | Created | |
|---|---|---|---|---|
| Loading... | ||||
KYC Queue
Loading KYC data...
AML Alerts
Loading AML data...
AML Alert Summary
Fraud Detection & Risk Metrics
Risk Score Distribution
Recent Fraud Flags
Compliance Note: Under EU AMLD5, operators must maintain automated fraud detection with real-time transaction monitoring, velocity checks, and device fingerprinting.
--
Net Revenue (Deposits - Wins)
--
House Edge
--
Platform RTP
Revenue Waterfall (Deposits / Bets / Wins / Withdrawals)
Game Performance by Revenue
ALL SYSTEMS OPERATIONAL
Uptime: --
Services
--/--
Version
1.0.0
DB Latency
--
milliseconds
Redis Latency
--
milliseconds
DB Connection Pool
Platform Activity
--
Game Sessions
--
Redis Clients
--
Redis Memory
--
API Requests
Health Check History Last 12 checks
Redis Data Plane
--
Status
--
Summary Source
--
Keyspace
--
Clients
--
Memory
--
Snapshot Age
Kafka Backbone
--
Status
--
Tier
--
Broker
--
Consumer Group
--
Mode
--
Flow
Docker Containers
| Container | Image | Status | Mem Limit |
|---|---|---|---|
| dev-casino-api | FastAPI / Python 3.12 | Running | 512 MB |
| dev-casino-db | PostgreSQL 18 | Running | 512 MB |
| dev-casino-redis | Redis 7 | Running | 320 MB |
| dev-casino-prometheus | Prometheus | Running | 384 MB |
| dev-casino-seeder | Seeder Bot (50 players) | Running | 128 MB |
Quick Links
SSL/TLS Certificates
Auto-Renewal Active — Certbot Timer (2x/day) | Managed by Let's Encrypt
Cloudflare-Managed Certificates
—
Loading from Cloudflare API…
Polled every 15 min by
cf-cert-poller.timer via the Cloudflare API (/zones/:id/ssl/certificate_packs). Origin certs above come from direct openssl probes; these are CF's edge (Universal + Advanced + Custom) packs.
Slow Queries (pg_stat_statements)
—
| Mean (ms) | Calls | Total (ms) | Query |
|---|---|---|---|
| Loading from pg_stat_statements… | |||
Top 10 by mean execution time. Polled every 60s by
pgss-poller.timer. Extension overhead is typically <1% of CPU. Rows in red have mean ≥ 100 ms — start there when investigating DB pressure.
Disk Usage
--%
-- / 60 GB
Memory Usage
--%
-- / 6.0 GB
CPU Load
--
1 min
--
5 min
--
15 min
4 cores
LIVE DATA — Withdrawal queue from wallet_events
Pending Withdrawals Queue
| Request ID | Player | Amount | Method | Status | Requested | ETA |
|---|
Book Reference: Every withdrawal passes through automated compliance checks. Regulations require processing within 24-72 hours.
Cash Reconciliation
Fund Allocation
100%
Total Funds
Player Funds (70%)
House Revenue (20%)
Reserve (10%)
Regulatory Requirement: Operators must maintain segregated player funds. The player fund pool must never be used for operational expenses. MGA requires monthly reconciliation reports.
Withdrawal Lifecycle
Payment Methods
LIVE DATA — Partners + Payments (computed from
game_rounds · wallet_events) —
Total Partners
—
Active This Month
—
Commissions Due
—
Paid This Month
—
Pending Payouts
--
Payment Success Rate
--
Total Volume (EUR)
--
Withdrawals Pending
--
Chargebacks Open
Partner Payment Table
| Partner ID | Name | Type | Rev Share | Players | GGR | Commission | Status | Next Payment |
|---|
Revenue Waterfall (per $100 Deposited)
Business Model: Shows how deposits flow through the system. GGR is the house edge. After taxes, commissions, and costs, net revenue is what the operator retains.
Payment Schedule (Monthly Cycle)
Industry Standard: Most programs pay NET30. Invoices generated on 1st, reviewed by 5th, approved by 10th, paid by 15th.
Settlement Reports (Last 6 Months)
| Period | GGR | Bonuses | NGR | Tax (15%) | Partner Share | Net Revenue |
|---|
Payment Gateway Health
Payment Monitoring: Gateway latency and uptime tracked in real-time. Failover triggers when primary exceeds 2000ms or drops below 99.5% uptime.
Transaction Volume by Method
Payment Method Performance
Avg RTP
--
Avg House Edge
--
Games Configured
--
Revenue Impact
Baseline
RTP / Difficulty Control
Adjust the target Return-to-Player (RTP) percentage for each game. Lower RTP = higher house edge = more casino profit. Higher RTP = more player-friendly. Changes are applied via the Game Control API to all active game sessions.
⚠️Regulatory Note: Most jurisdictions require minimum RTP of 85-92%. Adjustments below regulatory minimums may violate license terms.
Game Performance Stats
| Game | Rounds | Total Bet | Total Win | Actual RTP | Deviation |
|---|---|---|---|---|---|
| Loading... | |||||
LIVE DATA — Cloud cost summary (empty until sources wired)
Monthly Cloud Cost Overview
Total Spend (MTD)
--
--
Monthly Budget
--
--
Forecast (EOM)
--
--
Cost per Player
--
Target: < $2.00
Budget Utilization--
Service Cost Breakdown
Daily Cost Trend (Last 14 Days)
Cost Optimization Recommendations
Budget Alerts Timeline
Resource Utilization vs Cost
Efficiency Score: Resources above 70% utilization are cost-efficient. Below 40% indicates over-provisioning.
Monthly Cost Comparison
| Month | EC2 | RDS | S3 | CloudFront | Lambda | ElastiCache | Total | vs Budget |
|---|
MARKET RADAR: Brazil .bet.br + Regulated Markets + Global Operator Watch
Daily Operator Intelligence
--
Brazil Companies
--
Online .bet.br Domains
--
Official Market Operators
--
Official Markets
--
Tracked Global Groups
--
Entered Since Last Snapshot
--
Exited Since Last Snapshot
Change Feed
Country Coverage
Brazil .bet.br Operators
| Company | Brands | Domains | Status | Size | Games | Authorization |
|---|---|---|---|---|---|---|
| Waiting for market radar data... | ||||||
Official Regulated Markets
| Operator | Jurisdiction | Brands / Sites | Domains | Status | Products | Scale |
|---|---|---|---|---|---|---|
| Waiting for market radar data... | ||||||
Global Casino Groups
| Group | Country | Brands | Markets | Domains | Status | Games | Scale |
|---|---|---|---|---|---|---|---|
| Waiting for market radar data... | |||||||
USER JOURNEY: Acquisition → Activation → Retention → Revenue
Player Journey Flow
Conversion Funnel
Transition Heatmap
Drop-off Analysis
Live Session Feed
ads_click Marketing Attribution & Tracking Pixels
Real-time marketing tag monitoring, UTM attribution, and conversion pixel status across all campaigns.
campaign Campaign Attribution (UTM Sources)
| Source / Campaign | Visitors | Registrations | FTDs | Conv. Rate | CPA | Revenue | ROAS |
|---|
monitoring Pixel Fire Events (Last 30 min)
FRAUD DETECTION PIPELINE: Detection → Investigation → Resolution
--
Detected
--
Under Investigation
--
Resolved
--
Fraud Amount
--
Block Rate
--
Avg Resolution
--
False Positive Rate
--
Active Rules
Active Fraud Cases
| Case ID | Severity | Type | Player | Amount | Status | Created |
|---|---|---|---|---|---|---|
| Loading fraud cases... | ||||||
Case Detail
Click a case to view details, evidence, and take actions
Fraud Type Distribution
Detection Rules
Real-time Fraud Feed
Elasticsearch Analytics — Fraud Monitoring
Data sourced from Fraud API via HTTPS proxy. Analyst console available via the internal SIEM.
checking...
Live Fraud Operations Monitor
checking
Alert API
--
Kafka Brokers
--
Consumer Groups
--
Detection Rules
--
Alert History
Feature Pipeline Consumers
Waiting for Kafka stats...
Operational Coverage
Bot traffic simulator: scheduled every 10 minutes inside fraud-detection.
Retention maintenance: Kafka topics enforced daily; synthetic Postgres cleanup runs daily.
Deep pod/job/model checks are available in dashboard.guxxxta.com under Acmetocasino.
700
Total Alerts
128 (18.3%)
High Risk (score ≥ 70)
75 (10.7%)
Critical Severity
$10.1M
Total Fraud Amount
Severity Distribution
medium263 (37.6%)
low209 (29.9%)
high153 (21.9%)
critical75 (10.7%)
Top Alert Types
bonus_abuse83
geo_mismatch64
multi_accounting58
card_fraud53
chip_dumping53
collusion53
money_laundering45
velocity_abuse45
bot_detection40
identity_fraud35
Recent Alerts
| Time | Alert ID | Type | Severity | Risk | Amount | Country | Status |
|---|---|---|---|---|---|---|---|
| 2026-03-20 07:36 | FRD-20260420 | chip_dumping | medium | 53 | $940.63 | GB | open |
| 2026-03-20 07:35 | FRD-20260332 | card_fraud | critical | 95 | $18,217.43 | GB | confirmed |
| 2026-03-20 07:30 | FRD-20260597 | identity_fraud | medium | 55 | $2,740.71 | AR | open |
| 2026-03-20 06:44 | FRD-20260490 | chip_dumping | medium | 54 | $4,021.36 | MX | investigating |
| 2026-03-20 06:18 | FRD-20260455 | money_laundering | medium | 38 | $1,426.39 | RU | resolved |
| 2026-03-20 05:43 | FRD-20260586 | geo_mismatch | low | 8 | $3,346.76 | FR | confirmed |
| 2026-03-20 05:22 | FRD-20260671 | identity_fraud | low | 18 | $3,929.70 | NG | resolved |
| 2026-03-20 05:19 | FRD-20260675 | bonus_abuse | high | 78 | $19,796.46 | NL | confirmed |
| 2026-03-20 05:12 | FRD-20260478 | velocity_abuse | medium | 48 | $88.55 | AU | open |
| 2026-03-20 05:04 | FRD-20260635 | chip_dumping | medium | 51 | $4,133.44 | PH | confirmed |
Status Distribution
resolved194
investigating157
open125
confirmed116
false_positive108
Top Countries
CA49
FR48
US48
DE47
GB42
BR41
NL39
PH33
AU32
MX32
Kafka Cluster — Fraud Pipeline
Live cluster snapshot from fraud-kafka. Cached 30 s, polled every 60 s.
checking...
--
Brokers Online
--
Topics
--
Consumer Groups
--
Last Event Age
Topics
| Name | Partitions | Replication | Under-Replicated | Last Event |
|---|---|---|---|---|
| Loading kafka stats... | ||||
GAME LICENSING: Provider Evaluation & Integration Pipeline
Provider Marketplace
Integration Cost Analysis
Cost Comparison (First Year Total)
Revenue Impact Simulator
ROI Projection
Revenue by Category
Licensing Requirements Matrix
| Jurisdiction | Cost | Timeline | Key Requirements | Status |
|---|
Monthly Operational Costs
Integrated Provider Performance
Live Edge KPIs (writer-fed, 5-min cadence)
LOADING
--
Total Req 24h
--
Avg Latency (ms)
--
Error Rate (%)
--
Workers Active
--
Workers Total
--
D1 Rows 24h
--
KV Reads 24h
--
R2 Objects
--
Est Cost ($/mo)
--
MTD Requests
--
Free Tier Used (%)
--
KV Cost ($)
--
D1 Cost ($)
--
Workers Base ($)
ESTIMATE
SSL/TLS (no upstream)
Source:
/api/v2/dash/cf-edge/summary · writer: jobs.cf_edge_snapshot · --CLOUDFLARE EDGE: Workers Deployment, Monitoring & Cost Overview
Worker Deployment Status
Real-Time Metrics (24h)
0
Total Requests
18ms
Avg Latency
0.02%
Error Rate
5/5
Active Workers
0
D1 Queries (24h)
0
KV Operations (24h)
Game Read Models Snapshot
LOADING
--
Recent Sessions
--
Recent Rounds
--
Sample Stake
--
Sample Win
Sampled from Cloudflare backoffice read models with Redis TTL. Window: latest 50 sessions and latest 50 rounds per game/environment.
| Environment | Game | Sessions | Rounds | Stake | Win | Last Activity | Status |
|---|---|---|---|---|---|---|---|
| Loading Cloudflare game snapshot... | |||||||
Updated --
Cost Monitor — Current Month
Free Tier
SIMULATED
| Worker | Requests (MTD) | Free Tier | Est. Cost | Comparison |
|---|---|---|---|---|
| acmetocasino-api | 245K | $0.00 | $0.00 | — |
| brand-alpha-api | 180K | $0.00 | $0.00 | — |
| brand-beta-api | 120K | $0.00 | $0.00 | — |
| brand-gamma-api | 95K | $0.00 | $0.00 | — |
| brand-delta-api | 78K | $0.00 | $0.00 | — |
| Total | 718K | — | $0.00 | — |
Free Tier Usage: 718K / 10M (workers monthly free tier)
7.2% used
VPS equivalent cost vs. $0.00 Cloudflare — loading comparison...
SSL/TLS Status
| Domain | Protocol | Certificate | Issuer | Expires |
|---|---|---|---|---|
| *.teste.workers.dev | TLS 1.3 | Cloudflare Edge | Cloudflare Inc | Auto-renewed |
| acmetocasino-api.teste.workers.dev | TLS 1.3 | Cloudflare Edge | Cloudflare Inc | Auto-renewed |
| brand-alpha-api.teste.workers.dev | TLS 1.3 | Cloudflare Edge | Cloudflare Inc | Auto-renewed |
All certificates managed automatically by Cloudflare — zero expiry risk
Deploy Log
Quick Actions
Brazilian Betting Workers — .bet.br Platform
Worker Status — 5 Workers Active
| Worker | Requests/day | p50 Latency | p99 Latency | Error Rate | Status |
|---|---|---|---|---|---|
| api-gateway | 847,231 | 12ms | 89ms | 0.02% | HEALTHY |
| pix-webhook | 124,567 | 8ms | 45ms | 0.01% | HEALTHY |
| sigap-reporter | 89,432 | 23ms | 156ms | 0.03% | HEALTHY |
| odds-feed | 2,341,876 | 3ms | 18ms | 0.00% | HEALTHY |
| session-manager | 567,890 | 15ms | 67ms | 0.01% | HEALTHY |
Durable Objects
47,832
BettingSession active
47,832
WalletBalance accounts
KV Namespaces
47.8K
PLAYER_SESSIONS
12.4K
ODDS_CACHE
3.2K
RATE_LIMITS
D1 Database
2.4M
bet_brazil_db rows
892MB
Database size
R2 Storage
156K
kyc-documents-br objects
23.4GB
Total storage used
Monthly Cost Estimate — .bet.br Platform
| Service | Usage | Monthly Cost | Notes |
|---|---|---|---|
| Workers | 3.97M req/day | $45 | 5 Workers, edge compute |
| KV | 63.4K keys | $12 | 3 namespaces |
| D1 | 2.4M rows, 892MB | $8 | bet_brazil_db |
| R2 | 156K objects, 23.4GB | $4 | KYC documents |
| Durable Objects | 47,832 active DOs | $23 | BettingSession + WalletBalance |
| TOTAL | — | $92/mo | vs ~$1,200+/mo AWS sa-east-1 equiv. |
BRAZILIAN BETTING OPERATIONS — SIGAP & REGULATORY COMPLIANCE
47,832
Active CPFs
R$2.4M
PIX Volume Today
99.97%
SIGAP Uptime
13%
GGR Tax Rate
Cloudflare Brazil Edge Summary
LOADING
--
Requests 24h
--
Avg Latency
--
Workers Active
--
Monthly Cost
Resources: Workers -- · KV -- · D1 -- · R2 --
Free tier -- · Savings --
Updated --
SIGAP Status Panel
ONLINE
Connection
2025-03-20 08:47:12
Last Sync
14
Events Queued
0
Failed Submissions
Daily GGR Report: Submitted — 2025-03-20 06:00 BRT
CPF Verification Stats
47,832
Total Verified
234
Pending Biometric
12
Failed
89
Welfare-Blocked
156
Self-Excluded
PIX Transaction Monitor
| Timestamp | CPF (Masked) | Type | Amount (BRL) | Status | E2E ID |
|---|---|---|---|---|---|
| 08:47:31 | ***.***.123-** | DEPOSIT | R$250.00 | Settled | E2E2025031408472312 |
| 08:46:58 | ***.***.456-** | WITHDRAWAL | R$1,200.00 | Settled | E2E2025031408465809 |
| 08:46:12 | ***.***.789-** | DEPOSIT | R$500.00 | Settled | E2E2025031408461234 |
| 08:45:44 | ***.***.321-** | DEPOSIT | R$100.00 | Settled | E2E2025031408454400 |
| 08:44:09 | ***.***.654-** | WITHDRAWAL | R$3,000.00 | Pending | E2E2025031408440955 |
GGR Daily Report
| Date | Total Bets | Prizes Paid | GGR | Tax (13%) | Status |
|---|---|---|---|---|---|
| 2025-03-20 | R$4.8M | R$3.6M | R$1.2M | R$156K | In Progress |
| 2025-03-19 | R$5.1M | R$3.8M | R$1.3M | R$169K | Submitted |
| 2025-03-18 | R$4.4M | R$3.3M | R$1.1M | R$143K | Submitted |
| 2025-03-17 | R$6.2M | R$4.6M | R$1.6M | R$208K | Submitted |
| 2025-03-16 | R$3.9M | R$2.9M | R$1.0M | R$130K | Submitted |
Responsible Gaming — Brazil
2,341
Active Deposit Limits
187
Cooling-off Periods
156
Self-Exclusions
98.4%
Portaria 1231 Score
Portaria 1231 Compliance98.4%
Active Sessions by Brazilian State
Regulatory Alerts
⚠ SIGAP Submission Delay — Resolved
2025-03-20 06:14 BRT — Daily GGR report delayed 14 min due to network latency. Submitted at 06:14.
ℹ CPF Verification Spike
2025-03-19 21:30 BRT — 892 new CPF verifications in 30 min window. All processed successfully.
🚫 Welfare Block — Benefit Day Pattern
2025-03-19 09:00 BRT — 23 accounts flagged for high-frequency deposits on BPC/INSS benefit date. Limits applied.
✓ Monthly SIGAP Audit Passed
2025-03-01 — SPA/MF quarterly audit completed. All records reconciled. Zero discrepancies.
Kafka Event Pipeline — SIGAP & Platform Events
12,847
Messages/sec
14
Topics
23ms
Consumer Lag
99.99%
Uptime
Topic Status
| Topic | Partitions | Messages/min | Consumer Groups | Lag |
|---|---|---|---|---|
| sigap.bet.events | 6 | 4,231 | sigap-reporter | 12ms |
| sigap.deposit.events | 3 | 1,876 | sigap-reporter | 8ms |
| sigap.withdrawal.events | 3 | 987 | sigap-reporter | 15ms |
| platform.player.events | 6 | 2,341 | pam-consumer, analytics | 5ms |
| platform.settlement.events | 3 | 1,567 | settlement-engine | 3ms |
| platform.odds.updates | 12 | 8,432 | odds-feed, betting-engine | 2ms |
| platform.responsible-gaming | 3 | 234 | rg-monitor | 1ms |
| platform.aml.alerts | 3 | 89 | aml-processor, coaf-reporter | 4ms |
Cluster Mode
KRaft Mode — No Zookeeper
Kafka 7.6 running in KRaft consensus mode. Zookeeper dependency eliminated. Single-process metadata management.
Live Throughput
Messages Processed Today
18,432,567
▲ ~150/sec avg throughput
Consumer Group Health
sigap-reporter
STABLE
3 members
12ms
pam-consumer
STABLE
2 members
5ms
settlement-engine
STABLE
2 members
3ms
odds-feed
STABLE
4 members
2ms
aml-processor
STABLE
1 member
4ms
Apache Iggy Streaming Pilot — Internal Casino Telemetry
Internal
Exposure model
Pilot
Operating status
casino-ops
Smoke stream
Kafka
Regulated backbone
schemaEvent Flow
games / bots / supplier callbacks
Low-latency telemetry enters Iggy for replay labs and dashboard experiments.
Iggy bridge
Validated messages are copied into Kafka with idempotent keys and explicit offsets.
fraud / analytics / monitoring
Production fraud and regulated audit trails continue to consume Kafka topics.
admin_panel_settingsOperational Guardrails
Internal DNS only: Iggy is reached through pfSense host overrides and NPM fronting, not public DNS exposure.
No wallet authority: Iggy does not mutate balances, RNG outcomes, withdrawals, or compliance reports directly.
Kafka remains source of truth: regulated fraud, SIGAP, retention, and replay pipelines stay on Kafka until Iggy has equivalent evidence.
Smoke stream: casino-ops / casino-events validates publish and consume paths.
Open internal console
API: iggy-api.guxxxta.com
LGPD & PRIVACY COMPLIANCE — LEI GERAL DE PROTEÇÃO DE DADOS (Lei 13.709/2018)
47,832
Data Subjects
99.2%
Consent Rate
23
Erasure Requests
dpo@acmetocasino.bet.br
DPO Contact
Consent Management
| Consent Type | Legal Basis | Opt-In Rate | Active | Status |
|---|---|---|---|---|
| Marketing Communications | Art. 7-I (Consent) | 71.4% | 34,152 | Active |
| Analytics & Profiling | Art. 7-I (Consent) | 88.6% | 42,378 | Active |
| Biometric Verification | Art. 11-II-a | 99.1% | 47,401 | Active |
| PIX Data Sharing | Art. 7-V (Contract) | 100% | 47,832 | Mandatory |
| Cross-Operator Exclusion | Art. 7-III (Legal) | 100% | 156 | Mandatory |
Data Subject Rights (DSAR) — Art. 18
| Request Type | Open | In Progress | Completed | Avg Response |
|---|---|---|---|---|
| Access (Art. 18-I) | 3 | 1 | 412 | 2.1 days |
| Rectification (Art. 18-III) | 1 | 2 | 89 | 1.4 days |
| Erasure (Art. 18-VI) | 23 | 4 | 38 | 4.8 days |
| Portability (Art. 18-V) | 0 | 0 | 7 | 1.2 days |
| Opt-Out (Art. 18-II) | 0 | 0 | 1,247 | 0.5 days |
CPF Data Handling
SHA-256
Hash Algorithm
AES-256
Storage Encryption
5 years
Retention Period
K-Anon
Anonymization
CPF numbers are hashed with SHA-256+salt before storage. Raw CPFs never persisted after initial verification. Anonymization via K-anonymity (k≥3) applied to analytics exports. Retention: 5 years post-account closure per Lei 9.613/98.
Biometric Data — Art. 11 LGPD
Encrypted S3
Storage
Verify Only
Retention Policy
FaceMatch Pro
Provider
99.1%
Consent Coverage
Facial recognition vectors are NOT stored long-term. Template deleted after KYC pass/fail. Verification result (boolean + confidence score) stored only. Provider DPA signed under LGPD Art. 26 (operator-controller relationship).
Cross-Operator Data Sharing
Self-Exclusion National Registry
Legal Basis: Art. 7-III (Legal Obligation) — Portaria SPA/MF 1.231/2024
Data shared: Anonymized hash of CPF only. No personal data transmitted.
Frequency: Real-time on exclusion event + daily batch reconciliation.
Data shared: Anonymized hash of CPF only. No personal data transmitted.
Frequency: Real-time on exclusion event + daily batch reconciliation.
SIGAP — Secretaria de Prêmios e Apostas
Legal Basis: Art. 7-II (Contract/Regulatory) — Lei 14.790/2023
Data shared: Aggregated GGR, anonymized transaction counts, player limits.
No individual PII transmitted to SIGAP.
Data shared: Aggregated GGR, anonymized transaction counts, player limits.
No individual PII transmitted to SIGAP.
Privacy Audit Log
08:47:12
CONSENT_UPDATED
player_9821 — opted-out marketing
08:31:44
DATA_ERASURE_COMPLETED
player_1204 — all PII deleted
08:15:09
DSAR_RESPONDED
player_7743 — access request fulfilled
07:55:32
DPO_REVIEW
Monthly ROPA updated — 3 new processing activities
07:40:11
RETENTION_PURGE
142 accounts past 5yr retention — auto-anonymized
06:00:00
BREACH_CHECK
Automated breach detection scan — 0 incidents found
ANPD Compliance Score
94%
Lawful Basis Documentation100%
Consent Management97%
Data Subject Rights91%
Data Retention & Deletion96%
Security Measures98%
Third-Party Processors82%
Breach Notification Plan100%
DPO Appointment & Contact100%
Overall ANPD Compliance: 94% — Good Standing. Outstanding items: 3 pending DPAs with third-party processors, 23 open erasure requests within SLA. Next ANPD assessment: Not yet scheduled.
GDPR & EU PRIVACY COMPLIANCE — REGULATION (EU) 2016/679 + UK GDPR
32,411
EU Data Subjects
97.8%
Valid Consent Rate
17
Erasure (Art. 17)
dpo@acmetocasino.eu
EU DPO Contact
Consent & Lawful Basis (Art. 6)
| Processing Purpose | Lawful Basis | Opt-In | Active | Status |
|---|---|---|---|---|
| Marketing & Profiling | Art. 6(1)(a) Consent | 62.1% | 20,127 | Active |
| Contract Performance (account, wallet) | Art. 6(1)(b) Contract | 100% | 32,411 | Active |
| AML/KYC + SAR reporting | Art. 6(1)(c) Legal obligation | 100% | 32,411 | Active |
| Fraud prevention | Art. 6(1)(f) Legitimate interest | DPIA filed | 32,411 | Active |
| Responsible gambling enforcement | Art. 6(1)(c) + 6(1)(f) | 100% | 32,411 | Active |
Cross-Border Transfers (Chapter V)
| Destination | Mechanism | Status | Citation |
|---|---|---|---|
| Loading from Jurisdiction Gateway… | |||
Data Subject Rights (EU/UK only) — Art. 15, 16, 17, 18, 20, 21
8
Access (15)
4
Rectification (16)
17
Erasure (17)
2
Restriction (18)
3
Portability (20)
5
Objection (21)
Requester email
Type
Jurisdiction
Note (optional)
| ID | Player | Type | Supervisory Authority | Status | SLA |
|---|---|---|---|---|---|
| DSR-1047 | P847291 | erasure | DPC (Ireland) | in_progress | 18d |
| DSR-1049 | P553201 | erasure | ICO (UK) | in_progress | 22d |
| DSR-1051 | P221908 | access | CNIL (France) | completed | 2d |
| DSR-1053 | P731455 | portability | BfDI (Germany) | received | 5d |
Cookie Management (ePrivacy Directive + PECR/TTDSG/LIL)
—
Consent receipts
—
Accept all
—
Reject non-essential
—
Custom choices
OK
Reject-parity (CNIL)
Strictly necessary
—
Functional
—
Analytics
—
Marketing
—
Banner deployed on acmetocasino.com, thebackendofluck.com, portrasdasorte.com.br. Policy version 2026.04.13. Consent expires after 13 months (CNIL). National floors: UK PECR reg. 6, DE TTDSG §25, FR LIL art. 82.
Jurisdiction Transfer Gateway (JGW) — central policy decision point
Status
—
Rules loaded
—
Expiring ≤90d
—
Rules SHA256
—
| From | To | Class | Mechanism | Days |
|---|---|---|---|---|
| — | ||||
Backend: k3s://compliance/jurisdiction-gateway. Heartbeat every 60s from daileon. Audit: SQLite + JSONL on daileon (/var/log/jurisdiction-gateway/decisions.jsonl).
Lead Supervisory Authority (One-Stop-Shop)
DPC (Ireland)
Lead authority — EU entity registered in Dublin. Contact: info@dataprotection.ie. Annual notification filed Q1.
ICO (United Kingdom)
UK GDPR post-Brexit. Registered data controller ZA-123456. Next review: 2026-09-01.
MGA (Malta)
Gambling licence authority; privacy referrals land here first for MGA-licenced players.
Overall EU compliance: 97% — Good Standing. Breach notification rehearsed Q1 (72h deadline). DPIAs on file for fraud-prevention + responsible-gambling processing. Next internal audit: 2026-09-15.
RISK & FRAUD MONITORING — REAL-TIME THREAT DETECTION ENGINE PENDING
19
Active Rules
847
Alerts Today
234
High Risk Players
4.2%
False Positive Rate
Alert Types — risk-alerting Engine
| Alert Type | Count | Severity | Action |
|---|---|---|---|
| HighDepositor | 312 | High | Flag & Review |
| DepositMethodsAbuse | 187 | High | Block Method |
| MultipleCards | 94 | Medium | KYC Required |
| Structuring | 61 | Critical | SAR Filed |
| VelocityBreach | 88 | Medium | Cool-down |
| GeoAnomaly | 43 | Low | 2FA Prompt |
| BonusAbuse | 37 | Medium | Clawback |
| DeviceFingerprint | 25 | Low | Log Only |
Risk Matrix — Player Score Distribution
Low Risk41,234
Medium Risk8,902
High Risk2,341
Critical234
Recent Alerts Feed — Live
Device-Continuity Signals
—
| Player (hash) | Receipt (8ch) | Stable (days) | Binds | Multi-acct | Risk | Last seen |
|---|---|---|---|---|---|---|
| Loading from receipt↔player bindings… | ||||||
Signals computed from
cookie-consent.js receipt_id bound to player_id on login (Art. 6(1)(f) legitimate interest; LGPD Art. 7 IX; DPIA filed). Never shared with marketing. Erasure DSR cascades into this store automatically.
PAYMENT OPERATIONS — PSP MONITORING & RECONCILIATION PENDING
R$2.4M
Deposits Today
R$1.8M
Withdrawals Today
99.2%
PSP Success Rate
Clean
Reconciliation
PSP Status — Live Health
| Provider | Uptime | Latency | Status |
|---|---|---|---|
| Adyen | 99.9% | 142ms | Operational |
| PayPal | 99.8% | 188ms | Operational |
| Trustly | 99.5% | 210ms | Operational |
| PIX (Banco Central) | 99.97% | 87ms | Operational |
| Braintree | 99.7% | 163ms | Operational |
| Nuvei | 98.9% | 224ms | Degraded |
Withdrawal Queue — Current Status
Pending Review
12
Processing
3
Completed Today
847
Daily Reconciliation — Transaction Matching
| Category | PSP | Platform | Delta | Status |
|---|---|---|---|---|
| Deposits | R$2,412,840 | R$2,412,840 | R$0 | Matched |
| Withdrawals | R$1,803,220 | R$1,803,220 | R$0 | Matched |
| Refunds | R$14,200 | R$14,200 | R$0 | Matched |
| Chargebacks | R$2,100 | R$1,900 | R$200 | Review |
| Ghost Transactions | -- | -- | 0 | Clean |
NATIONAL EXCLUSION REGISTRIES — MULTI-JURISDICTION SELF-EXCLUSION COMPLIANCE
12,450
GamStop Checks/day
3,200
Spelpaus/day
1,800
ROFUS/day
8,900
Brazil Registry/day
Registry Connection Status
GamStop (UK)
api.gamstop.co.uk — Avg 42ms
Spelpaus (Sweden)
api.spelpaus.se — Avg 67ms
ROFUS (Denmark)
api.spillemyndigheden.dk — Avg 88ms
Brazil SIGAP (SPA/MF)
api.sigap.fazenda.gov.br — Avg 54ms
OASIS (Germany)
api.oasis.de — Avg 72ms · 100M+ checks/month
CRUKS (Netherlands)
api.cruks.nl — Avg 58ms · DigiD-verified
NJ DGE (USA — New Jersey)
api.njportal.com/dge — Avg 110ms
PGCB (USA — Pennsylvania)
api.pgcb.pa.gov — Avg 125ms
BetStop (Australia)
api.betstop.gov.au — Avg 190ms · Degraded
Recent Exclusion Matches (Anonymized)
| Registry | Player Hash | Time | Trigger | Action |
|---|---|---|---|---|
| GamStop | a4f2...9b1c | 14:32:01 | Login | Blocked |
| SIGAP | 7d8e...2a4f | 14:28:44 | Registration | Blocked |
| CRUKS | b1c9...4e7a | 14:26:11 | Login | Blocked |
| Spelpaus | c3a1...5f7b | 14:21:17 | Deposit | Blocked |
| OASIS | f5d2...8c3b | 14:18:39 | Pre-bet | Blocked |
| NJ DGE | d4a7...1f9e | 14:15:52 | Registration | Blocked |
| GamStop | 2f8c...7e9d | 14:09:33 | Login | Blocked |
| PGCB | 9e1b...3d5c | 14:05:18 | Login | Blocked |
Self-Exclusion Requests Today
47
Self-Exclusion by Jurisdiction
Total Active Exclusions —
177
Self-Exclusion Reasons
Self-Exclusion Duration Distribution
Bypass Attempt Detection (Last 30 days)
| Type | Count | Caught | Missed | Detection Rate |
|---|---|---|---|---|
| New account (same device fingerprint) | 23 | 23 | 0 | 100% |
| New account (same payment method) | 11 | 11 | 0 | 100% |
| New account (same IP /24 subnet) | 41 | 38 | 3 | 92.7% |
| VPN/proxy evasion | 7 | 6 | 1 | 85.7% |
| Identity spoofing (different KYC docs) | 4 | 3 | 1 | 75.0% |
Total Bypass Attempts
86
Caught
81
Missed (breach)
5
Overall Rate
94.2%
Regulatory Fine Exposure Tracker
| Jurisdiction | Breaches (12mo) | Max Fine/Breach | Estimated Exposure | Status |
|---|---|---|---|---|
| UK (UKGC) | 0 | 15% of GGY | £0 | Clean |
| Germany (GlüNeuRStV) | 0 | €500K/incident | €0 | Clean |
| Brazil (SPA/MF) | 2 | R$50M or license | R$340K | Under Review |
| USA — NJ (DGE) | 0 | $25K/incident | $0 | Clean |
| USA — PA (PGCB) | 1 | $10K/incident | $10K | Remediated |
| Netherlands (KSA) | 0 | €600K or 2% GGR | €0 | Clean |
| Sweden (SGA) | 0 | 10M SEK | 0 SEK | Clean |
Clean Jurisdictions
5/7
Under Review
2/7
Total Exposure
~$360K
ADMIN OPERATIONS — BACKOFFICE & INTERNAL CONTROLS
8
Admin Users Online
23
KYC Queue
12
Withdrawal Queue
47
Pending Actions
Admin Audit Log — Recent Actions
| Time | Admin | Action | Target |
|---|---|---|---|
| 14:31:08 | ops_maria | KYC Approved | Player #84,421 |
| 14:28:54 | fin_carlos | Withdrawal Released | Txn #W-20291 |
| 14:25:17 | cs_ana | Player Edited | Player #77,102 |
| 14:22:33 | comp_joao | Account Flagged | Player #91,034 |
| 14:19:45 | ops_maria | Bonus Adjusted | Player #63,887 |
| 14:15:02 | admin_root | Config Updated | PIX Limits |
| 14:10:29 | fin_carlos | Reconciliation OK | Daily Batch |
Role Distribution — Active Staff
Admin3
Compliance5
Finance4
Customer Support12
Total staff online: 24 | Last login: ops_maria at 14:31
MARKETING ATTRIBUTION — PIXEL TRACKING & AFFILIATE PERFORMANCE
234.0K
Pixels Fired Today
1,247
Conversions Today
3.2%
FTD Rate
$142
CPA Average
Attribution Model Comparison
| Model | Conversions | Revenue | ROAS |
|---|---|---|---|
| First Touch | 1,102 | $157,240 | 4.8x |
| Last Touch | 1,247 | $176,834 | 5.4x |
| Linear Multi-Touch | 1,184 | $168,228 | 5.1x |
| Data-Driven (ML) | 1,219 | $173,098 | 5.3x |
| Time Decay | 1,156 | $164,152 | 4.9x |
Top Affiliate Performance — Today
| Affiliate | Clicks | FTDs | Revenue |
|---|---|---|---|
| BetBrasil24 | 18,420 | 142 | $20,164 |
| CasinoTop10 | 14,230 | 108 | $15,336 |
| AfiliadosBet | 11,840 | 89 | $12,638 |
| SlotsMania | 9,610 | 74 | $10,508 |
| PokerBR | 7,330 | 61 | $8,662 |
| BonusHunters | 5,120 | 34 | $4,828 |
Pixel Tracking — Channel Breakdown (Live)
SPORTS BETTING — MICROSERVICE HEALTH & LIVE OPERATIONS
HEALTHY
odds-feed:8092
HEALTHY
betting-engine:8093
HEALTHY
cashout-pricing:8094
HEALTHY
bet-builder:8095
HEALTHY
settlement:8096
sports Live Operations
1,247
Active Events
8,432
Live Bets
342
Pending Settlements
speed Odds Feed Latency
12ms
Avg Latency
34ms
P99 Latency
--
Last Update
queue Cashout Queue
18
Queue Depth
4,218
Processed Today
1.2s
Avg Process Time
Live Bet Feed
| Time | Event | Market | Stake | Odds | Status |
|---|---|---|---|---|---|
| 14:32:18 | Man Utd vs Arsenal | Match Winner | $120.00 | 2.45 | OPEN |
| 14:32:05 | Lakers vs Celtics | Total Points O/U | $75.00 | 1.87 | OPEN |
| 14:31:52 | Djokovic vs Alcaraz | Set Winner | $200.00 | 1.65 | SETTLED |
| 14:31:40 | Brazil vs Argentina | Both Teams Score | $50.00 | 1.92 | OPEN |
| 14:31:28 | Real Madrid vs PSG | Asian Handicap | $350.00 | 2.10 | CASHOUT |
SPORTS ENGINE — CLOUDFLARE WORKER & LIVE FIXTURE MONITOR
sports_soccer
Engine Status
LOADING
--
Engine Status
--
Data Source
--
Live Fixtures
--
Upcoming
--
Cron
--
KV Namespace
Last update: --
monitoring
Engine Metrics
96
Requests Today
4/hr × 24h cron
--/100
API-Football Quota
--%
Cache Hit Rate
--
Last Fetch
Data flows: Sports Engine Worker → KV (15 min) → Redis (5 min) → Dashboard
Live Fixtures
Auto-refresh 60s — data via Redis cache
| Home | Score | Away | Min | League | Status |
|---|---|---|---|---|---|
| Loading live fixtures from Sports Engine... | |||||
Updated --
FINANCIAL TRUTH — LEDGER INTEGRITY & TREASURY OVERSIGHT
balance Ledger Trial Balance
$14,832,461.22
Total Debits
$14,832,461.22
Total Credits
BALANCED — Debit = Credit
account_balance Treasury Float Status
$2,847,320
Current Float
$1,500,000
Min Required
18.4 days
Coverage Days
compare_arrows Wallet-Ledger Divergence
$0.03
Current Divergence
WITHIN TOLERANCE (<$1.00)
sync Reconciliation Status
2026-03-23 14:15:00
Last Run
0
Mismatches Found
2026-03-23 15:15:00
Next Scheduled
142
Clean Runs Streak
payments PSP Settlement Positions
| PSP | Pending In | Pending Out | Net Position | Settlement ETA | Status |
|---|---|---|---|---|---|
| Stripe | $124,800 | $87,200 | +$37,600 | T+1 (Tomorrow) | ON TRACK |
| Adyen | $218,400 | $195,100 | +$23,300 | T+1 (Tomorrow) | ON TRACK |
| PIX (SPI) | $342,000 | $298,500 | +$43,500 | Instant | SETTLED |
| PayPal | $67,200 | $72,800 | -$5,600 | T+2 | PENDING |
| Skrill | $41,300 | $38,900 | +$2,400 | T+1 | ON TRACK |
SUPPLIER CONTROL — GAME PROVIDER HEALTH & CIRCUIT BREAKERS
5
Suppliers Online
47
Capability Matrix Total
0
Dead Letter Queue
hub Supplier Health Table
| Supplier | Status | Circuit Breaker | Callback Success | Last Callback | Games | Avg Latency |
|---|---|---|---|---|---|---|
| NetEnt | ONLINE | CLOSED | 99.8% | 14:32:05 | 124 | 18ms |
| Evolution | ONLINE | CLOSED | 99.9% | 14:32:01 | 86 | 22ms |
| Pragmatic Play | ONLINE | CLOSED | 99.6% | 14:31:58 | 210 | 15ms |
| Play'n GO | ONLINE | CLOSED | 98.4% | 14:31:44 | 158 | 28ms |
| Red Tiger | ONLINE | CLOSED | 99.7% | 14:31:30 | 92 | 20ms |
grid_view Capability Matrix Summary
report Dead Letter Queue
0
Failed Callbacks
QUEUE EMPTY — ALL CLEAR
WORKFLOW & CASES — OPERATIONAL CASE MANAGEMENT
12
AML Cases
8
RG Cases
5
Complaints
3
Disputes
verified SLA Compliance
96.4%
Cases within SLA
warning Stuck Workflows
0
Blocked / Stuck
ALL WORKFLOWS FLOWING
timer Resolution Time
4.2h
Average Resolution
0.8h
Fastest
18.4h
Slowest
Recent Case Activity
| Time | Case ID | Type | Action | Assigned To | Status |
|---|---|---|---|---|---|
| 14:28:12 | AML-2024-0847 | AML | SAR filed with FIU | Maria S. | IN REVIEW |
| 14:22:45 | RG-2024-1203 | RG | Cooling-off period set (72h) | Carlos P. | ACTIVE |
| 14:18:30 | CMP-2024-0412 | COMPLAINT | Response sent to player | Ana L. | RESOLVED |
| 14:15:18 | DSP-2024-0089 | DISPUTE | Chargeback evidence submitted | Paulo R. | PENDING |
| 14:10:02 | AML-2024-0846 | AML | Enhanced DD completed | Maria S. | CLOSED |
| 14:05:44 | RG-2024-1202 | RG | Self-exclusion confirmed | Carlos P. | CLOSED |
AI GOVERNANCE — MODEL REGISTRY & EU AI ACT COMPLIANCE
3
Registered Models
COMPLIANT
EU AI Act Status
14,832
AI Decisions Today
psychology Model Registry
| Model | Version | Status | Last Bias Audit | Conformity Score | Risk Class | Decisions (24h) |
|---|---|---|---|---|---|---|
| AML Scorer | v3.2.1 | PRODUCTION | 2026-03-18 | 94.2% | HIGH RISK | 6,214 |
| RG Predictor | v2.8.0 | PRODUCTION | 2026-03-20 | 91.8% | HIGH RISK | 5,847 |
| Bonus Recommender | v1.5.3 | PRODUCTION | 2026-03-15 | 96.1% | LIMITED RISK | 2,771 |
policy EU AI Act Compliance Checklist
check_circle
Risk classification documented for all models
check_circle
Bias audits within 30-day window
check_circle
Human-in-the-loop override available
check_circle
Technical documentation up to date
check_circle
Data governance & lineage tracked
insights Recent AI Decision Summary
Override rate:
2.3%
— Human corrections applied to AI decisions
policy
Data Governance — Quality, Privacy, Compliance
98.5%
Data Quality Score
0
PII Findings
0
RTP Deviation Alerts
0
AML Risk Indicators
0
RG Behavioral Signals
0
Erasure Requests
7
Reports Generated
Active
Vault (PII Encryption)
checklist Governance Modules
| Module | Status | Stack | Findings |
|---|---|---|---|
| Data Quality | ● Active | Great Expectations | 0 failures |
| Privacy Engine | ● Active | GDPR/LGPD + Vault | 0 PII exposed |
| RTP Auditing | ● Active | Flink Streaming | 0 deviations |
| AML Monitoring | ● Active | FATF + SAR Engine | 0 SAR triggers |
| Responsible Gaming | ● Active | Behavioral Analysis | 0 at-risk |
| Regulatory Reports | ● Active | SIGFIS / MGA / KSA | 7 generated |
| Data Catalog | ● Active | Apache Atlas + dbt | 35 assets |
verified_user
DSR Operations — Data Subject Rights
3
Pending
12
Completed (7d)
0
SLA Breached
4.2d
Avg Processing
1
Export Queue
| ID | Player | Type | Jurisdiction | Status | SLA | Action |
|---|---|---|---|---|---|---|
| Loading… | ||||||
| DSR-1048 | P129384 | export | BR (LGPD) | received | 9d | |
| DSR-1049 | P553201 | deletion | UK (UK GDPR) | in_progress | 22d | |
Actions (all time):
847 deleted
2,340 pseudonymized
5,120 retained
2 deferred
backup
Encrypted Backup — Wasabi S3
—
Last Backup Status
—
Last Backup Size
—
Days Since Restore Test
| Last Backup | loading… |
| S3 Key | — |
| Bucket / Region | acmetocasino / eu-central-1 (Wasabi) |
| Encryption | GPG AES-256-GCM symmetric, passphrase stored offline |
| Retention | 30 days daily + first-of-month for 12 months |
| Schedule | 03:15 BRT daily (cron: 15 6 * * *) |
Powered by dbt + Great Expectations + Apache Atlas + HashiCorp Vault · Deployed on daileon K8s
HSM SECURITY — YUBIHSM2 • OPENBAO CLUSTER • CSPRNG • AUDIT CHAIN
lock
Loading HSM status...
Last updated: —
cache
vpn_key
mTLS Connections
checking…
cache —s · upd —
—
TLS Version
—
Cipher (—-bit)
—
Client DN
—
Round-trip
—
Cert Expires
Path: External Access → Internal Access
sslmode=verify-ca
Live row probe: — players
hardware
YubiHSM2 Device
Status
—
Serial
—
Firmware
—
Connector
—
hub
OpenBao Cluster
Loading nodes...
Engines:
transit
pki
kv
key
Key Mgmt
Epoch—
Expires—
Keys0
Rotations0
RNG Health
OPERATIONAL
Status
Healthy — Responding
Source
YubiHSM 2 TRNG → ChaCha20 CSPRNG
Entropy
7.9998 bits/byte
Entropy Pool
0%
Seeds/min
0
Last Check
—
NIST tests pending
99.99%
Uptime
47,832
Req/Hour
2ms
Latency
100/sess
Buffer
Fallback
crypto.getRandomValues()
● All 40 games depend on this service — /api/v2/gal/rng checked every 60s
Auto-checked every 60s — Endpoint: /api/v2/gal/rng
verified
Audit Chain
Chain Length
0
Last Checkpoint
—
Integrity
—
storage
LUKS Volumes
No volumes registered yet
encrypted
Database Encryption (TDE)
Status
—
Encrypted Columns
—
Avg Latency
—
Key
—
Algorithm
AES256-GCM96
PostgreSQL Version
18
Columns: email, full_name, phone
policy
Compliance Scores
PCI-DSS
ⓘ
PCI-DSS Score Breakdown
✓ Encryption at rest (LUKS + TDE)
✓ Encryption in transit (TLS 1.2+)
✓ HSM key management (FIPS 140-2 L3)
✓ Audit logging (OpenBao audit)
⚠ Pending: annual pentest, ASV scan, formal policy review 0/100
✓ Encryption at rest (LUKS + TDE)
✓ Encryption in transit (TLS 1.2+)
✓ HSM key management (FIPS 140-2 L3)
✓ Audit logging (OpenBao audit)
⚠ Pending: annual pentest, ASV scan, formal policy review 0/100
GLI-19
ⓘ
GLI-19 Score Breakdown
✓ Hardware TRNG (7.9998 bits/byte entropy)
✓ ChaCha20 CSPRNG seeded from HSM
✓ Session isolation
⚠ Pending: formal GLI laboratory submission 0/100
✓ Hardware TRNG (7.9998 bits/byte entropy)
✓ ChaCha20 CSPRNG seeded from HSM
✓ Session isolation
⚠ Pending: formal GLI laboratory submission 0/100
ISO 27001
ⓘ
ISO 27001 Score Breakdown
✓ Access controls (HSM auth, OpenBao policies)
✓ Cryptographic controls (A.8.24)
✓ Logging and monitoring (A.8.15)
⚠ Pending: ISMS establishment, external audit, management review 0/100
✓ Access controls (HSM auth, OpenBao policies)
✓ Cryptographic controls (A.8.24)
✓ Logging and monitoring (A.8.15)
⚠ Pending: ISMS establishment, external audit, management review 0/100
GDPR
ⓘ
GDPR Score Breakdown
✓ Encryption (Art.32)
✓ Pseudonymisation capability
✓ Column-level PII encryption
⚠ Pending: DPO designation, ROPA completion, DPIA formal sign-off 0/100
✓ Encryption (Art.32)
✓ Pseudonymisation capability
✓ Column-level PII encryption
⚠ Pending: DPO designation, ROPA completion, DPIA formal sign-off 0/100
api
Remote HSM API
—
—
Requests
—
Encrypt p50
—
Error Rate
—
mTLS
—
Sign p50
—
Decrypt p50
—
Ops/5m
—
Last Req
Health: —
Device: —
API mTLS: —
Total req: —
Err: —
Last: —
TRAFFIC INTELLIGENCE — DDoS DETECTION • CAMPAIGN TRACKING • LIVE CLASSIFICATION
monitoring
Loading traffic status...
Updated: —
NORMAL
speed
Traffic Metrics
Requests/sec
0.0
Unique IPs (5m)
0
Error Rate
0.0%
UA Diversity
100
Bot Score
0.0%
Confidence
95%
campaign
Campaign & Classification
Classification
NORMAL
Campaign
None
Top Country
—
Actions
route
Top Paths
No data
public
Geo Distribution
No data
shield
DDoS Response
Cloudflare Under AttackOFF
AWS WAF BlockingOFF
Redis BlacklistOFF
Blocked IPs0
campaign
Campaign Management
Active CampaignNone
Scale Profilenormal
Rate Limit1x
Auto ScaleReady
sync
Threat Intelligence Sync
3x/day
8,858
Tor Exits
10,767
VPN IPs
6,948
Proxies
91,183
Datacenter
9,378
Bots
307K
Total
Sources39
PlatformsRedis + KV + WAF
Schedule00:00, 08:00, 16:00
Nova versão do dashboard disponível
Testar