PUBLIC OFFER ON THE STORAGE AND THE USAGE OF THE CARDHOLDER'S CREDENTIALS
Last Updated: May 22, 2026

OVERGEAR LIMITED, the Company registered in accordance with the laws of the Republic of Cyprus at the address Diagorou 4, Kermia Building, 3rd floor, office 304, 1097, Nicosia, Cyprus under the registration number HE395043 (hereinafter referred to as the "Merchant") hereby expresses its intention to enter into the Agreement on the Storage and the Usage of the Cardholder’s Credentials (the "Agreement") with persons using the Services provided via the Overgear Platform at Overgear.com (the "Website"), following successful registration (hereinafter "Users" or "Cardholders").
The Cardholder and the Merchant are jointly referred to as the “Parties” and individually as a “Party”.

1. Definitions
For the purposes of this Agreement, the following definitions apply:
  • Goods – Goods are valuable virtual components of a game that a Buyer can purchase on the Platform.
  • Seller Services – Any act, performance, assistance, digital service or other service offered by a Seller to a Buyer through the Platform in the gaming sphere, including services aimed at improving, developing, supporting, or otherwise enhancing the Buyer’s Gaming Account, in-game progress, experience, skills, achievements, or access to in-game content. Seller Services may be result-based, progress-based, time-based, availability-based, or otherwise structured in accordance with the applicable Offer.
  • Overgear Services (also referred to as “Services”) – Services provided by Overgear as an intermediary and technology platform, including hosting and maintaining the Platform, providing technical interface, order administration, customer support, internal transaction accounting functionality, internal settlement administration, and dispute-resolution assistance.
  • Subscription – A recurring, fee-based service granting Users specific privileges or enhanced Platform functionalities.
More detailed definitions can be found in the OVERGEAR Terms and Conditions (hereinafter referred to as the “T&C”) of the Overgear Platform available at the link at https://info.overgear.com/legal/user-agreement.

2. Purpose of this Agreement
A. The Parties already have legal relations on the basis of the T&C.
B. The Cardholder is also a User of the Overgear Platform.
C. In the course of such legal relations mentioned above, the Cardholder purchases Goods, Seller Services, access to Services,Subscriptions or Platform-related products or services. All capitalized terms are used as defined in the T&C unless otherwise defined herein..
D. In order to make purchases on the Overgear Platform, the Cardholder provides his personal payment information.
E. This Agreement sets out the conditions under which the Cardholder authorizes the secure storage and use of saved payment credentials, payment tokens, or other payment references for future purchases, recurring payments, scheduled payments, or other authorized transactions on the Overgear Platform.

3. Consent and Authorization to Store and Use Credentials on File
By ticking the relevant tick-box, the Cardholder explicitly consents with this Agreement and authorizes the Merchant and/or its certified payment processing providers to securely store and use saved payment credentials, payment tokens, or other payment references for future transactions on the Overgear Platform (hereinafter referred to as the “the Credentials on File” or the “COF”).
For this purpose, Overgear may receive and securely store limited payment-related data necessary to administer the COF and future transactions, including:
  • Name and surname;
  • Masked card details;
  • Card expiry date;
  • Card type;
  • Last four digits of the card;
  • Payment token;
  • Payment identifier;
  • Payment method;
  • Transaction references;
  • Payment status;
  • Refund records;
  • Chargeback records.
Full card numbers, Primary Account Numbers (PAN), CVV/CVC codes and other sensitive payment authentication data are processed by certified third-party payment service providers, acquiring banks, payment processors, card schemes, or other payment partners and are not intentionally stored by Overgear.
The Merchant authorized to further transfer the COF to ECOMMPAY LIMITED - the Merchant’s certified payment processing provider(5th Floor, Churchill House, 142-146 Old Street, London, EC1V 9BW, United Kingdom. Registered number 08580802) or to another certified payment service provider, acquiring bank, payment processor, card scheme, or payment partner used by Overgear from time to time, for the purposes described in this Agreement.
The Cardholder further explicitly authorizes:
  • Cardholder-Initiated Transactions: Transactions initiated directly by the Cardholder to pay for Goods, Seller Services, Subscriptions, or related Platform activities.
  • Merchant-Initiated Transactions: Transactions initiated by the Merchant on a recurring or scheduled basis, strictly for ongoing Services, active Subscriptions, or previously agreed periodic payments explicitly authorized by the Cardholder.
The Cardholder authorizes Overgear and its payment partners to submit, initiate, and process authorized transactions using the COF in accordance with this Agreement, the T&C, applicable payment provider rules, card scheme rules, and applicable law.

4. Data Processing for Transactions
For each Cardholder-Initiated or Merchant-Initiated Transaction, the Merchant and/or its payment partners may process and transmit payment-related data necessary to authorize, submit, process, settle, reconcile, refund, dispute, or otherwise administer the relevant transaction.:
Such data may include:
  • Transaction amount;
  • Applicable surcharges (if any);
  • Transaction currency;
  • Transaction date;
  • Authorization code;
  • Payment identifier;
  • Payment token or saved payment reference;
  • Payment method;
  • Payment status;
  • Refund records;
  • Chargeback or dispute records;
  • Other payment-related information required by the relevant payment provider, acquiring bank, payment processor, card scheme, applicable law, or Platform rules.
5. Compliance with GDPR and Personal Data Rights
Overgear processes Personal Data related to saved payment credentials and transactions in accordance with the Overgear Privacy Policy and applicable data protection laws, including the General Data Protection Regulation (GDPR).
For details on categories of Personal Data, purposes of processing, lawful bases, recipients, international transfers, retention periods and data subject rights, please refer to the Overgear Privacy Policy.
The Cardholder may exercise applicable data protection rights, including rights of access, rectification, erasure, restriction, objection and data portability, subject to the conditions and limitations provided by applicable law.

6. Compliance with PCI DSS and Security Considerations
Payment card data and saved payment credentials are processed in accordance with applicable PCI DSS requirements, payment provider rules, card scheme rules and applicable law.
Full card numbers, CVV/CVC codes and sensitive payment authentication data are processed by certified third-party payment service providers, acquiring banks, payment processors, card schemes or other payment partners and are not intentionally stored by Overgear.
Overgear applies appropriate technical and organisational measures to protect limited payment-related data that it receives or stores, including access controls, role-based permissions, encryption or tokenization where applicable, logging, monitoring, vendor due diligence and incident response procedures.

7. Withdrawal of Authorization
The Cardholder may withdraw authorization for the future use of saved payment credentials at any time by removing the saved payment method in the Platform interface, where available, or by submitting a request to Customer Support at support@overgear.com.
Upon such request, Overgear will take reasonable steps to disable further use of the relevant saved payment credentials and, where applicable, request the relevant payment provider to delete or deactivate the corresponding payment token or saved payment reference.
Withdrawal does not affect transactions already initiated, amounts already due, refunds, chargebacks, reconciliation, fraud prevention, compliance, accounting, legal claims, or data that must be retained under applicable law, payment provider rules or card scheme rules.

8. Amendments
The Merchant reserves the right to unilaterally make changes to this Agreement with their mandatory publication on the Website. The Cardholder agrees to independently monitor all respectful amendments. Continued use of the Platform following the notice period will constitute acceptance of the amended terms.

9. Liability and Limitation of Liability
The Merchant shall be liable for any unauthorized access, disclosure, or alteration of limited payment-related data or saved payment references processed by the Merchant where such unauthorized access, disclosure, or alteration is caused by its negligence or breach of security obligations. Liability is limited to direct losses only. Under no circumstances shall the Merchant be liable for indirect, incidental, consequential, punitive damages, or any losses beyond direct damages arising from data breaches, unauthorized access, or security incidents—except in cases of gross negligence or intentional misconduct.

10. Term and Termination
The Agreement shall enter into force after successful authorization (or Account verification) by the Cardholder’s card issuer and receipt of the Cardholder’s acceptance of this Agreement by the Merchant and shall be valid until terminated by the Merchant unilaterally or on the basis of the written application of the Cardholder. Either Party may terminate this Agreement by providing written notice. Upon termination, COF will be securely deleted within 30 (thirty) days, except for data retained due to legal obligations. All transactions initiated prior to termination remain subject to this Agreement.

11. Governing Law and Dispute Resolution
This Agreement is governed by the laws of the Republic of Cyprus. All disputes or claims arising from or in connection with this Agreement shall be exclusively resolved by the competent courts of the Republic of Cyprus.

12. Miscellaneous
This Agreement represents the entire understanding between the Parties regarding the storage and use of the Credentials and supersedes any prior agreements or communications, whether verbal or written. This Agreement shall be interpreted in conjunction with the T&C and the Privacy Policy.
This Agreement is drafted in the English language, which shall govern its interpretation and execution. Any translations provided are solely for convenience; in the event of any discrepancy, the English version shall prevail.

13. Contact Information
For any inquiries regarding this Agreement, contact the Merchant’s Customer Support team at support@overgear.com.

By storing your payment credentials on file, you acknowledge that you have read, understood, and agree to this Public Offer on the Storage and Use of Cardholder’s Credentials, the Overgear Terms and Conditions, and the Overgear Privacy Policy.