Most Casinos will only accept a report if it has a viable security impact with a PoC and not a general report from a scanner tool.
I'd recommend asking the casino if they have a private bug-bounty program either internally or externally (i.e, operated by BugCrowd, HackerOne, intigriti)
I think if you follow the thread you will read all what OP wanted to elaborate here because he had given everything and even telling the people here what had happened and his only demand is at least a THANK YOU for what have he done for the team , take not the Money because we all need this at appreciation for what have you done good is for me a better giving here.