Information and policies
Privacy notice
This notice describes the data needed to operate the site, answer requests and, where enabled, fulfil digital eSIM orders. The operator of CheapESIM.store determines this processing and can be reached at the email below.
Last updated: . Version: 1.0
Data we handle
Data is limited according to the feature you use.
- Site operation and security: request time, IP or derived security identifier, browser or device information, requested page and locale
- Contact: email address, message, attachments you choose to send and support history
- Order: purchase email, locale, order and product details, amounts, currency, status, acceptance timestamps and delivery credentials
- Payment: provider reference, amount, currency and status; complete card data is handled by the payment provider rather than stored by this service when checkout is enabled
Purposes and legal grounds
Data is used to deliver requested pages, process and support a contract, secure the service, prevent abuse, keep required transaction records and comply with law. Depending on applicable law, the grounds are contract or pre-contract steps, legal obligations, legitimate interests in security and service operation, and consent for optional analytics where consent is required.
Conditional service providers
Recipients depend on the functions actually enabled and receive only what is needed for their task. They may include hosting and database providers; a payment processor only for checkout; the selected eSIM supplier only for fulfilment; an email provider only for delivery or support; and an analytics provider only if optional analytics is activated. Current provider details can be requested by email.
Retention and security
Records are kept only for the relevant operational, dispute, security, accounting and legal periods, then deleted or de-identified when no longer needed. Delivery secrets require stronger access controls than ordinary catalog data. Reasonable technical and organizational safeguards are used, but no online transmission or storage can be guaranteed completely secure.
International access and disclosure
A provider or connectivity supplier may process data outside your country only when the relevant feature requires it. Required contractual or other transfer safeguards apply where the law demands them. Data may also be disclosed when legally required or necessary to establish, exercise or defend legal claims.
Your choices and rights
Depending on your law, you may request access, correction, deletion, restriction, objection or portability, withdraw consent for future processing, and complain to a competent authority. These rights are not absolute; we may verify the request and retain data where law requires it. Essential storage may support security or order access. Optional analytics, if introduced, must follow applicable consent and choice rules.