⚡ Instant eSIM card delivery!

Privacy Policy

esim.com.pl

Effective from: February 12, 2026

§ 1. General Information

This Privacy Policy defines the rules for the collection, processing, and protection of personal data of Users of the website esim.com.pl.

The data controller is TECHMOBILE Sp. z o.o., with registered office at ul. Lwowska 10/36, 00-658 Warsaw, entered in the National Court Register under KRS number 0001221514, NIP: 7011297579, REGON: 543888031. Contact: [email protected].

Data is processed in accordance with the GDPR (Regulation (EU) 2016/679) and the Polish Personal Data Protection Act.

§ 2. Types of Data Collected

We collect data necessary for order processing and service delivery:

Account registration: email address, password (hashed), first and last name.
Orders: email, first/last name, payment data (processed by external operators).
Technical data: IP address, browser type, device type, session duration.
Cookies: session identifiers, analytical data (Google Analytics), preferences.

§ 3. Legal Basis for Processing (GDPR)

We process personal data based on the legal grounds specified in Art. 6 of the GDPR. The detailed breakdown is presented in the table below.

PurposeLegal Basis
Contract performance (order fulfillment)Art. 6(1)(b) GDPR
Tax and accounting obligationsArt. 6(1)(c) GDPR
Marketing (with consent)Art. 6(1)(a) GDPR
Legitimate interests (analytics, fraud prevention)Art. 6(1)(f) GDPR

§ 4. Data Recipients

Data may be shared with:

Payment operators - Stripe, PayNow (payment processing).
eSIM providers - partner operators (order fulfillment).
Hosting provider - server and infrastructure.
Analytics tools - Google Analytics (anonymized data).

We do not sell personal data to third parties.

§ 5. Cross-Border Data Transfers

Some data may be transferred outside the EEA (e.g., Google services located in the USA). In such cases, we ensure adequate safeguards, including Standard Contractual Clauses (SCC) approved by the European Commission.

§ 6. Data Retention Period

Account data - until account deletion or request for erasure.
Order data - 5 years (tax regulations).
Marketing consent - until withdrawal of consent.
Analytical data - up to 26 months (Google Analytics).

§ 7. Your Rights

Under GDPR, you have the right to:

Access your data (Art. 15)
Rectification (Art. 16)
Erasure - "right to be forgotten" (Art. 17)
Restriction of processing (Art. 18)
Data portability (Art. 20)
Object to processing (Art. 21)
Withdraw consent at any time (Art. 7(3))

To exercise your rights, contact: [email protected]. You also have the right to file a complaint with the President of the Office for Personal Data Protection (UODO).

§ 8. Cookies Policy

The website uses cookies for:

Essential cookies - session, login, shopping cart.
Analytical cookies - Google Analytics (traffic statistics).
Functional cookies - language preferences, settings.

Users can manage cookies through browser settings. Disabling cookies may limit website functionality.

§ 9. Data Security

SSL/TLS encryption for all communications.
Passwords stored using secure hashing algorithms.
Access restricted to authorized personnel only.
Regular security audits and updates.

§ 10. Policy Changes

We reserve the right to amend this Privacy Policy. Changes will be published on this page with an updated effective date. We recommend periodically reviewing this document.