Install before you fly, connect the moment you land — 150+ destinations
eSIMonline
🔒

eSIM security and looking after your order data

Your QR and activation code are sensitive data — treat them like a password.

Author: eSIMonline Technical Review · Technical reviewerPublished: August 28, 2026Last updated: September 1, 2026
eSIM security and looking after your order data

Quick answer

  • Never post your QR or activation code publicly — anyone who sees it may install it before you do.
  • Public WiFi is fine for browsing, but avoid sensitive transactions on unknown networks.

Why the QR is sensitive

An eSIM QR is the key that downloads the profile. If someone else scans it first, the profile lands on their device and you cannot install it. Keep it like a password: never in a public group chat or a social post.

eSIM security and looking after your order data

What we never ask you for

  • Passwords for your other accounts
  • Bank OTP codes
  • Full card numbers over chat
If anyone claiming to be eSIMonline asks for those, stop and reach us only through the channels listed on this site.

Using public WiFi while travelling

Public networks are fine for ordinary downloads, but for banking apps or entering card details your own plan's data is safer, being a direct mobile network connection.

Where to actually keep the QR and activation code

The safest habit is treating the QR exactly like a one-time password: keep the email or screenshot alongside other important trip documents, such as flight tickets or a booking confirmation, not in a photo album shared with others or a drive several people can open.

If automatic cloud photo backup is on, a screenshot of the QR can end up synced into a family-shared library without you noticing, so it is worth checking that setting once before taking a screenshot of the QR at all.

The QR genuinely works for whichever device redeems it first. Sharing a screenshot in a group chat, even meant only as a backup copy, can hand the profile to whoever opens it first without meaning to.

What to do if you think the QR may have leaked

Contact the team right away via LINE at https://lin.ee/skDPoNx or by email at esimonline.asia@gmail.com with the order number. Whether a fresh profile can be issued depends on that plan's own provider terms, so the honest answer is that we check and tell you the real outcome, not a guaranteed yes.

eSIM security and looking after your order data

Confirming a message genuinely comes from us

A genuine message from the team will always reference an order that already exists for you, and will never ask for the sensitive items listed earlier, a bank OTP, another account's password, or a full card number over chat. Anything asking for those before even mentioning your order is worth treating with suspicion.

Account passwords: what actually helps

The most common weakness is not password length but reusing the same password across several sites. What genuinely helps is a unique password per site, kept in a password manager rather than memorised or written on paper.

A password manager sounds like extra work but only needs setting up once, and it removes the need to remember dozens of separate passwords afterwards.

Order history and what others should not see

Order history can reveal travel dates and destinations, so it deserves the same treatment as a physical trip document, and it is worth signing out every time on a borrowed device or one shared with someone else.

Shared or family devices

Shared devices complicate looking after an eSIM profile, because deleting a profile from a phone someone else also uses can be an irreversible action for that particular QR. Before installing on a device used by more than one person, it is worth agreeing in advance who is responsible for it.

One of the more common support requests in this category is a family member deleting a profile to free up storage without realising it may not simply reinstall. It is worth stating clearly in advance that this profile is not to be deleted during the trip.
eSIM security and looking after your order data

Security checks before and after installing

  1. 1Before installing: confirm the email references the matching order numberOpen your order alongside the email and check the order number matches before opening the QR inside it.
  2. 2Before installing: use trusted Wi-Fi onlyAvoid downloading the profile over a public hotspot whose owner is unknown.
  3. 3After installing: set a lock screen password if not already setThis keeps someone else from easily reaching the phone's network settings.
  4. 4After installing: remove any QR screenshot from albums shared with othersOnce installation succeeds there is no longer a reason to keep the QR image around.

Contact channels that are genuine, and ones that are not

ChannelStatus
The official LINE at https://lin.ee/skDPoNxGenuine — a direct line to the team
Email at esimonline.asia@gmail.comGenuine — a direct line to the team
A phone number claiming to be oursWe do not run a phone line — treat any such call as suspicious
A direct message in a social group claiming to be the teamVerify through the channels listed on the site before trusting it

Data that should stay private, and data that is fine to share

Data typeSensitivity
The QR and activation codeKeep private, like a password
The order numberShare it only with the team when asking for help
The device modelFine to share — not sensitive
Passwords for other accountsNever share with anyone, including our own team
  • Keep the QR with your important trip documents, not in a shared album
  • Set a lock screen password before travelling if it is not already set
  • Use a password for the account here that is not reused elsewhere
  • Note the genuine contact channels in advance: LINE at https://lin.ee/skDPoNx and email at esimonline.asia@gmail.com
  • Agree in advance with household members who is responsible for any shared eSIM device

When something feels like a scam, what to do first

Stop responding through whichever channel raised the suspicion, and reach the team independently via the LINE or email address listed on the site, rather than clicking a link or calling a number that the suspicious message itself provided.

If it is unclear whether something received is genuine, checking with us directly before acting costs nothing at all, and is safer than following a request that may not be real.
eSIM security and looking after your order data

Location and usage-data privacy

Having an eSIM profile active does not hand any provider extra access to a phone's location or personal files beyond how a mobile network normally operates. How any collected data is handled depends on that specific provider's own policy, and the phone's own location settings are a separate area worth checking on their own terms; there is no single blanket answer that covers every case.

FAQ

If I delete the eSIM profile, can it be restored?+

It depends directly on that plan's own provider terms. Contact the team with the order number and we will check and tell you the real answer; it is not guaranteed to be restorable.

How many devices can use the same eSIM at once?+

One profile installs on one device at a time, not several at once. The QR should be treated as single-use, and it helps to have one clear person responsible for which device it goes onto.

Someone claiming to be the team asked me for an OTP, what should I do?+

We never ask customers for an OTP. Stop responding to that message immediately and verify directly through LINE at https://lin.ee/skDPoNx or email at esimonline.asia@gmail.com.

How safe is the card data used at checkout?+

How card details are handled depends on the payment processor used at checkout, not something the team stores itself through chat. Regardless, a full card number should never be sent over chat under any circumstance.

How often should the account password be changed?+

There is no fixed schedule to follow. What matters more is that this password is not reused on any other site, and changing it immediately if a leak is ever suspected.

Who can see what when you connect abroad

Using an eSIM does not change the basics of privacy on a phone. Nearly every site and app encrypts its connection, so the network you are attached to can see that your device contacted a destination but not what passed between you. What does change is that you are on a local operator's network in the destination country, under that country's law rather than Thailand's. What gets retained, and for how long, differs from country to country, which is why we do not print a fixed figure here: guessing on behalf of another country's regulator would not be information you could rely on.

In practice the more common risk is not the mobile network at all: it is open public Wi-Fi and an unlocked phone left on a table. Carrying your own data on an eSIM removes much of the first problem, because you no longer have to join an unknown hotspot to check a map or open a banking app. The second stays a matter of habit — set a screen lock, turn on two-factor authentication for the accounts that matter, and never approve a sign-in prompt you did not start yourself.

ConcernWhat is actually true
An eSIM is easier to hack than a plastic SIMThe profile lives in a secure element in the phone and is delivered over an encrypted channel under the GSMA specification; it is not weaker than a plastic SIM
Can I pull the SIM out to stop being tracked?You cannot remove it physically, but you can switch the line off, delete the profile from the phone's menus, or use aeroplane mode just the same
Can the eSIM seller read my messages?We issue the profile and see plan status; the content of your communications is not visible to us

Common worries against what can be verified

If the phone goes missing, lock or wipe it remotely through the manufacturer's find-my-device service first, then contact us on LINE @esimonline or at esimonline.asia@gmail.com to sort out the plan.
  • Set a screen lock and enable two-factor authentication
  • Skip open Wi-Fi once you have your own data
  • Keep the install QR or code private; never post it publicly
  • Review which apps hold location permission before you fly

Settings worth changing before you travel

The work that pays off most is the work done before departure. Start by confirming remote find-my-device is switched on, because if the phone disappears mid-trip that is the only tool that will actually lock or wipe it. Then review which apps hold location and camera permission and revoke the ones you no longer use. Finally, arrange a backup way to receive two-factor codes, in case the Thai number cannot take an SMS while you are abroad.

During the trip, the setting worth watching is automatic reconnection to remembered Wi-Fi. Network names used by cafés and airports repeat across countries, so a phone can silently join something you never chose. Turning auto-join off and picking manually when you need to keeps that under your control — and once you carry your own data on an eSIM, the reasons to join a public hotspot at all mostly disappear.

For payments and travel documents, keep copies somewhere reachable even if the main phone is gone — a cloud account you can open from another device — and never leave passwords sitting in an unlocked notes app.

What we do and do not do with your data

When you place an order we use what the order needs: an email address to send the installation details to, and payment information handled by the payment provider. We do not see the content of your communications and we do not track which sites you open while the plan is running. If you have a question about personal data, reach us on LINE @esimonline or by email at esimonline.asia@gmail.com, and we will answer with what our records actually show rather than a general statement.

Once you are home again

When the trip ends, switch off or delete the profile you no longer need, check that the Thai line is carrying data again, and turn photo backup back on if you paused it while away. If you signed in to an important account from a borrowed device during the trip, sign out of all devices and change that password before you forget about it. Housekeeping like this takes a few minutes and removes the loose ends a trip tends to leave behind on a phone.

Related

Chat on LINE