How is my eSIM data stored?

Activation codes and QR images are treated as sensitive order data: they are shown only to the order's account or a holder of the order link, and supplier credentials never appear in the frontend. Never post your QR publicly — whoever installs it first gets the plan.
This page explains how your eSIM data — the activation code, the QR image, and the plan detail behind it — is handled within our system, who is entitled to see it, and what you can do to stop it landing in the wrong hands by accident. Unlike a physical SIM, which needs to be physically stolen, eSIM data can leak simply through a screenshot or a link shared in the wrong place.
This is written for anyone wondering exactly who can see their QR, anyone who has read about a QR being shared in public and wants to understand what that actually means, and anyone wanting to know the very first thing to do if they suspect their own data has been exposed.

What counts as sensitive data
The activation code and QR image are treated as the most sensitive order data in our system, because they are the only thing needed to install that plan on any device at all. Unlike a customer name or a destination country, which cannot be acted on by themselves, the code and QR sit in a higher tier of importance than the rest of the order's detail.
Related information such as the email used to buy, the purchase date and the top-up history also counts as personal data, but the risk differs, because none of that can be used to install a profile on someone else's behalf. What we treat with particular care is stopping the activation code itself leaking out by accident.
Who can see this data
We show the activation code and QR only to the account that owns that order, or to whoever holds the order's own link directly. No page on the site displays your code to anyone else without going through one of those two routes. That means anyone holding your order link in their hand can open the QR just as you can, even without ever signing in with your email at all.

Why supplier credentials never appear on the frontend
Behind the scenes, issuing each eSIM involves a connection to the supplier system that provides that profile, and that connection needs its own credentials to function. Those credentials are never surfaced on any page you see. What you see is only the end result — the QR and activation code for the plan you bought.
The separation exists for a straightforward reason: if something goes wrong on the customer-facing side, it does not directly touch the supplier's own backend, and conversely, a supplier-side issue does not require their credentials to ever appear on a page a customer can reach.
The QR behaves like a first-come credential
The single most important point to understand is that a QR not yet installed is not automatically bound to you personally. It binds to whoever scans it or enters the code first, whether or not that happens to be you. Posting a QR image publicly, even just to show off which plan you bought, carries a genuine risk that someone else installs it before you do.
The one point at which the QR stops carrying this risk is once installation has succeeded, since a profile normally cannot be installed a second time. Once installed, the original QR image is no use to anyone else for reactivating that plan. Before that point, treat the QR as being worth exactly as much as cash — whoever picks it up first gets to spend it.

If you have already shared a QR by accident
If you accidentally send the QR or order link to someone who should not have it, the first thing to do is check that profile's status in your order history. If it is not yet installed, install it yourself immediately before anyone else can scan it, or, if you genuinely no longer intend to use that plan, contact us to explain the situation.
Protecting yourself on a shared device
If you open the order page from a work computer, an internet café, or someone else's device, sign out the instant you finish, and check that the browser has not been set to remember the password or to leave the page open in a tab. Whoever uses that device after you will see exactly what you can see.
On your own personal device, the main risk is usually not a stranger but an accidental screenshot share — sending a friend photos from an album that also happens to contain the QR, or uploading that same image to social media without remembering it sat in the same album.

What we ask you to avoid
- Do not post an uninstalled QR image to social media or a public group
- Do not send the order link to anyone other than the actual user of that plan
- Do not let a browser remember the password on a device shared with others
- Do not keep a QR image inside an album that is shared publicly
- Do not delete a profile without being sure no validity or allowance remains, since removal is usually irreversible
Your data once the trip is over
Once a plan has expired or been used up, the order's detail remains in your account so you can look back at it later — for example, when you need the receipt afterwards. The installed eSIM profile on the device, however, cannot be brought back into service again, even though it may still appear listed among the phone's devices.
If you would like us to review or remove any part of your data for personal reasons, contact us directly and explain what you need. We will tell you honestly which parts can be actioned and which must be retained under the requirements of the transaction itself.
Telling our part apart from what is beyond our control
| Area | Whose responsibility |
|---|---|
| Showing the activation code and QR on the site | Us, controlling who can see it via the account or the order link |
| Security of the network the profile connects to | The mobile network operator at the destination |
| Protecting your own browser and password | You, such as signing out on a shared device |
| The supplier system that issues the profile | The supplier, whose own credentials we never expose on the site |
Reporting something you suspect
- 1Stop using the old link at onceIf you suspect the order link or QR has leaked, do not forward or reopen that same link again until you have checked its status first
- 2Check the status in order historySee whether the profile has already been installed, to judge how real the risk actually is
- 3Contact us with the order numberExplain whatever detail you have through phone, LINE or email, describing what you believe happened
- 4Wait for our reply and follow the guidanceWe check with the supplier as far as we are able and tell you honestly what options are available
Frequently asked questions
FAQ
Can support staff see my full activation code when I ask for help?+
To help investigate your order, staff need to be able to access the order detail, including the installation data, through internal systems. That information is never published publicly and is not shown on any page to anyone else.
Once I have installed it, do I still need to worry about someone seeing the old QR?+
The main risk drops considerably, since a profile normally cannot be reinstalled. It is still worth not publishing the QR image publicly without reason, since other order detail can sit in the same image.
Where is my card information kept when I pay?+
This page covers eSIM data specifically — the activation code and QR. For any question about payment information itself, please contact us directly to ask.
My phone was lost — will the installed profile move itself to a new device?+
No, since the profile is bound only to the device it was installed on. If the phone is lost, contact us with the order number so we can check what is possible, without promising in advance that a replacement can always be issued.
Can I ask for my account and all my data to be removed?+
Contact us to explain what you would like. We will check which parts can be removed and which must be kept under the requirements of the transaction, and reply with the outcome.
Does the order link expire by itself after a while?+
The exact behaviour can vary by order. If you are unsure whether your original link still opens, sign in with the account instead, or contact us for a fresh one.
If a travel companion asks to see my QR, how do I do that safely?+
Let them look at your own screen directly rather than sending the image or link for them to keep on their device. This cuts the chance of it being saved, forwarded or posted later by accident.
Why is the QR not shown directly in the confirmation email without clicking a link?+
Opening it through a link rather than embedding the image directly limits who can reach the code, since an email can be forwarded or opened on another device more easily than a link tied directly to that specific order.