πŸ”₯ Β£30 for the whole year β€” most people pay that in a single month

Legal

Privacy Policy

Last updated: 29 June 2026

1. Who we are

This Privacy Policy explains how Oscar Kakareko, trading as Klar SIM(β€œwe”, β€œus”, β€œour”), collects, uses, and protects your personal data when you use klarsims.co.uk.

We are the data controller for the purposes of UK GDPR and the Data Protection Act 2018. If you have questions about how we handle your data, contact us at hello@klarsims.co.uk.

2. What data we collect

We collect the following categories of personal data:

Identity dataFirst name, last name
Contact dataEmail address, phone model (optional)
Verification dataDate of birth, first line of address, postcode β€” used for UK eSIM identity verification requirements
Account dataEmail address and hashed password (if you create an account)
Order dataYour order reference, status, and eSIM delivery details
Support dataContent of support tickets and replies you send us
Technical dataCookies used for authentication (see our Cookie Policy)

We do not collect payment card data. Payments are made by direct bank transfer and we only see your name and reference number as shown on the transfer.

3. How we collect your data

  • Directly from you when you fill in the checkout form, create an account, or submit a support ticket.
  • When you interact with our website (session cookies β€” see Cookie Policy).
  • Automatically if you begin filling in the checkout form and leave β€” we may save partial information you’ve typed in order to send you a reminder (see section 5).

4. Legal basis for processing

Contract performanceProcessing your order, delivering your eSIM, and managing your account.
Legal obligationIdentity and address verification required for UK eSIM regulations.
Legitimate interestsSending abandoned checkout reminder emails; preventing fraud; improving our service.
ConsentWe will ask for your consent before sending marketing communications (we do not currently send marketing emails).

5. How we use your data

  • To fulfil your order β€” process your purchase, confirm payment, and deliver your eSIM by email.
  • To verify your identity β€” UK eSIM regulations require us to hold name, date of birth, and address details.
  • To manage your account β€” allow you to log in, view your orders, and raise support tickets.
  • To provide support β€” respond to your support tickets and resolve issues.
  • To send checkout reminders β€” if you begin filling in the checkout form and leave without completing your order, we may send you a single reminder email if you provided your email address. You can opt out of this by replying to the email.
  • To comply with legal obligations β€” retain transaction records as required by HMRC and UK law.

6. Third parties we share data with

We do not sell your personal data. We share it only with the following service providers, and only to the extent necessary:

Transactional email delivery (order confirmations, eSIM delivery, support replies, checkout reminders)

United States β€” Resend processes data under Standard Contractual Clauses.

Google Cloud PlatformPrivacy policy β†—

Database hosting for orders, accounts, and support tickets

Europe West 2 (London, United Kingdom)

We may also disclose your data if required to do so by law or in response to a valid request from a law enforcement authority.

7. Data retention

Order data7 years from the date of the order (required for HMRC tax records)
Account dataUntil you request deletion of your account
Support tickets3 years from resolution
Abandoned cart data90 days from capture, then deleted
Authentication cookies30 days (session cookie)

8. Your rights under UK GDPR

You have the following rights regarding your personal data:

  • Right of access β€” request a copy of the personal data we hold about you.
  • Right to rectification β€” ask us to correct inaccurate or incomplete data.
  • Right to erasure β€” ask us to delete your data, subject to legal retention obligations.
  • Right to restrict processing β€” ask us to limit how we use your data in certain circumstances.
  • Right to data portability β€” receive your data in a structured, machine-readable format.
  • Right to object β€” object to processing based on legitimate interests (including checkout reminder emails).

To exercise any of these rights, email us at hello@klarsims.co.uk. We will respond within one calendar month.

If you are unhappy with how we handle your data, you have the right to lodge a complaint with the UK Information Commissioner’s Office (ICO) at ico.org.uk.

9. Security

We take reasonable technical and organisational measures to protect your personal data, including:

  • Passwords stored using bcrypt hashing β€” we never store plain-text passwords.
  • Authentication via signed, encrypted session tokens (JWT).
  • Database hosted on a private server accessible only over secure connections.
  • HTTPS enforced on all pages.

No method of transmission over the internet is 100% secure. In the event of a data breach that is likely to result in a risk to your rights and freedoms, we will notify you and the ICO as required by UK GDPR.

10. Cookies

We use only strictly necessary cookies. For full details, see our Cookie Policy.

11. Changes to this policy

We may update this Privacy Policy from time to time. We will post the revised version on this page with an updated date. We encourage you to review this page periodically.

12. Contact

For any privacy-related questions or to exercise your rights, contact us at: hello@klarsims.co.uk