Privacy Policy
Last updated: 20 June 2026
Operator: AMA eSIM is operated by 3AM GROUP L.L.C., a limited liability company registered in the Republic of Kosovo (Business Registration No. 812130334), registered office: Pajazit Islami 1, Fushë Kosovë, Kosovo. Contact: [email protected] · [email protected].
This policy explains what data we collect, why we collect it, who we share it with, how long we keep it, and how you can delete it.
1. Data we collect
- Identity: first name, last name, email address.
- Phone number (optional, for support and WhatsApp).
- Purchase history: eSIM packages, dates, destinations, amounts.
- Device identifier / push notification token (APNs/FCM).
- Technical data: app version, device model, OS version, sign-up and last-login IP (encrypted at rest in our database).
- Social account identifiers when you sign in with Apple or Google (sign-in identifiers from Apple/Google, stored encrypted).
We do NOT collect: GPS location, contacts, microphone, health data, or any advertising identifier (IDFA). We do not track you across other apps or websites.
2. How we use your data
- To create and manage your account.
- To process payments and provision eSIMs.
- To send you order confirmations, activation QR codes, and package status updates.
- To send promotional notifications only if you have opted in (you can disable them at any time in your account settings).
- To prevent fraud and detect abuse.
- To comply with legal obligations (accounting, tax).
3. Third-party processors
We share minimum necessary data with the following partners, each contractually bound to maintain the same level of protection:
- Our eSIM connectivity provider — receives the technical identifiers needed to activate and manage your eSIM. Does NOT receive your name, email, or payment details.
- Our payment processor — processes card, Apple Pay, and Google Pay payments. No card data is stored on our servers.
- Analytics & ad-measurement providers (such as Meta and Google) — limited usage and conversion data, including a purchase and its value, used to measure how well our own advertising performs. This is conversion measurement, not selling your data.
- Push-notification services (Apple and Google) — for push notification delivery.
- Our email-delivery provider — for transactional emails (order confirmations, your eSIM, etc.).
- Our content-delivery & security provider — processes request IP addresses to protect the service.
- Our cloud hosting provider (Germany — EU/EEA) — hosts our servers.
We do NOT sell your data. Other than the ad-conversion measurement described above, we do not share your data for third-party marketing. By completing a purchase, you agree to this conversion measurement.
4. Where we store it
Data is stored on our servers in Germany (EU/EEA). Sensitive data is encrypted at rest.
5. How long we keep it
- Your account: until you delete it, or after 3 years of inactivity.
- Invoices and orders (anonymized): 7 years, as required by EU/Kosovo tax law.
- Backups: up to 30 days.
- Security logs: up to 90 days.
6. Your rights
You have the right to:
- Access your data (in your account settings).
- Correct or update your profile data.
- Delete your account immediately (in your account settings). Personal data is hard-deleted on the spot; billing records are anonymized and retained for 7 years per legal requirement. For Sign in with Apple users, the Sign in with Apple connection is also revoked.
- Withdraw consent for promotional notifications at any time.
- Port your data (one-click JSON export).
For specific requests: [email protected]. We respond within 30 days.
7. Children
AMA eSIM is not directed at children under 13. If we learn that we have collected data from a child under that age, we will delete it promptly.
8. Changes to this policy
Any material change will be posted here and notified by email to active users at least 30 days before taking effect.









