TravelTrip World
traveltrip.world Traveler eSIM

Privacy Policy

Effective Date: September 2026 · Data Controller: ABDULLAH TRADING - F.Z.C. · Ajman Free Zone, UAE

1. Introduction & Data Controller

ABDULLAH TRADING - F.Z.C. (License No. 51845, Ajman Free Zone, UAE, owned by Mohammad Akram), operating TravelTrip World / Traveler eSIM (traveltrip.world), is dedicated to safeguarding your personal privacy. This Privacy Policy details how we collect, handle, store, and protect your information when using our international eSIM store and customer portal.

2. Personal Information We Collect

We collect only the minimum personal data necessary to provision, deliver, and support your travel connectivity:
Contact Information: Full name and checkout email address for eSIM profile delivery, order confirmation, and customer account access.
Technical & Order Metadata: IP address, device model (for compatibility verification), selected destination, package code, ICCID (SIM serial number), and transaction timestamps.
Financial Data: We do NOT collect, view, or retain your credit card number, security code (CVV), or bank credentials. All financial transactions are processed by certified third-party payment gateways.

3. Legal Grounds & Purpose of Data Processing

We process your personal information strictly for legitimate commercial and operational purposes:
Fulfillment of Contract: Communicating with carrier SM-DP+ clearinghouses to generate your GSMA-compliant eSIM profile, QR code, and LPA string.
Customer Care: Providing real-time assistance via WhatsApp and email, verifying orders, and resolving technical connectivity inquiries.
Security & Fraud Mitigation: Enforcing dual-factor verification (Order ID + checkout email) on guest order lookups to ensure unauthorized parties cannot access your eSIM credentials.
Statutory Compliance: Complying with UAE accounting, tax, and anti-fraud regulations.

4. Authorized Third-Party Processors

We never sell, lease, or monetize customer data. Data is shared solely with certified infrastructure partners essential to service execution:
Payment Processors: Stripe Inc. and PayPal Inc. (secure PCI-DSS Level 1 payment authorization).
Carrier SM-DP+ Infrastructure: Authorized telecommunications clearinghouses (such as rsp.esimaccess.com) to generate cryptographic SIM credentials.
Hosting & CDN: Vercel Inc. (global edge distribution and SSL-secured infrastructure).

5. Security Architecture & Encryption

All client-server communications are protected with modern TLS 1.3 encryption with Perfect Forward Secrecy. Passwords for registered accounts are cryptographically hashed and salted using industry-standard algorithms. Guest eSIM lookups strictly mandate matching both the secret Order ID and the original checkout email.

6. Data Retention Period

Order history, ICCID records, and invoices are retained for the statutory period required under UAE commercial and accounting regulations (typically 5 years). Registered account profiles remain active until deletion is requested by the user.

7. Customer Rights & Data Inquiries

You have the right to request access to your personal records, demand correction of inaccurate information, or request the deletion of your customer profile (subject to legal retention mandates). To exercise your rights, contact our Data Protection desk at support@traveltrip.world or message our official WhatsApp at +880 1836-089766.