Privacy Policy
Last updated: 17 August 2026
This policy explains what Omer eSIM collects when you use our mobile app and website, why we collect it, and how you can delete it. We have tried to keep it specific and readable rather than exhaustive and vague.
Who we are
Omer eSIM (“we”, “us”) provides data-only eSIM plans for travellers through the Omer eSIM mobile app and omeresim.com. We operate from the Kurdistan Region of Iraq, and we are the party responsible for the personal data described below.
What we collect
Only what the service needs in order to work:
- Account details
- Your name and email address, provided when you register. Your password is handled by our authentication provider and stored only as a cryptographic hash — we never see or store the password itself.
- Purchase records
- Which plan you bought, the amount, the currency, the order reference, any coupon code applied, and whether the payment succeeded or was declined.
- eSIM details
- The eSIM issued to you, its activation code and QR code, its status, and the data-usage figures our eSIM provider reports for it.
- Email verification codes
- A short-lived code sent when you register or reset your password. It is deleted once used or expired.
What we do not collect
We want to be equally clear about what the app does not do:
- No location tracking. The app never requests or records your location.
- No advertising or tracking SDKs. There is no ad network, no third-party analytics, and no crash-reporting service embedded in the app.
- No access to your contacts, photos, microphone or camera roll.
- No selling or renting of personal data — to anyone, ever.
- No card numbers. See “Payments” below.
The app does check whether your device supports eSIM, so it can warn you before you buy. That check runs entirely on your phone and the result is never sent to us.
How we use your data
- To create and secure your account, and to sign you in.
- To take payment, issue the eSIM you bought, and apply top-ups.
- To show you your orders, your eSIMs and their remaining data.
- To email you verification codes, password resets and order confirmations.
- To answer your support messages.
- To keep financial records that accounting and tax rules require us to retain.
We do not use your data for profiling, automated decision-making, or marketing to you.
Payments
Payments are processed by First Iraqi Bank (FIB). You complete the payment inside the FIB app, not inside ours.
We never receive or store your card number, CVV, PIN or bank credentials. What we keep is the payment reference, the amount, the currency and whether it succeeded — the minimum needed to match a payment to an order and to support refunds and accounting.
Data kept on your phone
Your language, appearance (light or dark) and onboarding progress are stored locally on your device, not on our servers. Removing the app removes them.
Deleting your account
You can permanently delete your account from inside the app at any time. You do not need to email or call us.
- 1Open the app and go to the Profile tab.
- 2Scroll to the bottom and tap Delete account.
- 3Read what will be removed, then tap Delete my account and confirm.
This is immediate and irreversible. Your name, email address and account login are deleted, and your sign-in credentials stop working at once.
We keep the underlying payment and order records, because accounting and tax rules require it — but we detach them from you, so those records no longer identify you or link back to your account.
How long we keep data
Account data is kept for as long as your account exists, and is removed when you delete it. Verification codes expire within minutes. Financial records are retained for the period required by applicable accounting and tax law, in the dissociated form described above.
Your rights
You can access and correct your details in the app, delete your account at any time (see above), and ask us what we hold about you. To make a request, contact us using the details below. We will respond within a reasonable period.
Security
Traffic between the app and our servers is encrypted in transit. Passwords are stored only as hashes. Access to production systems is restricted to people who need it. No system is perfectly secure, but we take reasonable and appropriate measures to protect your data.
Children
Omer eSIM is not directed at children under 13, and we do not knowingly collect their personal data. If you believe a child has given us personal data, contact us and we will delete it.
Changes to this policy
If we change this policy we will update the date at the top of this page. Significant changes will be communicated in the app.
Contact us
Questions about this policy or your data? Message us on WhatsApp — it is the fastest way to reach us, and it is the same support channel available in the app under Profile.
Contact us on WhatsAppThis policy is governed by the laws of the Kurdistan Region of Iraq.