HelloRoam是全球eSIM供應商,在185多個國家提供即時行動數據。購買預付費旅行eSIM方案,無額外費用,無合約,即時啟用。
最後更新: 2026年5月
本私隱政策(「聲明」)說明 Future Syncs Limited(英國)以 HelloRoam(「HelloRoam」、「我們」或「本公司」)名義營運時,如何處理您的個人數據。本聲明涵蓋您在聯絡我們、使用本公司應用程式、瀏覽網站或購買服務時所提供或我們所收集的個人資料。
根據《通用數據保護條例》(EU)2016/679(「GDPR」)及英國 GDPR,我們有責任向您提供此資訊,包括您的數據保護權利詳情。
HelloRoam 認真對待數據保護,未有適當法律依據絕不會將您的個人數據分享予第三方。我們遵守 GDPR、英國數據保護法律,以及北美、澳洲和拉丁美洲的私隱框架,私隱保護由設計階段起已融入我們所有服務之中。
We run Data Protection Impact Assessments when we start new services or data processing that may pose a high risk to your rights.
就本聲明而言,數據控制者為英國 Future Syncs Limited,以 HelloRoam 名義營運。HelloRoam 負責保管您的個人數據。
Company:Future Syncs Limited
Brand:HelloRoam(Future Syncs Limited 旗下品牌)
Address:英國倫敦
Company Registration:15950168
Email:admin@helloroam.com
HelloRoam 致力保護您的個人數據。本聲明說明我們如何處理相關數據。
我們收集及處理以下類別的個人數據:
| 類別 | 例子 |
|---|---|
| 身份數據 | 名字、姓氏、用戶名稱或類似識別碼、稱謂、出生日期 |
| 聯絡資料 | 電郵地址、電話號碼、賬單地址、送貨地址 |
| 財務數據 | 付款卡詳情(由付款服務商處理)、銀行帳戶資料 |
| 交易數據 | 您的付款及收款詳情,以及您向我們購買的產品及服務記錄 |
| 技術數據 | 互聯網協議(IP)位址、登入數據、瀏覽器類型及版本、時區設定及位置、瀏覽器插件類型及版本、操作系統及平台、裝置識別碼 |
| 個人檔案數據 | 您的用戶名稱及密碼、購買或訂單記錄、興趣、偏好、意見及問卷回覆 |
| 使用數據 | 您使用本公司網站、產品及服務的相關資訊,包括 eSIM 啟用數據及數據用量模式 |
| 市場推廣數據 | 您接收本公司及第三方市場推廣信息的偏好,以及您的通訊偏好 |
我們從以下來源收集您的個人數據:
當您填寫表格或透過電話、電郵或其他渠道聯絡我們時,您會提供身份、聯絡及財務數據。這包括您在創建帳戶、購買方案、訂閱服務、申請市場推廣、參加推廣活動或提供意見時所分享的資料。
當您使用我們的網站及應用程式時,我們可能自動收集您裝置的技術數據、瀏覽活動及使用模式,方式包括 Cookie、伺服器日誌及類似技術。
我們可能從第三方收集個人數據,包括分析服務供應商、廣告網絡、搜尋資訊供應商、付款及送貨服務,以及身份驗證服務。
我們只在法律允許的情況下使用您的個人數據。以下是最常見的情況:
為履行與您簽訂或即將簽訂的合約而需要時。
為我們(或第三方)的合法利益所必需,且您的利益及基本權利不凌駕於該等利益之上時。
為遵守法律或監管義務而需要時。
當您已就一個或多個特定目的同意處理您的個人數據時。
我們只在法律允許的情況下使用您的個人數據。以下是最常見的情況:
我們可能與以下類別的接收方分享您的個人數據:
代表我們提供服務的公司,包括付款處理、數據分析、電郵發送、主機託管、客戶服務及市場推廣支援。
為我們提供網絡連接服務的流動網絡營運商及 eSIM 供應商。
提供法律、財務及顧問服務的律師、銀行家、核數師及保險公司。
法律規定時,包括政府機構、監管機構、執法機關、法院及其他主管機關。
我們要求所有第三方尊重您的個人數據安全,並依法處理。我們不允許第三方服務供應商將您的數據用於其自身目的,他們只可就我們指定的特定用途處理數據。
We share your data with these trusted service providers. Each one has a data processing agreement with us.
| 处理方 | 用途 |
|---|---|
| Stripe | Payment processing. Card details go directly to Stripe and are never stored on our servers. |
| Supabase | User authentication and account management. |
| Google Analytics (GA4) | Website usage analytics. Only active after you give consent. |
| Google Ads | Conversion tracking for advertising. Only active after you give consent. |
| Google Tag Manager | Tag management for analytics and marketing scripts. |
| Meta (Facebook Pixel) | Marketing analytics and conversion tracking. Only active with marketing consent. |
| Microsoft Clarity | Behavioral analytics and session recordings to improve user experience. Only active with analytics consent. |
| Sentry | Error monitoring and performance tracking. Personal data is automatically redacted. |
| VWO (Visual Website Optimizer) | A/B testing to help us improve the website experience. |
| Vercel | Website hosting, analytics, and performance monitoring. |
| Rewardful | Affiliate referral tracking. Stores a referral token for 90 days when you arrive via an affiliate link. |
We have Data Processing Agreements in place with all processors listed above.
When you arrive through an affiliate link, we share a referral token with Rewardful to attribute your purchase and calculate rewards. This data is kept for 90 days.
我們可能將您的個人數據轉移至英國及歐洲經濟區(EEA)以外的國家。每次轉移時,我們都會採取保障措施,確保您的數據獲得同等保護。
• 轉移至歐盟委員會或英國政府認定提供足夠數據保護的國家。
• 使用歐盟委員會或英國政府批准的特定合約(標準合約條款)。
• 轉移至已通過歐盟及美國數據私隱框架認證的美國服務供應商。
如您希望了解我們將個人數據轉移至英國或歐洲經濟區以外時所採用的具體保障措施,請透過 privacy@helloroam.com 聯絡我們。
Stripe, Google, Meta, Microsoft, Sentry, VWO, and Vercel transfer data to the United States under Standard Contractual Clauses (SCCs) and the EU-US Data Privacy Framework. Supabase processes data in the US under SCCs. For UK-origin transfers, we use the UK International Data Transfer Agreement (IDTA) alongside SCCs.
根據數據保護法律,您享有以下權利:
您可要求取得我們所持有關於您的個人數據副本。
您可要求我們更正不準確的資料或補充不完整的記錄。
在特定條件下,您可要求我們刪除您的個人數據。
在特定條件下,您可要求我們限制處理您的個人數據。
在特定條件下,您可反對我們處理您的個人數據。
在特定條件下,您可要求我們將我們所持有的數據轉移至另一機構或直接交還給您。
在我們依賴您的同意處理數據的情況下,您可隨時撤回同意。
您可向監管機構提出投訴。
We do not use solely automated decision-making, including profiling, that produces legal effects concerning you or similarly significantly affects you.
如您希望行使上述任何權利,請透過 privacy@helloroam.com 聯絡我們。查閱數據或行使權利不收任何費用。只有在您的要求明顯無理、重複或過度的情況下,我們才可能收取合理費用。
我們只在需要的時間內保留您的個人數據,包括任何法律、會計或申報要求所需的時間。
為決定數據保留期,我們考慮數據的數量及敏感程度、未經授權使用所帶來的傷害風險、我們收集數據的原因、能否以其他方式達到同樣目的,以及適用的法律規定。
| Category | Retention Period |
|---|---|
| 帳戶數據 | 帳戶存續期間及帳戶關閉後6年 |
| 交易數據 | 交易日期起計7年 |
| 市場推廣偏好 | 直至您取消訂閱或3年不活躍為止 |
| 技術/使用數據 | 收集後13個月 |
我們的服務只適合16歲或以上人士使用。我們不會在知情的情況下收集16歲以下兒童的個人數據。如您是家長或監護人,並認為您的子女已向我們提供數據,請立即聯絡我們。
如我們發現在未取得家長同意的情況下收集了兒童的個人數據,我們將迅速從系統中刪除該等數據。
如您認為我們持有或收集了16歲以下兒童的數據,請立即透過 admin@helloroam.com 聯絡我們。
如您對本私隱政策或我們處理數據的方式有任何疑問,請聯絡我們:
如您對本私隱政策或我們處理數據的方式有任何疑問,請聯絡我們:
If you live in California, the California Consumer Privacy Act (CCPA) and the California Privacy Rights Act (CPRA) give you specific rights over your personal information. This section explains those rights and how to use them.
HelloRoam does not sell personal information as defined under the CCPA.
We collect the following categories of personal information from California residents:
You can ask us what personal information we have collected about you, where it came from, why we collected it, and who we share it with.
You can ask us to delete the personal information we have collected from you. Some exceptions apply, such as when we need the data to complete a transaction or meet a legal obligation.
You can ask us not to sell or share your personal information. HelloRoam does not sell personal information, so this right is already honored by default.
We will not treat you differently or deny you services because you chose to exercise any of your California privacy rights.
To exercise any of the rights above, email us at privacy@helloroam.com. Include your name, email address, and a description of your request. You may also submit a request on behalf of another person if you have written authorization or hold power of attorney.
We need to verify your identity before we can process your request. We will ask you to confirm the email address linked to your account and may request additional information to confirm your identity. We will respond to your request within 45 days. If we need more time, we will let you know.
Brazil's Lei Geral de Proteção de Dados (LGPD) applies to HelloRoam when we process personal data from individuals in Brazil. This section explains your rights and how we handle your data under Brazilian law.
We process your personal data based on your consent, to perform a contract with you, to meet a legal obligation, or to serve our legitimate interests. We tell you the applicable legal basis at the time we collect your data.
Our Data Protection Officer handles privacy matters for Brazilian residents. Contact them at admin@helloroam.com with the subject line "LGPD Request." We will respond within the timeframes required by Brazilian law.
If you believe we have not handled your data correctly, you have the right to file a complaint with Brazil's national data protection authority, the Autoridade Nacional de Proteção de Dados (ANPD), at gov.br/anpd.
Japan's Act on Protection of Personal Information (APPI) applies when we process personal data from individuals in Japan. We handle your data in line with APPI requirements and the guidelines issued by Japan's Personal Information Protection Commission (PPC).
We use your personal data to process eSIM orders, manage your account, provide customer support, send service notifications, and improve our platform. We will not use your data for other purposes without notifying you first.
Your personal data is transferred to and stored in the United Kingdom. The UK has been recognized as providing an adequate level of personal data protection by the European Commission. We apply equivalent safeguards for transfers under APPI.
To exercise your rights or to submit a complaint, email us at admin@helloroam.com. You may also contact the Personal Information Protection Commission (PPC) at ppc.go.jp.
Canada's Personal Information Protection and Electronic Documents Act (PIPEDA) applies to HelloRoam's handling of personal information from Canadian residents. We follow the fair information principles that PIPEDA requires.
To make a privacy request, email us at admin@helloroam.com. If you are not satisfied with our response, you may file a complaint with the Office of the Privacy Commissioner of Canada at priv.gc.ca.
India's Digital Personal Data Protection Act 2023 (DPDP Act) applies when we process personal data from individuals in India. HelloRoam acts as a Data Fiduciary under this law and processes your data only for clear, lawful purposes.
As a Data Fiduciary, HelloRoam collects only the personal data needed to provide our eSIM services. We keep it secure, use it only for stated purposes, and delete it when it is no longer needed. We do not process the personal data of children without verifiable parental consent.
To raise a grievance or exercise any DPDP right, email us at admin@helloroam.com with the subject line "DPDP Request." We will acknowledge your request within 48 hours and resolve it within the timeframe required by law.
HelloRoam operates in 185+ countries. In addition to GDPR, CCPA, LGPD, APPI, PIPEDA, and the DPDP Act, the following regional laws may apply to you depending on where you live.
South Africa's Protection of Personal Information Act (POPIA) gives you rights to access, correct, and delete your personal data. Cross-border transfers require adequate protection. To exercise your rights or file a complaint, contact us at admin@helloroam.com or reach the Information Regulator at inforegulator.org.za.
Thailand's Personal Data Protection Act (PDPA) requires your consent for most processing. You have the right to access, correct, delete, and port your data, and to object to processing. To exercise your rights or complain to the Personal Data Protection Committee (PDPC), contact us at admin@helloroam.com.
Singapore's Personal Data Protection Act (PDPA) requires your consent before we collect, use, or disclose your personal data. You can withdraw consent at any time. We notify affected individuals promptly in the event of a data breach. Contact admin@helloroam.com for any PDPA-related request.
Turkey's Personal Data Protection Law (KVKK) requires explicit consent for cross-border data transfers. You have the right to know whether your data is processed, access it, request correction or deletion, and object to automated decisions. To submit a request or file a complaint with the KVKK Board, contact us at admin@helloroam.com.
Switzerland's revised Federal Act on Data Protection (nFADP) applies to both natural and legal persons. You have the right to access your data, correct inaccuracies, and object to certain processing. We notify the Federal Data Protection and Information Commissioner (FDPIC) of significant data breaches. Contact admin@helloroam.com with any nFADP request.
Indonesia's Personal Data Protection Law (UU PDP) requires your consent for data collection and cross-border transfers. We maintain a designated Data Protection Officer to oversee compliance. To exercise your rights or raise a concern, email admin@helloroam.com.
China's Personal Information Protection Law (PIPL) requires us to notify you and obtain separate consent before transferring your personal data outside China. We process data from Chinese residents only for the purposes clearly stated at the time of collection. Contact admin@helloroam.com for any PIPL-related request.
HelloRoam uses AI tools carefully and only where they improve our service without compromising your privacy. We do not use AI in ways that produce automated decisions with legal or similarly significant effects on individual users.
Our public website content, including eSIM pricing, coverage information, and FAQs, is accessible to AI crawlers. Your account data, personal information, and order history are never exposed to or shared with AI crawlers. We protect all personal data from AI training pipelines.
We use AI tools to support content research and review customer support quality. These tools process anonymized or aggregated data only. They are not used to make automated decisions about individual users.
HelloRoam does not sell user data to AI companies, data brokers, or any third parties for AI model training purposes.
When you participate in the HelloRoam referral program, we collect limited technical data to attribute referrals accurately and prevent fraud.
This data is used solely to attribute referral purchases to the correct referrer, prevent duplicate or fraudulent claims, and calculate referral rewards. We do not use this data for advertising or sell it to third parties.
Referral attribution data is retained for 90 days after the referred purchase. After this period, the data is automatically deleted. Aggregated, non-personal statistics (total referrals, reward amounts) are kept for accounting purposes.
We care about your data rights. Our practices are transparent, and you can exercise your rights anytime by contacting us at admin@helloroam.com.
Have questions about this Privacy Policy or how we handle your data? We're happy to help.
下載 App。 輕鬆出行。
隨時隨地管理您的 eSIM。
