Haloroam

Haloroam · Legal

Privacy Policy

Version v2.0 · Last updated 21 September 2026 · Effective upon publication.

1Introduction

1.1About Us

Thank you for using HaloRoam. This Privacy Policy explains how HaloRoam ("we", "us" or "our") collects, uses, shares and protects your personal data when you access or use the HaloRoam mobile application and related services (the "Services"). Operator: Tapcom Technology Limited (觸通科技有限公司), registered in the Hong Kong Special Administrative Region (Business Registration No. 70308547), contact email [email protected].

1.2Scope

This Policy applies to all personal data collected through the HaloRoam mobile application (both the iOS and Android versions). Accounts are independent and are not shared between the two platforms (the iOS version uses Sign in with Apple; the Android version uses Google Sign-In), and accounts and data are managed separately for each platform. The website is not yet live; once it is, we will supplement this Policy with the website's collection scope (such as cookies). This Policy does not apply to third-party websites or services (for example Stripe's payment pages), whose own privacy policies apply.

1.3Consent

By registering an account, accessing and using the app, and/or ordering and using the Services, you confirm that you have read this Policy and agree to our processing of your personal data as described here. If you do not agree, please do not use the Services.

2Data We Collect

We collect only the data necessary to provide and improve the Services. This version (1.0.0) does not integrate any third-party analytics, advertising or crash-reporting SDK; if a future version introduces one, we will first update this Policy and notify you in the app (see Section 9).

2.1Account Registration Data

When you create an account through a third-party sign-in (iOS: Sign in with Apple; Android: Google Sign-In), we collect your name (if provided on first authorisation) and email address, together with the user identifier returned by the third-party sign-in, in order to create and identify your account.

2.2Order Data

When you order a Data Plan, we process: the selected plan type, duration and currency, order status, order number and purchase history.

2.3Payment Data

(a) For card payments (Apple Pay on iOS, Google Pay on Android), payment is processed by Stripe; where a platform requires settlement through its app store, such payments are processed by that store and we receive only order and settlement result information. Stripe collects and processes your card details (card number, expiry date, etc.) and billing information; we do not store your full card number. (b) We may retain basic billing information (such as purchase date, cardholder name and the last four digits of the card) for customer support, reconciliation and refund handling. (c) When you pay with credit, we process your credit balance and transaction records (including refunds and refunds to the original payment method).

2.4Device & App Data (actual scope)

To serve API requests and localize content, the app sends: bundle identifier (X-Bundle-ID), app version (X-App-Version), time zone (X-Timezone) and language (X-Language). In addition, when you email us from the in-app "Contact Us" sheet, the message includes — at your initiative — the topic, selected order ID(s), app version, OS version and device model. We do not collect advertising identifiers (IDFA on iOS / Advertising ID on Android), cross-app tracking data, contacts, photos or precise location, and this version does not report crash logs or usage analytics.

2.5Service Usage Data

(a) Data and network usage data: to provide, measure and bill the Services, we and our carriers/suppliers record your eSIM data usage, activation time and plan status. (b) eSIM configuration data: to install the eSIM on your device, we process configuration data such as the ICCID, activation code (LPA), QR code/installation link and APN. (c) Support communications: the content of your email exchanges with us.

2.6Data We Do Not Request

We do not ask you to provide identity documents, passports or biometric information. Please do not send such information or full card numbers in support emails.

3Purposes

We process your personal data for the following purposes: (a) Providing the Services — creating and managing accounts, providing eSIM Data Plans and activation, and handling credit and coupons. (b) Payment processing — processing purchases through Stripe, managing credit balances, and handling refunds and refunds to the original payment method. (c) Customer support — responding to your enquiries and requests, troubleshooting, and handling refunds and disputes. (d) Service improvement — monitoring service health, improving the user experience, and developing and optimising features. (e) Legal obligations — complying with applicable laws, preventing fraud and abuse, and protecting our and our users' legitimate interests. Legal bases (where required by applicable law): performance of our contract with you, your consent, our legitimate interests, and compliance with legal obligations.

4Data Sharing

We do not sell your personal data. We share it only where necessary: (a) Payment processors — Stripe Inc. (which processes payment transactions under its own privacy policy). (b) Carriers and eSIM suppliers — to provide the eSIM data service we share necessary information with carriers/eSIM suppliers, including the eSIM identifier (ICCID), device-related identifiers and data usage. (c) Infrastructure providers — cloud servers, object storage and email delivery services (used to send receipts and support emails). (d) Sign-in providers — Apple (iOS) / Google (Android) (for authentication). (e) Legal requirements — disclosure to law enforcement, regulators or courts where required by law. Note: we do not use third-party advertising or behavioural analytics services and do not share data with them.

4.6Cross-Border Transfers

Your personal data may be stored and processed outside your country/region of residence. We will take appropriate measures to protect it and rely on appropriate transfer mechanisms under applicable law (e.g. an adequacy decision for the receiving country, or standard contractual clauses).

5Storage & Security

5.1Security Measures

We implement appropriate technical and organisational measures to protect your personal data: encryption in transit and at rest, secure servers and firewalls, least-privilege access control, and regular security assessments and updates.

5.2Payment Security

Payments are processed by Stripe in accordance with PCI-DSS; Stripe is a certified PCI service provider. We do not store full card numbers.

5.3Risk Notice

Although we take reasonable security measures, no method of internet transmission or electronic storage is 100% secure, and you use the Services at your own risk.

6Retention

We retain your personal data only for as long as necessary to provide the Services or as required by law, as set out in the table above. When we no longer have a lawful reason to retain your data, we will securely delete or anonymise it.

7Your Rights

Under applicable data protection law you have the following rights: (a) Access — to request access to the personal data we hold about you. (b) Rectification — to request correction or updating of inaccurate or incomplete data. (c) Erasure — to request deletion of your personal data. Accounts are independent per platform: deleting your account in the app deletes only the account on the platform you are using; if you also have an account on the other platform, please delete it there separately. You can do this yourself in the app via "Account → Delete Account"; if the in-app option is unavailable (for example if you have uninstalled the app), you may email [email protected] (subject "Account Deletion") and we will act after verifying your identity. (d) Withdraw consent — at any time for processing based on consent, without affecting the lawfulness of prior processing. (e) Data portability — to request a copy of your personal data in a structured, commonly used format. (f) Complaint — to lodge a complaint with the data protection authority in your place of residence; if you are in Hong Kong, you may complain to the Office of the Privacy Commissioner for Personal Data (PCPD).

7.7How to Exercise Your Rights

Please contact us at [email protected]. We will handle your request as soon as possible after verifying your identity; where applicable law prescribes a deadline, we will complete it within that deadline. If you are in Hong Kong, the access and correction requests above are also handled under the Personal Data (Privacy) Ordinance (Cap. 486).

7.8Consequences of Account Deletion

After your account is deleted (this concerns only the account on the platform you acted on): you will not be able to sign in, nor view or manage orders and Data Plans in the app; an installed eSIM may still be usable on the original device until the Data Plan's validity period expires (such use does not depend on signing in to the app and is subject to our supplier's rules), but unused portions are not separately refunded; we process your personal data in accordance with Section 6; and financial and transaction records that must be retained by law are deleted once the retention period ends.

8Children's Privacy

HaloRoam does not knowingly collect personal data from anyone under 18. The Services are intended only for users aged 18 or over. If you are under 18, please do not use the Services or provide us with any personal data. If we become aware that we have collected personal data from someone under 18, we will delete it as soon as possible.

9Policy Updates

We may update this Policy from time to time. If there are material changes, we will notify you in advance through an in-app notice or email, and will update the effective date and version number at the top. Your continued use of the Services constitutes acceptance of the updated Policy.

10Contact

If you have any questions, requests or complaints about this Policy or our processing of your personal data, please contact us: Tapcom Technology Limited (觸通科技有限公司), Hong Kong Special Administrative Region, Business Registration No. 70308547 · [email protected] (please mark personal-data requests as "Privacy Request") · https://haloroam.net · Unit 1140B, 11/F, Eastcore, 398 Kwun Tong Road, Kwun Tong, Kowloon, Hong Kong.

This Privacy Policy was last updated on 21 September 2026 and takes effect upon publication.

Haloroam · 法律条款

隐私政策

版本 v2.0 | 最后更新 2026-09-21 | 自本政策公布之日起生效。

1简介

1.1关于我们

感谢您使用 HaloRoam。本隐私政策说明 HaloRoam(以下简称"我司""我们"或"我们的")在您访问或使用 HaloRoam 应用程序及相关服务("本服务")时,如何收集、使用、共享和保护您的个人信息。

运营主体:觸通科技有限公司(TAPCOM TECHNOLOGY LIMITED),注册地香港特别行政区(商业登记号 70308547),联系邮箱 [email protected]。

1.2适用范围

本政策适用于通过 HaloRoam 移动应用(iOS 版与 Android 版)收集的全部个人信息;两端账号相互独立、不共用(iOS 版使用 Apple 登录,Android 版使用 Google 登录),两端的账号与数据分别管理。网站尚未上线,上线后将另行补充网站的收集范围(如 Cookie)。本政策不适用于第三方网站或服务(例如 Stripe 的支付页面),请另行阅读其隐私政策。

1.3同意

注册账号、访问并使用本应用、订购和/或使用本服务,即表示您已阅读本政策并同意我们按本政策处理您的个人信息。如果您不同意,请勿使用本服务。

2我们收集哪些数据

我们仅收集为提供与改进服务所必需的数据。本版本(1.0.0)不接入任何第三方分析、广告或崩溃统计 SDK;如后续版本引入,我们将先更新本政策并在应用内告知(见第 9 条)。

2.1账号注册信息

通过第三方账号登录创建账号时(iOS 版:Apple 登录;Android 版:Google 登录),我们收集:姓名(如您首次授权时提供)与邮箱地址,以及第三方登录返回的用户标识,用于创建与识别您的账号。

2.2订单数据

订购流量套餐时,我们处理:所选套餐类型、时长与币种、订单状态、订单号、购买历史。

2.3支付数据

2.3.1 使用银行卡支付(iOS 另支持 Apple Pay、Android 另支持 Google Pay)时,支付由 Stripe 处理;若某平台要求通过应用商店结算,则该等支付由对应应用商店处理,我们仅接收订单与结算结果信息。Stripe 收集并处理您的卡信息(卡号、有效期等)与账单信息,我们不直接存储您的完整卡号。

2.3.2 我们可能保留基本账单信息(如购买日期、持卡人姓名、卡号后四位)用于客服支持、对账与退款处理。

2.3.3 使用抵用金支付时,我们处理您的抵用金余额与交易记录(含退款与退回原支付方式的记录)。

2.4设备与应用信息(实际传输范围)

为完成接口调用与本地化展示,应用在向我们的服务器发起请求时会随请求发送以下信息:

字段(中文)说明Field (EN)Description
应用包标识(X-Bundle-ID)区分客户端(iOS / Android 各自包名)X-Bundle-IDIdentifies the client (the iOS / Android bundle identifier)
应用版本号(X-App-Version)兼容性与问题排查X-App-VersionCompatibility and troubleshooting
时区(X-Timezone)时间展示与日志X-TimezoneTime display and logs
语言(X-Language)返回对应语言的文案X-LanguageReturns content in the matching language

此外:当您通过应用内「联系我们」发送邮件时,邮件正文会由您主动带上问题类型、所选订单号、App 版本、系统版本与设备型号(iOS 为系统版本 + 设备型号;Android 为 Android 版本 + 设备型号);该等信息随邮件由您发送给我们用于排障。

我们不收集:广告标识符(iOS 的 IDFA / Android 的广告 ID)、跨应用追踪数据、通讯录、照片、精确位置;本版本亦不上报崩溃日志或使用行为分析数据。

2.5服务使用数据

2.5.1 流量与网络使用数据:为提供服务、计量与计费,我们与网络运营商/供应商记录您的eSIM 数据用量、激活时间、套餐状态。

2.5.2 eSIM 配置信息:为在您的设备上安装 eSIM,我们处理 ICCID、激活码(LPA)、二维码/安装链接、APN 等配置信息。

2.5.3 客服沟通记录:您与我们的邮件往来内容。

2.6我们不主动收集的信息

我们不要求您提供身份证件、护照、生物识别信息。请勿在客服邮件中发送此类信息或完整卡号。

3数据使用目的

我们基于以下目的处理您的个人信息:

3.1 服务提供:创建与管理账号;提供 eSIM 流量套餐与激活服务;处理抵用金与优惠券。

3.2 支付处理:通过 Stripe 处理购买交易;管理抵用金余额;处理退款与原路退回申请。

3.3 客户支持:回应您的咨询与请求;排查技术问题;处理退款与争议。

3.4 服务改进:监控服务运行状况;改进使用体验;开发与优化新功能。

3.5 法律义务:遵守适用法律法规;防范欺诈与滥用;保护我们与用户的合法权益。

处理依据(如适用法律要求):履行与您的合同、您的同意、我们的合法利益,以及遵守法律义务。

4数据共享

我们不会出售您的个人信息。仅在以下必要情形下共享:

4.1 支付处理服务商:Stripe Inc.(处理支付交易,按其自身隐私政策处理)。

4.2 网络运营商与 eSIM 供应商:为提供 eSIM 流量服务,我们与网络运营商/eSIM 供应商共享必要信息,包括 eSIM 标识(ICCID)、设备相关标识与流量使用数据。

4.3 基础设施服务商:云服务器、对象存储与邮件发送服务(用于发送收据与客服邮件)。

4.4 登录服务方:Apple(iOS 版)/ Google(Android 版)(用于身份验证)。

4.5 法律要求:在法律要求时,向执法机构、监管机构或法院披露。

说明:我们不使用第三方广告或行为分析服务,也不向其共享数据。

4.6跨境传输

为提供服务,您的个人信息可能被存储并处理于您所在国家/地区之外。我们将采取适当措施保障其安全,并依据适用法律采用适当的传输机制(例如接收地已获充分性认定,或采用标准合同条款等法律认可的机制)。

5数据存储与安全

5.1安全措施

我们实施适当的技术与组织措施保护您的个人信息:传输与静态数据加密、使用安全服务器与防火墙、最小必要权限的访问控制、定期安全评估与更新。

5.2支付安全

支付由 Stripe 按 PCI-DSS 标准处理,Stripe 为经认证的 PCI 服务提供商。我们不存储完整卡号。

5.3风险提示

尽管我们采取合理的安全措施,但没有任何互联网传输或电子存储方式是 100% 安全的,您需自行承担使用服务的风险。

6数据保留

我们仅在提供服务所需的期间或法律要求的期限内保留您的个人信息:

数据类型保留期限Data typeRetention period
账号信息(姓名、邮箱、登录标识)账号存续期间;账号删除后 30 天内删除或匿名化(法律要求保留的除外)Account data (name, email, sign-in identifier)For as long as the account exists; deleted or anonymised within 30 days of account deletion (except where retention is required by law)
订单与支付数据自最后一笔交易起 7 年,以满足法律与会计要求(或适用法律要求的更长期限)Order and payment data7 years from the last transaction, to satisfy legal and accounting requirements (or longer where required by applicable law)
流量使用数据自生成之日起 12 个月(用于退款核查与支付争议处理)Data usage records12 months from generation (for refund verification and payment disputes)
eSIM 配置信息(ICCID/激活码)套餐有效期结束后 12 个月eSIM configuration data (ICCID/activation code)12 months after the Data Plan's validity period ends
客服沟通记录自最后一次沟通起 24 个月Support communications24 months from the last communication
原路退回申请与退款记录自申请完成起 7 年(财务凭证)Refund-to-original-method requests and refund records7 years from completion of the request (financial records)

当我们不再有合法理由保留您的数据时,将通过安全方式删除或匿名化处理。

7您的权利

根据适用的数据保护法律,您享有以下权利:

7.1 访问权:请求访问我们持有的您的个人信息。

7.2 更正权:如信息不准确或不完整,可请求更正或更新。

7.3 删除权:可请求删除您的个人信息。账号按平台独立:在应用内删除账号仅删除您当前所用平台的账号,若您在另一平台也有账号,请在该平台另行删除。您可在应用内通过「账户 → 删除账号」自助完成;若无法使用应用内入口(如已卸载应用),可发送邮件至 [email protected](请注明"账号删除")请求删除,我们将在验证您的身份后处理。

7.4 撤回同意权:对基于同意的处理,您可随时撤回同意,不影响撤回前处理的合法性。

7.5 数据可携带权:可请求以结构化、常用格式获取您的个人信息副本。

7.6 投诉权:您有权向居住地/所在辖区的数据保护监管机构投诉;如您位于香港,可向香港个人资料私隐专员公署(PCPD)投诉。

7.7如何行使权利

请通过 [email protected] 联系我们。我们会在验证您的身份后尽快处理您的请求;如适用法律对处理期限另有规定,我们将在该期限内完成。如您位于香港,上述查阅与更正请求亦按《個人資料(私隱)條例》(第 486 章)处理。

7.8账号删除的后果

删除账号后(仅涉及您操作所在平台的账号):您将无法登录,也无法再通过应用查看或管理订单与套餐;已安装的 eSIM 可能仍可在原设备上使用至套餐有效期届满(该使用不依赖应用登录,实际以供应商规则为准),但未使用部分不另行退款;我们按第 6 条处理您的个人信息;法律要求保留的财务与交易记录将在保留期届满后删除。

8未成年人隐私

HaloRoam 不会故意收集未满 18 周岁人士的个人信息。本服务仅面向年满 18 周岁的用户。如果您未满 18 周岁,请勿使用本服务或向我们提供任何个人信息。若我们确认收集了未满 18 周岁人士的个人信息,将尽快删除。

9政策更新

我们可能不时更新本政策。如发生重大变更,我们将通过应用内通知或邮件提前告知,并更新上方的生效日期与版本号。继续使用本服务即表示您接受更新后的政策。

10联系方式

如对本政策或数据处理有任何问题、请求或投诉,请联系我们:

运营主体觸通科技有限公司(TAPCOM TECHNOLOGY LIMITED)
注册地 / 商业登记号香港特别行政区 / 70308547
客服邮箱[email protected]
数据保护联系人[email protected](个人信息相关请求请注明"隐私请求")
法务页地址https://haloroam.net(当前用于提供本政策与《服务条款》)
联系地址香港九龍觀塘道 398 號 Eastcore 11 樓 1140B 室

本隱私政策最後更新於 2026-09-21,自公布之日起生效。

Haloroam · 法律條款

隱私政策

版本 v2.0 | 最後更新 2026-09-21 | 自本政策公布之日起生效。

1簡介

1.1關於我們

感謝您使用 HaloRoam。本隱私政策說明 HaloRoam(以下簡稱「我司」「我們」或「我們的」)於您存取或使用 HaloRoam 應用程式及相關服務(「本服務」)時,如何蒐集、使用、分享與保護您的個人資料。營運主體:觸通科技有限公司(TAPCOM TECHNOLOGY LIMITED),註冊地香港特別行政區(商業登記號 70308547),聯絡信箱 [email protected]。

1.2適用範圍

本政策適用於透過 HaloRoam 行動應用程式(iOS 版與 Android 版)蒐集之全部個人資料;兩端帳戶相互獨立、不共用(iOS 版使用 Apple 登入,Android 版使用 Google 登入),兩端之帳戶與資料分別管理;網站尚未上線,上線後將另行補充網站之蒐集範圍(如 Cookie)。本政策不適用於第三方網站或服務(例如 Stripe 的付款頁面),請另行閱讀其隱私政策。

1.3同意

註冊帳戶、存取並使用本應用程式、訂購及/或使用本服務,即表示您已閱讀本政策並同意我們依本政策處理您的個人資料。若您不同意,請勿使用本服務。

2我們蒐集哪些資料

我們僅蒐集為提供與改善服務所必需之資料。本版本(1.0.0)不接入任何第三方分析、廣告或當機統計 SDK;如後續版本引入,我們將先更新本政策並於應用程式內告知(見第 9 條)。

2.1帳戶註冊資訊

透過第三方帳戶登入建立帳戶時(iOS 版:Apple 登入;Android 版:Google 登入),我們蒐集:姓名(如您首次授權時提供)與電子郵件地址,以及第三方登入回傳之使用者識別碼,用於建立與識別您的帳戶。

2.2訂單資料

訂購流量套餐時,我們處理:所選套餐類型、期間與幣別、訂單狀態、訂單編號、購買紀錄。

2.3付款資料

2.3.1 使用信用卡付款(iOS 另支援 Apple Pay、Android 另支援 Google Pay)時,付款由 Stripe 處理;若某平台要求透過應用程式商店結算,則該等付款由對應商店處理,我們僅接收訂單與結算結果資訊。Stripe 蒐集並處理您的卡片資訊(卡號、有效期限等)與帳單資訊,我們不直接儲存您的完整卡號。2.3.2 我們可能保留基本帳單資訊(如購買日期、持卡人姓名、卡號後四碼)用於客服支援、對帳與退款處理。2.3.3 使用抵用金付款時,我們處理您的抵用金餘額與交易紀錄(含退款與退回原付款方式之紀錄)。

2.4裝置與應用程式資訊(實際傳輸範圍)

為完成介面呼叫與本地化顯示,應用程式向我們的伺服器發起請求時會隨請求傳送下列資訊:應用程式包識別碼(X-Bundle-ID,用於區分用戶端,iOS/Android 各自包名)、應用程式版本號(X-App-Version,用於相容性與問題排查)、時區(X-Timezone,用於時間顯示與紀錄)、語言(X-Language,用於回傳對應語言文案)。此外:當您透過應用程式內「聯絡我們」寄送電子郵件時,郵件內文會由您主動帶上問題類型、所選訂單編號、App 版本、系統版本與裝置型號;該等資訊隨郵件由您傳送給我們用於排障。我們不蒐集:廣告識別碼(iOS 的 IDFA/Android 的廣告 ID)、跨應用程式追蹤資料、通訊錄、照片、精確位置;本版本亦不回報當機日誌或使用行為分析資料。

2.5服務使用資料

2.5.1 流量與網路使用資料:為提供服務、計量與計費,我們與電信業者/供應商記錄您的 eSIM 資料用量、啟用時間、套餐狀態。2.5.2 eSIM 設定資訊:為於您的裝置上安裝 eSIM,我們處理 ICCID、啟用碼(LPA)、QR 碼/安裝連結、APN 等設定資訊。2.5.3 客服溝通紀錄:您與我們的電子郵件往來內容。

2.6我們不主動蒐集的資訊

我們不要求您提供身分證件、護照、生物辨識資訊。請勿於客服郵件中傳送此類資訊或完整卡號。

3資料使用目的

我們基於下列目的處理您的個人資料:3.1 服務提供:建立與管理帳戶;提供 eSIM 流量套餐與啟用服務;處理抵用金與優惠券。3.2 付款處理:透過 Stripe 處理購買交易;管理抵用金餘額;處理退款與原路退回申請。3.3 客戶支援:回應您的諮詢與請求;排查技術問題;處理退款與爭議。3.4 服務改善:監控服務運作狀況;改善使用體驗;開發與優化新功能。3.5 法律義務:遵守適用法律法規;防範詐欺與濫用;保護我們與使用者之合法權益。處理依據(如適用法律要求):履行與您之契約、您的同意、我們的合法利益,以及遵守法律義務。

4資料分享

我們不會出售您的個人資料。僅於下列必要情形分享:4.1 付款處理服務商:Stripe Inc.(處理付款交易,依其自身隱私政策處理)。4.2 電信業者與 eSIM 供應商:為提供 eSIM 流量服務,我們與電信業者/eSIM 供應商分享必要資訊,包括 eSIM 識別碼(ICCID)、裝置相關識別碼與流量使用資料。4.3 基礎設施服務商:雲端伺服器、物件儲存與郵件寄送服務(用於寄送收據與客服郵件)。4.4 登入服務方:Apple(iOS 版)/Google(Android 版)(用於身分驗證)。4.5 法律要求:於法律要求時,向執法機關、監管機關或法院揭露。說明:我們不使用第三方廣告或行為分析服務,亦不向其分享資料。

4.6跨境傳輸

為提供服務,您的個人資料可能被儲存並處理於您所在國家/地區之外。我們將採取適當措施保障其安全,並依適用法律採用適當之傳輸機制(例如接收地已獲適足性認定,或採用標準契約條款等法律認可之機制)。

5資料儲存與安全

5.1安全措施

我們實施適當之技術與組織措施保護您的個人資料:傳輸與靜態資料加密、使用安全伺服器與防火牆、最小必要權限之存取控制、定期安全評估與更新。

5.2付款安全

付款由 Stripe 依 PCI-DSS 標準處理,Stripe 為經認證之 PCI 服務供應商。我們不儲存完整卡號。

5.3風險提示

儘管我們採取合理之安全措施,惟無任何網際網路傳輸或電子儲存方式為 100% 安全,您需自行承擔使用服務之風險。

6資料保留

我們僅於提供服務所需期間或法律要求期限內保留您的個人資料:帳戶資訊(姓名、電子郵件、登入識別碼)——帳戶存續期間;帳戶刪除後 30 天內刪除或匿名化(法律要求保留者除外);訂單與付款資料——自最後一筆交易起 7 年(或適用法律要求之更長期限);流量使用資料——自產生之日起 12 個月;eSIM 設定資訊(ICCID/啟用碼)——套餐有效期限結束後 12 個月;客服溝通紀錄——自最後一次溝通起 24 個月;原路退回申請與退款紀錄——自申請完成起 7 年(財務憑證)。當我們不再有合法理由保留您的資料時,將以安全方式刪除或匿名化處理。

7您的權利

依適用之資料保護法律,您享有下列權利:7.1 查閱權:請求查閱我們持有之您的個人資料。7.2 更正權:如資料不準確或不完整,可請求更正或更新。7.3 刪除權:可請求刪除您的個人資料。帳戶依平台獨立:於應用程式內刪除帳戶僅刪除您目前所用平台的帳戶,若您於另一平台亦有帳戶,請於該平台另行刪除。您可於應用程式內透過「帳戶 → 刪除帳戶」自助完成;若無法使用應用程式內入口(如已解除安裝應用程式),可寄送電子郵件至 [email protected](請註明「帳戶刪除」)請求刪除,我們將於驗證您的身分後處理。7.4 撤回同意權:對基於同意之處理,您可隨時撤回同意,不影響撤回前處理之合法性。7.5 資料可攜權:可請求以結構化、常用格式取得您的個人資料副本。7.6 申訴權:您有權向居住地/所在轄區之資料保護監管機關申訴;如您位於香港,可向香港個人資料私隱專員公署(PCPD)申訴。

7.7如何行使權利

請透過 [email protected] 聯絡我們。我們會於驗證您的身分後儘快處理您的請求;如適用法律對處理期限另有規定,我們將於該期限內完成。如您位於香港,上述查閱與更正請求亦依《個人資料(私隱)條例》(第 486 章)處理。

7.8帳戶刪除之效果

刪除帳戶後(僅涉及您操作所在平台之帳戶):您將無法登入,亦無法再透過應用程式查看或管理訂單與套餐;已安裝的 eSIM 可能仍可在原裝置上使用至套餐有效期限屆滿(該使用不依賴應用程式登入,實際以供應商規則為準),但未使用部分不另行退款;我們依第 6 條處理您的個人資料;法律要求保留之財務與交易紀錄將於保留期限屆滿後刪除。

8未成年人隱私

HaloRoam 不會故意蒐集未滿 18 歲人士之個人資料。本服務僅面向年滿 18 歲之使用者。如您未滿 18 歲,請勿使用本服務或向我們提供任何個人資料。若我們確認蒐集了未滿 18 歲人士之個人資料,將儘快刪除。

9政策更新

我們可能不時更新本政策。如發生重大變更,我們將透過應用程式內通知或電子郵件提前告知,並更新上方之生效日期與版本號。繼續使用本服務即表示您接受更新後之政策。

10聯絡方式

如對本政策或資料處理有任何問題、請求或申訴,請聯絡我們:觸通科技有限公司(TAPCOM TECHNOLOGY LIMITED),香港特別行政區,商業登記號 70308547,客服信箱 [email protected](個人資料相關請求請註明「隱私請求」),法務頁網址 https://haloroam.net,聯絡地址 香港九龍觀塘道 398 號 Eastcore 11 樓 1140B 室。