Privacy Policy

Last updated: 23 August 2026 · Effective: 23 August 2026

1. Who we are

euRoam is a regional data-only eSIM for travel in Europe, a service of Rapid Roam ("Rapid Roam", "we", "us"), a New Zealand business (NZBN 9429048418478). This policy explains what personal information we collect when you use euroam.co, buy a plan, or install and use the eSIM, and how we handle it.

Most of our customers aren't based in Europe - they're travellers from New Zealand, Australia, the UK, the US, and elsewhere buying an eSIM ahead of a trip to Europe. This policy is written with that in mind, alongside the privacy protections that may separately apply if you're located in the EU, UK, or another jurisdiction with its own data protection law - see sections 13 and 17 below.

2. Information we collect

Depending on how you use euRoam, we may collect:

  • Contact and order details: your email address, and billing details you enter at checkout to complete payment.
  • Transaction information: which plan you bought, the order number, and payment status. Full card numbers are handled directly by Stripe - we never see or store them (see section 5).
  • eSIM provisioning and usage data: information needed to issue your eSIM and show your remaining data - see section 4 for exactly what is and isn't shared with our eSIM provider to do this.
  • Support and live chat communications: anything you send us by email or through the live chat widget on our site (see section 7), including any details you choose to share in that conversation.
  • Technical and security information: information such as IP address, browser and device details, and request information, collected by our website infrastructure provider as part of serving the site securely - see section 8.
  • Analytics information (only once you've consented to it): how you use our site - see section 9.

3. How we use your information

We use the information above to: process your purchase and payment; provision and activate your eSIM; send your order confirmation and eSIM installation details; provide customer support and respond to enquiries; internally track and troubleshoot order fulfilment; maintain the security and reliability of our website and systems; prevent fraud and abuse; understand how our site is used, where you've consented to analytics; and meet our legal, tax, and accounting obligations. We don't sell personal information.

4. Our eSIM provider

We work with a third-party eSIM provider to issue and provision the eSIM profile you install on your device. We do not pass your name, email address, billing information, or other personal contact details to our eSIM provider. The only information sent to them is the technical information needed to generate and route your eSIM - such as which plan/data package to issue and an internal order reference - not your identity.

5. Payments (Stripe)

Payments are processed by Stripe, a third-party payment processor. When you check out, your payment and billing details are handled directly by Stripe on its own checkout page - we don't store your full card number. Stripe passes us your email address and order confirmation once payment succeeds, which we use as described in section 3. Stripe processes your payment information under its own privacy policy: stripe.com/privacy.

6. Order confirmation email (Resend)

We use Resend, a transactional email provider, to send your order confirmation and eSIM installation email. To do this, Resend processes your email address and the contents of that email (your plan details and eSIM link) purely in order to deliver it to you - it isn't used for marketing.

7. Live chat and customer support (Crisp)

We use Crisp to power the live chat widget on our site. If you use it, whatever you type - and any email address or other detail you choose to include - is processed by Crisp in order to deliver that message to us and let us reply. We don't send Crisp any information beyond what you enter into the chat yourself.

8. Website infrastructure and security (Cloudflare)

Our website is served through Cloudflare, which provides content delivery, security, and hosting infrastructure. As part of that, Cloudflare processes technical information about visits to our site - such as IP address, browser and device information, and request/security-related data - in order to deliver pages quickly and protect the site from abuse.

9. Analytics (Google Analytics)

We use Google Analytics to understand how visitors use our site, so we can improve it. Google Analytics only runs, and only sets analytics cookies, once you've clicked "Accept" on our cookie banner (see section 12) - if you decline or don't respond, it stays switched off for your visit. Where it is running, it collects information such as pages viewed, how you got to the site, and general device/location information (typically at a country or city level, not precise location) - see Google's own privacy documentation for full detail: policies.google.com/privacy.

10. Reviews (Trustpilot)

We use Trustpilot to collect and display customer reviews. Our homepage embeds Trustpilot's review widget, which loads for every visitor to show our review score. Separately, a Trustpilot tag registers basic visit information, which is only activated once you've consented to analytics (see section 12) and is used for our own review-invitation process. We don't send Trustpilot your name, email address, or other order details through either of these - if we later invite you to leave a review by email, that's a separate, explicit step using only your email address for that purpose.

11. Marketing communications

We don't currently operate a newsletter or send promotional marketing emails. The only emails you'll receive from us are transactional - your order confirmation and eSIM installation details. If that changes in future, we'll only add you to marketing communications with your consent, and any such email will include a clear way to unsubscribe.

12. Cookies and your choices

euroam.co doesn't set any cookies of its own. Our live chat widget (Crisp) sets cookies that are strictly necessary to keep your conversation open as you browse the site, and Cloudflare, our infrastructure provider, may use cookies or similar technologies for security purposes (for example, to help distinguish genuine visitors from bots) - neither of these needs your consent, as they're necessary for the site to function.

Google Analytics (section 9) is different: it's not necessary for the site to work, so we ask for your consent first. When you first visit, a cookie banner asks you to Accept or Decline analytics cookies. If you accept, Google Analytics is switched on for your visit and remembers your choice for next time. If you decline (or close the banner without choosing), Google Analytics stays off and no analytics cookies are set. You can change your mind at any time using the "Cookie preferences" link in the footer of every page, which reopens the banner and lets you update your choice.

13. Legal basis for processing (where GDPR applies)

Where European or UK data protection law applies to our processing of your information, we rely on the following legal bases, depending on the activity: performance of a contract (processing needed to sell you a plan and provision your eSIM); legal obligation (record-keeping for tax, accounting, and fraud-prevention purposes); legitimate interests (keeping our website and systems secure); and consent (Google Analytics cookies, and any future marketing communications, which we only ever switch on with your explicit agreement). We don't rely on consent as the basis for processing that's necessary to fulfil your order.

14. International data transfers

We're based in New Zealand, and the service providers described above - including our eSIM provider, Stripe, Resend, Crisp, Cloudflare, Google Analytics, and Trustpilot - operate internationally. This means your personal information may be processed in countries other than the one you're in, including outside New Zealand and outside the European Economic Area. Where applicable, these providers maintain their own contractual or other safeguards for handling data across borders; we'd encourage you to review their respective privacy documentation (linked in the relevant sections above) for the specifics of how each of them handles international transfers.

15. Data retention

We keep personal information only for as long as reasonably necessary for the purposes it was collected for - including order and payment records for as long as required under New Zealand tax and accounting rules, and support and chat correspondence for as long as needed to resolve and later reference an issue. Where we no longer have a legitimate business, legal, or accounting reason to keep it, we delete or anonymise it.

16. Data security

We take reasonable technical and organisational steps to protect the personal information we hold, including relying on reputable third-party providers (Stripe, Resend, Crisp, Cloudflare, and our eSIM provider) who maintain their own security measures for the information they process on our behalf. No method of storing or transmitting information online is completely secure, and we can't guarantee absolute security, but we work to keep the risk as low as reasonably possible.

17. Your privacy rights

Your rights depend on where you're located and the law that applies to you.

Under New Zealand's Privacy Act 2020 (which governs how we handle personal information as a New Zealand business), you have the right to ask what personal information we hold about you and to ask us to correct it. To do either, email support@euroam.co. If you're not satisfied with our response, you can complain to New Zealand's Office of the Privacy Commissioner (privacy.org.nz).

If GDPR or UK GDPR applies to you based on your location and circumstances, you may also have the right to access, correct, or delete your information, restrict or object to our processing of it, receive a copy in a portable format, withdraw consent where processing is based on consent (see section 12 for withdrawing analytics consent specifically), and lodge a complaint with your own country's data protection authority. Email support@euroam.co to exercise any of these rights, and we'll confirm which apply to your situation.

18. Children

euRoam is not directed at children. You must be 18 or older to purchase or use a euRoam plan. If a plan is intended for someone under 18, it must be purchased by a parent or another adult on their behalf.

19. Changes to this policy

We'll update this page if how we handle personal information changes, and update the date at the top.

20. Contact

Questions about this policy or your personal information: support@euroam.co.

One less thing to pack

Get your eSIM sorted before you go - plans start at €14.99.

See the plans