Privacy Policy
Last Updated: 24 September 2025
This Privacy Policy explains how DESKIMOPLAY LTD (“we”, “us”, “our”), Company No. 16657491, registered at 167 – 169 Great Portland Street, 5th Floor, London, England, W1W 5PF, collects, uses, shares, and protects your personal data when you use thefastbee.com (the “Website”) and our eSIM services.
We comply with the UK General Data Protection Regulation (UK GDPR), the Data Protection Act 2018, and, where applicable, the EU GDPR.
1. Data We Collect
We may collect and process the following categories of personal data:
Account Information – your name, email address, phone number, password, and country of residence.
Transaction and Wallet Data – purchases, wallet/Points balance, top-up records, invoices, and payment confirmations.
Payment Information – payments are processed by third-party providers (e.g., Stripe, PayPal) in compliance with PSD2 and Strong Customer Authentication (SCA) requirements. We do not store your full payment card details.
eSIM Activation Data – eSIM profile identifiers (ICCID, EID), assigned phone number (if applicable), activation timestamps, and operator assignment details needed to deliver service.
Technical Data – device model, operating system, IP address, browser type, and login logs.
Support Data – communications with our support team, including emails, chat transcripts, and troubleshooting records.
2. How We Use Your Information
We use your personal data for the following purposes:
To create and manage your account and dashboard.
To process orders, wallet top-ups, and billing.
To deliver and activate your eSIM service.
To share activation data with network operators to enable connectivity.
To provide customer and technical support.
To send essential service communications (purchase confirmations, expiry alerts).
To prevent fraud, misuse, and security risks.
To comply with legal, tax, and regulatory obligations.
With your consent, to send marketing communications.
3. Legal Basis for Processing
We rely on the following legal grounds under GDPR/UK GDPR:
Contract – providing and managing your eSIM service.
Legal Obligation – accounting, tax reporting, fraud prevention.
Legitimate Interests – service improvement, abuse prevention, and network security.
Consent – marketing communications and analytics cookies.
4. How We Share Your Information
We may share data with:
Mobile Network Operators and eSIM Aggregators – to provision and maintain your eSIM profile.
Payment Processors – to handle secure transactions under PSD2/SCA.
Service Providers – hosting, analytics, and support tools under GDPR-compliant agreements.
Regulators and Law Enforcement – where legally required.
We never sell your personal data.
5. Your Data Protection Rights
You have the right to:
Access, correct, or delete your personal data.
Restrict or object to our processing.
Request data portability.
Withdraw consent at any time (for marketing/cookies).
File a complaint with the Information Commissioner’s Office (ICO) in the UK or your local EU data protection authority.
You can exercise these rights by contacting us at [email protected].
6. Security and Data Retention
Security: We use industry-standard technical and organizational measures to protect your personal data. However, no method of transmission over the Internet is 100% secure, and we cannot guarantee its absolute security. You are responsible for keeping your login credentials confidential.
Data Retention: We retain your data for the following periods:
- Account Data: For as long as your account is active.
- Financial Records: As long as required by applicable financial and tax laws.
Marketing Data: Until you withdraw your consent.
7. International Data Transfers
Some of our providers may process your information outside the UK or EEA.
Where transfers occur, we ensure adequate protection using:
UK International Data Transfer Agreements (IDTAs).
EU Standard Contractual Clauses (SCCs).
Adequacy decisions (where available).
Encryption and technical safeguards.
8. Children's Privacy
Our services are not intended for individuals under the age of 18. We do not knowingly collect personal data from children. If we become aware that a child has provided us with data without parental consent, we will take steps to delete it immediately. Parents can contact us at [email protected]
9. Data Breach Procedures
In the event of a data breach that compromises your personal data, we will:
- Assess the scope and impact of the breach within 72 hours of discovery.
- Notify affected users within 72 hours if the breach is likely to result in a high risk to their rights and freedoms.
- Report the breach to the relevant supervisory authority as required by law.
- Provide clear information about the incident and the steps we are taking to mitigate it.
10. Changes to This Privacy Policy
We may update this policy from time to time. We will notify you of any significant changes by email or through a notice on our website. Your continued use of our services after such changes constitutes your acceptance of the new policy.
11. Contact Us
For privacy inquiries or to exercise your rights, contact:
DESKIMOPLAY LTD
Company No. 16657491
167 – 169 Great Portland Street, 5th Floor
London, England, W1W 5PF
[email protected]