Privacy Policy
1. The short version
We sell privacy. The business is built so that we hold as close to nothing about you as we can manage:
- No accounts. You never create a login with us.
- No analytics, no ads, no tracking cookies. The site sets no third-party trackers of any kind.
- Setup runs in your browser. Your phone connects to your own computer over USB; we never see the device or its contents.
- Your credentials are generated on your machine. PINs and profile passwords are created in your browser during setup and shown once on the handoff sheet. They are never transmitted to us and we cannot recover them.
2. What we do collect
Order communications. If you contact us by email or Signal to place an order, we hold that correspondence and whatever details you chose to share (typically a delivery or meeting arrangement and the model you want). We don’t ask for more than the order needs.
Setup tokens. When a setup code is issued and redeemed, our server records the token’s state (issued, redeemed, which device model, timestamps) so codes are single-use and interrupted setups can resume. Tokens are opaque identifiers — they are not linked to your name unless your order correspondence links them.
Connectivity bundle assignment. We record which eSIM / VPN / messaging licence bundle was dispensed to which token, so each bundle is handed out exactly once. After handoff, those services are operated by their providers under their own accounts and policies — we don’t see your VPN traffic, messages, or data usage.
Basic service logs. Our hosting provider (Cloudflare) processes IP addresses and request metadata to serve the site and defend it against abuse, with short retention. We do not build profiles from these.
Payment. Cash sales leave no payment record with us beyond the order itself. If online card payment is offered, it is processed by the payment provider; we receive confirmation of payment, not your card details.
3. What we never collect
- The contents, identifiers, or usage of your phone after handoff.
- Your generated device credentials (PINs, profile passwords, duress codes).
- Browsing, VPN, or messaging activity — these terminate with the respective providers, not with us.
4. How we use and share information
We use the information above solely to fulfil orders, operate the Portal, meet legal obligations, and defend the service against abuse. We do not sell or rent personal information. We share it only with:
- service providers strictly as needed to operate (hosting, payment processing if you pay online);
- authorities where disclosure is required by Australian law — and only to the extent required.
Because we hold so little, there is very little to hand over: no message contents, no device data, no credentials, no traffic logs.
5. Retention
- Order correspondence: kept while needed to support your purchase and warranty, then deleted.
- Token and inventory records: kept as operational records of what was sold and dispensed; they contain no personal identifiers of their own.
- Records we must keep under Australian tax law are retained for the statutory period.
6. Security
The Portal is designed fail-closed: software is verified against pinned cryptographic keys in your browser before anything is installed, secrets live in the server-side secret store, and assets are integrity-addressed. Details of the security design are summarised on the site and in our published security notes.
7. Your rights
You may ask us what we hold about you, ask for it to be corrected, or ask for it to be deleted (subject to records we must keep by law). Contact ausprivacygroup@protonmail.com or Signal apg.98.
If you are unsatisfied with our response to a privacy complaint, you can complain to the Office of the Australian Information Commissioner (oaic.gov.au).
8. Changes
If we change this policy we will publish the new version here with a new effective date. We will not weaken the “what we never collect” commitments for existing customers without saying so plainly.