This Privacy Policy explains how GSMXCODE LLC collects, uses, discloses, stores, and protects personal information when you visit GSMXCODE websites, create an account, purchase a Service, use our APIs, SaaS products, diagnostic or device-information services, communicate with support, or otherwise interact with GSMXCODE.
We aim to collect information that is reasonably necessary for providing our Services, operating and securing the Platform, processing transactions, preventing fraud, meeting legal obligations, and supporting our customers.
This Privacy Policy describes how GSMXCODE LLC ("GSMXCODE," "we," "us," or "our") processes personal information in connection with the GSMXCODE website, customer accounts, software, SaaS products, diagnostic and repair tools, device information services, APIs, subscriptions, customer support, and related Services.
GSMXCODE LLC is a limited liability company organized under the laws of the State of New Mexico, United States.
The rights and obligations applicable to a particular person depend on their location, the nature of the processing, and the laws that apply to that person and processing activity.
Where applicable, GSMXCODE seeks to provide the notices, rights, choices, and protections required by relevant privacy and data-protection laws.
Depending on how you use the Platform, we may collect:
When you purchase a GSMXCODE Service, we may collect or generate information such as:
Payment information is generally handled by the applicable payment provider.
Depending on the payment method, payment providers may process card, bank, billing, fraud, device, and authentication information necessary to authorize and manage the transaction. GSMXCODE generally receives only the transaction and payment-related information returned by the applicable provider.
GSMXCODE may receive limited payment-related information such as payment status, provider transaction IDs, billing country, payment method type, amounts, and other information returned by the payment provider.
Depending on the Service, customers may submit information necessary to provide an API, SaaS, software, diagnostic, device- information, repair, or other supported Service.
This may include technical parameters, device or service identifiers, configuration information, API inputs, account information, eligibility information, or other data submitted through the Platform.
For device-related Services, GSMXCODE may process device identifiers, model information, warranty or eligibility information, network-status information, diagnostic information, and other technical information necessary to provide the requested Service.
Customers are responsible for ensuring that they have the authority and lawful basis required to submit device, account, identifier, or technical information to GSMXCODE.
We may collect information contained in support requests, emails, chat messages, attachments, screenshots, troubleshooting information, and other communications with GSMXCODE.
We may automatically collect technical and security information, including where applicable:
| Category | Examples |
|---|---|
| Network | IP address, approximate network information |
| Device | Browser, operating system, device type, and technical or device identifiers where available and relevant to the Service |
| Usage | Pages viewed, features used, API request activity, timestamps, access events |
| Security | Authentication events, failed logins, security events, abuse indicators |
| Diagnostics | Error messages, application logs, performance information |
We may receive limited information from payment providers, service providers, fraud-prevention systems, identity-verification providers, technical or service partners, or other sources where reasonably necessary for providing Services, security, fraud prevention, or compliance.
We collect information directly when you:
Certain technical, security, performance, and usage information may be collected automatically when you use the Platform.
Third-party service providers may independently collect information when you interact with their systems, such as payment checkout, authentication, security, email, analytics, or infrastructure services.
GSMXCODE uses information for legitimate business, contractual, security, operational, and legal purposes.
| Purpose | Examples |
|---|---|
| Account Management | Registration, authentication, account maintenance, security |
| Service Delivery | SaaS access, API access, software delivery, subscriptions, diagnostic, device-information, repair, and technical Services |
| API Operations | Authenticate requests, measure usage, apply quotas, troubleshoot, secure APIs |
| Payments | Authorize transactions, reconcile payments, issue refunds |
| Fraud Prevention | Detect unauthorized transactions, account abuse, suspicious activity |
| Customer Support | Resolve account, billing, technical, and Service issues |
| Security | Protect infrastructure, accounts, APIs, and customer information |
| Legal & Compliance | Meet legal, tax, regulatory, contractual, and dispute obligations |
| Improvement | Improve performance, reliability, functionality, and customer experience |
| Communications | Transactional messages, support, account notices, Service updates |
Where applicable law requires a legal basis for processing, GSMXCODE may rely on one or more of the following grounds:
Processing necessary to provide a requested Service, fulfill an order, administer a subscription, or maintain an account.
Processing necessary to comply with applicable legal, tax, accounting, regulatory, or judicial obligations.
Processing reasonably necessary for security, fraud prevention, service administration, abuse prevention, and business operations, subject to applicable law.
Processing based on consent where consent is legally required or specifically requested.
Where a legal basis is required, the applicable basis depends on the particular processing activity, jurisdiction, and circumstances.
GSMXCODE may use independent payment processors, acquiring institutions, banks, card networks, and payment platforms to process customer transactions. GSMXCODE accepts payments for its own products and Services and does not operate a general payment or money-transfer service.
Payment providers may independently collect and process payment and identity information according to their own terms and privacy policies.
Depending on the payment provider and payment method, GSMXCODE may receive:
We may retain transaction records for accounting, reconciliation, customer support, fraud prevention, disputes, chargebacks, legal compliance, and contractual obligations.
When customers use GSMXCODE APIs, we may process technical information necessary to authenticate, operate, secure, meter, and troubleshoot the API. Where an API supports device or diagnostic Services, submitted technical inputs may include supported device or service identifiers and related information required for the requested operation.
Depending on the API, this may include:
Some API, SaaS, diagnostic, device-information, or other Services may require customers to provide technical inputs or other data necessary for the requested operation.
Customers are responsible for ensuring that they have the legal right and necessary authorization to submit such information to GSMXCODE.
Customers should not submit passwords, payment-card credentials, private authentication secrets, or other sensitive information through an API unless the particular Service expressly requires it and provides an approved secure mechanism.
API and security logs may be used to detect abuse, unauthorized access, excessive usage, attempted attacks, fraud, and violations of documented technical restrictions.
GSMXCODE does not sell personal information as a commercial data product. We may disclose personal information to service providers and other recipients where reasonably necessary for the purposes described in this Privacy Policy.
| Recipient Category | Typical Purpose |
|---|---|
| Payment Providers | Payment processing, refunds, risk and fraud prevention |
| Cloud & Hosting Providers | Hosting, databases, backups, application infrastructure |
| Security Providers | Fraud prevention, abuse detection, network and application security |
| Email & Communications | Transactional notices, support, account communications |
| Technical Providers | APIs, infrastructure, monitoring, diagnostics, and supporting systems |
| Professional Advisors | Legal, accounting, tax, compliance, and professional advice |
We may disclose information where reasonably necessary to comply with law, legal process, governmental requests, court orders, regulatory requirements, or to establish, exercise, or defend legal rights.
Information may be disclosed to payment providers, security providers, law enforcement, or other appropriate recipients when necessary to investigate fraud, unauthorized activity, abuse, security incidents, or threats to users or the Platform, subject to applicable law.
Where reasonably necessary to provide an expressly supported device, diagnostic, eligibility, or authorized technical Service, GSMXCODE may disclose relevant technical or device information to applicable service providers, technical partners, carriers, manufacturers, suppliers, or other recipients involved in that Service, subject to applicable law and the terms governing the Service.
Personal information may be transferred as part of a merger, acquisition, reorganization, financing, sale of assets, or similar business transaction, subject to applicable law and appropriate safeguards.
GSMXCODE may use cookies, local storage, session identifiers, and similar technologies that are necessary to:
Where used, GSMXCODE may use analytics or performance technologies to understand website performance, diagnose technical issues, measure usage, and improve the customer experience.
Security and fraud-prevention technologies may use technical information to detect suspicious activity, abuse, automated attacks, or unauthorized access.
Most browsers allow users to block, delete, or restrict cookies. Disabling essential technologies may cause portions of the Platform to stop functioning properly.
GSMXCODE uses reasonable technical and organizational measures designed to protect personal information against unauthorized access, alteration, disclosure, loss, or destruction.
No electronic transmission or storage system can guarantee absolute security. We therefore cannot guarantee that information will never be compromised by circumstances beyond our reasonable control.
Where required by applicable law, GSMXCODE will provide notifications or take other actions relating to a security incident or personal-data breach.
GSMXCODE uses service providers and infrastructure that may operate in countries different from the country in which a customer resides.
As a result, personal information may be processed, accessed, or stored internationally.
Where applicable law requires safeguards for international data transfers, GSMXCODE seeks to use appropriate mechanisms recognized under that law, such as contractual safeguards or other legally recognized transfer mechanisms.
Payment processors, cloud providers, security providers, communication providers, and other service providers may process information under their own privacy policies and contractual arrangements.
The particular providers used by GSMXCODE may change as our infrastructure and business requirements evolve.
GSMXCODE retains personal information only for as long as reasonably necessary for the purposes described in this Privacy Policy or as required or permitted by applicable law.
| Data Category | Retention Principle |
|---|---|
| Account Data | Generally retained while the account is active and for a reasonable period afterward where necessary for legal, security, or operational purposes. |
| Transaction Data | Retained as reasonably necessary for accounting, tax, disputes, fraud prevention, contractual obligations, and applicable law. |
| API Usage Logs | Retained for service operation, metering, security, troubleshooting, dispute management, and legitimate operational requirements. |
| Security Logs | Retained for periods appropriate to security, fraud prevention, abuse investigation, and legal requirements. |
| Support Records | Retained as reasonably necessary for customer support, quality assurance, disputes, and legal purposes. |
When personal information is no longer required, GSMXCODE may delete, anonymize, or securely dispose of it, subject to legal, contractual, security, accounting, tax, backup, and dispute-retention requirements.
Depending on your jurisdiction and applicable law, you may have rights relating to personal information processed by GSMXCODE.
| Right | Description |
|---|---|
| Access / Know | Request information about personal data we process and, where required, access to that data. |
| Correction | Request correction of inaccurate or incomplete personal information. |
| Deletion | Request deletion where provided by applicable law. |
| Restriction | Request restriction of certain processing where applicable. |
| Objection | Object to certain processing where applicable law provides such a right. |
| Portability | Request certain information in a portable format where required by applicable law. |
| Withdraw Consent | Withdraw consent where processing is based on consent and where withdrawal is legally available. |
| Opt Out of Sale/Sharing | Where applicable law recognizes this right, request that GSMXCODE not sell or share personal information as defined by that law. |
| Limit Sensitive Information | Where applicable law provides this right, request limits on certain uses or disclosures of sensitive personal information. |
Privacy requests may be submitted by email:
We may need to verify your identity before processing certain requests to protect against unauthorized access to personal information.
Where applicable law permits requests through an authorized agent, GSMXCODE may require documentation reasonably necessary to verify the agent's authority and the identity of the individual making the request.
GSMXCODE will respond within the period required by applicable law, subject to lawful extensions, verification requirements, and applicable exceptions.
GSMXCODE will not unlawfully discriminate against individuals for exercising privacy rights protected by applicable law.
GSMXCODE's Services are intended primarily for adults, businesses, and professional users.
We do not knowingly direct our Services to children where doing so would violate applicable law.
If you believe that a child has provided personal information to GSMXCODE in circumstances where the collection is not permitted, please contact:
[email protected]GSMXCODE and its payment or security providers may use automated systems to identify transactions or account activity that may present fraud, security, abuse, or compliance risks.
These systems may evaluate signals such as transaction information, account history, technical information, device or network indicators, usage patterns, and other fraud-related signals where relevant to security or transaction risk.
Risk controls may result in additional verification, delayed processing, restricted access, declined transactions, temporary account restrictions, or other protective measures.
Where required by applicable law, GSMXCODE will provide information regarding applicable automated decision-making rights and available review or challenge mechanisms.
GSMXCODE may update this Privacy Policy to reflect changes in our Services, technologies, infrastructure, business operations, legal requirements, or privacy practices.
The current effective date is displayed at the end of this policy.
Where required or appropriate, GSMXCODE may notify users of material changes through the Platform, email, account notifications, or another reasonable communication method.
Continued use of the Platform after the effective date of an updated Privacy Policy is subject to the revised policy to the extent permitted by law.
GSMXCODE LLC
Privacy:
[email protected]
General Support:
[email protected]
Live Chat:
Available through the GSMXCODE Platform
Effective Date: October 24, 2025