Skip to content
AccessMyPhone
Legal

Privacy Policy

Last updated 4 October 2026

Here is what happens to your information when you use this site. It covers what we take, why we take it, who else sees it, how long it stays, and what you can make us do about it. Using AccessMyPhone means accepting what follows.

What we hold

  • Things you type in: the device identifier you are checking — an IMEI, a serial number or a MAC address — and, once you order something, your name and your email address.
  • Anything to do with paying: Stripe takes the card payment for us. A full card number is never kept here. What stays on our side is harmless: the card brand, its last four digits, and the Stripe references we need in order to manage your order.
  • Things your browser tells us: your IP address, what device and browser you are on, roughly where you are (worked out from that IP), which pages you opened and what you did on them. Cookies and analytics tools gather some of this — see below, and see our Cookie Policy.

What it is for

  • Running the checks and unlock services, and getting your order done;
  • Taking payment, and issuing receipts, refunds or credit notes;
  • Emailing you about your order and about the service;
  • Stopping fraud and misuse, which includes confirming who owns a device;
  • Working out how the site and the checkout actually perform, so we can improve them — analytics and session replay, and only if you have said yes;
  • Meeting the legal and accounting duties we are under.

The lawful basis for each of those (UK and EU GDPR)

Some processing is necessary to carry out our contract with you. Some rests on our legitimate interests, which are running and improving the service and stopping fraud. Some is required to comply with a legal obligation. And the non-essential analytics cookies rest on nothing but your consent.

Analytics and session replay

If you agree to it, PostHog (hosted inside the EU) and Google Analytics measure how the site gets used, session replay included, which is how we find the parts of the checkout that are failing people. Replays blank out whatever is typed into a form field. Your card details are keyed into our payment provider's own secure frame, so they never reach a recording at all. The cookie banner lets you turn this down, at any time.

Our ChatGPT and Claude plugin

AccessMyPhone can be added to AI assistants such as ChatGPT and Claude. When the assistant asks the plugin about a phone, that request comes to us, not your conversation. We never see what you typed to the assistant, only the details it passes to the plugin.

  • What we receive and keep: the IMEI or serial number being looked up, a phone model if one was given for comparison, the answer we sent back, which assistant made the request, your language setting, and a rough location (country, region, city and timezone) where the assistant supplies one. Map coordinates are discarded on arrival.
  • What we do not keep: your name, email address, account details or chat history. Your IP address and the anonymous user reference the assistant attaches are stored only as one-way hashes, which cannot be turned back into the original values.
  • Why: to answer the lookup, to protect the service from abuse, and to understand which phones and questions people bring to us. This rests on our legitimate interest in running and improving the service.
  • How long: these lookup records are kept indefinitely, because they carry nothing that identifies you. They are used in aggregate and are never sold or shared for marketing.
  • Your controls: you can remove the plugin from your assistant at any time, after which no further requests reach us. If you believe a record relates to you, email us and we will look into it.

The assistant's own provider (for example OpenAI or Anthropic) handles your conversation under its own privacy policy.

Who else handles it

Only suppliers processing it on our behalf: Stripe for payments, PostHog and Google for analytics, our email provider, the companies hosting and running our infrastructure, and the unlock-fulfilment partners whose involvement your order requires. We will disclose information where the law requires it. We do not sell your personal data.

Data leaving your country

A handful of those suppliers may process data elsewhere. Where they do, the transfer is covered by appropriate safeguards, Standard Contractual Clauses among them.

How long any of it stays

Personal data stays for as long as delivering the service requires, and for as long as the law, the tax rules and the accounting rules require after that. Records of orders and transactions usually have to be kept for several years on that basis.

What you can ask for

Depending on where you are, you can ask to see your data, to have it corrected, to have it deleted, to have our processing of it restricted, to object to that processing altogether, to receive it in a portable form, and to take back a consent you gave earlier. You can also complain to your data protection regulator, which in the UK is the ICO. Email the address below to exercise any of these.

Under-16s

Nothing here is aimed at children, and the service is not meant for anyone under 16.

Revisions

This policy may change. The date at the top of the page tells you which version you are reading.

Asking us about your data

Write to support@accessmyphone.com.