Updated 2 September 2026.
There is one cookie, and you only get it after you sign in. That is the whole story. No banner asks you for consent because there is nothing here that needs it.
| Name | What it is | Lifetime | Set when |
|---|---|---|---|
esim_session |
Your sign-in session. It holds a random token and nothing else — no email, no name,
nothing readable. Flags: HttpOnly (scripts on the page cannot read it),
Secure (HTTPS only), SameSite=Lax (not sent from other
sites). |
30 days, or until you log out. Logging out invalidates the token on the server as well, not just in your browser. | Only after you enter a sign-in code. Browsing and buying as a guest sets no cookie at all. |
The shop remembers your language and currency so it does not ask twice. These live in your browser's local storage, never leave your device, and are not cookies:
esim_lang — the language you picked;esim_cur — the currency you picked;dash_lang — the same preference, used by an older page.Clearing your site data removes them and nothing breaks.
One clarification, because it would otherwise look like a contradiction: we do use an error reporting service (Sentry, see Privacy & data). It runs on our server only. Nothing of it is loaded in your browser, it sets no cookie, and it never sees what you do on the page — only that something broke on our side.
Spanish law (art. 22.2 LSSI-CE, which implements the ePrivacy directive) requires consent for storage that is not strictly necessary for a service the user asked for. A session cookie that exists only because you asked to sign in, and a language preference you set yourself, are exactly the exceptions. A banner here would be theatre — it would ask you to approve something that does not happen.
When you pay, you leave our site for Stripe (or, on KRAHS eSIM, for our own BTCPay Server). Those pages set their own cookies under their own rules — Stripe uses them for fraud prevention on the payment itself. We do not control them and they are not set on our domain. Stripe's cookie policy is on stripe.com.
You can block cookies in your browser. Everything except signing in keeps working: you can browse, pick a plan, pay and receive an eSIM by email as a guest. Only the account page needs the cookie, because that is what proves it is you.
Actualizado el 2 de septiembre de 2026.
Hay una cookie, y solo la recibes después de iniciar sesión. Eso es todo. No hay banner pidiéndote consentimiento porque aquí no hay nada que lo necesite.
| Nombre | Qué es | Duración | Cuándo se pone |
|---|---|---|---|
esim_session |
Tu sesión iniciada. Contiene un testigo aleatorio y nada más: ni correo, ni nombre,
nada legible. Marcas: HttpOnly (los scripts de la página no pueden
leerla), Secure (solo HTTPS), SameSite=Lax (no se envía
desde otros sitios). |
30 días, o hasta que cierres sesión. Al salir, el testigo se invalida también en el servidor, no solo en tu navegador. | Solo después de introducir un código de acceso. Navegar y comprar como invitado no pone ninguna cookie. |
La tienda recuerda tu idioma y tu moneda para no preguntarte dos veces. Viven en el almacenamiento local de tu navegador, no salen de tu dispositivo y no son cookies:
esim_lang — el idioma que elegiste;esim_cur — la moneda que elegiste;dash_lang — la misma preferencia, usada por una página más antigua.Si borras los datos del sitio desaparecen y no se rompe nada.
Una aclaración, porque si no parecería una contradicción: sí usamos un servicio de informes de error (Sentry, ver Privacidad y datos). Funciona solo en nuestro servidor. Nada de él se carga en tu navegador, no pone ninguna cookie y nunca ve lo que haces en la página: solo que algo se rompió de nuestro lado.
La ley española (art. 22.2 LSSI-CE, que traspone la directiva ePrivacy) exige consentimiento para el almacenamiento que no sea estrictamente necesario para un servicio pedido por el usuario. Una cookie de sesión que existe solo porque pediste entrar, y una preferencia de idioma que fijaste tú, son justamente las excepciones. Un banner aquí sería teatro: te pediría aprobar algo que no ocurre.
Al pagar sales de nuestro sitio hacia Stripe (o, en KRAHS eSIM, hacia nuestro propio servidor BTCPay). Esas páginas ponen sus propias cookies bajo sus propias reglas —Stripe las usa para prevenir el fraude en el propio pago—. No las controlamos y no se ponen en nuestro dominio. La política de cookies de Stripe está en stripe.com.
Puedes bloquear las cookies en tu navegador. Todo sigue funcionando salvo iniciar sesión: puedes navegar, elegir un plan, pagar y recibir la eSIM por correo como invitado. Solo la página de cuenta necesita la cookie, porque es lo que demuestra que eres tú.