Trust & security

AtlasSIM Trust Center

A clear overview of the measures we apply to protect your accounts, payments, and data, and of what remains the responsibility of our partners or of you as a user.

This page is maintained by the AtlasSIM team and describes our current practices; it does not constitute an independent certification, an external audit, or a contractual guarantee. It is updated as the platform evolves.

Platform security

AtlasSIM applies concrete technical controls across the platform, relying on recognized providers for critical building blocks.

Database protected by RLS

All application data (orders, balances, SMS history) is stored in a database protected by Row Level Security rules, ensuring a user can only access their own data.

Encrypted transport

All communications between your browser, our API, and our partners are exclusively transmitted over HTTPS/TLS.

Authenticated accounts

Access to the dashboard requires an authenticated account; credentials and sessions are managed by our authentication provider, which applies its own security standards.

Environment separation

Development and production environments are separated, limiting exposure of real data during technical changes.

Abuse prevention

We monitor platform usage to limit fraud, verification bypass attempts, and uses contrary to the terms of service.

Detection of abnormal usage

Automated checks identify unusual ordering patterns (volume, frequency, origin) that may indicate abuse.

API rate limiting

Rate limits apply to the API to prevent abusive automated usage.

Account suspension

An account may be suspended in case of proven fraud, use contrary to the terms of service, or attempts to bypass controls.

Easy reporting

Any user or third party can report suspicious activity via our security contact.

Accounts & authentication

Identity and session management relies on our authentication provider, which handles secure password storage and session issuance.

Passwords never stored in plain text

Passwords are managed and hashed by the authentication provider; AtlasSIM never has access to plain-text passwords.

Secure password reset

Password resets are done via a verified email, through a single-use, time-limited link.

Revocable sessions

You can log out of your active sessions at any time from your account settings.

Account deletion on request

You can request the deletion of your account and associated data by contacting support.

Data privacy

We limit data collection to what is necessary to operate the service and manage our relationship with payment partners.

Data minimization

We only collect information necessary for account creation, billing, and customer support.

Separate payment partners

Payment data (card, crypto wallet, mobile money) is processed directly by our payment providers and is never stored on our servers.

Access on request

You can request access to, correction of, or deletion of your personal data by writing to our support team, in accordance with our privacy policy.

No data resale

AtlasSIM does not sell its users' personal data to third parties.

Incident management

In case of a security incident or suspected vulnerability, we encourage responsible disclosure.

Security contact
security@atlas-sim.org

If you identify a potential security flaw, please report it responsibly to the address above before any public disclosure, providing enough detail to allow reproduction and remediation. We acknowledge legitimate reports and keep affected parties informed of the progress of the fix.

  1. 1Report received and acknowledged by the technical team
  2. 2Impact analysis and prioritization based on severity
  3. 3Fix deployed and verified
  4. 4Communication to affected users if necessary

Continuous monitoring

The platform is subject to operational monitoring designed to quickly detect anomalies.

Access logging

Access to the API and dashboard is logged to enable investigation in case of an incident.

Automated alerts

Technical alerts are triggered in case of application errors or service degradation.

Regular review

Our technical team regularly reviews logs and metrics to identify suspicious trends.

Service availability

We aim for high availability through a redundant architecture, while remaining transparent about the limits of any online service.

Availability target: 99.9%

Multi-carrier redundancy for virtual number delivery, to limit the impact of an outage at a single carrier.

Currently declared status

  • APIOperational
  • SMS receptionOperational
  • PaymentsOperational
  • DashboardOperational

The statuses below are manually declared by our team and reflect our assessment of component operation; they do not come from an independent third-party monitoring system.

Quality commitments

Beyond security, we commit to measurable service standards.

Automatic refund

If no SMS is received within the allotted time, the order amount is automatically credited back to your balance, with no action required.

Responsive support

Our goal is to respond to support requests in under one hour during business hours.

Transparent pricing

Displayed prices are final before purchase, with no hidden fees added at checkout.

Shared responsibility

The security of your account relies on a clear split of responsibilities between AtlasSIM and you.

AtlasSIMUser
Protect the infrastructure, database, and access rules (RLS)Keep login credentials confidential
Encrypt exchanges between the browser, the API, and partnersUse a unique, strong password
Rely on payment providers to process card and crypto dataVerify the accuracy of payment information provided to the provider
Monitor abnormal usage and suspend fraudulent accountsPromptly report any suspicious activity on their account
Automatically refund orders with no SMS receivedUse numbers in accordance with the third-party service's terms of use
Handle security reports responsiblyNot share their account or credentials with third parties
Inform users in case of an incident affecting data or serviceLog out of sessions on shared devices

Payment partners

AtlasSIM never directly processes or stores card credentials or crypto wallet private keys. These elements are exclusively managed by our payment providers, who apply their own compliance requirements (KYC/AML) to prevent fraud and money laundering.

Bank cards

Processed by specialized payment providers; AtlasSIM only receives a transaction confirmation, never the full card number.

Cryptocurrencies

Crypto payments are processed via dedicated gateways; AtlasSIM never holds your private keys or wallet credentials.

Mobile money

Mobile money payments are handled by local operators and aggregators, subject to their own regulatory obligations.

Useful documents

To learn more, check our legal documents or contact us directly.

Legal notice

Information about the site publisher and legal framework.

View

Privacy policy

How we collect, use, and protect your data.

View

Terms of use

The rules for using the AtlasSIM platform.

View

Contact us

A question about security or privacy?

Contact support