06.09.26 · The Cape Team

How To Submit a T-Mobile Personal Data Request & Other Ways To Protect Your Data

T-Mobile collects a significant amount of personal data, and most customers aren’t aware of how much is on file.

The mobile carrier gathers it directly when you sign up and automatically as you use the network, apps, and third-party services like social media. T-Mobile even collects data about you by inferring from your behavior.

Fortunately, you have the right to find out what information was collected. Under U.S. privacy laws, you can request a full report of the data T-Mobile holds on you, and they have to deliver.

In this guide, we’ll explain how the T-Mobile personal data request works and cover some practical ways to protect your privacy from here on out.

What Is a T-Mobile Data Request?

A T-Mobile data request is a formal request to access and manage the personal information the carrier has collected about you. When submitting this request, you can ask to:

  1. Access data: A full report of the personal data T-Mobile holds
  2. Delete data: A request for T-Mobile to erase your data from the carrier’s systems
  3. Correct data: An update of inaccurate details like your name, address, email, or phone number

Your relationship with T-Mobile won’t limit your rights, since the carrier allows anyone who’s interacted with the company to submit a request, including:

  • T-Mobile customers with a current or past personal account
  • Metro, T-Mobile Prepaid, Connect by T-Mobile, and Assurance Wireless customers
  • ​​Parents, guardians, and authorized agents of a customer​
  • Non-customers who have received marketing messages from T-Mobile
  • Business and government customers
  • Vendors, network landlords, and wholesale partners
  • Current and former employees or contractors

If you make a data request, T-Mobile must comply since state privacy laws require businesses to give customers control over their personal information. T-Mobile extends these rights to everyone in the U.S., Puerto Rico, and the United States Virgin Islands.

What Type of Data Can You Access and Manage?

After you make a request, T-Mobile must disclose all personal information it has about you. The main categories they will include in the report include:

Data Category

What It Includes

Demographics

  • Age
  • Gender
  • Interests
  • Job title

Account and billing

  • Name
  • Address
  • Billing information
  • Government ID
  • Account Activity

Network and device use

  • Call records
  • Data usage
  • Location
  • Device identifiers (IMEI, MAID)

Interaction with the app

  • App usage
  • Browsing patterns
  • Interaction data

Accessibility Service

  • Use of relay services
  • Potential disability-related information

Audio recordings

Recorded calls with customer service or sales representatives

CPNI (Customer Proprietary Network Information)

  • Type of calls
  • Call location
  • Call duration

CPNI deserves a closer look because it includes your call metadata—who you called, when the calls occurred, how long they lasted, and sometimes where they occurred. This is regulated information that T-Mobile can only use or share in limited ways unless you give explicit consent. From a privacy standpoint, CPNI is one of the most sensitive categories of data on that list.

When it comes to deleting data, T-Mobile will remove what it can, but not all information can be wiped while you’re an active customer. The carrier needs to retain some data to run your service, issue bills, and meet legal obligations.

To make sure only the minimum amount of data is collected and retained—and only for as long as necessary—switch to a privacy-first mobile carrier like .

What You Need To Submit a T-Mobile Data Request

T-Mobile needs to verify that the person who’s making the request has the right to do so. That’s why they request that you confirm your identity before they agree to disclose information, delete, or correct any data.

Here’s what you need to prepare:

  • Your T-Mobile account email address
  • The phone number linked to your account
  • Your T-Mobile login credentials (if you plan to submit through your account)
  • A government-issued photo ID
  • A photo of your face (you might be asked to take a photo of yourself to prove that the photo ID belongs to you)

The name on your government ID must match the name on your account. If you signed up using a nickname, shortened name, or middle name that isn’t on your ID, T-Mobile probably won’t be able to find your record.

If you are a past customer or don’t have your login credentials, you’ll need to complete a more involved identity verification process. Either way, any ID scans submitted to T-Mobile’s third-party verification provider get deleted within 30 days.

How To Make a T-Mobile Personal Data Request

You can submit a T-Mobile personal data request in two ways:

Channel for Submitting a Request

How To Reach Out

Online

Via an online form on page

Phone

By calling 1-800-937-8997

To send your request via form, follow these steps:

  1. Go to the T-Mobile Privacy Center page
  2. Choose the category you belong to (consumer, business-to-business, or California workforce)
  3. Select your request type (access, delete, or correct)
  4. Log in or verify your identity
  5. Submit your request

After submitting the request, you’ll receive a confirmation email and get access to a secure online portal where you can check your request status.

T-Mobile has up to 45 days to respond after confirming your identity. If they can’t fulfill your request, they’ll provide the reasoning in writing.

How To Approach Multiple Data Requests

If you want to both access and delete your data, for example, don’t submit both requests at once. T-Mobile recommends that you do the access request first, wait for it to complete, then submit the deletion request separately.

The same logic applies if you have multiple T-Mobile products under different email addresses or phone numbers. While you don’t necessarily need to wait to get a report, you will need to file a separate request for each combination you’ve used as a customer.

Beyond T-Mobile Data Request: 6 Strategies To Protect Your Data

Submitting a data request shows you what T-Mobile holds on your right now, but it doesn’t stop them from collecting more. Even if you submit a deletion request, it will apply to data collected up to that point. The moment you keep using their service, the collection starts again.

Big telcos, such as T-Mobile and , are . T-Mobile has experienced almost every year since 2017. The exposed the personal records of roughly 76.6 million people. Another major breach affected up to 37 million accounts.

Even if you’ve never noticed any impact up to now, it’s worth limiting how much data exists about you and who can access it. Here’s what you can do about it:

  1. Opt out of targeted advertising and AI profiling
  2. Manage your marketing preferences
  3. Set a strong account PIN
  4. Use Global Privacy Control (GPC)
  5. Review third-party permissions
  6. Switch to a privacy-first mobile carrier

1. Opt Out of Targeted Advertising and AI Profiling

T-Mobile builds behavioral profiles from how you use the network and services, then uses that data to personalize advertising and marketing. To limit the tracking and reduce targeted ads, follow these steps:

  1. Log in to the T-Mobile Privacy Dashboard
  2. Navigate to Privacy and Notifications
  3. Choose Advertising & Analytics
  4. Find Privacy Dashboard
  5. Toggle off Use my data to make ads more relevant to me and Make your choice about profiling and automated decisions

Turning off both programs will disable the AI-driven profiling that infers your interests and habits from your app usage, browsing activity, and .

2. Manage Your Marketing Preferences

T-Mobile can contact you with promotional offers via email, SMS, and phone. You can control which channels they use through your account’s communication preferences. While changing these preferences won’t stop data collection, it reduces the data trail created by your interactions with T-Mobile marketing systems.

Here’s how you can manage marketing preferences:

  1. Go to your Privacy Dashboard
  2. Choose Get Started
  3. Select Update marketing preferences
  4. Tap T-Mobile
  5. Check the channels you want to opt out of (email, text messages, phone calls)
  6. Tap Save Changes

3. Set a Strong Account PIN

Your T-Mobile PIN is your main defense against . SIM swapping is a fraud technique in which someone transfers your number to a new device to intercept your calls and messages. A weak PIN makes this even easier.

To avoid becoming a , here’s what you should do when setting your PIN:

  • Avoid birthdays, addresses, or anything tied to publicly available information
  • Don’t reuse a PIN from another account
  • Store your PIN somewhere secure, like a password manager

4. Use Global Privacy Control (GPC)

is a browser-level signal that tells websites not to sell or share your personal data. T-Mobile recognizes it and will treat it as an opt-out request. So, if you turn on GPC, T-Mobile will detect the signal and apply your preferences automatically.

There are two options to get GPC:

  1. Use a compatible browser, like Firefox or Brave, which has GPC built in
  2. Install a browser extension with GPC support, such as , on Chrome

After you enable it, GPC will work passively across every site you visit, including T-Mobile.

5. Review Third-Party Permissions

T-Mobile isn’t the only service collecting data through your phone. Many apps request far more access than they really need.

If you wish to change that, review and tighten permissions for:

  • Location: Limit to “while using the app” or disable for apps that don’t need it
  • Contacts: Restrict to apps where it’s necessary
  • Microphone and camera: Deny access to any app or service that has no clear use for it

6. Switch to a Privacy-First Mobile Carrier

The main issue with big telcos like T-Mobile, is that their business model depends on . So, even if you opt out of certain programs, data collection is a core part of how they operate. Hackers are aware of this practice, which makes these carriers particularly appealing targets.

If you want a more fundamental protection, choose a mobile carrier that prioritizes privacy and keeps data collection to a bare minimum. , a , does exactly that by minimizing data collection and retention, not sharing your information with third parties, and being designed to reduce the exposure that makes large-scale breaches so damaging.

Cape: The Carrier Built for Security and Privacy

Cape is a privacy-first mobile carrier designed to keep your communications safe from surveillance and misuse. Unlike traditional cell phone plan providers, our business model centers around providing you with premium and secure call, text, and data, rather than harvesting and selling your information.

Our service is built from the ground up with privacy and security at its core, offering unique features like:

Privacy & Security Feature

Description

Cape doesn’t ask for your name, address, or Social Security number. We only collect the information necessary to provide service, and we retain that information for the minimum amount of time possible.

Traditional carriers rely on a fixed International Mobile Subscriber ID (IMSI) to connect your device to cellular networks. This is a vulnerability that lets carriers, advertisers, and bad actors identify and track your device. Cape lets subscribers automatically rotate their IMSI every 24 hours, making it infinitely more difficult to track you or your device.

Many services ask for your phone number, but sharing it exposes you to spam, scammers, data brokers, and a variety of other risks. VoIPs, on the other hand, don’t work with 2FA, cost extra, and aren’t encrypted. With Cape, you get two free additional SMS/MMS lines that are middle-to-end encrypted.

Most U.S. carriers store your call and text metadata for years, sometimes indefinitely. Cape is built to forget, so call data records (CDRs) are deleted after just 24 hours.

Cape nullifies the threat of SIM swapping by completely removing humans from the loop. During signup, you receive a 24-word phrase that generates a private key tied to your number. This effectively means that no one (but you) can move your number to a new carrier or device, not even Cape.

Legacy network protocols, like SS7, leave you vulnerable to hackers that can track your location, intercept your calls and texts, and steal sensitive information. Cape’s Network Lock relies on a proprietary signaling proxy to verify that your device’s physical location matches the network it’s trying to attach to.

If we detect anything out of the ordinary, Cape automatically blocks the connection, nullifying the potential threat.

Traditional voicemail systems are outdated, unencrypted, and another security hole bad actors can exploit to gain access to your sensitive information. Cape encrypts all voicemails, ensuring only you can access them.

While roaming, your phone connects to local telecom providers to enable service. But, who knows who might be listening on the other end. Cape provides you with peace of mind by routing your traffic through our U.S.-based mobile core, ensuring your identity, data, and communications remain private and secure.

Ditch Legacy Carriers: Get Cape Today

Cape is a “Heavy” Mobile Virtual Network Operator (MVNO), meaning we and provision our own SIMs. This gives us full control over how accounts are authenticated and what data is collected (and for how long), and is how we are able to provide privacy and security features no other carrier on the market can offer.

and enjoy the peace of mind, knowing you are fully protected against scammers, hackers, bad actors, and other mobile threats.

To help protect more than just your phone, we’ve partnered with Proton. As a new Cape subscriber, you can choose between for just $1 for six months.

Share it

Signup Callout

Switch to Cape,
America's privacy-first mobile carrier.

Protect yourself with premium, secure cell service.

Sign up now