SIM registration law, privacy and safety illustration

Law and safety

Official SIM Registration Links and Phishing Checklist

Verified carrier routes for Philippine SIM registration, how to spot a lookalike page, and what to do after sharing information with a suspicious site.

By Roman Mercado · Links verified August 9, 2026 · Independent and unaffiliated

Use these starting points

Start from the carrier’s own domain: Globe at globe.com.ph/register-sim-card, Smart/TNT at smart.com.ph/simreg, DITO at dito.ph/sim-registration, and GOMO in the official GOMO PH app published by Globe Telecom, Inc. Never submit an OTP, ID or selfie to this site or another independent guide.

HTTPS is not enough. A phishing site can have a padlock. Check the exact registrable domain and navigate from the carrier’s main website or verified app-store listing.
Official carrier routes
CarrierSafe starting routeNotes
Globe / TMhttps://www.globe.com.ph/register-sim-cardGlobe may route its button to a current Globe-owned registration subdomain. Starting from the landing page avoids hard-coding an obsolete deep URL.
Smart / TNT / Smart Bro / Home WiFihttps://smart.com.ph/simregSmart may route to simreg.smart.com.ph. Both are Smart-owned.
DITOhttps://dito.ph/sim-registrationDITO also uses register.dito.ph and the DITO App. It may send a registration instruction by SMS; verify the destination before entering data.
GOMOhttps://www.gomo.ph/ and official GOMO PH appOn Android/iPhone, verify the Philippine app and publisher Globe Telecom, Inc.; avoid GOMO apps for another country.

Network guides: Globe, TM, Smart, TNT, DITO and GOMO.

How to check a registration page

  1. Read the domain from right to left

    The carrier name must be the actual domain before the first slash, not text placed in a subdomain or path of an unrelated website.

  2. Navigate from the carrier homepage

    Type the known carrier address or use a saved official app. Do not rely on search ranking or an advertisement.

  3. Check the app publisher

    Look at the store publisher/developer, country and official website link, not just the app icon and name.

  4. Inspect what the page asks for

    A carrier registration form needs identity data, but it should not ask for a bank PIN, e-wallet MPIN, social-media password or payment to register.

  5. Stop if the flow changes domain unexpectedly

    Close it and restart from the carrier site. Do not continue merely because the design looks convincing.

Phishing red flags

  • An urgent threat that your new SIM will be disabled within an invented period.
  • A domain with extra words, swapped letters, hyphens or an unrelated ending.
  • A request to pay a registration, verification or reactivation fee.
  • A request for a banking OTP, card details, wallet MPIN or account password.
  • A seller or social-media account asking you to send the SIM OTP, ID and selfie in chat.
  • An APK/download outside the verified app store or carrier website.
  • A page filled with ads that imitates a registration form or redirects repeatedly.
  • A promise to register without your genuine identity documents or to bypass rejection.

Globe has specifically warned that fake registration links circulate through social media and can lead to malicious or ad-filled sites. The National Privacy Commission warns that smishing links can imitate legitimate services and steal personal data.

No. DITO’s official help center tells new users to click the registration instruction received after inserting the SIM. The safe response is not to trust every SMS or reject every SMS automatically: independently open DITO’s website/app and verify that the destination is DITO-owned. The NPC advises caution with unsolicited and shortened links because they can conceal a malicious destination.

What never to share with a helper

What never to share with a helper
DataSafe handling
Registration OTPEnter it only in the carrier’s official platform. Carrier support does not need you to send it in chat.
ID image and selfieUpload through the official carrier flow or present through a verified assisted channel.
eSIM QR codeKeep private; it can expose or install a mobile profile.
Control/reference numberUse it with verified carrier support, not in a public post.
SIM bed/serial and PUKStore securely for ownership/replacement proof.
Bank or wallet credentialsNever part of free SIM registration.

If you entered data on a suspicious site

  1. Stop interacting

    Close the page and do not submit another OTP, payment or document.

  2. Contact the carrier through its official route

    Tell it which number and data may have been exposed. Ask it to verify registration, account access and any replacement/port request.

  3. Secure linked accounts

    Change passwords from a trusted device, especially the email and carrier-app accounts. Review multifactor and recovery settings.

  4. Contact financial providers if financial data was shared

    Use the bank/e-wallet’s own app or hotline and monitor transactions.

  5. Preserve evidence

    Save the URL, message, sender, time and screenshots without revisiting the site or sharing your ID publicly.

  6. Report the page/message

    Use the carrier’s fraud reporting channel and the platform/browser’s phishing report. Contact the National Privacy Commission when personal-data misuse or a privacy violation is involved.

If a number is registered without your knowledge

Contact the carrier immediately through a verified channel and ask it to investigate the registration record. Do not attempt to overwrite the record on another website. Keep proof of ownership and any carrier reference. RA 11934 penalizes false/fictitious registration and fraudulent IDs.

Use the official status methods and lost/stolen procedures where applicable.

Never register a SIM for resale

The National Privacy Commission warns against offers to buy SIMs registered in someone else’s name. RA 11934 penalizes sale or transfer of a registered SIM without completing the required registration. Use the carrier’s formal ownership-transfer process.

Frequently asked questions

What are the official registration websites?

Start at globe.com.ph/register-sim-card, smart.com.ph/simreg, dito.ph/sim-registration or the official GOMO PH app.

Are simreg.smart.com.ph and register.dito.ph official?

Yes. They are carrier-owned subdomains. For the safest stable route, begin at smart.com.ph/simreg or dito.ph/sim-registration instead of following an unsolicited link.

Does a padlock prove a site is official?

No. HTTPS encrypts the connection but does not prove the site’s identity or legitimacy.

Can a carrier send a real registration link by SMS?

DITO documents an SMS registration instruction. Verify the destination independently through DITO’s site/app before entering data.

Should I pay a registration fee?

No. RA 11934 requires registration at no cost to the end-user.

Will carrier support ask for my OTP?

Do not send an OTP in chat or over a call. Enter it only in the official registration screen.

What if I uploaded my ID to a fake page?

Contact the carrier, secure linked accounts, preserve evidence and report the suspected data misuse to the appropriate official channels.

Official sources

Domains and carrier routes verified August 9, 2026. Start from the carrier’s main site because deep links and app screens can change.