Service note
VeilGuard does not log or inspect your browsing activity. This policy focuses on the limited information needed
for account security, billing, service delivery, support, and legal compliance.
1. Scope
2. Data We Collect
| Category | Examples | Purpose |
|---|---|---|
| Account data | Email address, authentication metadata, account status | Account creation, authentication, and subscription management |
| VPN operational data | Selected server, connection timestamps, session duration, aggregate transfer totals, temporary connection IP during handshake | Service delivery, abuse prevention, and troubleshooting |
| Session & device enforcement | Device identifiers, device model, app version, consent timestamps | Security, fraud prevention, and one-device session enforcement |
| Billing data | Subscription status, payment status, platform purchase identifiers | Billing, refunds, and access control |
| Split tunneling configuration | Installed app package names and labels (only when enabled) | Let you choose which apps use or bypass the VPN |
| Support & legal requests | Support messages, account deletion requests, and diagnostics you voluntarily share | Customer support and compliance |
Split tunneling and installed app inventory
3. No-Logs Policy
4. Data We Do Not Collect
- Browsing history
- Websites visited
- DNS queries
- Traffic content
- Message contents carried through the VPN tunnel
5. How We Use Data
- Provide and maintain VPN connections.
- Authenticate users and apply subscription, trial, and session rules.
- Protect accounts, prevent abuse, and troubleshoot service issues.
- Comply with legal obligations.
6. Legal Basis for Processing (where applicable)
- Consent: for VPN disclosure acceptance and split tunneling configuration.
- Contractual necessity: to provide the VPN service, manage subscriptions, and process payments.
- Legitimate interests: to improve reliability, prevent abuse, and secure the service.
- Legal obligations: to comply with applicable laws and regulations.
7. App Permissions Explained
- INTERNET: Connect to VPN servers and route traffic through the tunnel.
- ACCESS_NETWORK_STATE / ACCESS_WIFI_STATE: Detect network status to connect or reconnect the VPN.
- CHANGE_NETWORK_STATE / CHANGE_WIFI_STATE: Respond to network changes for stability.
- BIND_VPN_SERVICE: Required by Android to run a VPN service.
- FOREGROUND_SERVICE / FOREGROUND_SERVICE_SPECIAL_USE: Keep the VPN running reliably in the foreground.
- POST_NOTIFICATIONS: Show VPN status notifications (optional).
- QUERY_ALL_PACKAGES: Display installed apps for split tunneling selection.
- WAKE_LOCK: Prevent sleep while the VPN is active to avoid disconnections.
8. Responsible Use and Local Law Compliance
9. VpnService Consent
10. Advertising and Analytics
11. Payments and Billing Providers
12. Subscriptions and In-App Purchases
13. Sharing and Selling
14. International Transfers
15. Retention
- Account and subscription records: while the account remains active and as required for legal, billing, and security obligations.
- VPN operational metadata and session enforcement records: only as long as needed for service operation, fraud prevention, support, and legal obligations.
- Split tunneling selections: stored locally on your device until changed or removed.
16. Security
17. Your Choices and Rights
- Review the VPN disclosure in app settings.
- Withdraw VPN consent in app settings (disconnects the VPN and requires consent again).
- Request account deletion by contacting support.
Regional rights
- GDPR (EU/EEA/UK): access, rectification, erasure, restriction, portability, and objection.
- CCPA/CPRA (California): right to know, delete, and opt out of the sale or sharing of personal data. We do not sell personal data.
- VCDPA (Virginia): access, correct, delete, and opt out of targeted advertising.
- LGPD (Brazil): confirmation of processing, access, correction, anonymization, deletion, and information about sharing.