PRIVACY POLICY
Quick Summary
- No activity logs. We do not log VPN traffic content, browsing history, or DNS queries tied to you.
- We process minimal connection metadata (session start/stop, server ID, total bytes) to run the Service and enforce our AUP, and delete/anonymize it within 30 days.
- We collect de-identified/aggregated analytics only to improve UX (e.g., feature usage counts, crash rates, performance metrics).
- We do not sell personal information.
1. Information We Collect
A. Account Data
Email and basic profile you provide (e.g., display name/handle). We avoid collecting additional identifiers unless necessary to operate the Service.
B. Device & App Signals (De-identified/Aggregated)
App version, OS version, performance and reliability metrics, high-level feature usage (e.g., button taps, screen flows), crash counts and error types. We implement privacy-preserving configurations designed to avoid storing IP addresses or persistent device identifiers in analytics; where a vendor transiently processes IP for routing, we require truncation or discard.
C. Network & Service Metadata (Minimal; Short-lived)
Connection timestamps, session duration, approximate data transfer amounts, VPN server location/protocol, and ephemeral IP/port/protocol signals and destination categories/reputation used to (i) detect prohibited P2P/abuse and (ii) make filtering decisions for ClearWeb/parental controls.
We do not log VPN payload contents and do not build per-user browsing histories.
D. Payments (Future)
If/when payments launch, transactions will be handled by app stores or a PCI-compliant processor. We receive limited purchase metadata (e.g., success/receipt ID). We do not store full payment instrument numbers.
E. Cookies & Web Storage
On our website for sessions, preferences, anti-abuse, and basic analytics (with consent where required).
2. How We Use Information
- Provide/operate the Service (connectivity, routing, filtering, support).
- Enforce Acceptable Use (e.g., block/throttle P2P).
- Improve UX via de-identified/aggregated analytics (feature adoption, error rates, performance).
- Security/fraud prevention and to comply with legal obligations.
Where required by law, we rely on consent for analytics/marketing and respect your choices.
3. "No Activity Logs"
We do not log: VPN traffic content, per-destination browsing history, or DNS queries tied to an identified user. Limited connection metadata is used operationally and removed within 30 days. Analytics are de-identified or aggregated and not reasonably linkable to you.
4. Sharing & Disclosure
We do not sell personal information. We share with:
- Service providers (hosting, analytics, crash reporting, email/support) under confidentiality and data-processing terms;
- App stores/payment processors (for purchases, when launched);
- Security/abuse partners (e.g., blocklists) to enforce AUP;
- Legal authorities when required by law or necessary to protect users, the network, or our rights. Where permitted, we will notify you of requests unless legally prohibited.
5. P2P/Torrent Detection & Network Management
P2P is prohibited. We may use automated methods (protocol fingerprinting, destination/port analysis, traffic heuristics) to detect P2P and take action (block/throttle/terminate). We do not store payload contents. Limited metadata tied to a suspected violation may be retained up to 90 days for investigation and legal compliance.
6. ClearWeb & Parental Controls
Filtering decisions evaluate requested domains/hosts against blocklists and reputation sources to block ads, trackers, malware, or adult content. We do not retain per-user DNS query logs for this purpose; we may maintain aggregate counts to improve lists and performance. Over-/under-blocking and site breakage can occur; you can adjust feature settings in the app.
7. Data Retention
- Account data: while your account is active and then up to 24 months for fraud prevention, accounting, or as required by law.
- Connection/security metadata: up to 30 days (unless extended up to 90 days for an active abuse/legal investigation), then deletion or anonymization.
- De-identified/aggregated analytics: retained as needed for UX improvement; not reasonably linkable to you.
- DMCA/abuse/legal records: as required by law.
8. Your Rights & Choices
Depending on your location, you may have rights to access, correct, delete, port, or object/restrict processing; withdraw consent; and lodge a complaint with a supervisory authority. Contact us to exercise rights; we will honor them where applicable.
9. International Transfers
We are U.S.-based (backend in the U.S.). When transferring personal data internationally (including from the EEA/UK), we use appropriate safeguards (e.g., Standard Contractual Clauses) or other lawful mechanisms.
10. Security
We use technical and organizational measures (encryption in transit, access controls, segmentation, monitoring). No system is perfectly secure; keep devices updated and use strong authentication.
11. Children's Privacy
The Service is not directed to children under 13. If you enable parental controls for a minor, you are responsible for the child's use. If we learn that we collected personal information from a child under 13 without parental consent, we will delete it.
12. Changes
We may update this Policy. We will adjust the "Last Updated" date and, where required, notify you and/or seek consent.
13. Contact
ONE PIXEL BLACK LLC
Email: hello@onepixelblack.comAddress: 5830 E 2nd St, Ste 7000 #27197, Casper, WY 82609, USA