Privacy Policy

Last updated: September 2026

This is a standard template describing what the Service actually collects and does with it today. It hasn’t been reviewed by a lawyer — treat it as a good-faith starting point, not final legal advice.

1. What we collect

Your email address (for sign-in and account communication); your subscribed plan and billing period; VPN account credentials and app configuration needed to connect; payment details, handled entirely by our payment processors (Stripe, YouCanPay) — we never see or store full card numbers.

2. About VPN traffic itself

VPN.ma does not log the sites you visit or the content of your traffic. Connections are provisioned and routed through our infrastructure partner’s servers — this policy covers the account and billing data described here, which is separate from your VPN usage itself.

3. Why we collect it

To create your account, provision your VPN access, bill you correctly, send account notifications, and provide support if something goes wrong.

4. Who it’s shared with

Our VPN infrastructure partner receives what’s needed to provision and maintain your connection. Payment processors (Stripe, YouCanPay) handle your payment directly. We don’t sell your data or share it with anyone else for marketing.

5. Where it’s stored

Account and subscription data is stored on Netlify Blobs.

6. Cookies

We use a session cookie to keep you signed in after email verification. We don’t use tracking or advertising cookies.

7. How long we keep it

Account and subscription data is kept as long as your account is active, plus what’s needed for billing records. If you ask us to delete your account, we remove what we can beyond any legal retention requirement (e.g., invoices).

8. Your rights

You can ask to see what we hold about you, correct it, or have your account and its data deleted. Contact us via the Contact page to make a request.

9. Security

Passwords and session tokens are never stored in plain text.

10. Changes

We may update this policy as the Service changes. Continuing to use the Service after an update means you accept the new policy.

11. Contact

Questions about this policy, or a data request — reach us via the Contact page.