Privacy policy
Effective September 3, 2026
This Privacy Policy explains what VPNio collects, what the VPN service is designed not to record, why limited information is needed, and how you can request access, correction, or deletion. It applies when you visit the VPNio website, create an account, purchase a plan, contact support, or use the VPN service.
The short version
VPNio does not use your VPN connection to record the websites you visit, the content you stream, your DNS requests, or the contents of your traffic. Limited account, billing, device, and connection information is still required to operate subscriptions, enforce device limits, prevent abuse, and support customers.
| Information | Handled? | Purpose |
|---|---|---|
| Sites, applications, and content reached through the VPN | No | Not recorded or stored as browsing history. |
| Contents of encrypted VPN traffic | No | Not inspected or stored by VPNio. |
| Account email and password hash | Yes | Account access, verification, security, and recovery. |
| Session times, server, source IP, and byte totals | Limited | Connection limits, security, abuse response, and capacity. |
| Complete payment-card number | No | Collected directly by the payment processor. |
1. Who is responsible
“VPNio,” “we,” and “us” refer to the operator of the VPNio website, customer portal, billing relationship, and branded VPN subscription. VPNio resells VPN access supplied by an upstream network operator. That provider processes limited account and connection information needed to run the VPN infrastructure, while VPNio separately controls the customer and billing information described here.
Questions or privacy requests may be sent to vpniosupport@gmail.com.
2. Information we do not collect
VPNio does not create or maintain records of:
- The websites, services, or internet destinations you visit.
- Your browsing, streaming, search, or download history.
- The contents of your traffic, messages, or transferred files.
- DNS queries made while connected to the VPN.
- A mapping between the IP address used inside the tunnel and the destinations reached through it.
VPNio does not sell personal information and does not share personal information for cross-context behavioral advertising.
3. Account and authentication information
When you create and use a VPNio account, we process:
- Your normalized email address and account identifier.
- A salted, one-way password hash. VPNio does not store your plaintext password.
- Hashed, single-use email-verification and password-reset tokens, including creation, expiry, and use times.
- Hashed session identifiers and their expiry times. The browser holds its session identifier in a protected cookie.
- Your plan, subscription status, renewal date, and upstream VPN account reference.
- An activation PIN or similar VPN credential. When retained by VPNio, it is encrypted at rest and revealed only through the authenticated customer portal.
4. VPN connection and device information
The upstream VPN network may process the server used, device or certificate name, session start and end times, bytes transferred, the source IP address that connected to the server, and a disconnection reason. This is connection metadata, not a record of the sites or content accessed through the encrypted tunnel.
Connection metadata is used to enforce simultaneous-connection limits, operate and secure the network, investigate credible abuse reports, diagnose failures, and plan capacity. DNS resolution may be performed by third-party resolvers selected by the upstream network or by your device, and those providers maintain their own privacy practices.
5. Billing and transaction information
Payments are collected through a third-party payment processor. Your full card number and card security code are submitted directly to that processor and are not stored by VPNio. We retain transaction details needed to operate the subscription, such as the plan, amount, currency, status, processor customer and subscription references, invoice or payment reference, renewal date, refund status, and relevant timestamps.
6. Email, support, and administrative records
Our email delivery provider receives the email address and message content needed to send verification, password recovery, billing, or service notices. If you contact vpniosupport@gmail.com, we process your address, message, and any attachments or account details you provide. Do not send passwords, activation PINs, or complete payment-card details by email.
VPNio records security and administrative events such as sign-in, account verification, password recovery, settings changes, provisioning actions, and billing operations. Audit records identify the action, the affected record, the result, and the time. Rate-limit records use a cryptographic hash of the relevant account or network identifier rather than storing the original value in that record.
7. Website information and cookies
The customer portal uses a strictly necessary session cookie to keep you signed in securely. It is not available to ordinary browser scripts and is sent only according to its security restrictions. VPNio does not currently use advertising trackers or third-party analytics on the website or customer portal. If that changes, this Policy will be updated before the new collection begins.
8. How we use information
We use the limited information described above to:
- Create, authenticate, protect, and recover customer accounts.
- Provide VPN access and enforce the plan’s connection allowance.
- Process purchases, renewals, cancellations, refunds, and billing support.
- Deliver account, security, and service messages.
- Respond to support requests and diagnose technical problems.
- Protect customers and infrastructure, prevent fraud, investigate abuse, and enforce our Terms.
- Meet applicable accounting, tax, and legal obligations.
9. When information is shared
We share information only as needed with service providers that help operate VPNio, including the upstream VPN network operator, payment processor, account-email provider, hosting and database providers, and professional advisers. Each receives only the information reasonably needed for its role.
Information may also be disclosed when required by valid legal process, to protect the rights and safety of VPNio or others, or as part of a merger, financing, acquisition, reorganization, or sale of the business. We cannot disclose browsing-history or traffic-content records that we do not possess.
10. Retention
- Account and subscription information is generally retained while the account is active and for a limited period afterward to complete closure, resolve disputes, and prevent fraud.
- Payment and transaction records may be retained for the periods required by accounting, tax, refund, and chargeback rules.
- Security audit records and revoked credential references may be kept as reasonably necessary to preserve system integrity and investigate abuse.
- Backups are retained on a rolling schedule and may contain deleted information until the relevant backup expires or is securely overwritten.
VPNio will not retain personal information longer than reasonably necessary for the purposes described here, subject to legal, accounting, fraud-prevention, and security requirements.
11. Access, correction, and deletion
You may ask for access to, correction of, or deletion of personal information associated with your VPNio account by emailing vpniosupport@gmail.com from the account address. Include the words “privacy request” and the type of request. We will verify ownership before disclosing or deleting account information and will respond within the period required by applicable law.
Deleting an account ends VPN access and cannot be undone. We will delete or de-identify live account records that are no longer needed, revoke related VPN credentials, and cancel active renewal as appropriate. Limited transaction, fraud-prevention, security, legal, and backup records may remain for the reasons described above.
12. Your privacy rights
Depending on where you live, you may have rights to access, correct, delete, restrict, object to processing, obtain a portable copy, or withdraw consent. You may also have the right to appeal a decision or complain to a privacy regulator. VPNio will not discriminate against you for exercising an applicable privacy right.
California residents may request the categories and specific pieces of personal information VPNio holds and may request correction or deletion, subject to legal exceptions. VPNio does not sell personal information or share it for cross-context behavioral advertising.
13. Security
VPNio uses measures designed to protect information, including encrypted transport, salted password hashing, hashed session and recovery tokens, encrypted storage for retained VPN credentials, restricted administrative access, rate limits, and audit logging. No system is completely secure, so we cannot guarantee that unauthorized access will never occur.
14. International processing
VPNio and its providers may process information in countries other than the one where you live. Selecting a VPN server in another country also routes your encrypted connection through that location. Where required, providers use contractual or other lawful safeguards for international transfers.
15. Children
VPNio is intended for adults and is not directed to anyone under 18. We do not knowingly collect personal information from children. If you believe a child has created an account, contact vpniosupport@gmail.com so we can investigate and delete it when appropriate.
16. Changes to this Policy
We may revise this Policy as VPNio, its providers, or applicable laws change. The effective date above identifies the current version. We will provide reasonable notice through the website, portal, or account email before a material change takes effect when required.
17. Contact
Privacy questions, data requests, account deletion requests, support, abuse reports, and copyright notices may be sent to vpniosupport@gmail.com.