Transparency
Control plane logging
- Account metadata: username, plan expiry flags, HWID lock state, last login timestamps.
- Auth and portal login IP events for abuse detection.
- Connect events: whether a session started, which node, app version, error codes — not destinations inside the tunnel.
- Admin audit actions (customer edits, HWID resets, session revokes, releases).
OpenVPN traffic
We do not operate content inspection of customer OpenVPN tunnels from the control plane. Node operators see standard VPN server operational metrics (load, heartbeats), not browsed URLs or application payloads.
Retention (summary)
Connect telemetry and login IP events: up to 90 days. Account records: while active, then up to 12 months for support/abuse review. Effective date: 2026-07-16. Details in the privacy policy.
Public status
Fleet health is published at /status. We do not operate a public warrant canary.