Privacy Policy
1. Who we are
VeritasVPN (“we”, “us”) operates the VeritasVPN website, desktop clients, browser extension, and VPN infrastructure at veritasvpn.cloud. Contact: contact@veritasvpn.cloud.
2. What we do not collect
We do not intentionally log or store:
- Browsing history or DNS query contents for VPN traffic, including Veritas Shield block decisions
- Destination IP/port pairs of your VPN sessions for later inspection
- Payload contents of WireGuard traffic
Our Veritas Shield DNS service is best-effort for WireGuard clients that use the in-tunnel resolver. Feeds can block malware, phishing, scam, cryptomining, and tracker hostnames; ads stay off unless you choose the Aggressive preset (Security / Standard / Aggressive in the app). It keeps aggregate operational counts such as total requests, blocked-request totals (including by category), resolver errors, and blocklist freshness. Prometheus metrics do not record query names. In-app “blocked” counters are keyed by the temporary WireGuard tunnel IP assigned to your peer—not your public WAN IP—and are cleared when that peer is removed. Your chosen shield preset is stored with peer metadata so the gateway can apply the right categories. Upstream DNS-over-HTTPS resolvers (for example Cloudflare or Google) still see the hostnames we forward for non-blocked lookups. Well-known public DNS-over-HTTPS resolvers are blocked for WireGuard peers; uncommon or custom DoH endpoints remain a residual risk.
3. What we do collect
To run authentication, billing, and WireGuard peer management we may store:
- Account data: anonymous account ID, hashed credentials or session tokens, account creation time, plan status
- Auth events: sign-in / token refresh timestamps and success/failure (not your destinations)
- Billing: Bitcoin payment references, amounts, confirmation status, and related timestamps when you pay
- VPN peer metadata: WireGuard public keys, assigned tunnel IPs, Veritas Shield preset, peer create/revoke times, and server-side connection counters needed to operate the tunnel
- Support: whatever you voluntarily send by email or GitHub issues
- Website: standard reverse-proxy / Cloudflare access logs (IP, user-agent, URL, status) that may be retained by our edge provider for a limited time
Stealth connection metadata may be stored as operational records (not browsing content).
3a. Free privacy check tools
The /check tools help visitors see what this browser session exposes before installing VeritasVPN. They do not require an account.
- IP check: our Cloudflare Pages Function returns the request IP and coarse edge metadata (country/ASN/colo, and latitude/longitude when available). When coordinates are present, the page loads OpenStreetMap tiles in your browser to show an approximate map. We do not keep these results as a user profile.
- DNS leak test: the browser resolves short-lived unique hostnames through edns.ip-api.com so recursive resolvers become visible. VeritasVPN does not operate that DNS authority in this version and does not store your DNS query names from the test.
- VPN leak / browser reveal: mostly runs in your browser (WebRTC, IPv6, user agent, timezone, etc.).
- Breach check: the email you type is sent to our edge Function and forwarded to XposedOrNot for a corpus lookup. VeritasVPN does not store the email. Public breach data can be incomplete.
Cloudflare may retain standard edge access logs for the website for a limited time, as with other pages.
4. Cookies and similar tech
See our Cookie Policy. We use essential cookies/storage for account sessions. We do not run third-party advertising trackers on the marketing site.
5. How we use data
- Provide and secure the VPN, website, and account features
- Process Bitcoin payments and prevent abuse
- Diagnose outages and improve reliability
- Respond to support requests you initiate
- Comply with law when legally required
6. Sharing
We do not sell personal data. We may share data with infrastructure providers (hosting, CDN, payment processors) solely to operate the service, or when required by valid legal process. See also our warrant canary.
7. Retention
Account and billing records are kept while your account exists and for a reasonable period afterward for fraud prevention and accounting. Operational peer records exist while peers are active. Edge access logs follow our providers’ retention defaults unless we configure shorter windows.
8. Security
We use WireGuard for tunnel traffic and industry-standard practices for secrets and auth tokens. No system is perfectly secure; early-stage deployments may have higher operational risk than mature providers.
9. International users
Servers and operators may be located in jurisdictions different from yours. By using the service you understand data may be processed where we or our providers operate.
10. Your choices
- Create an anonymous account without an email address
- Request account deletion by contacting us (we will remove account data we control, subject to legal retention needs)
- Stop using the service and uninstall clients at any time
11. Children
VeritasVPN is not directed at children under 16. Do not use the service if you are under 16.
12. Changes
We may update this policy. Material changes will be reflected by updating the “Last updated” date on this page. Continued use after changes means you accept the revised policy.
13. Contact
Privacy questions: contact@veritasvpn.cloud or Contact.