Data Collected and Why
The service collects only the data required to maintain subscriptions and connections, in four categories:
- Account information: signing up does not require an email address, only a username and password. Passwords are stored as irreversible cryptographic hashes, so the service cannot recover your plaintext password.
- Order and subscription records: the plan or data package you activated, the amount, payment status, activation time and data reset cycle, used to activate the service, reconcile finances and handle after-sales requests.
- Client runtime information: client version, operating system type and approximate connection region, used for compatibility troubleshooting and route scheduling.
- Site visit statistics: page views, referral sources, device and browser type. Statistics are gathered by a self-hosted service on this site, to understand which content is useful to visitors.
None of this data is used for advertising, and it is never sold or exchanged with third parties.
No-logs stance and connection records
VPNBu does not record which websites users visit. Browsing destinations and DNS query contents are never written to logs, and connection times are not retained in a form linked to an account identity.
To keep routes available, troubleshoot faults and plan capacity, the system processes only operational data that carries no content information, such as the current number of connections on a given route. This data is used in aggregate and does not identify individual users; once an account is deleted, the operational data tied to that account is invalidated as well.
Traffic between the client and the routes is protected with quantum encryption.
Note that no-logs means the service does not actively record access destinations; third-party websites you visit may still log visitor information under their own rules.
Cookies and local storage
The site uses only a small number of essential cookies and browser local storage, limited to the following three purposes:
- Language preference: remembers the interface language you selected, so your next visit opens the matching version directly.
- Login state: user panel credentials are kept in browser local storage to save you from signing in repeatedly; logging out or clearing browser data removes them.
- Interface settings: local preferences inside the panel, such as list sorting and collapsed sections.
The site does not use cross-site advertising tracking cookies, and does not use the data above for anything unrelated to the subscription service.
Third-Party Processing in Payments
Payments are handled by third-party payment channels; Alipay / WeChat / USDT are currently supported. Payment account and on-chain wallet credentials are processed by those channels, and the service never touches or stores your payment password or full payment credentials.
After an order is created, the service receives only the payment result returned by the channel, namely success or failure, amount and order number, to activate the plan and verify after-sales requests. USDT transfers are initiated by you on-chain, and the service confirms receipt by order number.
Data retention periods and how to delete your data
Account information is retained while the account remains active. You can request account deletion at any time from the user panel; after deletion, the username and login credentials are deleted or anonymized.
Order and payment records are kept for a necessary period after account deletion due to financial reconciliation and compliance requirements; only transaction-essential fields are retained, and they are deleted or anonymized once that period ends.
To access, correct or delete account-related data, submit a request through the ticket entry in the user panel; once account ownership is verified, the service handles the request and replies with the result through the ticket.
Policy Updates and Contact
If this policy changes, the last-updated date at the top of this page will be revised; significant changes to the scope or purpose of data processing will be explained in a site announcement. Continuing to use the service after changes take effect means you accept the updated policy.
This policy applies to your use of the service together with the Terms of Use. Privacy-related questions can be submitted through the ticket entry in the user panel, or you can visit the contact page for the currently available contact methods.