PRIVACY POLICY

Privacy Policy

This policy explains how GFVPN handles account, order, access-statistics, and connection-related data while providing cross-border access, international routes, and network acceleration subscriptions.

Last updated: August 2026

1. Data Collected and Processing Purposes

GFVPN registration requires only a username and password, with no email address required. The username and authentication credentials are used to identify the account, maintain the login session, manage subscriptions, and handle service requests submitted by the user. Users should keep their login credentials secure and avoid sharing them with others.

After a subscription or traffic package transaction is completed, this service retains order records needed for fulfillment, including the order items, amount due, payment channel, payment status, creation time, and necessary transaction identifiers. This information is used to confirm payment, activate service, reconcile billing, process refund requests, resolve order disputes, and meet necessary financial recordkeeping requirements.

When users visit the website or user panel, servers and access-statistics tools may process the request time, page path, referring page, browser type, device category, network address, and error information. This data is used to maintain site operations, identify abnormal requests, resolve compatibility issues, and understand whether pages can be accessed normally. Statistical results are primarily used for aggregate trend analysis and are not used to build profiles of users' browsing interests.

2. No-Logs Principle and Connection Data

GFVPN follows a no-logs principle. It does not record which websites users visit, retain the content they access or their DNS queries, or store browsing histories that could reconstruct specific online activity. This service does not sell connection activity or use it for ad targeting.

To manage routes, verify subscription status, and calculate traffic usage, the system needs to process the current connection status and cumulative usage. This data is used to determine whether the service is available, whether a plan has sufficient traffic, and whether an abnormal connection requires attention. It does not include records of the destinations users access.

Long-term connection histories are not created during normal service operation. Temporary operating status and error information are retained only for the period needed to process connections, locate faults, or provide security protection, and are deleted or de-identified once the purpose is complete. Diagnostic materials that users actively attach to a support ticket are retained with the ticket until the request and any related dispute have been resolved.

3. Cookies and Local Storage

The website and user panel may use Cookies or browser local storage to save login sessions, language preferences, interface state, and access-statistics identifiers. This data helps maintain login sessions, restore page settings, reduce repeated actions, and determine whether access statistics come from the same browsing session.

Users can clear Cookies and local storage through their browser settings. After clearing them, the login state, language preference, and some interface settings may be reset, requiring users to log in again or make their selections again. Disabling storage required to maintain a session may prevent the user panel from completing authentication or subscription management.

4. Third-Party Payment Processing

GFVPN supports Alipay / WeChat Pay / USDT. Payments are processed by the relevant payment channel, digital-asset network, or its service provider, subject to their respective privacy rules and transaction requirements. This service typically receives only the payment result, amount, channel, and transaction identifier needed to confirm an order, and does not retain complete payment credentials collected directly by the payment provider.

Payment providers may independently process related data for risk control, transaction confirmation, dispute handling, or compliance with applicable rules. Users should review the privacy information provided by their selected channel before making a payment. GFVPN uses received payment information only to activate subscriptions, reconcile transactions, or process refunds as necessary.

5. Data Retention and Deletion

Account details are retained while the account remains in use. Order records are kept for the period necessary to fulfill subscriptions, process refunds, resolve disputes, and meet necessary recordkeeping obligations. Access statistics are aggregated or de-identified as needed for maintenance and analysis; aggregated results that can no longer reasonably be linked to a specific account may continue to be used to improve the website and route information.

Users can log in to the user panel and submit a support ticket to request deletion of their account and identifiable account details. Account verification may be required before submitting a request. Once deletion is complete, the account can no longer be used to log in. Data still needed to handle unfinished orders, refunds, disputes, or applicable obligations will be deleted or de-identified after the relevant matter ends. Data that has already been de-identified and cannot reasonably be linked back to the account is outside the scope of account deletion.

6. Policy Updates and User Choices

GFVPN may revise this policy when service features, data-processing practices, or applicable requirements change. Updated versions will be published on this page, and the last-updated month at the top of the page will be adjusted accordingly. Important changes involving data use or user rights will be explained in an appropriate location on the website or user panel.

Before continuing to use subscription services, users may review the updated policy. If they have questions about data processing or wish to exercise rights related to accessing, correcting, or deleting relevant information, they can submit a request through a user-panel support ticket. This service will process the request based on the account status, request details, and necessary verification results.