PRIVACY POLICY

Privacy Policy

This policy explains what data 48VPN processes while operating its website, clients, and subscription services, why it is processed, and how users can manage it.

Last updated: August 2026

Data Collected and Processing Purposes

When creating a 48VPN account, users only need to set a username and password; no email address is required. The system processes the username, data needed to verify the password, account status, and subscription status to identify the account, complete login, and deliver the service. Do not reuse a password used for other important services.

Order records include the selected plan, payment status, transaction identifier, and activation or change records. This data is used to confirm payment, manage subscriptions, process refunds, resolve disputes, and maintain necessary financial records. Text, screenshots, or diagnostic information voluntarily submitted in a support ticket is used only to handle the related request.

When visiting the website, the server may process request times, pages visited on this site, browser type, device category, network identifiers, and error information. This usage data helps diagnose page issues, prevent account abuse, and assess whether site functions are working properly. Website visit records and destination addresses handled by network acceleration connections belong to separate data categories.

No Activity Logs and Connection Data

48VPN does not record which websites users access through the service or create activity logs that could be used to reconstruct browsing, search, or communication content. During transmission, the system temporarily processes authentication results, route assignments, and session status to establish connections and enforce subscription rules; this data is not kept long-term as browsing history.

Aggregated usage data is retained on the account side to calculate plan usage. It is used to determine remaining traffic and subscription status and does not include a list of visited websites. Necessary technical records created to handle security incidents or service failures are limited to the processing purpose and deleted or anonymized once that purpose is complete.

Cookies and Local Storage

The website and user panel may use Cookies or browser local storage to save login status, language preferences, interface settings, and necessary security markers. This data maintains sessions, reduces repeated setup, and keeps account features available without interruption.

Users can clear this data through their browser settings. After it is cleared, login status and saved preferences may be lost, requiring users to log in again or select their settings again. The client may also store subscription configuration and connection preferences locally on the device; uninstalling the client or clearing app data removes the corresponding local content.

Third-Party Payment Processing

48VPN supports Alipay / WeChat Pay / USDT. Payments are handled by the relevant payment channel, which collects information needed to complete the transaction under its own rules. 48VPN receives the payment result, transaction identifier, and necessary status information used to confirm the order, but does not directly control the privacy practices of third-party payment channels.

Users should review the privacy notice of their selected payment channel before paying. The payment channel and 48VPN are each responsible for the data they process. When an order needs verification, a refund is requested, or a payment dispute occurs, related transaction status may be used to validate the request and complete follow-up processing.

Data Retention and Deletion

Account and subscription data is retained while the account is active to provide login, order history, traffic accounting, and after-sales support. Order and payment status are retained as needed to fulfill transactions, handle disputes, conduct security reviews, and meet applicable recordkeeping obligations. Usage statistics and technical diagnostic data are stored only for as long as needed to maintain the service, analyze security, or troubleshoot issues, then deleted or converted into statistics that cannot be linked to a specific account.

Users can log in to the user panel and submit a support ticket to request deletion of their account and eligible associated data. Account control may need to be verified before processing to prevent unauthorized action. Once deletion is complete, the account can no longer be used; data that must be retained by law or is necessary to resolve an unfinished order, refund, or security incident will be deleted after the relevant purpose ends. Residual copies in backups are gradually removed through the normal backup rotation process.

Policy Updates

This policy may be updated when service features, data processing methods, or applicable rules change. The revised policy will be published on this page, and the last-updated date at the top will be adjusted accordingly. Significant changes to the scope of data processing will be accompanied by a visible notice on the website or user panel. Users are encouraged to review the updated terms before continuing to use the service.