Last Updated: December 13, 2025
1. Introduction
ProtonVPN ("we," "us," "our," or "Company") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our VPN service and website.
2. Information We Collect
Information You Provide Directly
- Account Information: Email address, username, and password when you create an account
- Payment Information: Credit card details (processed securely by third-party payment processors)
- Support Communications: Messages sent to our customer support team
Information Collected Automatically
- Device information (OS, browser type)
- Usage statistics (connection time, bandwidth usage)
- IP addresses (temporarily, for security purposes only)
3. What We DO NOT Log
ProtonVPN operates under a strict zero-logs policy. We DO NOT collect, store, or monitor:
- Your real IP address
- Websites you visit or browse history
- DNS queries
- Connection timestamps or durations for tracking
- Your location data
- Online activity or content you access
4. How We Use Your Information
We use information for the following purposes:
- Providing and maintaining the VPN service
- Processing payments and managing accounts
- Sending service updates and security notifications
- Customer support and technical assistance
- Improving service quality and security
- Complying with legal obligations
5. Data Security
We implement industry-leading security measures to protect your data:
- AES-256 Encryption: Military-grade encryption for all data in transit
- Perfect Forward Secrecy: Encryption keys are regenerated regularly
- No Backdoors: We cannot access user data even with legal requests
- Regular Audits: Third-party security audits verify our claims
- Zero-Knowledge Architecture: Only you have the keys to your data
6. Data Retention
We retain your data only as long as necessary to provide our service:
- Account data is retained while your account is active
- Payment records are retained for accounting and tax purposes (7 years)
- Support tickets are retained for 12 months
- Temporary technical logs are deleted within 48 hours
7. Third-Party Sharing
We DO NOT sell, rent, or share your personal information with third parties, except:
- Payment Processors: To process your subscription (PCI DSS compliant)
- Legal Requirements: When required by law enforcement (we have never received valid requests)
- Service Providers: Only vendors necessary to operate our service, under strict contracts
8. Cookies and Tracking
We use minimal cookies:
- Essential Cookies: For authentication and session management
- No Tracking Cookies: We do not use analytics or advertising cookies
- No Third-Party Tracking: We do not allow Google Analytics or similar tools
9. Your Rights
You have the right to:
- Access your personal data
- Correct inaccurate information
- Delete your account and associated data
- Request a data portability report
- Object to data processing
- Withdraw consent at any time
10. International Data Transfers
ProtonVPN is based in Switzerland, which has the world's strongest privacy laws. Your data is protected under Swiss data protection legislation, which provides stronger privacy safeguards than most countries.
11. Children's Privacy
ProtonVPN is not intended for users under 18 years of age. We do not knowingly collect information from children. If we become aware of data collection from minors, we will delete it immediately.
12. Changes to This Policy
We may update this Privacy Policy periodically. We will notify you of any material changes via email or on our website. Your continued use of ProtonVPN constitutes acceptance of the updated policy.
13. Contact Us
If you have questions about this Privacy Policy or our privacy practices:
- Email: privacy@protonvpn.com
- Mailing Address: ProtonVPN, Swiss Privacy Foundation, Rue de Genève 26, 1211 Geneva, Switzerland
- Response Time: We respond to privacy inquiries within 30 days
14. Jurisdiction
This Privacy Policy is governed by Swiss law. ProtonVPN complies with:
- Swiss Federal Data Protection Act (FADP)
- European General Data Protection Regulation (GDPR)
- California Consumer Privacy Act (CCPA)
- International privacy standards and best practices
Your privacy is our priority. ProtonVPN is built on the principle that privacy is a fundamental human right.