Privacy Policy
Last updated: July 25, 2026
VPN Number One is a free mobile VPN. This policy describes exactly what data the service holds, what it never holds, and who else is involved. It is written to match what the software actually does; if the two ever disagree, the software is the bug.
The short version
- We never sell, rent, or disclose your data to third parties for their own purposes — for any purpose, including advertising.
- We do not log your traffic: no browsing history, no visited addresses, no DNS queries, no content.
- We do not store your real IP address — not in our database, and not in our server logs.
- There is no advertising identifier, no advertising or analytics SDK, and no tracking across other apps or websites.
- You can use the VPN without an account, without an email address, and without a phone number.
Data we hold
By default an account is anonymous: it is created by the app on first launch and identified only by a random identifier that we generate. It contains no name, email, or phone number.
- Account and session: a random account identifier, and for each session a hash of the access token (never the token itself), its expiry, and when it was last used.
- Devices: a random device identifier, the platform (for example Android), the device's WireGuard public key, the device model as reported by the device (for example "Google Pixel 7"), when it was last seen, and when it was revoked.
- VPN configuration: the private address assigned to your device inside the VPN network (a 10.x address that exists only within the tunnel, not a public address), which server you selected, and the configuration version. Server addresses in this record are our own servers' addresses, not yours.
- Rewards: your referral code, referral attribution, and which features you have unlocked.
- Telegram, only if you choose to link it: your Telegram id, username, first and last name as Telegram provides them, and your Telegram language code. Linking is optional and the VPN works fully without it.
- Support, only if you write to us: the messages you send and our replies.
- Payments, only if you make one: records of the order and the confirmation Telegram sends us. We never receive or store card numbers or other payment credentials.
- Connection quality statistics, when this feature is enabled: see the separate section below.
Data we do not hold
We do not collect or store: browsing history, visited addresses, DNS query contents, message or file contents, contacts, photos, microphone data, precise location, or the list of apps installed on your device.
We do not store your real IP address. It is used only in memory, for as long as it takes to answer a request or to run the tunnel, and it is not written to our database. Our request logs deliberately record only the method, path, and hostname of a request, never the address it came from. Our per-minute request limits also keep addresses in memory only.
We do not read or store any advertising identifier, we do not build a device fingerprint, and we include no advertising or analytics libraries in the app.
We never hold your device's private key: it is generated on your device and never leaves it. We do not hold our servers' private keys in the application database either.
A note we would rather state than hide: WireGuard, like any VPN protocol, must know your device's current address in the server's memory in order to send packets back to you. We do not save that address, do not export it, and do not log it.
Connection quality statistics (off unless enabled, and optional)
To answer the question "is the VPN working on my mobile operator right now?", the app can report the outcome of a connection attempt. This is designed so that a report cannot be traced to a person:
- A report contains only your mobile operator's public network name (or simply "wifi"), whether you were on Wi-Fi or cellular, and one of four outcomes: connected, handshake timed out, no network, or rejected.
- It carries no account, session, or device identifier, and no authentication — a report is unlinkable to you by design.
- The app sends no timestamp; our server rounds its own clock down to a 10-minute window.
- Nothing is stored per report. We keep only counters per operator, per network type, per 10-minute window, and those counters are deleted after 48 hours.
- You can switch this off in the app under Profile.
Statistics about our own servers
We measure our own infrastructure so we can tell when a server is overloaded: total throughput, processor and memory load, and how many connections are active. These are numbers about a machine, not about a person, and they contain no per-user data. This history is deleted after 90 days.
Showing your public address in the app
After connecting, the app can display the public address the internet now sees for you, so you can confirm the tunnel is working. To do that it requests https://1.1.1.1/cdn-cgi/trace, a diagnostic endpoint operated by Cloudflare. When the VPN is connected, that request travels through the tunnel and Cloudflare therefore sees our server's address. The app may also refresh this while the VPN is disconnected, and in that case the request comes from your ordinary connection, so Cloudflare sees your real address, exactly as it would for any website you visit. The result is only shown on your screen; we never receive or store it.
How we use what we hold
To create and revoke your VPN access, to route the encrypted tunnel, to show you the state of your connection and your own usage, to operate referrals and rewards, to answer your support messages, to complete a payment you asked for, to keep the service available, and to prevent abuse as described in our Terms.
Who else is involved
We do not sell your data, and we do not give it to anyone for their own purposes. The only third parties involved are the ones needed to run the service, acting on our instructions or because you chose to use them:
- Our hosting provider, which runs the servers the service and the VPN nodes operate on.
- Cloudflare, whose network carries traffic to our API and operates the address-check endpoint described above. Cloudflare sees connection metadata at its edge, which is outside our control; we state this rather than imply otherwise.
- Telegram, if you use our bot, our support chat, or pay with Telegram Stars. Those conversations and payments happen inside Telegram and are subject to Telegram's own policy.
- Google Play, if you install from there; Google provides us only aggregate statistics, never data identifying you.
We may disclose data if we are legally required to. We will not weaken the guarantees above voluntarily.
Security
The app talks to our services over HTTPS. VPN traffic is encrypted from your device to the tunnel endpoint using WireGuard. Access tokens are stored as hashes, so our database does not contain a usable copy of your token.
Keeping and deleting data
Account, device, and configuration records are kept while you use the service. Connection quality counters are deleted after 48 hours. Server infrastructure statistics are deleted after 90 days. Support and payment records are kept while needed to resolve questions and to meet accounting or legal obligations.
Because your account is anonymous, uninstalling the app already ends our ability to connect it to you: the token lives only on your device. You can also ask us to delete everything associated with your account through the data deletion page.
Children
VPN Number One is not directed at children and we do not knowingly collect data from them.
Changes
If this policy changes, the date at the top changes with it. Changes that affect what we collect will be announced in the app or in our Telegram channel.
Contact
For privacy questions or a deletion request, write to support@number-one-vpn.com or use the support link in the app.