VPN and privacy

What the VPN service does not record, what sits in memory during a session, what it can technically see and where the assurance ends.

Status: The VPN service is planned for December 2026; details may change before then.

Trust moves. It does not disappear.

Without a VPN, your internet provider sees which servers your device talks to. With a VPN, it sees only the connection to the VPN server. What it could see before, the VPN service can see now.

So a VPN does not remove this view into your connections. It hands it on. The real question for any VPN is therefore not how strongly it encrypts, but whom you trust afterwards and how you can check whether that trust is justified.

What is not recorded

  • Your destinations and what you do there. The VPN service does not keep which sites and services you access through the VPN, or what you do there, in a form that could be traced back to you.
  • Identifiers alongside. No identifier is stored with what happens through the VPN: no IP address, no device identifier, nor any other.
  • Who is behind an address. Several users appear at the same time with the same IP address of the VPN server, and the users' own addresses behind it are not recorded. What comes from such an address therefore cannot be traced to an individual user.
  • DNS queries. The VPN service's DNS servers do not log queries.
  • No tracking in the tunnel. The VPN service involves neither cookies nor other techniques that follow you.

Once a session ends, nothing remains stored about what you did during it.

What sits in memory during a session

No connection works entirely without information: the VPN server has to know where to send the replies.

With WireGuard, your IP address is held in volatile memory for this, only for the duration of the session, and is deleted when it ends. No link is made to what you do through the VPN. In addition, a key management service removes every device from the VPN server's memory that has gone three minutes without a handshake.

With OpenVPN, the processes on the VPN servers are not allowed to write anything, and syslog is switched off. As a result, no log is created even temporarily in memory.

The VPN servers have no hard drives. Whatever sits in memory is lost as soon as a server is switched off; more under VPN security.

Where the assurance ends

  • It concerns what you do. It does not say that no data at all arises when you connect: for as long as you are connected, the VPN server knows your IP address.
  • It does not cover what you disclose yourself. If you send an enquiry over the VPN connection and identify yourself in it, that enquiry is linked to you.
  • Plan limits need an assignment. One connection in the Free plan, up to five devices in the paid plans: limits like these can only be kept if connections or devices are assigned to an account.
  • Your account is known. The VPN belongs to the same account as your mailbox. Towards privymail.eu, your VPN access is therefore not anonymous.

What a VPN service can technically see

  • the IP address you connect from, because otherwise no connection could be established,
  • when and for how long you are connected and how much data flows,
  • which servers your device talks to, including your DNS queries,
  • the content of connections that are not encrypted themselves.

It cannot see the content of encrypted connections, for example of sites using HTTPS. Being able to see is not the same as recording. But what is never stored cannot be demanded or stolen later either.

The privacy policy is what counts

The binding description must be in the privacy policy before launch: what data is generated when you connect, why and for how long it is stored, and where it is processed.

What the other pages say about operations and data processing applies to the mail service. For the VPN, what applies is what the VPN pages and the privacy policy say.

Questions

Are my connections logged?

Which sites and services you access and what you do there is not kept in a form that could be traced back to you. Once a session ends, nothing about it remains stored.

Does the VPN service know my IP address?

Yes, for as long as you are connected: without it no connection could be established. With WireGuard it sits in volatile memory until the session ends and is then deleted.

Do I share my IP address on the VPN with others?

Yes. Other users are online at the same time with the address under which you appear to the outside. The users' own addresses behind it are not recorded.

Is my VPN access anonymous?

No. It belongs to your account, and the VPN service sees the IP address you connect from.

What does the protocol itself remember?

WireGuard keeps some information in memory for each key, including the device's last internet address. More under WireGuard.

How the tunnel protects you and where its protection ends is explained under VPN security, the overview under VPN.

WireGuard is a registered trademark of Jason A. Donenfeld.