Purpose
This Data & Logging Statement explains the types of data ASHVPN may process to operate, secure, support, and protect the service.
ASHVPN does not market itself as an anonymous VPN and does not make broad no-logs claims.
ASHVPN aims to keep operational data limited to what is needed to provide the service, process payments, support customers, investigate faults, prevent abuse, and meet legal or provider obligations.
Account and subscription data
ASHVPN may process account and subscription information including:
- customer email address;
- customer name, where provided;
- plan selected;
- billing period;
- subscription status;
- device limit;
- device slot status;
- access start and end dates;
- cancellation, expiry, suspension, or revocation status;
- support and email delivery status.
Payment data
Payments are handled through Stripe or another approved payment processor.
ASHVPN may store or receive payment-related metadata needed for fulfilment, support, dispute handling, and accounting, such as:
- Stripe customer ID;
- Stripe checkout session ID;
- Stripe subscription ID;
- Stripe price ID;
- payment status;
- plan and billing period;
- receipt, invoice, or dispute references where needed.
ASHVPN should not receive or store full card numbers, card security codes, or payment card passwords.
VPN configuration and device data
To provide VPN access, ASHVPN may process VPN configuration and device-slot information including:
- subscription ID;
- device slot number;
- location code;
- peer public key;
- assigned VPN IPv4 or IPv6 address;
- configuration status;
- delivery, revocation, or replacement status;
- support notes linked to setup or access issues.
ASHVPN must not store or ask customers to send WireGuard private keys in support, refund, abuse, or legal request messages.
Operational and security data
ASHVPN may process limited technical and operational data needed to run and protect the service, including:
- server health information;
- service availability information;
- error logs;
- email job status;
- fulfilment status;
- abuse reports;
- provider notices;
- security events;
- support timestamps and troubleshooting information;
- records needed to detect, prevent, or respond to misuse.
The exact technical records available may depend on the final production infrastructure, provider systems, control-plane design, and service configuration.
Data ASHVPN does not need for normal service operation
In normal service operation, ASHVPN does not need to intentionally store:
- the content of customer internet traffic;
- customer passwords;
- WireGuard private keys;
- payment card numbers or card security codes;
- one-time codes or recovery codes;
- unrelated sensitive personal data.
Customers should not send these items to ASHVPN.
Abuse, support, and legal requests
ASHVPN may keep records connected to support requests, abuse reports, legal notices, payment disputes, or security incidents.
These records may include the information supplied by the requester, ASHVPN investigation notes, relevant timestamps, account identifiers, subscription identifiers, payment references, network identifiers, and action taken.
ASHVPN may preserve relevant records where legally appropriate or where needed to protect customers, infrastructure, payment processors, providers, or legal position.
Retention
ASHVPN should keep operational, account, support, abuse, payment, and legal records only for as long as reasonably needed for the purpose for which they are processed, including service operation, customer support, accounting, fraud prevention, abuse handling, dispute handling, legal compliance, and security.
Final retention periods must be aligned with the Privacy Policy, Cookie Policy, Terms of Service, provider requirements, accounting requirements, and legal review before launch.
Sharing information
ASHVPN may share relevant information where needed with:
- payment processors;
- hosting or infrastructure providers;
- email delivery providers;
- professional advisers;
- regulators, courts, or law-enforcement bodies where legally required or appropriate;
- third parties where needed to investigate abuse, fraud, disputes, or security incidents.
ASHVPN should not sell customer personal data.
Customer responsibilities
Customers must not send ASHVPN passwords, WireGuard private keys, payment card numbers, one-time codes, recovery codes, or unrelated sensitive personal data.
Customers should contact ASHVPN promptly if they believe their account, device configuration, or email address has been misused.
Relationship with other policies
This statement should be read together with the Privacy Policy, Terms of Service, Acceptable Use Policy, Fair Use Policy, Refund & Cancellation Policy, Cookie Policy, and Abuse Reports and Contact page.
If there is a conflict between this page and the Privacy Policy or Terms of Service, the Privacy Policy or Terms of Service should control unless a later reviewed policy states otherwise.
Important notes
ASHVPN LTD
Company number: 17184685
Registered office: 71-75 Shelton Street, Covent Garden, London, WC2H 9JQ