Last Updated: 10 Sep 2021
PotatoVPN is offered by FASTPOTATO PTE. LTD. We will help you understand what information we do/don’t collect, and how we collect, store, and use them.
This Policy applies to all services (collectively as the “Service”) offered by PotatoVPN (Software versions like Android, iOS) and PotatoVPN official websites.
Data We Collect
We are committed to protecting your privacy right by consistently following the data minimization principle. We only collect your personal data to maintain excellent user support and quality of service. The section below elaborates what data we collect (from the last 12 months only). Please note these data never include your activities of using PotatoVPN nor your IP address, meaning that any of your browsing history, queries and data contents are strictly confidential.
ACCOUNT CREATION AND MANAGEMENT
Registration date. It is used to facilitate your login to PotatoVPN.
Email address (only if you choose to sign up with an email). When you forget your password, we help you retrieve it by sending a verification code to your email address.
These data are automatically collected in process of creating an account.
BILLING AND PAYMENT
(Only if you make a purchase.)
Payment method, transaction ID/reference ID and timestamp.
These data are automatically collected in process of purchasing. We use them for purpose of user support and troubleshooting only.
STATUS AND USAGE DATA
We may collect device information, app version, geolocation (city-level), connection timestamp, choice of the protocol, network type and error report. These are automatically collected when you launch and use PotatoVPN. This information assists us in identifying connection problems, fixing network issues, and providing technical support to improve the user experience.
DIAGNOSTIC AND AGGREGATED DATA
Defense Data: when you sign in/up on PotatoVPN, we might collect your original IP address, but it will be automatically deleted in 5 minutes to prevent Brute force. We are unable to know the IP address during these five minutes.
Aggregated Data: we collect aggregated data from tens of millions of users, such as sites visited via servers, but all these data are anonymous and will not identify any user.
Data We Control and Store
FASTPOTATO PTE. LTD. is the Data Controller of the personal data you offer to us.
How long we store your data
You can always request a deletion of your data on account creation and management, billing and payment, and status and usage. Your usage data will only be stored for no more than 48 hours, after which it will be automatically deleted.
Again, our guiding principle towards data collection is to collect only the minimal data to maintain VPN service. Therefore, we delete your personal data as soon as it is unnecessary to store.
Where We Store Your Data
When you use our Service, you may be using servers located in a variety of different countries. However, there is a difference between use and storage. The data we collect are mostly stored in servers located in the European Union.
Since we are a Singapore company, we may access the data outside from the EU when necessary, for example, when user support is required.
In all cases, we follow generally accepted standards and security measures to protect the personal data submitted to us, both during transmission and once we receive it. We always strive to protect your data to the maximum extent we can.
Your Rights to Access, Correct, Delete, and Request Restriction
You have the right to access, correct, delete, or object to the processing of your personal information by contacting us at [email protected]
.To do so, you are required to log in to your account with your password to verify your identity. However, deleting information may prevent you from continuing using our Services. You are also aware that, due to legal reasons, your information may not be completely deleted.
In each case, PotatoVPN provides a receipt of a Verifiable Consumer Request without charge and users can request it twice a year. We will send you a portable and readily usable format (e.g. XML, or CSV, etc) within 45 days. If necessary, we may extend this period by a notification for another 45 days.
Your Rights Under GDPR:
The General Data Protection Regulation (GDPR) of the European Union (EU) requires us to specifically underline users’ rights in the EU, which are:
- The right to be informed.
- The right to access.
- The right of rectification.
- The right to erasure, or the right to be forgotten.
- The right to restrict processing.
- The right to data portability.
- The right to object.
- Rights in relation to automated decision-making and profiling.
PotatoVPN is committed to user privacy globally, and our existing practices reflect that through minimal collection of data and ensuring users have control over their personal information. GDPR requires us to outline those practices in a specific manner for users in the EU.
For the purposes of fulfilling our contractual obligations to users, including:
- Providing users with the Services and Apps they have requested.
- Managing user subscriptions and processing payments.
- Providing customer support.
For a legitimate interest associated with the operation of our business, including:
- Enhancing the quality, reliability, and effectiveness of our Site, Services, and Apps.
- Communicating with customers to provide information and seek feedback related to our Services and Apps.
You can exercise your rights under GDPR to access, transfer, correct, delete, or object to the processing of your personal information by contacting us at [email protected]
Your Rights Under CCPA
If you are a California resident, your privacy rights are outlined in the California Consumer Privacy Act (CCPA). As per definitions in CCPA, PotatoVPN does not sell your personal information to non-affiliated third parties.
If you would like to know further information regarding your legal rights under California law or would like to exercise any of them, please contact us at: [email protected]
Some third parties may collect certain information from you independently from us, such as third-party payment platforms, analytics-tool providers, or advertisers. These third parties are:
PayPal, Admob, AppLovin, Chartboost, Firebase, Adjust.
The Services are intended for adults aged 18 and above. We do not log information from minors. DO NOT USE PotatoVPN if you are under 18.