WangYuYun Privacy Policy
In effect since Sep 17, 2026
We do not log your browsing. This policy sets out exactly what we do collect, why, and for how long.
1. Scope
This Privacy Policy explains what information Vigorously LLC ("we", "us") collects when you use WangYuYun (the "Service"), why we collect it, how we use and retain it, and what rights you have. It applies to our client apps, our website, and our backend services.
2. What We Do Not Log
The core commitment of the Service is that we do not log what you do online. We do not collect or store:
- the sites, domains, or IP addresses you visit;
- any part of the content you transmit;
- DNS queries;
- any mapping between source and destination addresses during a session.
Our server nodes count only the upstream and downstream bytes attributable to each credential within a time window, for billing and capacity planning. Those counters contain no destination information.
3. What We Collect
3.1 Account information
- email address (when you register with email);
- an irreversible hash of your password (we cannot recover your password);
- display name and avatar, if you choose to provide them;
- the subject identifier returned by Apple or Google when you sign in with them.
If you start a trial with a device identifier, we store only a hash of that identifier and do not require an email address.
3.2 Device and client information
- device identifier, name, and model;
- operating system version and app version;
- the brand app and platform in use;
- push token, if you enable notifications.
We use this to enforce device limits, deliver notifications, assess compatibility, and troubleshoot.
3.3 Usage and billing information
- upstream and downstream byte counts per time window;
- plan, remaining allowance, and expiry;
- order records and the transaction identifiers returned by payment platforms.
3.4 Connection metadata
- sign-in time and source IP address;
- time of the most recent heartbeat and configuration fetch.
Sign-in IP addresses are used for anomaly detection and abuse prevention. They are never linked to browsing activity.
3.5 Information you give us
When you open a support ticket: the title, description, contact email, screenshots, and the client diagnostic snapshot you submit.
4. Purposes
| Purpose | Information used | | --- | --- | | Providing and maintaining the Service | account, device, usage | | Billing and settlement | usage, orders | | Device and concurrency limits | device, connection metadata | | Security and abuse prevention | sign-in metadata, anomalous usage | | Customer support | ticket content, device and version information | | Improving the Service | aggregated, anonymised statistics | | Meeting legal obligations | the above, to the extent necessary |
We do not sell your personal information, and we do not use it for advertising unrelated to the purposes above.
5. Third Parties
To deliver specific features we share the minimum necessary information with these categories of provider:
- Payments: payment gateways and app stores, to complete transactions and manage subscriptions;
- Push: Apple Push Notification service and Firebase Cloud Messaging, to deliver notifications (payloads carry only a title and short body);
- Email: email delivery providers, for verification codes and billing notices;
- Infrastructure: cloud server and network providers that host the Service.
These providers may process information only as needed to provide services to us, and are bound by contract.
6. Retention
| Data | Retention | | --- | --- | | Account information | while the account exists; after deletion see section 8 | | Usage and billing records | 24 months from creation (reconciliation and tax) | | Sign-in and security logs | 12 months | | Tickets and attachments | 12 months after the ticket closes | | Push tokens | deleted as soon as they expire or you disable notifications |
Data beyond these periods is deleted or irreversibly anonymised.
7. Security
- encryption in transit throughout;
- passwords hashed with a brute-force resistant algorithm such as Argon2;
- node keys and third-party credentials stored encrypted with AES-256-GCM;
- least-privilege role-based access to admin tools, with audit records for sensitive actions;
- regular dependency and system patching.
No system can be absolutely secure. If a data incident affects your rights, we will notify you as required by applicable law.
8. Your Rights
You may:
- Access: view your profile, device list, orders, and usage in the app and on the website;
- Correct: change your display name, avatar, and email address;
- Delete: close your account at any time. We then delete or anonymise your personal information, retaining only transaction records required by law, plus an irreversible identity digest that prevents a deleted identity from re-registering;
- Export: request a copy of your account data at support@wangyu.cc;
- Withdraw consent: turning off notification permission withdraws consent to push; stopping use and uninstalling withdraws consent to the rest.
We respond to requests within 30 days.
9. Children
The Service is not directed at children under 13. We do not knowingly collect their personal information. If you believe we have, contact support@wangyu.cc and we will delete it promptly.
10. International Transfers
Our nodes are located in several countries and regions. Using the Service means your connection metadata moves between them. We apply contractual and technical measures so that protection after transfer is no lower than this Policy promises.
11. Changes to This Policy
If this Policy is revised, we publish the revision at wangyu.cc and in the app and update the effective date at the top. For material changes to the purposes or scope of processing, we also notify you by in-app message or email.
12. Contact Us
For any question about this Policy or your personal information:
Vigorously LLC 418 Broadway, Ste R, Albany, NY 12207, United States Email: support@wangyu.cc