Activity logs describe what happens through the VPN
Activity data can include destinations, DNS requests, or other records tied to traffic carried through the service. A provider that says it does not retain activity logs is making a narrower and more useful claim than simply saying “private.”
Connection metadata is different
Operational systems may process timestamps, server load, session state, source addresses, or bandwidth information. Whether any of this is retained, for how long, and whether it is linked to an account are separate questions. Providers should describe those details precisely.
Account and payment data live outside the tunnel
Email addresses, support tickets, subscriptions, app-store records, and payment records are not VPN browsing logs. They can still be personal information and should have their own retention and security explanation.
The website creates another data surface
Visiting a VPN provider’s website can create ordinary web server logs, consent records, analytics data, or advertising data. A no-logs statement about VPN traffic does not automatically cover the website. Read the scope of the policy rather than applying one sentence to every system.
Sources & further reading
This guide is general educational material. Platform behavior, provider policies, and network conditions can change. Check current documentation before relying on a specific configuration.
Report an error or suggest a clarification ↗