NorthStatus

Privacy Policy

Last updated: 2026-07-18 · Operated by Mr. Doggg Inc (Colorado, USA)

NorthStatus exists to protect your traffic, so the rule is simple: we never look at what you do inside the tunnel. To run the service, enforce device limits, fix crashes, and make the apps better, we do collect the account, device, and diagnostic data listed below — and nothing beyond it.

What we collect

  • Account data — your email address, your password (stored only as a salted hash — we cannot read it), subscription plan and expiry, redemption-code records, sign-in sessions (session tokens are stored hashed; we also record the browser/app user-agent of each sign-in for account security), and the list of devices bound to your account.
  • Device & app data — platform (iOS / Android / Windows / macOS), device model, OS version, app version, system language, CPU architecture, and a hashed device identifier derived from a platform-provided ID. We never see the raw hardware identifier. Used for per-account device limits, compatibility decisions, and tying diagnostics to a device class.
  • Connection diagnostics — when the app connects, fails to connect, or disconnects: event type, timestamp, the node you selected, protocol, error codes and error messages, connection duration, and latency measurements. This is how we find broken nodes and routes. It never includes what you access through the tunnel.
  • Usage analytics — app-lifecycle and feature-usage events (app launched, screen opened, update installed, and similar), together with the device and app attributes above and related diagnostic attributes. This tells us which features matter and where the apps fail in practice. These diagnostic and analytics events are stored with your app version and are retained with those events for up to 24 months (see Retention).
  • Crash reports — when an app crashes: stack trace, app version, and device state at the moment of the crash, delivered through Sentry.
  • Traffic totals — the number of bytes your account transfers (a counter, per account), used for fair-use quotas, capacity planning, and abuse prevention. A number only — never contents, never destinations.
  • Payment metadata — from our payment partners we receive transaction status, amount, and the plan purchased. Card and bank details never touch our servers.
  • Operational server logs — like every internet service, our API servers keep standard short-lived logs (which include IP addresses) for security and troubleshooting. They rotate away automatically within weeks.
  • Support conversations — whatever you choose to send us by email.

Diagnostics, analytics, and crash reporting start only after you accept the privacy prompt shown on first launch. If we materially expand what we collect, that prompt will ask again.

What we never collect

  • Websites you visit or apps you use through the tunnel
  • DNS queries
  • Traffic contents — no inspection, no DPI, in any form
  • Logs that could link a session to a destination
  • Device location — the apps never request location permission
  • Contacts, photos, or messages — those permissions are never requested

Why we collect it

  • Delivering the service: authentication, subscriptions, device limits
  • Reliability: finding failing nodes, routes, and protocols before you report them
  • Stability: diagnosing and fixing crashes and errors
  • Product improvement: understanding which features are used and where users get stuck
  • Fair use: quotas and abuse prevention
  • Security and compliance with applicable law

Data retention

DataKept for
Account dataLife of the account
Diagnostics, analytics & crash reportsUp to 24 months
Traffic totalsUp to 24 months
Operational server logsWeeks (auto-rotated)
After account deletionPurged; backups age out ≤ 90 days

Third parties

We use the following providers to operate. None of them can see your tunnel contents:

  • Sentry — crash-report aggregation. Receives stack traces and the device/app attributes above.
  • Cloudflare — network edge in front of our API and some connection modes. Sees encrypted bytes in transit, like any carrier.
  • Payment processors — hold your card or payment details; we never receive them.
  • Cloud hosting providers — run the servers the service operates on.

We do not sell personal data, and we do not share it with advertisers.

We do not sell, use, or disclose to third parties any data collected through this app or service for any purpose unrelated to providing the service itself. The providers listed above act solely as our data processors under contract: they process data only on our instructions, only to the extent needed to operate the service, and are not permitted to use it for their own purposes.

No tracking, no selling, no disclosure. We do not track you across other apps or websites, and we do not integrate any advertising or ad-attribution SDK. The hashed device identifier used for the device limit serves only this app's own device management and abuse prevention — it is never used for cross-app advertising attribution or identity-graph building, and it is never shared with data brokers.

A note on “the node you selected.” The connection diagnostics above record which NorthStatus server you connected through (the tunnel entrance). They do not record the destinations you visit inside the tunnel. We do not log, and cannot reconstruct, a link between a session and the sites or services you reached through it.

Your rights

  • Request an export of the data we hold about you
  • Request correction or deletion of your account and its data — we act within 30 days
  • Withdraw consent for diagnostics at any time by uninstalling the app, or write to us and we will purge your diagnostic records

Children

NorthStatus is not directed at children under 16, and we do not knowingly collect their data.

Changes to this policy

If we materially change this policy, the app will show the privacy prompt again before new collection starts, and active subscribers will be notified by email.

Contact

Questions, export or deletion requests: [email protected]

隐私政策

最近更新: 2026-07-18 · 运营主体: Mr. Doggg Inc (美国科罗拉多州)

NorthStatus 的使命是保护你的流量,所以规则很简单: 我们绝不查看你在隧道内做了什么。为了让服务正常运转、执行设备数限制、 修复崩溃并持续改进 App,我们会收集下面列出的账号、设备与诊断数据 —— 仅此而已。

我们收集什么

  • 账号数据 —— 邮箱地址、密码 (仅以加盐哈希存储,我们无法读取原文)、 订阅套餐与到期时间、兑换码记录、登录会话 (会话令牌哈希存储;出于账号安全目的,我们还会记录每次登录所用的浏览器/客户端 User-Agent)、以及绑定到 账号的设备列表。
  • 设备与 App 数据 —— 平台 (iOS / Android / Windows / macOS)、 设备型号、系统版本、App 版本、系统语言、CPU 架构,以及一个由平台提供的标识 派生出的哈希设备标识。我们看不到原始硬件标识。用于每账号设备数限制、 兼容性决策,以及把诊断数据关联到设备类型。
  • 连接诊断 —— App 连接、连接失败或断开时: 事件类型、时间戳、 你选择的节点、协议、错误码与错误信息、连接时长、延迟测量。这是我们发现故障 节点和线路的手段,绝不包含你通过隧道访问了什么。
  • 使用分析 —— App 生命周期与功能使用事件 (启动、打开某页面、 安装更新等),连同上述设备与 App 属性及相关诊断属性。它告诉我们哪些功能真正 被使用、App 实际在哪里出问题。这些诊断与分析事件会连同你的 App 版本一并记录,并与这些 事件一同保留最长 24 个月 (见保留期)。
  • 崩溃报告 —— App 崩溃时: 堆栈、App 版本、崩溃瞬间的设备状态, 经由 Sentry 传输。
  • 流量总量 —— 你的账号传输的字节数 (每账号一个计数器),用于 合理使用配额、容量规划与滥用防护。只是一个数字 —— 不含内容,不含目的地。
  • 支付元数据 —— 我们从支付合作方收到交易状态、金额、所购套餐。 卡号与银行信息不会经过我们的服务器。
  • 运维日志 —— 和所有互联网服务一样,我们的 API 服务器保留标准的 短期日志 (含 IP 地址) 用于安全与排障,数周内自动轮转清除。
  • 客服往来 —— 你通过邮件主动发给我们的内容。

诊断、使用分析与崩溃报告仅在你于首次启动时同意隐私提示后 才开始。若我们实质性扩大收集范围,App 会再次征求你的同意。

我们绝不收集

  • 你通过隧道访问的网站或使用的应用
  • 你的 DNS 查询
  • 任何形式的流量内容 —— 不检查、不做深度包检测
  • 任何能把一次会话与访问目的地关联起来的日志
  • 设备位置 —— App 从不申请定位权限
  • 通讯录、照片、消息 —— 这些权限从不申请

为什么收集

  • 提供服务: 登录认证、订阅管理、设备数限制
  • 可靠性: 在你来报告之前发现故障节点、线路与协议
  • 稳定性: 诊断并修复崩溃与错误
  • 产品改进: 了解哪些功能被使用、用户在哪里卡住
  • 合理使用: 配额与滥用防护
  • 安全,以及遵守适用法律

数据保留

数据保留期
账号数据账号存续期间
诊断、分析与崩溃报告最长 24 个月
流量总量最长 24 个月
运维日志数周 (自动轮转)
删除账号后即时清除; 备份 ≤ 90 天内老化淘汰

第三方服务

为了运转服务我们使用以下供应商,它们都无法看到你的隧道内容:

  • Sentry —— 崩溃报告聚合,接收堆栈与上述设备/App 属性。
  • Cloudflare —— API 与部分连接模式前面的网络边缘,与任何链路 运营方一样只见到传输中的加密字节。
  • 支付服务商 —— 持有你的卡片/支付信息,我们从不接触。
  • 云主机服务商 —— 承载服务运行的服务器。

我们不出售个人数据,也不与广告商共享。

我们不会出售、使用或向第三方披露通过本应用或服务收集的任何数据用于与提供本服务 无关的任何目的。上面列出的服务商仅作为受合同约束的数据处理者:它们只按我们的 指示处理数据、只在运行本服务所必需的范围内处理,不得将其用于自身目的。

不追踪、不出售、不对外披露。我们不做跨 App 或跨网站的用户追踪,也不集成 任何广告或广告归因 SDK。用于设备数限制的哈希设备标识仅服务于本 App 自身的设备管控与反滥用, 绝不用于跨 App 广告关联或身份拼接,也绝不提供给数据经纪商。

关于「你选择的节点」。上面提到的连接诊断记录的是你连入的 NorthStatus 服务器(隧道入口),不是你在隧道内访问的目的地。我们不记录、 也无法把某次会话与你通过它访问的网站或服务关联起来。

你的权利

  • 申请导出我们持有的关于你的数据
  • 申请更正或删除账号及其数据 —— 我们在 30 天内处理
  • 随时撤回对诊断数据的同意: 卸载 App,或来信要求我们清除你的诊断记录

未成年人

NorthStatus 不面向 16 岁以下的未成年人,我们不会有意收集其数据。

政策变更

若本政策发生实质性变化,App 会在新的收集开始前再次弹出隐私提示征求同意, 并向持有效订阅的用户发送邮件通知。

联系我们

疑问、数据导出或删除请求: [email protected]