Home / Privacy

Privacy,
obviously.

We collect the minimum data needed to provide service. No email, no phone, no analytics, no tracking. Apache access logs are piped to /dev/null.

Last updated: 2026-01-15

What We Collect

We collect the minimum data necessary to provide our services. Here is exactly what we store.

Account data

  • Credential. A 32-character random string used for authentication.
  • Account balance. Your current credit balance.
  • Account creation date.

Payment data

  • Stripe customer ID and payment method ID if you use card payments. This allows Stripe to process payments without us storing your card details.
  • Invoice records: amount, payment method, timestamp, description.
  • Crypto payment references: order IDs and the on-chain address we generated for your payment. Nothing more.

We never store credit card numbers, CVV, or raw payment details. All card processing is handled by Stripe.

Cryptocurrency payments

Crypto is the most private way to pay us, and we built the payment system ourselves specifically so it stays that way:

  • No third-party payment processor. We do not use Heleket, NOWPayments, Coinbase Commerce, or any external service. Your payment never passes through, and is never seen by, a company other than us. There is no third party correlating your payment with your identity or selling that data.
  • We run our own full nodes. Bitcoin, Litecoin, Monero, Ethereum, BSC, and Tron payments are watched on infrastructure we operate. We do not query third-party block explorers or chain-analysis APIs with your address.
  • Monero (XMR) supported. For maximum privacy, Monero payments are opaque on-chain by design; even we only see them via a view key to confirm you paid.
  • A fresh address per payment. Each invoice gets its own newly derived receiving address, so your payments are not trivially linkable to each other on-chain.
  • Self-custodial. Funds go directly to addresses we control with hardware-wallet keys. No custodian holds your payment at any point.

Service data

For VPS instances: server configuration (hostname, IP, OS, specs) and billing info (expiration, auto-renew settings).

For proxy instances: proxy credentials and configuration, whitelisted IPs (datacenter proxies), bandwidth usage (residential proxies).

Support and notifications

Ticket subjects, messages, and timestamps. System notifications (renewal warnings, etc.) and their read/unread status.

What We Do Not Collect

Things you will never be asked for, and never appear anywhere in our database:

  • Email addresses
  • Phone numbers
  • Names, addresses, or any government ID
  • IP addresses of visitors (Apache access logs piped to /dev/null)
  • User agents, referrers, tracking cookies
  • Analytics, fingerprinting, third-party trackers
  • Credit card numbers (handled exclusively by Stripe)

Server Logs

We run Apache as our web server with all access logs disabled. The directive is literally CustomLog /dev/null combined, which means none of the following are kept:

  • IP addresses of visitors
  • Request timestamps or URLs
  • User agent strings or referrers

Error logs are kept for debugging crashes but contain no user identifying information.

Data Retention

  • Inactive accounts with zero balance, no active services, and no open tickets are automatically deleted after 24 hours.
  • Active accounts are retained as long as they have balance, services, or open tickets.
  • Expired services are removed along with their associated data.
  • Read notifications older than 30 days are automatically cleaned up.

Third-Party Services

We keep third parties to an absolute minimum. The only external service that ever touches your data is:

  • Stripe. Card payment processing only, and only if you choose to pay by card. Stripe receives your card details directly; we store just Stripe's customer and payment method IDs. If you never pay by card, Stripe never sees anything about you.

Cryptocurrency payments involve no third party at all. They are processed entirely on infrastructure we own and operate, with our own blockchain nodes. No external payment processor, no chain-analysis provider, no block-explorer API is involved in taking your crypto payment.

Stripe has its own privacy policy governing its data handling. We do not share any other data with it beyond what a card transaction requires.

Your Rights

  • Access. View all your data through your dashboard at any time.
  • Deletion. Delete your account from the settings page. All associated data is removed.
  • Export. Invoices and ticket history can be exported. Contact support if you need anything else.

Governing Law and PIPEDA

Servury is operated by Avalanche Systems Inc. (DBA Servury), a corporation registered in Canada. This privacy policy is governed by Canadian federal privacy law, including the Personal Information Protection and Electronic Documents Act (PIPEDA).

Under PIPEDA, you have the right to:

  • Know what personal information we hold about you and how it is used.
  • Access your personal information and request corrections.
  • Withdraw consent to the collection, use, or disclosure of your personal information (subject to legal or contractual restrictions).
  • Lodge a complaint with the Office of the Privacy Commissioner of Canada if you believe your privacy rights have been violated.

Because we collect the absolute minimum personal information, PIPEDA compliance is straightforward. There is very little to protect.

Contact

For privacy-related questions, write to contact@servury.com.