In plain language: what protocol 404 VPN runs on, what data we store, and what we deliberately don't.
404 VPN runs on the VLESS protocol over WebSocket with TLS 1.3 encryption. It's a modern protocol designed to make encrypted traffic hard to distinguish from ordinary HTTPS traffic to a website — which makes network-level traffic-type blocking harder.
Running your account needs a minimum: your email (or Telegram ID if you signed in via Telegram), a password hash, your selected plan and its expiry date, and technical counters of traffic used — so we can apply plan limits (like the 5GB/day on Free).
We don't keep logs of visited websites, we don't log DNS requests, and we don't save the content of your traffic. Our infrastructure isn't built to answer "what did you do online" — because we don't hold the answer to that question ourselves.
Account data (email, plan) is kept while the account is active. Free-plan traffic counters reset daily and aren't kept as history. Deleting your account from settings removes your personal data from our primary database.
Server infrastructure is currently based in Amsterdam, Netherlands — see the Servers page for the current location list and status. We're working on expanding the list of countries.
On the Free plan, a key doesn't "end" — the 5GB limit simply resets every day. On paid plans, access runs until the end of the paid period, after which the account automatically drops to Free — data and settings aren't deleted.
Just an email and a payment method (Visa/Mastercard/MIR). We don't ask for ID documents and don't require your real name.
Through the form on our About page, or at support@404vpn.io. Requests are handled directly by our team, never passed to a third party.
Separately, our Privacy Policy covers the same ground in legal language.