To delete the app: uninstall it from your
device. Done.
To delete server-side data we hold (crash
reports, support emails, waitlist email, etc.): email
[email protected]
with the subject "Data deletion request" — we'll process
within 30 days and confirm by email.
Important context: we don't have accounts
ClownVPN is free, ad-supported, and uses no login system. There is no username, no password, no profile to manage. When you install the app, the only identifier we generate is a randomly assigned, anonymous install ID stored on your device.
This makes "account deletion" a bit of a misnomer — what we actually delete on request is whatever device-level data we've collected that's linked to your install. The breakdown below shows what those data categories are.
What data we hold and how to delete it
| Data category | Where it lives | How to delete |
|---|---|---|
| Install ID (anonymous UUID on your device) | On your device only | Auto-removed on app uninstall |
| Server-side anonymous diagnostics linked to install ID | ~90 days then anonymized aggregates | Request via this page |
| Crash reports | Up to 12 months in error tracking | Request via this page |
| Ad SDK identifiers (GAID / IDFA) | Controlled by Google / Apple at OS level | Reset in your device settings; we delete our copy on request |
| Support email correspondence | Up to 24 months for legitimate ops | Request via this page |
| Waitlist email (if you submitted one) | Until launch + 6 months | Request via this page or unsubscribe link |
Note: as our Privacy Policy and No-Logs Statement document, we do not log your VPN traffic, IP, DNS queries, or session activity. There is no traffic data to delete because we never had it.
How to submit a deletion request
ClownVPN operates as a small, distributed team — there is no physical mailing address and no in-person office. All requests are handled by email.
- Send an email to [email protected].
- Subject line: Data deletion request.
- In the body, include any of the following you have
available (none are mandatory, but more helps us match
and verify):
- The email address you contacted us from previously (if any).
- The email address you used for the waitlist (if applicable).
- Approximate install date and the country / region you used the app in.
- Any specific data categories you want deleted (or "all" for everything).
- We respond within 7 business days to confirm receipt and request any additional information needed to verify the request.
- Deletion is completed within 30 days of verification. You'll receive a confirmation email.
What gets deleted
- All server-side records linked to the identifiers you provide (install ID, email address, support thread).
- Backups containing your data are not actively scrubbed (a normal industry practice), but they age out within our standard retention schedule (90 days for primary backups). After that point, no copy remains.
- Aggregate analytics that include your data anonymized — where individual identifiers are no longer recoverable — are not deleted, because they're already not linked to you.
What may be retained (and why)
A small set of data may be retained even after a deletion request, in line with legitimate purposes recognized under GDPR, CCPA, and similar frameworks:
- Fraud / abuse records — if your install ID was flagged for abuse (rare, but happens), a minimal record is retained to prevent re-registration. This is typically a hashed identifier, not personal data.
- Legal-hold data — if we receive a subpoena, court order, or active law-enforcement request tied to specific data before your deletion request, that data may be retained until the legal process concludes.
- Aggregate, anonymized analytics — as noted above, anonymized data isn't subject to deletion because it's no longer linked to you.
- Tax / accounting records — none of this is currently relevant (we have no paying customers), but standard 7-year retention may apply if you ever participated in a paid transaction with us.
Statutory privacy rights
Depending on your jurisdiction, additional rights apply on top of this process:
- EU / EEA (GDPR Article 17): "right to erasure" — generally processed within 30 days; we'll confirm in writing.
- UK (UK GDPR, Data Protection Act 2018): equivalent erasure rights.
- California (CCPA / CPRA): right to delete personal information.
- Other US states with privacy laws (Virginia, Colorado, Connecticut, Utah, etc.): similar deletion rights apply.
- Brazil (LGPD), Canada (PIPEDA), Australia (Privacy Act): equivalent frameworks apply.
If you're invoking a specific statutory right, mention it in your request and we'll process under that framework's standards.
If something doesn't work
If you don't receive an acknowledgment within 7 business days of submitting an email request, please:
- Check your spam / junk folder.
- Resend from a different email address if possible (some mail providers occasionally drop messages to small sender domains).
- Include a different reply-to address in the message body so we have an alternative channel to confirm.
If we're unable to resolve a privacy concern, EU / UK users have the right to lodge a complaint with their national supervisory authority. California users can contact the California Privacy Protection Agency.
Related
- Privacy Policy — full breakdown of what we do and don't collect.
- No-Logs Statement — the specifics on VPN traffic logging.
- Contact — general support.