Privacy notice
This notice explains the limited data Antenka VPN uses to provide access, purchases and account controls.
Controller
- Aleksandr Sergeev PR Računarsko programiranje Beograd
- Registration number 67121368
- Email: info@antenka.rs
What the VPN does not collect
- Destination URLs and browsing history
- DNS request history
- Traffic content
- The list of apps installed on your device
- IMEI, device model or a hardware fingerprint
Data used to provide the service
Antenka may process your verified email, a server-side billing account identifier, access status, account membership, active installation records and one-time token hashes. A random installation identifier and a public device code enforce the configured device limit without collecting a hardware identifier.
At first activation, the server uses the request IP address only to determine a two-letter country code. This feature does not store the raw IP address or a country history. Infrastructure security logs may temporarily contain an IP address, timestamp, request route and status. VPN gateway logs may contain connection time, gateway, source address and session byte totals, but not browsing or traffic contents.
Campaign attribution (default off)
The attribution capability is disabled by default. If Antenka enables it for a registered campaign, Antenka may link a pseudonymous installation record and exactly one first_tunnel_success event to source, campaign, creative, market and distribution values registered on the server. It is used for Advertising or marketing and Analytics.
The event contains only a fixed event name and event identifier, client and server timestamps, app version name and code, the play or direct distribution channel, an existing routing-mode category, coarse locale and schema version. The attribution record does not contain an advertising ID, IP address, device or browser fingerprint, URLs, DNS history, app list, email or payment data. Campaign market is not inferred from an IP address.
Attribution data is not shared with advertising partners. The raw campaign token or Direct code is deleted after server acknowledgement.
Purchase data
For store or hosted-checkout purchases, Antenka processes the provider transaction identifier, product, status, billing country and entitlement period needed to verify access, refunds and renewals. For Google Play purchases, Google Play is the billing provider. Antenka stores the Google Play purchase token encrypted on the server and uses an opaque account binding for verification and fraud prevention.
Payment-card details are handled by Google Play or the hosted payment provider. Antenka VPN does not collect or have access to your full card number, expiry date or security code.
Why this data is used
- Provide and restore paid access
- Deliver access and activation details
- Enforce the configured installation limit
- Handle account deletion, refunds and legally required financial records
- Protect the service and diagnose operational failures
Processors and countries
Data is disclosed only to processors needed for hosting, payment verification, email delivery and legal compliance. Core account and billing systems are operated in Serbia. VPN traffic is processed by the gateway country you select or by a gateway selected automatically; the current network includes Serbia, the United States, Russia and the United Kingdom. Google and other providers may process data in additional countries under their own terms and applicable transfer safeguards.
Security
Antenka uses encrypted transport, access controls, restricted production access, keyed hashes for one-time secrets and server-side encryption for Google Play purchase tokens. No technical measure can eliminate every risk, but access is limited to what is needed to operate and support the service.
Retention
- Application and security logs: no more than 30 days
- Operational account data: deleted or anonymized no later than 30 days after an accepted verified deletion request
- Backups containing operational data: retained for no more than 35 days; deletion restrictions are reapplied if a backup is restored
- Encrypted Google Play purchase token: until the related subscription ends, then for 180 days
- Joinable installation/campaign binding and first_tunnel_success event: no more than 30 days
- Direct code digest: no more than the code TTL plus 24 hours
- Irreversible aggregate campaign metrics: 24 months
- Linkable attribution data: removed through the normal account-deletion process no later than 30 days after an accepted verified request
- Financial and fiscal records: 10 years
- Minimized account-deletion audit record: 3 years
Your rights and choices
You can ask for access to, correction of, restriction of or deletion of your personal data and object where applicable. You can also complain to the competent data-protection authority. Contact info@antenka.rs to exercise these rights.
You can request account deletion from the app when that control is available or use the public instructions. Deleting an Antenka account does not cancel a Google Play subscription. Store subscriptions must be cancelled in the store.
Contact
For privacy questions or requests, email info@antenka.rs.