Effective date: 5 September 2026. Pre-release draft, published for review ahead of the app's release.
What adBlock does
adBlock configures Apple's native encrypted DNS (DNS over HTTPS) using the
dns-settings Network Extension entitlement. It is not a traffic VPN. Web
pages, messages, and other non-DNS traffic do not pass through Velorion.
When protection is enabled, requested domain names are sent over encrypted DNS to the configured Velorion resolver so it can answer the request and apply the selected block policy. Domain names are processed in memory for that request. They are not written to application logs, analytics, profiles, or domain-level history. Upstream DNS providers may process requests under their own terms.
Data processed
- DNS request data. Requested domain, DNS record type, and the protocol data needed to answer a request. This is ephemeral request processing and is not retained as domain-level history.
- IP and network metadata. The service necessarily receives the source IP and connection metadata needed to route DNS over HTTPS, prevent abuse, and operate the connection. Bounded in-memory IP and credential rate-limit state may be used. adBlock does not persist source IP addresses in its application database or use them for advertising or profiling. Infrastructure providers may create short-lived security or network logs.
- Installation and integrity data. A random installation UUID, App Attest key identifier and attestation state, environment, timestamps, and an opaque resolver credential are used to resist abuse and authorize service. App Attest material is verified by Apple services, and the private key remains under Apple's control on the device.
- Purchase data. StoreKit supplies product, entitlement, original transaction, expiration, revocation, and notification state. Apple processes payment details, and Velorion does not receive full card details.
- Rules you provide. Normalized custom domain allow and block rules, plus Wi-Fi names you type. Custom domains are retained for the feature. Wi-Fi names are stored on your device and used in Apple's DNS on-demand configuration. The app does not read your current network name or your location.
- Aggregate activity. Only counts of blocked requests are retained. Edge nodes convert credential identifiers into daily rotating HMAC bucket keys before durable storage. Buckets contain a date and an aggregate count, never a domain or a source IP. The service returns the current day plus the previous six days and deletes older buckets.
- Diagnostics. App and build version, DNS configuration state, network interface type, protocol support, health result, timestamps, and recent state transitions may be copied by you. Copied reports omit domains, URLs, IP addresses, credentials, and browsing history, and are shared only when you choose to share them.
Purposes, sharing, sale, and tracking
Data is used only to provide encrypted DNS filtering, verify subscriptions, secure the service, apply your rules, show aggregate activity, diagnose availability, and comply with law. It may be processed by Apple (StoreKit and App Attest), hosting and network providers, and upstream DNS providers solely to provide those functions.
Velorion does not sell personal data, use it for cross-app or cross-site tracking, operate an advertising SDK, or create a browsing profile. No data is used for third-party advertising or advertising measurement.
We use only providers whose terms require them to protect this data to at least the standard described in this policy and to process it solely to deliver the functions above. Vendor terms and their retention schedules are being confirmed as part of the pre-release review, and this policy will be updated with the outcome before release. Apple processes StoreKit and App Attest data under Apple's own terms, and upstream DNS providers process forwarded requests under theirs.
Retention and deletion
Domain-level DNS requests are not retained. Rotating aggregate buckets are kept for at most seven daily reporting buckets. Installation, attestation, entitlement, transaction, credential, and custom-rule records are retained while needed to provide and secure the service or to meet legal obligations. Revoked credential state may be retained to prevent reuse.
There is no public account. To request deletion of server-side installation records and custom rules, email contact@velorion.tech. Because the identifier is pseudonymous, we may ask for an in-app support code or other proof that the installation is yours. Do not email resolver credentials. Deleting the app removes its local preferences and keychain material according to iOS behaviour, but does not by itself prove ownership of or delete server records. Purchase history held by Apple is governed by Apple's policies.
Stopping processing and withdrawing consent
You can stop DNS requests reaching the resolver at any time, without contacting us:
- Pause protection in the app, or remove the encrypted DNS configuration, which returns your iPhone to its system DNS.
- Deselect adBlock in Settings, then General, then VPN & Device Management, then DNS.
- Cancel the subscription in your Apple Account settings, which ends filtering at the end of the current period.
- Delete the app, which removes its local preferences and keychain material according to iOS behaviour.
Any of these stop further DNS processing. To also delete the server-side installation record and your custom rules, email us as described below.
Security, availability, and children
DNS and API traffic uses HTTPS. Credentials are opaque and stored in the iOS Keychain.
The current service is a single-node prototype without regional redundancy or an uptime guarantee. Outages may make DNS filtering unavailable. Expired subscriptions are routed to unfiltered DNS so ordinary resolution can continue where the service is reachable.
adBlock is not directed to children under the age required for independent consent in their jurisdiction. Contact us if you believe a child supplied personal data.
Contact and changes
Privacy and deletion questions: contact@velorion.tech.
Material changes will be dated and published before they apply.
See also the terms of use and the support page.