SEWER PRIVACY POLICY
SEWER Privacy Policy
Operator: Shenzhen Taihai Technology Co., Ltd., Unified Social Credit Code: 91440300MAEQG4W59Y, address: Room C512, Building C, 331 Creative Park, Yintian Industrial Area, Yantian Community, Xixiang Subdistrict, Bao'an District, Shenzhen ("SEWER", "we", "us", or "our"). We value the security of your personal information and network data. This Privacy Policy explains how we process information when you use the SEWER iOS app and related account services.
1. Scope
This Policy applies to the SEWER iOS app, the net.sewer.top account service, and directly related enterprise network security access services. The service is available only to accounts authorized by Shenzhen Taihai Technology Co., Ltd. Unless stated otherwise, this Policy does not apply to third-party websites, apps, or services you access through a connected service; those third parties process information under their own privacy policies.
2. Information We Process
To provide the account and network services you request, we may process:
- Account information: email address, login verification information, account identifiers, and account service status.
- Service configuration: subscription authorization, selected routes, routing modes, and necessary protocol configuration.
- Service status and usage: connection status and errors, service data allowance, data used, and remaining data.
- Necessary network technical data: IP address, time, network connection status, domain resolution, and transmission technical data required to establish, operate, protect, and troubleshoot requested network services. We do not use this data for advertising targeting or profiling.
- Client-side data: login sessions and subscription cache are stored in Apple Keychain; preferences such as selected routes and routing modes are stored in the app container. They are cleared according to system and app mechanisms after you sign out or uninstall the app.
We do not collect advertising identifiers or integrate third-party advertising or behavioral analytics SDKs in the client.
3. System Network Status and Specific Connectivity Checks
To avoid creating an incorrect network configuration when the device has no available network path, the client uses the Apple Network framework's system network path status after you tap Connect and before a tunnel is established. This check does not connect to third-party websites, send HTTP requests, or collect or upload network content.
Before establishing a route, the client uses the public DNS addresses 223.5.5.5 and 1.2.4.8 only to resolve the selected route server. After the tunnel is established, the client sets the device DNS to Cloudflare's public DNS address 1.1.1.1, and corresponding DNS requests are forwarded through your selected route. Relevant resolution services may receive queried domain names, route egress IP address, time, and necessary connection information. This processing is used only for domain resolution, not for advertising, profiling, or marketing.
After the system reports that the tunnel has been established, the client accesses https://www.google.com/generate_204. The route is marked as connected only after the expected HTTPS response is received. This request verifies the complete DNS, TLS, proxy egress, and return path.
GeoIP/GeoSite routing classification data is bundled with the client version and replaced only through App Store version updates. The client does not download or install rule files at runtime.
This Google connectivity check requires Google to receive the network technical data needed to make the request, such as IP address, time, request headers, and connection information, and is subject to Google's privacy policy. We do not sell, rent, or provide your account details, subscription authorization, or network-use content to Google.
4. How We Use Information
We use information only as necessary to:
- Authenticate accounts and provide enterprise network security access, subscriptions, route selection, plan, and data allowance information.
- Establish, maintain, and protect network connections you initiate.
- Monitor service availability, troubleshoot issues, prevent abuse, and protect account security.
- Meet applicable legal and regulatory requirements or handle legally made requests.
- Respond to support requests you initiate.
We do not sell personal information, use it for advertising or marketing profiling, or provide it to third-party advertisers.
5. Information Sharing and Cross-Border Transfers
We do not sell, rent, or share personal information for advertising, marketing, or data-broker purposes.
When providing a service you actively request, information may be processed in these limited circumstances:
- By account, network, and infrastructure service providers operated or controlled by us to provide SEWER services.
- When you actively access a third-party website, app, or network service, traffic reaches the destination you choose to access.
- As described in Section 3, public DNS resolution services, including Cloudflare's
1.1.1.1, and Google respectively process the technical request data necessary for domain resolution and connectivity checks. - Where disclosure is required by law or needed to protect the safety, rights, and property of users, SEWER, or the public.
Network services may involve servers or providers located outside your region. We take reasonable measures to ensure cross-border processing complies with applicable data protection laws.
6. Retention
We retain information only for the time needed to achieve the purposes in this Policy, meet legal obligations, resolve disputes, or enforce agreements.
- Client sessions, subscriptions, and preference data are normally deleted after you sign out or uninstall the app.
- Account information and service configuration necessary to provide account services are kept while the service remains active. They will be deleted or anonymized within seven days after the service ends, unless otherwise required by law.
- Network access, security, and diagnostic logs are retained for no more than seven days and then deleted or anonymized, unless otherwise required by law.
7. Security Measures
We use reasonable technical and organizational measures to protect information, including HTTPS transmission, Apple Keychain storage for client sessions, access controls, and least-privilege principles. No transmission or storage method can be absolutely secure. If a security incident may affect your rights, we will provide notice and remediation as required by applicable law.
8. Your Rights and Choices
Where permitted by applicable law, you may request access to, correction, deletion, restriction of processing, or export of your personal information, and withdraw consent where consent can be withdrawn. You may also stop subsequent client processing of related local data by signing out, stopping the connection, or uninstalling the app.
To exercise your rights, ask questions about this Policy, or submit a complaint, contact us:
We will handle your request within the period required by applicable law. We may need to verify your identity to protect account security.
9. Minors
SEWER does not provide services to individuals under 16 years of age. If you believe a minor has provided personal information without appropriate authorization, contact us and we will address it as required by applicable law.
10. Policy Updates
We may update this Policy because of service, legal, or security requirements. For material changes, we will provide notice in the client, on the website, or by another appropriate method. An updated policy takes effect on publication or on the effective date stated in it.
11. Applicable Law and Region
This service is provided only in regions where we expressly support and may lawfully provide it. Do not use the service in restricted regions or where additional authorization is required but has not been obtained by us.
This Policy and the resolution of related disputes are governed by the laws of the People's Republic of China, without affecting mandatory rights granted to you by applicable law.