Privacy Policy
Roundlabs, LLC
Version 2 · Effective Date: July 30, 2026 · Last Updated: July 30, 2026
1. Introduction
This Privacy Policy describes how Roundlabs, LLC, doing business as Roundproxies (“Roundproxies,” “we,” “us,” or “our”), a limited liability company organized under the laws of the United States, collects, uses, discloses, and protects personal information in connection with our website located at roundproxies.com (the “Website”), our customer dashboard at app.roundproxies.com, and our proxy services — including residential, ISP, datacenter, and mobile proxies — together with our APIs, documentation, and related products (collectively, the “Services”).
By accessing or using the Services, you acknowledge that you have read and understood this Privacy Policy. If you do not agree with our practices, please do not use the Services.
This Privacy Policy applies to information we collect:
- On the Website and through the Services;
- In email, chat, and other electronic communications between you and Roundproxies;
- Through our order, billing, and account management systems.
It does not apply to information collected by third parties, including through any third-party website or application that may link to or be accessible from the Services.
Our role. For purposes of applicable data protection law, Roundproxies is generally the “controller” (or “business” under the CCPA) of personal information described in this Privacy Policy. With respect to the content of traffic our customers transmit through our proxy network, we act solely as a “processor” or “service provider” on the customer’s behalf, as described in Section 13.
2. Information We Collect
2.1 Information You Provide Directly
- Account Information: Email address, password (stored in hashed form), country, and, where applicable, name, company name, and information about your intended use case (collected, for example, when you request a trial).
- Billing and Payment Information: Billing details and transaction records. We do not store full payment card numbers; payment processing is handled by our third-party payment processors, which collect your payment data directly under their own privacy policies.
- Communications: Information you provide when contacting customer support (including via live chat in our dashboard or Help Center), responding to surveys, or participating in promotions, including the contents of your messages and any attachments.
- Review Invitation Data: After you use the Services, we may use your name and email address to invite you to leave feedback on independent review platforms (such as Trustpilot or G2). These invitations are sent to collect genuine feedback about service quality and are not marketing communications; the review platform processes any review you submit under its own privacy policy.
2.2 Information Collected Automatically
- Usage Data: Login timestamps, IP addresses used to access your account or whitelisted for proxy authentication, bandwidth consumption, connection logs, number of concurrent sessions, proxy endpoints used, session duration, and aggregate traffic statistics. We use this data to meter usage-based billing, administer subscriptions and renewals, and investigate abuse.
- Device and Technical Data: Browser type and version, operating system, device identifiers, referring URLs, and pages viewed on the Website.
- Cookies and Similar Technologies: We use cookies, pixels, and local storage as described in Section 8 below.
2.3 Proxy Traffic Data
We are committed to minimizing the collection of data transmitted through our proxy network. Specifically:
- We do not log the content of traffic transmitted through our proxies.
- We may temporarily process connection metadata (such as destination domains, bandwidth used, timestamps, and connection counts) for the limited purposes of billing, capacity planning, network security, and abuse prevention.
- Metadata retained for these purposes is kept only as long as necessary for the purpose collected and is then deleted or aggregated in a form that no longer identifies any individual.
2.4 Information from Third Parties
We may receive information about you from payment processors (transaction confirmations, fraud signals), analytics providers, advertising partners, fraud-prevention services — including third-party AI-driven risk-scoring services that assess signups and transactions for fraud and abuse risk (see Section 14.3) — and publicly available sources.
3. How We Use Your Information
We use personal information for the following purposes:
- Providing the Services: Creating and administering your account, authenticating access, provisioning proxies, and delivering customer support.
- Billing: Processing payments, calculating usage-based charges, issuing invoices, and preventing payment fraud.
- Security and Abuse Prevention: Detecting, investigating, and preventing fraudulent transactions, unauthorized access, violations of our Terms of Service and Acceptable Use Policy, and illegal activity conducted through the Services.
- Service Improvement: Monitoring performance, diagnosing technical issues, conducting analytics, and developing new features.
- Communications: Sending transactional messages (receipts, service notices, security alerts) and, with your consent where required by law, marketing communications. You may opt out of marketing at any time.
- Legal Compliance: Complying with applicable laws, regulations, legal processes, and enforceable governmental requests, and enforcing our agreements.
3.1 Legal Bases for Processing (EEA, UK, and Similar Jurisdictions)
Where the GDPR, UK GDPR, or similar laws apply, we process personal data on the following legal bases: performance of a contract (providing the Services you purchase); legitimate interests (securing our network, preventing abuse, improving the Services); compliance with legal obligations; and consent (marketing communications and non-essential cookies), which you may withdraw at any time.
4. How We Share Your Information
We do not sell personal information for monetary consideration. We share personal information only as follows:
- Service Providers: With vendors who perform services on our behalf, including payment processing, cloud hosting, email delivery, customer support tooling, analytics, and fraud prevention (including AI-driven risk-scoring services, as described in Section 14.3). These providers are contractually obligated to use the information only to provide services to us. Our main categories of providers currently include: customer support and help-center platform (e.g., Intercom); website analytics, tag management, and bot protection (e.g., Google Analytics, Google Tag Manager, reCAPTCHA Enterprise); payment processors; cloud hosting and content delivery providers; and review platforms (e.g., Trustpilot, G2). This list is subject to periodic review and may be updated.
- Legal Requirements: When required by law, subpoena, court order, or other legal process, or when we believe in good faith that disclosure is necessary to protect our rights, protect your safety or the safety of others, investigate fraud, or respond to a lawful government request.
- Business Transfers: In connection with a merger, acquisition, financing, reorganization, bankruptcy, or sale of all or a portion of our assets, in which case personal information may be transferred as a business asset, subject to this Privacy Policy.
- Affiliates: With entities under common ownership or control with Roundlabs, LLC, who will honor this Privacy Policy.
- With Your Consent: In any other circumstance where you direct or consent to the disclosure.
5. Data Retention
We retain personal information for as long as your account is active or as needed to provide the Services, and thereafter as necessary to comply with legal obligations (including tax and accounting requirements), resolve disputes, enforce our agreements, and prevent fraud and abuse. Typical retention periods:
- Account data: duration of the account plus up to 7 years for financial records as required by law.
- Connection metadata: retained for a limited period (generally no more than 90 days) unless needed for an active abuse or security investigation.
- Support communications: up to 3 years after resolution.
When retention is no longer necessary, we delete or irreversibly anonymize the information. After an account is closed or suspended, we may retain account and log data for a limited period from the date of closure or suspension for security, dispute-resolution, and legal-compliance purposes, after which it is deleted or anonymized.
5.1 Marketing Communications
Where we send marketing communications, we do so based on your consent where required by law or otherwise on our legitimate interest in informing you about the Services and closely related offerings. You can opt out at any time using the unsubscribe link in any marketing email, through your account settings, or by contacting us as described in Section 16. Opting out of marketing does not affect service-related communications (such as billing, renewal, or security notices), which we send as necessary to operate your account.
6. Data Security
We implement administrative, technical, and physical safeguards designed to protect personal information, including encryption of data in transit (TLS), encryption of sensitive data at rest, access controls, network monitoring, and regular security reviews. However, no method of transmission or storage is completely secure, and we cannot guarantee absolute security. You are responsible for maintaining the confidentiality of your account credentials and API keys.
If we become aware of a breach of security affecting your personal information, we will notify you and applicable regulators as required by law.
7. International Data Transfers
Roundproxies is based in the United States, and personal information is processed and stored in the United States and other countries where our service providers operate. These countries may have data protection laws different from those of your jurisdiction. Where required, we rely on appropriate safeguards for transfers of personal data from the EEA, UK, or Switzerland, such as the European Commission’s Standard Contractual Clauses. You may contact us for more information about the safeguards we use.
8. Cookies and Tracking Technologies
We use the following categories of cookies and similar technologies:
- Strictly Necessary: Required for authentication, session management, and security. These cannot be disabled.
- Functional: Remember preferences such as language and dashboard settings.
- Analytics: Help us understand how the Website and Services are used (e.g., page views, feature adoption).
- Advertising (if applicable): Measure the effectiveness of our marketing campaigns.
You can manage cookies through your browser settings and, where we display one, through our cookie consent banner. Disabling certain cookies may impair the functionality of the Services. We do not currently respond to browser “Do Not Track” signals, but we honor Global Privacy Control (GPC) signals where required by applicable law.
9. Your Privacy Rights
9.1 All Users
You may access, update, or correct your account information at any time through your dashboard, and you may request deletion of your account by contacting us at the address in Section 16.
9.2 California Residents (CCPA/CPRA)
If you are a California resident, you have the right to:
- Know/Access: Request disclosure of the categories and specific pieces of personal information we have collected about you, the sources, the business purposes, and the categories of third parties with whom it is shared.
- Delete: Request deletion of personal information, subject to statutory exceptions.
- Correct: Request correction of inaccurate personal information.
- Opt Out of Sale/Sharing: We do not sell personal information or share it for cross-context behavioral advertising as those terms are defined by the CPRA. If our practices change, we will provide a “Do Not Sell or Share My Personal Information” mechanism.
- Limit Use of Sensitive Personal Information: We use sensitive personal information (such as account credentials) only for the purposes permitted by the CPRA (e.g., providing the Services and preventing fraud).
- Non-Discrimination: We will not discriminate against you for exercising your rights.
You may exercise these rights by contacting us as described in Section 16. We will verify your identity before responding and will respond within the timeframes required by law. You may designate an authorized agent to submit requests on your behalf.
In the preceding 12 months, we have collected the following categories of personal information as described in Section 2: identifiers, customer records, commercial information, internet or network activity information, geolocation data (approximate, derived from IP address), and professional information.
9.3 Other US State Residents
Residents of Colorado, Connecticut, Virginia, Utah, Texas, Oregon, Montana, and other states with comprehensive privacy laws may have similar rights of access, correction, deletion, portability, and opt-out of targeted advertising and profiling. You may appeal a denial of your request by contacting us, and if unresolved, by contacting your state Attorney General.
9.4 EEA, UK, and Swiss Residents
You have the rights of access, rectification, erasure, restriction of processing, data portability, and objection, as well as the right to withdraw consent at any time without affecting prior processing. You also have the right to lodge a complaint with your local supervisory authority.
10. Children’s Privacy
The Services are not directed to individuals under the age of 18, and we do not knowingly collect personal information from anyone under 18. If we learn that we have collected personal information from a minor, we will delete it promptly. If you believe a minor has provided us with personal information, please contact us.
11. Third-Party Links and Services
The Website may contain links to third-party websites and services. This Privacy Policy does not apply to those third parties, and we are not responsible for their privacy practices. We encourage you to review the privacy policies of any third-party sites you visit.
12. Social Media and Official Communication Channels
We maintain official presences on social and community platforms, currently including Discord, X (Twitter), LinkedIn, YouTube, Medium, and GitHub. When you interact with us on those platforms, the platform operator also processes your personal data under its own privacy policy, over which we have no control; we process only the data you communicate directly to us there (such as messages, comments, or support inquiries). We encourage you to review each platform’s privacy policy and to verify that an account is genuinely ours before sharing any personal information.
Phishing warning. Email, messaging, and social platforms are susceptible to spoofing and phishing. Roundproxies will never ask you for your password. Always access your account directly via roundproxies.com or app.roundproxies.com, and treat unsolicited messages, links, or advertisements claiming to be from Roundproxies with caution. If you are unsure whether a communication is authentic, contact us at team@roundproxies.com before acting on it. We are not responsible for losses resulting from spoofing or phishing attacks conducted by third parties impersonating us.
13. Traffic Routed Through Our Network
If you interact with a website or service whose operator uses Roundproxies, the operator — not Roundproxies — determines what data is collected from you and how it is used. We act as a network intermediary and process such traffic solely on behalf of our customers. Roundproxies does not inspect, classify, or apply AI analysis to the content of customer traffic transmitted through our network. Questions about a customer’s data practices should be directed to that customer.
14. Artificial Intelligence and Automated Processing
14.1 AI Features in the Services
Where we use AI systems in the Services — for example, in support chat, help-center search, or content summarization — we identify them as AI at the point of interaction, in accordance with applicable law (including Article 50 of the EU AI Act where it applies). A current list of AI features is maintained at roundproxies.com/ai-transparency.
14.2 AI-Assisted Content and Human Review
Where content we publish (such as blog posts, documentation, or help-center articles) has been generated or materially assisted by AI, we disclose this on the content itself in accordance with our Editorial and AI Content Policy. All such content is reviewed by a human before publication, and a named member of our team holds editorial responsibility for it. However, human review does not guarantee accuracy or completeness: reviewed content may still contain errors, and it is provided for general information only, not as legal, technical, or professional advice.
14.3 Automated Decision-Making
We use automated systems to score signups, transactions, and network activity for fraud and abuse risk. These systems may automatically flag, rate-limit, or suspend an account. Where such a decision produces legal or similarly significant effects for you, you have the right to obtain human review of the decision, to express your point of view, and to contest the decision by contacting us as described in Section 16. Any human review conducted under this section is performed by a member of our team with the authority to change the outcome; while we take care to review such decisions accurately, human review does not guarantee an error-free result, and you may escalate or re-contest a decision you believe remains incorrect.
14.4 Training
We do not use customer account data or proxy traffic metadata to train our own or third-party AI models.
15. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. If we make material changes, we will notify you by posting the updated policy on the Website with a revised “Last Updated” date and, where required by law or where the changes are significant, by email or in-dashboard notice. Your continued use of the Services after the effective date of any update constitutes acceptance of the revised policy.
16. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
Roundlabs, LLC (d/b/a Roundproxies)
Attn: Privacy Team
Wyoming, Michigan, United States
Email: team@roundproxies.com
Support: Live chat via our dashboard or Help Center at help.roundproxies.com
For EEA and UK residents: as a US-based provider offering paid services to individuals in the EEA and UK, we have appointed representatives under Article 27 of the GDPR and UK GDPR. You may contact them regarding any matter related to our processing of your personal data via team@roundproxies.com.
