Privacy Policy

Last updated: 13/07/2026  ·  Applies to: Waypoint browser extension and account dashboard (proxy.ukrplace.com)

This Privacy Policy explains what information Waypoint ("we", "us", "the Service") collects when you use the Waypoint browser extension and the associated account dashboard, why we collect it, how it is used and stored, and the choices you have.

1. Who we are

Waypoint is a proxy service consisting of a browser extension, an account API, and a network of proxy servers. The data controller responsible for the information described in this policy is:

Contact: formatron.service@gmail.com

2. Information we collect

2.1 Account information

DataPurpose
Email addressAccount identifier, login, and password-reset contact.
Account passwordStored only as a salted bcrypt hash. We never store or can recover your plaintext account password.

2.2 Proxy credentials

When you create an account, we automatically generate a separate proxy login and proxy password — distinct from your account password — used solely to authenticate your connection to the proxy servers.

DataPurpose
Proxy loginRandomly generated identifier used to authenticate proxy connections.
Proxy password (hashed copy)Stored as a bcrypt hash and used by the proxy servers to verify connections.
Proxy password (encrypted copy)Stored encrypted at rest so it can be displayed back to you in the extension. Encrypted with a server-side secret; not accessible to us in readable form without that secret.

2.3 Usage and subscription data

DataPurpose
Traffic used / traffic limitEnforce your plan's data allowance and show usage in the dashboard.
Speed limitEnforce your plan's bandwidth allowance.
Plan (Free / PRO) and subscription expiry dateDetermine your service tier and renewal date.
Selected proxy server / nodeRemember your last-chosen server so the extension can reconnect to it.
API session tokensKeep you logged in to the extension without re-entering your password every time.

2.4 Payment information

Payments for the PRO plan are processed by WayForPay, a third-party payment processor. We do not collect or store your card number, CVV, or other full payment card details ourselves — these are entered directly into WayForPay's own secure payment page/widget. We store only:

WayForPay's processing of your payment data is governed by its own privacy policy, available at wayforpay.com.

2.5 Network/proxy traffic

Our proxy servers process the internet traffic you route through them in order to forward it to its destination. We do not log the destination addresses, timestamps, or content of this traffic. Traffic volume (bytes transferred) is recorded solely to enforce your plan's data limit.

3. Browser extension permissions

The Waypoint browser extension requests the following permissions, used strictly as described:

PermissionWhy we need it
proxyTo configure your browser to route traffic through the proxy server you select.
storageTo store your session token, proxy credentials, and connection state locally in your browser.
webRequest / webRequestAuthProviderTo automatically supply your proxy login/password when the proxy server requests authentication, so you don't have to enter it manually.
browsingDataTo clear the browser's cached proxy authentication credentials when you disconnect, log out, or change your proxy password, ensuring old credentials aren't reused.
alarmsTo periodically check subscription/connection status in the background
notifications[INSERT — e.g. "To alert you when your subscription is about to expire or your data limit is reached."]
host_permissions: <all_urls>Required by the proxy and webRequest APIs to apply proxy settings and supply authentication across all sites you visit. The extension does not read, modify, or inject scripts into the content of the pages you visit.

The extension does not use these permissions to monitor your general browsing activity, read page content, or collect analytics about the websites you visit.

4. How we use your information

5. Legal basis for processing (where applicable, e.g. GDPR)

6. Data sharing

We do not sell your personal information. We share data only with:

7. Data retention

DataRetention
Account data (email, password hash)Until you delete your account, plus 30 days for backups/fraud prevention.
API session tokensAutomatically expire 365 after issuance.
Order/payment records[INSERT PERIOD, e.g. as required by tax law in your jurisdiction].
Traffic usage countersReset each billing cycle; historical totals retained for 30 days.

8. Security

No method of transmission or storage is 100% secure. We cannot guarantee absolute security, but we take reasonable technical and organizational measures to protect your information.

9. Your rights

Depending on your location, you may have the right to:

To exercise any of these rights, contact us at formatron.service@gmail.com. We may need to verify your identity before acting on your request.

10. Children's privacy

The Service is not directed to children under 16 (or the minimum age required by your local law). We do not knowingly collect personal information from children. If you believe a child has provided us with personal information, please contact us so we can delete it.

11. Changes to this policy

We may update this Privacy Policy from time to time. We will update the "Last updated" date at the top of this page when we do. Material changes will be communicated via the extension or dashboard where appropriate.

13. Contact us

If you have questions about this Privacy Policy or how we handle your data:

Email: formatron.service@gmail.com