← Back to veilsuperapp.com

Veil Privacy Policy

Effective date: 16 August 2026
Last updated: 27 September 2026

The short version

Veil is built so that we know as little about you as possible. We can't read your messages, we can't listen to your calls, and we don't know where you go. This policy explains exactly what we do and don't collect, in plain English, because you shouldn't need a law degree to understand what happens to your data.

If you only read one section, read "What we collect" and "What we never collect" below.


1. Who we are

Veil is made by Veil Technologies Ltd, a company registered in England and Wales.

Veil Technologies Ltd is the "data controller" for the personal data described in this policy. That's the legal term for the organisation that decides how and why your data is used.

We have not appointed a formal Data Protection Officer because we are not legally required to have one at our current size and scale of processing. Privacy questions go directly to the team at the email above, and we will respond within one month as UK GDPR requires.

2. What we collect

We collect the minimum we need to make the app work. Here is the complete list.

Your account

Why we're allowed to: this is necessary to perform our contract with you — you can't have a messaging account without an account. (Legal basis: UK GDPR Article 6(1)(b), contract.)

Messaging

Your messages are end-to-end encrypted. That means they are scrambled on your device and can only be unscrambled on the recipient's device. We do not have the keys. We cannot read your messages, and neither can anyone who compromises our servers.

To deliver messages, our servers briefly handle:

Why we're allowed to: necessary to perform our contract with you (Article 6(1)(b)).

Voice and video calls

Calls use WebRTC and are end-to-end encrypted. Where possible, calls connect directly between your device and the other person's device, and no call data touches our servers at all.

When a direct connection isn't possible (for example, because of restrictive network firewalls), calls are relayed through our TURN servers. Relayed call data is still encrypted — the relay server passes it along without being able to decrypt it — and is not recorded or stored.

To set up a call, our signalling servers momentarily process the IP addresses of both participants. This is technically unavoidable: devices can't connect to each other without knowing where to send data. We do not log call metadata (who called whom, when, or for how long) on our own signalling servers. When a call can't connect directly and has to relay through our TURN provider (Metered.ca) — the minority of calls where a direct connection isn't possible — they've confirmed directly that call media itself is never stored, logged, or inspected. For those relayed calls, they do retain some connection-level metadata (the relaying device's own IP address, transport type, session timing, and total data relayed) tied to our account, for as long as we have an account with them, and this isn't currently something we can turn off or configure. This is standard practice for TURN relay providers generally, not unique to Veil, and never includes the call's actual content or the other participant's IP address.

Why we're allowed to: necessary to perform our contract with you (Article 6(1)(b)).

Maps and navigation

Route calculation and turn-by-turn guidance run on your device once a route is fetched — we don't compute your navigation on our servers. Our own servers never receive or store your location, routes, searches, or destinations — verified directly: no coordinate ever appears anywhere in our backend code or storage.

That's a narrower claim than "your location never leaves your device," and we want to be precise about the difference. Three things happen directly between your device and named third parties, not through us:

We chose this design specifically so that Veil's own infrastructure has nothing to compromise, subpoena, or leak on this data — but it does mean these two named providers see raw coordinates directly, on the open internet, exactly like they would for any app using their services. If that distinction matters to you, it's worth knowing plainly rather than assumed away.

Why we're allowed to: necessary to perform our contract with you (Article 6(1)(b)).

AI Assistant

When you use Veil's AI Assistant, your message — along with a small amount of context that lets the assistant answer helpfully, described below — is sent to Anthropic, the company behind the Claude model that generates the response, via a Veil-operated relay. Your Veil ID itself is never included, and Anthropic has no way to link separate conversations back to the same person from that alone — but the context described below does travel with your message each time, so this is not full message-content isolation.

Separately from what Anthropic sees, Veil's own infrastructure saves your conversation transcript, tied to your Veil ID, so the assistant can remember context across sessions instead of starting fresh every time — a deliberate trade-off between continuity and full statelessness. You can permanently delete this at any time ("New session"), and it's capped and auto-deleted regardless (the most recent 60 messages, expiring after 90 days). The assistant may also remember a small set of durable facts about you across sessions (your name, a stated preference) — individually visible and deletable, same 90-day expiry, and included in the context sent to Anthropic on later turns so it can actually use what it remembers.

If you've already granted Veil location access elsewhere in the app, the assistant can use your device's current resolved weather (a temperature, condition, and city-level label only — never your exact coordinates) to answer questions about it, and it can read your existing Tasks and Calendar events (including event locations) to answer questions like "what have I got tomorrow" — this weather, task, and calendar context, along with short previews of any Notes you've attached to something, is included in what's sent to Anthropic for that turn so the assistant can actually use it. It can propose creating a Task, a Calendar event, or a Note, or attaching one to something you already have — but it never saves anything without your explicit confirmation first.

Notes you ask the assistant to create are the one exception to server-side storage above — they're kept only on your device, never uploaded, a deliberately stronger privacy tier than the conversation transcript itself.

Why we're allowed to: necessary to perform our contract with you — providing the AI Assistant feature you've chosen to use (Article 6(1)(b)).

Veil Mail

Veil Mail is the mailbox built into the Veil app. It is the same service described in the Veil SuperMail privacy policy at veilsupermail.com/privacy.

How your mail is protected:

Why we're allowed to: necessary to provide the mailbox you have chosen to use (Article 6(1)(b)).

Shopping and commerce

When you place an order through Veil Shopping, the delivery address and contact details you enter are used solely to fulfil that specific order — never saved to your Veil profile or reused for a future order without you typing it again. To actually deliver your order, we share what's necessary (your delivery address, and your order contents) with the supplier fulfilling that specific product — this is unavoidable for any physical delivery, by us or anyone else. Payment is processed via Stripe for card payments; VLT Token payments are handled entirely within Veil's own ledger and never leave our infrastructure.

Why we're allowed to: necessary to perform our contract with you — fulfilling the order you placed (Article 6(1)(b)).

VPN (invitation-only beta)

Our VPN is a real, live feature — four server locations (London, Amsterdam, Frankfurt, New York), genuine WireGuard encryption, physically verified: correct exit location and IP for every server, DNS requests confirmed routing through the tunnel with no leak to your normal network, and switching servers or networks confirmed working mid-connection.

Why we're allowed to: necessary to perform our contract with you (Article 6(1)(b)).

Crash reports and diagnostics

We do not collect crash reports or analytics automatically. (The one exception is the VPN's own connection-health information described in the VPN section above, which is sent only while you use the VPN.) If the app crashes, iOS may ask you whether to share a crash report with Apple and with us, under Apple's own consent flow. Anything you choose to send us is used only to fix bugs. Confirmed accurate against the app's own code: no crash-reporting or analytics SDK (Sentry, Crashlytics, Bugsnag, or similar) exists anywhere in this project.

Subscriptions

Veil itself is currently free to use — there's no subscription or premium tier, and we don't process any payment for using the app. (If you buy something through Veil Shopping, that's a separate transaction, covered under "Shopping and commerce" above — not a subscription to Veil itself.)

3. What we never collect

For clarity, here is what Veil does not do:

4. Who we share data with

We keep this list short on purpose.

Legal requests

If we receive a legally binding order from a court or authority with jurisdiction over us, we can only hand over what we actually have — which, as described above, does not include message content, call content, or location data. We review every request for legal validity, push back on overbroad ones, and disclose the minimum required.

5. International transfers

Our own message-routing and mail servers (Vultr) are located in London, UK. Our edge/Workers infrastructure (Cloudflare), our AI Assistant processor (Anthropic), and our email-delivery processor (Postmark) operate outside the UK/EEA. Cloudflare and Postmark's own standing Data Processing Addenda and Standard Contractual Clauses apply automatically to our use of their services. Anthropic's own Commercial Terms — which apply automatically to any use of their API, including ours — incorporate their standard data processing and international-transfer terms; we use their standard first-party API directly, not through a reseller or region-specific routing.

Note that when you message someone, your encrypted message travels to wherever they are — that's the nature of communication and isn't a "transfer" by us.

6. How long we keep data

7. Your rights

Under UK GDPR you have the right to:

To exercise any of these, email support@veilsuperapp.com. We'll respond within one month and won't charge you. We may need to verify you control the account — since we don't hold a phone number or email address to check against, this usually means confirming your Veil ID directly from the app itself.

You also have the right to complain to the UK's data protection regulator, the Information Commissioner's Office (ICO) — ico.org.uk, or 0303 123 1113. We'd appreciate the chance to sort it out first, but that's your call.

8. Children

Veil is not intended for children under 16, and you must be at least 16 to create an account. We do not knowingly collect data from children under this age; if you believe a child is using Veil, contact us and we will delete the account.

9. Security

Beyond end-to-end encryption, we protect data with encryption in transit (TLS) and at rest, access controls on our systems, and by the simplest security measure of all: not collecting data in the first place. No system is perfectly secure, but a breach of our servers would expose dramatically less about you than a breach of a typical app, because the sensitive things were never there.

If a breach ever affects your personal data in a way that puts you at risk, we will notify you and the ICO as UK GDPR requires (within 72 hours to the ICO where applicable).

10. Changes to this policy

If we change this policy, we'll update the date at the top and, for meaningful changes, notify you in the app before they take effect. We will never quietly weaken this policy. This is our first published version; if we publish future versions, previous ones will remain available at this same URL's own version history.

11. Contact

Questions, concerns, requests: support@veilsuperapp.com Post: Veil Technologies Ltd, 64 Kingsway, Coventry, CV2 4FE, United Kingdom