Data Processing Rules

Privacy is not an afterthought. Data use should be verifiable.

This policy explains the data types, purposes, retention principles, and available rights involved when you visit the VMRunner website, submit contact details, request support, or manage Cloud Mac services through the console.

Current version
2026.09
Covered services
Website and Cloud Mac services
Contact channels
Email or console tickets
01

Scope

This policy applies to visits to vmrunner.com and to the necessary data processing involved in learning about, ordering, and managing dedicated Apple Silicon physical nodes through this website. Covered activities include browsing public pages, generating inquiry emails from the contact page, submitting support requests, accessing the console to manage orders, and the identity, security, and operational record processing required to deliver Cloud Mac services.

After you leave this website for the console, data directly related to account login, order configuration, billing reconciliation, node delivery, and ticket handling continues to be processed under the principles described in this policy. The chip, memory, storage, rental period, and node city for a specific order are determined by the order record confirmed by the user.

Public website

We process page requests, basic device information, and necessary access logs for security protection, troubleshooting, and page performance analysis.

Contact and support

We process contact details, issue descriptions, order references, and redacted logs that users actively provide so we can route and respond to requests.

Orders and delivery

We process the model, term, node, add-ons, payment result, and delivery status to fulfill confirmed service requests.

02

Data collected

VMRunner collects only the data needed for access, inquiries, support, and service delivery in each context. Users should not submit private keys, full access tokens, certificate passwords, or unredacted configuration files in support requests.

Data types, sources, and primary uses processed by VMRunner
Data category Typical content Primary source Use case
Contact information Email address, inquiry subject Submitted by the user Respond to inquiries, send support updates
Order information Order ID, model, term, node city Order and console records Service delivery, billing reconciliation, issue diagnosis
Device and browser information Browser type, operating system, language, display environment Website requests Compatibility analysis, security checks
Access logs Request time, page path, network address, error records Website and service infrastructure Security protection, performance diagnostics, incident review
Technical information Reproduction steps, redacted logs, expected result Support request Investigate connection, build, and toolchain issues

If you provide a workload, target node, rental period, memory, or storage requirements on the contact page, these fields are used to generate structured inquiry content. Review the message before sending it and remove confidential information unrelated to the issue.

03

Processing purposes

Data processing is tied to specific service actions. Each purpose has its own data scope; visiting a public page does not automatically cause technical information to be used in an unrelated order process.

Service delivery
Confirm the VMRunner model, rental period, node city, and storage add-ons selected by the user, then create the corresponding delivery record.
Identity and security checks
Verify that logins and sensitive actions match the account status, identify anomalous requests, and retain necessary security incident records.
Support response
Use the order ID, timestamp, reproduction steps, and redacted logs to diagnose connection, build, signing, network, or toolchain issues.
Billing reconciliation
Reconcile USD orders, payment results, billing periods, and confirmed add-ons, and handle billing discrepancies or transaction-status inquiries.
Performance diagnostics
Analyze request errors, page responses, and node service logs to distinguish issues caused by local networks, toolchain configuration, or workload.
Compliance records
Retain the necessary records for orders, payment results, security audits, and dispute handling to the extent required by applicable obligations.
04

Payment data

All VMRunner orders are settled in USD. Available payment methods are limited to USDT-TRC20 and Visa / Mastercard / Amex (via Stripe). The gateway available at checkout is determined by the result returned by the backend.

USDT-TRC20

On-chain payment records

We process the order amount, transaction ID, confirmation status, and information needed to reconcile the order. Wallet private keys are never required.

Bank cards

Payment flow data

Card data for Visa, Mastercard, and Amex is handled by the applicable payment processing flow. VMRunner uses the payment result, order amount, and transaction reference to reconcile billing.

When submitting a billing question

Provide the order ID, amount, payment method, and transaction reference available for reconciliation. Do not send full card details, wallet private keys, or any account passwords.

05

Data sharing

Data is processed by service providers only when necessary for service delivery, security protection, payment processing, or compliance with legal obligations. Sharing is limited to the data fields required for the specific task, with processing boundaries controlled through access permissions, purpose restrictions, and records.

  • Service infrastructure Used to host the public website, process console requests, retain necessary order records, and deliver rented physical nodes.
  • Security and operations support Used to identify anomalous requests, control access, track errors, and handle security incidents. Only the data required for the relevant task is accessed.
  • Payment processing Used to complete USD payments, return transaction results, and support billing reconciliation. Payment data is handled within the scope of responsibility for the selected payment flow.
  • Legal obligations When a valid requirement applies and processing is necessary, the relevant data is processed under the laws of the jurisdiction where the platform operator is established.

VMRunner does not operate by selling contact information, technical information, or order-related information, and does not expand shared data fields for purposes unrelated to the services.

06

Retention and deletion

Retention periods are determined separately for service delivery, billing reconciliation, security audits, dispute handling, and legal obligations. Data that no longer needs to be retained is deleted or anonymized when the applicable period ends.

During the service period

Keep order and support context available for verification

We retain account status, order configuration, node selection, delivery records, and related tickets to manage the current service and resolve issues.

After service ends

Retain only records with a clear basis

Records still needed for billing, security incidents, or dispute handling remain subject to restricted retention; other data enters the deletion or anonymization process.

When the period ends

Delete identifying data or remove its link to individuals

We delete identifying data that is no longer needed or transform it into statistical information that cannot be linked back to a specific user.

Backup copies may be removed gradually according to the established rotation cycle. Data entering the removal process is not used for new business purposes, and access remains restricted.

07

Your rights

You may request access to, correction of, or deletion of applicable data, and ask about its processing purposes, source, retention status, and sharing scope. To prevent disclosure to the wrong person, VMRunner performs the identity and order-reference checks necessary for the request.

Access

Learn about applicable data related to your account, orders, inquiries, or support requests and the purposes for which it is processed.

Correction

Correct inaccurate contact information, order references, or technical information you submitted.

Deletion

Request deletion of applicable data that is no longer needed for service, billing, security, dispute handling, or legal obligations.

How to submit a request

Send a privacy request to support@vmrunner.com through the contact page. Logged-in users can also submit a ticket in the console. State the request type, associated email address, order ID, and data scope to be handled. Do not attach private keys or full access tokens.

08

Security and updates

VMRunner uses access controls, least privilege, activity records, and necessary identity checks to ensure that data is processed only by people and systems needed for delivery, support, billing, or security tasks. Users should also protect their console credentials and submit only redacted information directly relevant to the issue in support requests.

  • Least privilege

    Access is assigned by role and task; data unrelated to the processing purpose is not opened for convenience.

  • Traceable processing

    Necessary records are retained for key account, security, and service operations to support anomaly investigation and verification of processing activities.

  • Version updates

    When this policy changes, we update the current version information and retain necessary version records when the processing scope or user rights change materially.

This policy and the related data processing are governed by the laws of the jurisdiction where the platform operator is established. Any dispute arising from this policy that cannot be resolved through communication will be handled by a court with jurisdiction in that jurisdiction.

Review the data scope first, then choose the right Cloud Mac

Three tiers of dedicated Apple Silicon physical nodes are offered with clearly defined configurations and USD term pricing. Review the plans before ordering; privacy requests can be submitted separately for questions involving personal data.