Legal

Privacy Policy

We built OmertaBrowser to protect your privacy. It would be contradictory to violate yours in the process. This document explains precisely what we collect, what we don't, and why.

Last updated: March 2026 — Version 2.1
"In the tradition of Omertà, we swear an oath of silence regarding your data. We have structured our systems such that cooperation with any outside authority concerning your identity or activity is structurally impossible — not merely a policy, but an architectural guarantee."

1. Who We Are

OmertaBrowser is developed and distributed by OmertaLabs, operating under the same principles as OmertaVPN. We are incorporated in a jurisdiction with no mandatory data retention laws. Our registered address is available upon written request.

2. The Core Principle

OmertaBrowser is a local application that runs on your device. The vast majority of its functionality — profile management, fingerprint spoofing, script execution, and session isolation — operates entirely locally, on your hardware. We cannot see what sites you visit, what profiles you use, or what scripts you run.

The Data Oath
"We do not log your browsing activity. We do not record your profiles or sessions. We do not store your fingerprint configurations on our servers. We do not know who you are online. We cannot betray what we were never told."
— OmertaLabs, sworn and structural

3. What We Collect

We collect the absolute minimum required to provide the service. The following data may be processed:

Account Information

License Verification

Crash Reports (Optional)

AI Assistant Usage (Capo / Consigliere)

4. What We Never Collect

5. Cloud Sync (Capo / Consigliere)

If you enable Cloud Profile Sync, your profile configurations are encrypted on your device using AES-256 before transmission. We store only the encrypted ciphertext. We do not hold the decryption key — you do. Even in the event of a server compromise, your profile data remains inaccessible.

Cloud sync is opt-in. Profiles remain local by default.

6. Data Sharing

We do not sell, rent, or trade your personal data to any third party. We do not serve advertising. We have no advertising partners.

The only circumstances under which data may be shared with third parties:

7. Government & Law Enforcement Requests

We treat government and law enforcement data requests with the following standing policy, inspired by the Omertà tradition:

8. Data Retention

Account data (email, hashed password, subscription status) is retained for the duration of your account. Upon account deletion, all records are permanently purged within 30 days.

License verification logs (containing no personal data) are retained for 7 days for fraud detection purposes, then automatically deleted.

AI assistant conversation logs: none retained. Each request is stateless.

9. Your Rights

Depending on your jurisdiction, you may have rights including access, correction, deletion, portability, and objection to processing. To exercise any of these rights, contact us at the address below. We respond to all requests within 30 days.

10. Security

All data in transit is encrypted using TLS 1.3. Cloud-synced profile data is encrypted client-side using AES-256-GCM before leaving your device. Our infrastructure undergoes annual penetration testing by an independent security firm. We operate a responsible disclosure program — see our security page for details.

11. Children

OmertaBrowser is not intended for use by persons under the age of 18. We do not knowingly collect data from minors.

12. Changes to This Policy

Material changes to this privacy policy will be communicated by email to registered users at least 14 days before taking effect. The current version is always available at browser.omertavpn.com/privacy. We maintain a full version history.

13. Contact

For privacy-related inquiries, data requests, or security reports:

Privacy inquiries
Security disclosures
Telegram
t.me/omertabrowser