Privacy Policy

Outpost — by Trilon Apps · Effective June 22, 2026

Trilon Apps (“we,” “us”) builds Outpost, an app that lets you run your own VPN on your own Amazon Web Services (AWS) account, set up and controlled entirely from your device. Outpost has no servers of ours in the middle: it talks directly to your AWS account from your phone. We designed it to collect no personal information, and this policy explains exactly what that means.

Information we do not collect

Outpost does not require an account or login, and we do not collect, store, sell, or share personal information such as your name, email, contacts, or precise location. We use no analytics, no advertising identifiers, and we do not track you across other apps or websites. We do not operate a backend server that your app or your traffic passes through.

Your AWS credentials

To use Outpost you provide your own AWS access key and secret. These are stored only on your device, in the iOS Keychain (device‑only, not synced to iCloud), and are never transmitted to us or to any third party of ours. They are used solely, on your device, to call AWS’s own APIs in your account so the app can create, manage, and tear down your VPN server. We never receive, see, or store your AWS credentials. Removing the app removes them from your device.

Your VPN traffic

When you connect, your device’s internet traffic is routed through a server that Outpost launches in your own AWS account, under your control. We do not operate any server in this path. We cannot see, inspect, log, retain, or sell your browsing activity, traffic, or DNS, and the app sends no VPN activity logs to us. The VPN server runs in your AWS account; whatever it does or does not log is determined by your own AWS configuration and is governed by your agreement with AWS.

Who your information goes to

Outpost contains no analytics, advertising, or tracking SDKs.

Children

Outpost is not directed to children under 13, and we do not knowingly collect personal information from children.

Data security & retention

Your AWS credentials and the keys Outpost generates are held in the device Keychain, accessible only after you first unlock the device, and never leave it except as direct, encrypted API calls to AWS. Because we collect no personal data, there is no personal profile on our side to retain or delete.

Changes to this policy

We may update this policy from time to time. Material changes will be reflected on this page with a new effective date.

Contact

Questions about privacy? Email support@trilonapps.com.

© 2026 Trilon Apps.