[company name] Subscription Services | Privacy Notice
Version [version number], Effective [effective date]
At [company name], we design products with your privacy in mind.
Mozilla VPN protects your device’s internet connections. Mozilla partners with Mullvad to privately and securely encrypt your internet traffic.
Mozilla Monitor can monitor to see if any of your accounts have been in known data breaches. In some regions, it can also help you scan for and remove your information from places around the web.
Firefox Relay protects your identity with secure email and, in some regions, phone masking. Our secure and easy to use email and phone masks help keep your identity private so you can sign up for new accounts anonymously, stop spam texts and junk calls, and get only the emails you want in your inbox.
This privacy notice explains what data [service names] collect, share, and why. We also adhere to the [company name] Privacy Policy for how we receive, handle, and share information.
Things You Should Know
[company name] account information: These services require a [company name] account, which sends [company name] your email address, locale, and IP address. Learn more about [company name] Account data practices.
Payment information: When you subscribe to services that require a paid subscription, you will send payment through one of our third-party payment providers: Stripe, Apple, PayPal, or Google Pay. [company name] receives a record of your account (including your billing address and the last four digits of your payment method) and the status of your account’s subscription. [company name] does not store your full payment details.
[company name] VPN
Interaction data: Interaction data collection is disabled by default. If you opt in, [company name] will receive data about your interactions with [company name] VPN. For example, we would be able to know things like if you’ve excluded any Apps from protection (but not which ones), in how many devices you are using your [company name] VPN Subscription, and whether or not you’ve enabled the ads blocking feature. For a full review of our telemetry, you can learn more in VPN interaction data. We use interaction data to improve performance and stability for our users, and to measure the services’ performance.
In addition, to help understand the effectiveness of our marketing campaigns, [company name] may receive your IP address in addition to campaign data and referral data like what ad campaigns you engaged with and your operating system, device type, device identifiers, and operating system version. [company name] shares this with Adjust, but we do not share or store your IP address. Read the Adjust documentation.
Technical data: Across the services, your IP address is temporarily collected as part of our server logs for 90 days. For VPN, [company name] also receives information about the installed version of your [company name] VPN client software, and the devices they are installed on, including their operating systems and hardware configuration. We use technical data to improve performance and stability for our users, and to measure the services’ performance.
In addition, if you have provided consent to data collection within the application, our partner Sentry.io will receive technical data for error and performance monitoring purposes. Learn more at Sentry.io’s Privacy Policy.
Location data: [company name] receives your IP address when you sign up for and use the service(s) and it is collected as part of our servers logs for 90 days; we use the IP address in order to approximate your location because [company name] Subscription Services availability, pricing and offers may depend on your country. We also use it for fraud and abuse prevention purposes across our products.
Network data: When you activate [company name] VPN, it will encrypt your internet traffic and send it to Mullvad. No logs of your network activity are maintained by either [company name] nor our partner Mullvad when you’re using the [company name] VPN service in any circumstance. Learn more at Mullvad’s Privacy Policy.
[company name] Monitor
Interaction data: [company name] receives data about your interactions with the services. For instance, when you log in and out and the preferences you set; learn more about Monitor interaction data. More generally, [company name] may also use cookies, device information, and IP addresses, along with clear GIFs, cookies and third party services to help us understand in the aggregate how users engage with our products, services, communications, websites, online campaigns, snippets, devices, and other platforms. We use:
HaveIbeenpwned. HaveIbeenpwned receives a hashed version of your email address in order to perform a scan of where your personal data may have been compromised. HaveIbeenpwned keeps this personal data to continuously scan for new breaches; you can request removal of your email address from HaveIbeenpwned via their opt-out mechanism.
OneRep. If you are located in the United States and have a Monitor Plus subscription, OneRep receives your first and last name, email address, phone number, physical address and date of birth in order to scan data broker sites to find your personal data and request its removal. OneRep keeps your personal data until you end your Monitor subscription in order to check whether your information shows up on additional sites, or has reappeared on the sites you’ve already been removed from.
Amazon Web Services (AWS). [company name] Monitor uses AWS so as to be able to email you in connection with the [company name] Monitor Service, which includes Full Reports, Breach Alerts, and Safety Tips. This data will be deleted when you unsubscribe from your Monitor subscription.
Formstack. [company name] Monitor uses Formstack to capture feedback optionally provided by users. For information on Formstack’s privacy practices, see the Formstack Privacy Policy.
Google Analytics. [company name] Monitor uses Google Analytics to obtain metrics on how users engage with our websites. This helps us to improve site content. For more information about how Google uses your personal information, please visit Google Analytics’ Privacy & Security. You can install the Google Analytics Opt-out Browser Add-on to prevent data collection about your visits to the Service and prohibit data transmission to Google Analytics.
Firefox Relay
Interaction data: [company name] receives data about your interactions with Firefox Relay, for instance, when you log in and out and the preferences you set. Learn more about Relay interaction data; you can opt out of this collection by turning on the Do Not Track (DNT) feature in your browser.
More generally, [company name] may also use cookies, device information, and IP addresses, along with cookies and third party services to help us understand in the aggregate how users engage with our products, services, communications, websites, online campaigns, snippets, devices, and other platforms. We use:
Google Analytics, which places a cookie on your device, to obtain metrics on how users engage with our websites. This helps us to improve site content. To prevent Google Analytics from collecting data about your use of [company name] Monitor, you can install the Google Analytics Opt-out Browser Add-on.
Technical data: [company name] receives basic information about the installed version of your Relay Add-on software, and the device they are installed on, including the operating system and hardware configuration. Across the services, your IP address is temporarily collected as part of our server logs for 90 days. We use technical data to improve performance and stability for our users, and to measure the services’ performance.
Location data: [company name] receives your IP address when you sign up for and use the service(s). We use the IP address in order to approximate your location because [company name] Subscription Services availability, pricing and offers may depend on your country. We also use your IP address for fraud and abuse prevention purposes across our products.
Firefox Relay email messages: To send and forward your email messages from your masked email address(es) to your primary email address, Firefox Relay processes your email messages. We do not read or store the content of any of your messages. In the event that an email cannot be delivered to you, we will keep it on our servers and delete it after it has been delivered (in no event will we hold onto it for more than three days). If you use the feature to block promotional emails, the service will check email headers to determine whether the email should be blocked.
Firefox Relay masks (and where you use them): [company name] maintains a copy of your account information to provide the service, in particular to associate your primary email address with your masked email address(es). If you create a custom mask, [company name] stores it in order to forward emails to it. [company name] stores the site where you created the mask, sites where you subsequently use the mask, and any labels associated with the mask in order to ensure that your masks are easily findable when you’re ready to use them. Learn how to enable and disable these features.
Firefox Relay phone calls and text messages: To send and forward your phone calls and text messages, Firefox Relay processes your phone number and text messages. We store a log of the phone numbers you’ve contacted through Relay in order to show your call and text logs, send text replies and block phone numbers. We do not monitor or store the content of phone calls you make through Firefox Relay. Learn how to enable and disable these features.
Information we share: Firefox Relay shares information with third parties to provide the service to you. [company name] has contracted with these companies requiring them to protect your information. Here’s who we use to support Firefox Relay:
Amazon Web Services: Amazon Web Services (AWS) is a cloud-computing platform. Firefox Relay uses AWS to receive emails sent to your masked email address(es) and to forward them to the primary email address associated with your [company name] account. Only [company name] knows the association between your primary email address and your masked email address(es).
Twilio: Twilio receives your phone number, your phone mask, and the phone numbers that you exchange phone calls and text messages with. Twilio also receives the content of text messages you send and receive through Firefox Relay and [company name] has set the Twilio service to delete its records of the text messages you send and receive through Firefox Relay after 7 days.
Other Information You Should Know
You can learn more about managing your data and how to enable or disable sync. Also, much of the information that we store about our [company name] account users is easily accessible by signing in to your account, where you can also update your data sharing settings. To make requests regarding your personal data, please contact us through our [contact page].
If you have any other questions regarding personal data or our privacy practices, please contact us at [compliance email address].
We respond to all requests we receive from individuals wishing to exercise their data protection rights regardless of where the individual lives. We will honor your request unless a legal requirement prevents us from doing so or a legal exception applies.
Please visit our forums for general support help [link to company forums].
5.0 out of 5 on Google
Read reviewsAs seen in








United States note
This version is drafted for US law generally. Contract, employment and consumer rules vary by state — for example on non-competes and at-will employment. Tell GitLaw which state applies and it adjusts the draft.
Frequently asked questions
A template isn't binding on its own - like any contract, it becomes binding once it's properly completed and signed. Templates in our curated library are professionally drafted for US or UK law; review any template before you sign it.
Yes. Chat with GitLaw to edit any section, or make changes directly in the editor.
Yes, read about team plans here.
Describe what you need in the chat and GitLaw will draft it for you.
Templates in our curated library are professionally drafted for US or UK law. The wider library comes from the GitLaw community and public sources - a solid starting point, but check any template fits your situation before you rely on it.
Mostly US and UK law. Some templates use general commercial terms that work across jurisdictions, and many note which law they're written for.
It depends on the situation. Templates work well for routine business agreements. For anything involving significant money, complex IP, employment, or areas you're unsure about, it's worth getting professional advice before you sign. GitLaw provides templates and tools, not legal advice.
Open any template in GitLaw and describe the change you want in the chat — 'make clause 4 mutual' or 'add a 30-day notice period', for example. GitLaw drafts the revised language and shows it as a suggested edit. You accept, reject, or keep editing from there.
Yes. Upload a Word, PDF, or Markdown file and GitLaw will open it in the editor. You can review, edit, or chat with GitLaw about it the same way you would with any template from the library.
Trusted by thousands of businesses
From template to signed, in one place
Every template opens in an editor with an AI agent alongside it.
Open
Pick a template and open it. Nothing to download, and no credit card to start.
Free to open
Edit with AI
Describe your situation in chat and the agent adapts the wording, clause by clause.
Tracked changes you can review
Send and sign
Share it for negotiation, then collect signatures without leaving GitLaw.
eSign included
Built for your legal work, with practicing lawyers
Trained on 5.5K+ clauses and specialist areas of law. Built with a standards committee of independent lawyers.

As seen in








Start free
No sales calls, no credit card. Just chat with GitLaw.
GitLaw provides templates and tools, not legal advice. Templates are a starting point, not a substitute for advice on your situation - for anything significant, speak to a qualified lawyer.
