Onlys.vip
Privacy policy
Last updated September 26, 2026. This policy describes how Onlys.vip ("Onlys", "we") handles information through onlys.vip and the Onlys Vault Importer Chrome extension. Contact us at info@onlys.vip or through our support form about this policy or your information.
Information we handle
When you use the website, we handle the information needed for your account and the features you use. This can include your email address and login records; profile, link and account settings; subscription and payment status supplied by our payment provider; files you upload to your private vault; messages, meeting requests and support requests; and reports about abuse or rights. We also process technical information needed to operate and secure the service, such as request and error logs.
On creator pages, we record views and link clicks with timestamps, campaign labels, referring hostnames and a visitor hash for creator analytics. The hash is not anonymous. Some website pages also load Google Analytics, which may receive information about your visit under Google's own practices.
Onlys Vault Importer
The extension lets you scan your own OnlyFans vault and choose media to import into your private Onlys vault. It uses your signed-in browser session. A limited set of headers from successful OnlyFans API requests is kept in Chrome session storage on your device. The extension does not copy your OnlyFans cookies or send those headers or your OnlyFans password to Onlys.
The extension keeps its Onlys pairing token, import progress, file checkpoints and validated signing parameters in Chrome local storage. Downloads can be stored temporarily in the extension's private browser storage while files are checked and uploaded. You can clear this local data with the extension's Disconnect control. Revoking the device on the Onlys dashboard also invalidates its server access.
The extension retrieves public JSON signing parameters from raw.githubusercontent.com without sending your OnlyFans session headers or Onlys token. It requests vault information and media from OnlyFans and its media hosts using your browser session. Onlys receives the OnlyFans account identifier, media identifiers, names and types, file size and content hash, import status, and the media files you choose to upload. Selected media travels from your device to private Onlys storage on Cloudflare R2. Onlys does not receive the signed OnlyFans media download URLs.
How we use and share information
We use information to provide accounts, profiles, subscriptions, private storage, imports, messaging and support; to measure creator page activity; to secure the service; and to investigate reports or comply with applicable obligations. We share information with service providers as needed to run these functions, including hosting, Cloudflare R2 storage, email delivery, payment processing and website analytics. Authorized staff may review relevant records or media when needed for support, security or abuse reports. We do not sell your private vault media or use extension data for advertising.
Retention and choices
Extension pairing codes expire after ten minutes and device tokens after 24 hours unless revoked sooner. Uploaded files remain in your vault while your account is entitled to store them, unless you delete them or they must be restricted. When storage entitlement ends, vault media is scheduled for deletion after 48 hours, subject to a specific legal or dispute hold. Messages are subject to a 365-day cleanup, except where an open report requires retention. Other account, billing, security and support records are kept as needed for the service and applicable obligations; backup copies may persist for a limited period after operational deletion.
You can manage your account and vault content in Onlys, revoke an importer device from the import dashboard, and clear the extension's local data with Disconnect. To request access, correction or deletion of your information, or to ask about retention, email info@onlys.vip. We may need to verify your request and retain information required for security, disputes or legal obligations.
Changes
We may update this policy as the service changes. The last-updated date above identifies this version. Material changes will be communicated where required.