Private Internet Access Received 19 Legal Requests in Q2 2026, Produced No VPN Logs

Published
Written by:
Rachita Jain
Rachita Jain
VPN Staff Editor
PIA Q2 2026 report details 19 legal requests received
Key Takeaways
  • PIA Q2 2026 report: PIA received 19 legal requests, producing zero VPN activity or connection logs.
  • Legal requests: Seven government, law enforcement, and civil requests formed the largest category during Q2.
  • Security findings: PIA received 59 submissions, with 51 unique reports and two valid vulnerabilities.

Private Internet Access (PIA) received 19 legal requests between April and June 2026, but produced no VPN activity or connection logs in response, according to the company’s latest transparency report.

The VPN provider published its Q2 2026 report on August 6, detailing the legal requests it received during the quarter as well as activity in its bug bounty and vulnerability disclosure programs.

The 19 legal requests were divided among subpoenas, warrants, other government, law enforcement and civil requests, and foreign or informal requests. PIA said the total was unchanged from the first quarter of 2026.

The company reported four subpoenas, two warrants, seven other government, law enforcement, or civil requests, and six foreign or informal requests during Q2.

Request type Q2 2026
Subpoenas 4
Warrants 2
Other government, law enforcement, and civil requests 7
Foreign and informal requests 6
Total 19

PIA stressed that these figures only represent requests it received. A request does not by itself mean that an allegation was proven, that a PIA user was involved, or that every request sought the same information.

The company says it does not retain VPN activity logs or connection information that could be used to reconstruct a user's activity while connected to its service. Its VPN infrastructure uses RAM-only servers, meaning VPN session data is not written to a hard drive.

Each legal request is reviewed according to the relevant legal process and PIA's policies. However, the lack of VPN activity and connection logs limits what information the company can provide when authorities or other parties request those records.

PIA said zero VPN activity or connection logs were produced in response to all 19 requests during Q2.

The largest category was made up of other government, law enforcement, and civil requests, with seven cases. These requests can involve legal processes outside the subpoena and warrant categories and are assessed individually.

The company also received four subpoenas and two warrants. PIA said each is reviewed by its legal team, while the existence of a warrant does not alter what information its systems retain.

Six additional requests came from foreign or informal sources. These may involve authorities outside the US or approaches that do not use a formal, enforceable US legal process. PIA said it evaluates the source, scope, and legal basis of each request before responding.

Security Researchers Submitted 59 Reports

PIA's transparency report also covers its security programs, which allow independent researchers to report suspected vulnerabilities in eligible products and systems through YesWeHack.

The company received 59 submissions during Q2. After duplicate submissions were removed, there were 51 unique reports.

Of those, two were considered valid and sent to the appropriate teams for assessment and remediation when necessary. The remaining 49 unique submissions were classified as invalid.

PIA said an invalid report can include an informational finding, an issue outside the program's scope, something that cannot be reproduced, or a report that does not demonstrate a security impact.

The company also noted that a larger number of submissions does not necessarily indicate that more security vulnerabilities have been discovered. Reports can contain duplicates, expected product behavior, informational observations, or findings that fall outside the program's scope.

What PIA's Report Means for VPN Users

The figures are relevant to privacy-focused VPN users because they show both how many legal requests PIA received and what information the company says it had available to provide.

The report was published by Private Internet Access as part of its regular quarterly transparency reporting. PIA says the reports are intended to provide a recurring record of legal requests, the information it retains, and activity involving its security programs.

For users, the key point from the Q2 report is that PIA says it does not maintain VPN activity or connection logs that could reconstruct activity performed through the VPN. The company therefore reported producing no such logs in response to the 19 requests it received during the quarter.

No immediate action is required from PIA users based on the report. The company plans to publish its next transparency report covering July, August, and September 2026.


For a better user experience we recommend using a more modern browser. We support the latest version of the following browsers: For a better user experience we recommend using the latest version of the following browsers: