I use VPN, how secure am I from government and big tech?

Here is my setup -

I have a Tiny Windows 11 VM that I run on my main machine. In this VM, I have a very popular VPN application installed. I pay for a subscription with this VPN provider.

I access reddit, twitter and other services exclusively through this VM. I do not access these services outside of this VM without connecting to VPN.

The VPN application is configured to kill internet access if I ever get disconnected from VPN.

I only ever use a browser (Firefox), no other apps are installed on this VM.

My question is - will it be possible for a government or for the service providers (reddit, twitter etc.) to find out my real identity? And also is there anything else I can do to protect my privacy.