Geonode logo

We own the network. Here’s how we run it.

Owning the network means owning the responsibility that comes with it.

7.5M+ Residential IPs

active monthly

150+ countries

USA, Germany, France, etc.

Prices dropped 3x

in last 12 months

Every customer is verified

  • Identity

    Government ID or business registration for all accounts

  • Use case

    Every customer describes their intended use. We review before activation.

  • Business entity

    Enterprise accounts require company verification and a named contact.

  • Ongoing monitoring

    Accounts with unusual traffic patterns are flagged for review within 24 hours.

Verified customer section image

What gets rejected:

We decline accounts where the stated use case involves credential stuffing, ad fraud, DDoS, spam, scraping of personal data without legal basis, or any activity that violates our Acceptable Use Policy.

Not every proxy provider does this. We do, because we own the IPs, abuse on our network is abuse of our infrastructure, not someone else’s.

How we prevent misuse

Owning the network means we see everything that runs through it. That’s a responsibility.

Real-time monitoring

Automated traffic analysis flags patterns associated with credential stuffing, brute-force attacks, and spam.

Dedicated abuse team reviews flagged accounts within 4 hours during business hours, 12 hours off-hours.

Accounts confirmed abusing the network are suspended immediately and permanently.

Reporting abuse

Anyone can report suspected abuse at abuse@geonode.com. We investigate every report within 24 hours and respond with an outcome.

We review every report manually
Send a report

Abuse response timeline

We've suspended paying customers for policy violations. Revenue isn't worth the network.

Severity
Detection
Review
Action
critical

DDoS, credential stuffing

Automated, real-time
Immediate
Instant suspension
high

High-volume abuse patterns

Automated, < 1 hour
< 4 hours
Suspension pending review
medium

Policy edge cases

Flagged, < 24 hours
< 48 hours
Warning or restriction

What data we collect. What we don't.

What we collect

Account information (name, email, company, billing)

Usage metadata (bandwidth consumed, connection timestamps, target domains at aggregate level)

Payment information (processed by Stripe - we never store card numbers)

What we do NOT collect

Content of proxied requests or responses

Target page content, scraped data, or downloaded files

Individual URL-level logs beyond aggregate domain statistics

IP-to-user mapping retained beyond 30 days (required for abuse investigation only)

Data retention

Account data: Duration of account + 12 months post-deletion

Abuse investigation logs: 31 days, then purged

Payment records: As required by tax law (~7 years)

Your rights (GDPR, CCPA, and equivalents)

Request a copy of all data we hold on you

Request deletion of your account and associated data

Opt out of non-essential communications

Contact us

Where IP comes from

Our sourcing principles

Clear, informed consent from any device contributing to the network

Regular audits of IP source quality and consent compliance

We do not purchase traffic from apps that bury proxy consent in Terms of Service.

FAQ

Not yet. We're targeting SOC 2 Type II completion by Q4 2026. If your procurement requires SOC 2 today, we'll tell you honestly. Contact sales@geonode.com and we'll provide whatever documentation we can in the interim.

Anyone. Email abuse@geonode.com with the suspected activity, the affected domain or IP, and any evidence you have. We investigate every report within 24 hours and respond with an outcome.

Common reporters include: site owners noticing unusual traffic patterns, law enforcement (we cooperate with valid legal requests), security researchers, and our own internal monitoring systems.

We don't require a verified identity to file a report. We do verify the claim before taking action.

No. We don't sell, license, or share your data with third parties. We don't run a parallel data marketplace. We don't include your traffic in aggregate datasets.

What we store:
  • Account information (name, email, company, billing)
  • Usage metadata (bandwidth consumed, connection timestamps, target domains at aggregate level)
  • Payment information (processed by Stripe – we never store card numbers)

What we do not store:
  • The content of your proxied requests or responses
  • The pages or data you scrape
  • Individual URL-level logs beyond aggregate domain statistics

Several competitors run data marketplace businesses alongside their proxy networks. Their incentive is to retain your data. We sell access, not your output.

We comply with GDPR by applying its standards globally — every customer receives GDPR-level protections, regardless of location.

Specifically:
  • Lawful basis: Legitimate interest for operational data, contractual necessity for service delivery
  • Data subject rights: Request a copy, request deletion, or opt out of non-essential communications — contact privacy@geonode.com
  • Data Processing Agreement (DPA): Available on request
  • Sub-processor list: Published and updated quarterly
  • Data residency: EU and US options available for enterprise plans
  • Retention: Account data deleted within 12 months of account closure; usage metadata retained on a rolling 90-day basis

We also comply with CCPA (California), LGPD (Brazil), and PDPA (South Africa).

Yes. Every residential IP in our 2.5M pool comes from Repocket or Zenshield – two opt-in earner networks we own and operate.

Repocket users explicitly opt in to share spare residential bandwidth in exchange for monthly payouts. Zenshield users opt in for free VPN service; their spare bandwidth becomes part of our pool while they're not using the device. Both apps:
  • Show the consent screen before any bandwidth is shared
  • Allow opt-out at any time
  • Pay users for the bandwidth they contribute
  • Publish the legal basis for the network's operation

We do not source IPs from:
  • Browser extensions that harvest bandwidth without clear user consent
  • Apps that bury proxy consent in Terms of Service
  • Bundled SDK models where proxy participation is hidden in unrelated apps

Our 2.5M pool is smaller than some competitors' 100M+ pools because we reject these sourcing methods. Every IP in our pool is clean.