Use code GEN30 for 30% OFF your first order.

    Start Now
    Transparency

    How ProxyGen sources its IP addresses

    Where a proxy network gets its addresses is the single most important question a buyer can ask, and most providers will not answer it. This page sets out the standards we apply, what we refuse to do, and how anyone can ask us to remove a device from the pool.

    • Informed opt-in required
    • No malware or botnet capacity
    • Removal on request

    Where our capacity comes from

    ProxyGen operates its own edge infrastructure. We run entry nodes in Amsterdam, Las Vegas and Singapore, and every customer session is authenticated, rate-limited and filtered on hardware we control before it reaches any upstream network.

    Residential and mobile capacity is sourced from vetted network partners under the standards described below. We are a retail brand on top of that capacity, and we say so plainly rather than implying we personally recruited every household on the network.

    Static ISP and datacenter addresses are leased directly from commercial hosting and ISP providers. These are allocated to us, not shared out of a consumer pool, which is why they behave differently and are priced differently.

    We do not name our upstream partners publicly. That is a commercial confidentiality position, not an evasion, and it does not change the standards below or our obligation to act on a removal request.

    The standards we require

    These are the conditions any network has to meet before we will route customer traffic through it.

    Informed, explicit opt-in

    Every participant whose connection contributes capacity must have agreed in plain language, in a disclosure they could actually read, that their bandwidth may be used to route third-party traffic. Consent buried in an unrelated licence agreement does not meet our standard.

    Something of value in return

    Participation has to be an exchange. That means direct payment, a paid-for service the participant wanted, or an ad-free tier of a product they chose to install. Nobody should be contributing capacity for nothing.

    Withdrawal at any time

    A participant must be able to leave the network at any point, without penalty, through a control that is visible in the product they installed rather than hidden behind a support request.

    No malware, botnets, or hijacked devices

    We will not use capacity derived from malware, botnet infrastructure, compromised or rooted devices, or software that bundles a proxy client without disclosure. This is a disqualifying condition, not a preference.

    No devices belonging to minors

    Networks we use must restrict participation to adults and must not knowingly enrol devices owned or primarily used by children.

    No traffic inspection

    Our edge forwards encrypted tunnels. We do not terminate, decrypt or inspect the contents of customer traffic, and we do not sell or broker personal data belonging to network participants.

    What we do not do

    • We do not operate a free VPN, a free proxy app, or any consumer product of our own that turns its users into exit nodes.
    • We do not embed a bandwidth-sharing SDK into third-party applications.
    • We do not intercept or decrypt customer traffic, so we cannot read the payloads passing through our network.
    • We do not acquire address capacity from sources that cannot demonstrate a consent record.

    If you believe your device is in the pool

    Email privacy@proxygen.io with the IP address and, if you have it, the approximate time you observed it. You do not need to be a customer, and you do not need to explain why.

    We acknowledge every request within two business days and escalate it to the relevant network for removal. We will tell you the outcome, including when the answer is that the address was never in our network.

    Controls on the customer side

    Ethical sourcing is only half of the question. The other half is what the traffic is used for. Every customer accepts our Acceptable Use Policy at sign-up, must verify their email before purchasing, and is screened for fraud and sanctions exposure.

    We also enforce category blocks at the network entry point, before a request reaches any upstream. Child sexual abuse material is blocked outright, alongside categories that are restricted in specific jurisdictions such as gambling, banking and government services. These filters run on our own edge, so they apply regardless of which upstream serves the request.

    The full set of controls, including our anti-money-laundering measures and how we work with law enforcement, is documented in our Compliance Summary.

    Questions from researchers and journalists

    If you are researching proxy network sourcing, testing our pool, or writing about the industry, write to compliance@proxygen.io. We would rather answer a hard question directly than have it answered for us.