Acceptable use policy
This Acceptable Use Policy governs what you may and may not do with a busyip proxy credential. It forms part of your agreement with EFIRITY PTE. LTD. together with the Terms of Service and the Privacy Policy.
Every IP address busyip supplies belongs to a real person who installed our app, agreed to share their connection, and is paid per gigabyte for it. That is why this policy is narrow and why we enforce it quickly: misuse does not cost us a server, it costs somebody their home internet connection and their relationship with their internet provider.
1. Scope and acceptance #
1.1 This policy applies to all use of the busyip service, whether by you, by anyone using your credential, or by any system you operate or instruct.
1.2 You accept this policy when you create an account. Continuing to use the service after we publish a revised version constitutes acceptance of the revision.
1.3 You are responsible for all traffic sent through your credential, including traffic sent by someone who obtained it from you, with or without your permission. A credential you have lost control of is still your credential until you tell us (support@busyip.com) or rotate it from your dashboard.
2. Permitted uses #
2.1 You may use the service for the following purposes, and for no others:
- Market and pricing research.
- Brand and counterfeit protection.
- Ad verification.
- Search-result and availability checking.
- Cybersecurity testing of systems the customer is authorised to test.
2.2 Clause 2.1 is an exhaustive list, not an example. It is not "including but not limited to". Any purpose not named there is outside the scope of this policy and is not permitted, whether or not clause 3 also names it.
2.3 We word it that way for a reason we would rather state than hide. The people who supply the connections you use were told, before they agreed, exactly what their bandwidth would be used for, and clause 2.1 is that list. We cannot sell you a use they did not agree to supply. If your intended use is close to but not on the list, write to support@busyip.com and ask before you start rather than after we suspend you.
2.4 Within clause 2.1, you may collect only information that is published to the public and reachable without an account, a login, a paywall or any other access control. Clause 3.4 states the boundary.
3. Prohibited uses #
3.1 You must not use the service for any purpose that is unlawful in Singapore, in your own jurisdiction, or in the jurisdiction of the system you are connecting to, or that would cause us or any person supplying a connection to breach a law or a contract.
3.2 Unauthorised access and interference #
You must not use the service to:
- access, or attempt to access, any system, account, network or data without the authorisation of the person entitled to give it;
- test, scan or probe any system you are not authorised in writing to test. Authorised security testing is permitted under clause 2.1; unauthorised testing is not, and the difference is written permission you can produce on request;
- conduct credential stuffing, password spraying, brute-force authentication attempts, session-token replay, or any other attack on an authentication mechanism;
- exploit a vulnerability, escalate a privilege, or maintain access you were not granted;
- distribute, host, command or control malware, ransomware, spyware, botnets or any similar software;
- circumvent a technical measure, rate limit, access control or bot-detection system in order to reach information that is not public.
3.3 Attacks, load and denial of service #
- No denial-of-service or distributed denial-of-service traffic, of any kind, against any target.
- No amplification, reflection, or resource-exhaustion traffic.
- No load testing, stress testing or benchmarking of a system you do not own or are not authorised in writing to test.
- No request volume against a single destination that a reasonable operator of that destination would regard as an attack, and no deliberate evasion of a destination's published rate limits or robots directives.
3.4 Information behind an access control #
You must not use the service to collect, scrape, download or extract information that is not publicly available, including information behind a login screen, a paywall, a subscription, an API key, a session, a device pairing, or any other access control, and including information you can reach only because someone gave you or sold you credentials.
This is the clause that separates lawful collection of public web pages, which is what this service is for, from credential misuse, which is not. If reaching the data requires being someone, rather than merely being somewhere, it is out of scope. It makes no difference whether the credentials were yours, were shared with you, were bought, or were found.
3.5 Personal data and surveillance #
- No collection of personal data without a lawful basis under the law that applies to you and to the people whose data it is.
- No collection of special-category data — health, biometric, genetic, sexual, religious, political, trade-union or criminal-record data — and no collection of data relating to children.
- No stalking, harassment, doxxing, or building of a profile intended to locate, intimidate or expose an individual.
- No use of the service to evade a legal restriction on processing personal data, including a court order or a regulator's direction.
3.6 Spam, messaging and fake accounts #
- No unsolicited bulk email, messaging, comment posting or form submission, and no traffic in support of such a campaign.
- No bulk creation of accounts on any service, and no creation of accounts using false identity or verification data.
- No manipulation of ratings, reviews, votes, follower counts, engagement metrics or search-engine rankings.
- No click fraud, impression fraud, or artificial generation of advertising events. Ad verification is a permitted use under clause 2.1; generating the events you are supposedly verifying is fraud, and the two are not close.
- No phishing, no impersonation of a person or an organisation, and no operation of a website or message that misrepresents who is sending it.
3.7 Fraud and financial crime #
- No payment fraud, card testing, carding, or use of payment instruments you are not authorised to use — against any destination, and against us.
- No money laundering, terrorist financing, or evasion of financial regulation.
- No automated purchasing designed to defeat a seller's published purchase limits or queueing, including ticket, sneaker and limited-release resale automation. This is not a permitted use under clause 2.1 and it is named here because it is commonly attempted.
- No account takeover, refund abuse, or exploitation of promotional or referral systems.
3.8 Cryptocurrency, tokens and trading #
You must not use the service for any cryptocurrency, digital-asset or NFT activity. That includes trading, exchange access, wallet automation, mining, staking, airdrop or faucet farming, initial-offering participation, market making, and evading an exchange's geographic or identity restrictions.
We state this as a flat prohibition rather than a nuanced one because it is not on the permitted list in clause 2.1, because it concentrates chargeback and sanctions exposure, and because we are not equipped to distinguish a legitimate trading strategy from an illegitimate one at the speed the traffic moves.
3.9 Child sexual abuse material #
You must not use the service to access, transmit, host, store, advertise, solicit or distribute child sexual abuse material, or to facilitate the sexual exploitation of a minor in any way.
There is no warning, no grace period and no refund for a breach of this clause. We will suspend the account immediately, preserve the connection records we hold, and report to the relevant authorities, including where we are not legally required to.
3.10 Terrorism, violence and weapons #
You must not use the service to plan, support, finance, promote or carry out terrorism or violent extremism, to incite or threaten violence, to traffic in weapons, explosives or controlled substances, or to support any organisation designated as a terrorist entity under the law of Singapore or of any jurisdiction that applies to you. Clause 3.9's enforcement terms apply to this clause too.
3.11 Sanctions #
You must not use the service if you are, or if you act for or on behalf of, a person or entity subject to sanctions under the law of Singapore, the United Nations, the European Union, the United Kingdom or the United States, and you must not direct traffic to or from a jurisdiction under comprehensive sanctions. You warrant that this is true each time you use the service, not only when you sign up.
3.12 Intellectual property and content #
- No infringement of copyright, trade mark, database right, trade secret or any other intellectual-property right. Detecting counterfeits is a permitted use under clause 2.1; distributing them is not.
- No distribution of pirated media or software, and no circumvention of digital rights management.
- No content that is obscene, defamatory, or unlawful to publish in the jurisdiction it reaches.
3.13 Technical restrictions #
The following are enforced by the gateway as well as prohibited here, so an attempt will usually fail before it becomes a breach. Attempting it is still a breach.
- Destination ports 80 and 443 only. No other port, and in particular no mail transport on port 25, 465 or 587.
- No traffic to private, loopback, link-local, carrier-grade-NAT or unique-local address ranges, and no attempt to reach a device on the local network of the person supplying the connection. This one is not a formality: it is somebody's home router.
- No traffic directed at our own infrastructure, by name or by address, and no attempt to use the service to reach our administrative interfaces.
- No operation of an open proxy, open relay, VPN endpoint, exit node or tunnel that allows a third party to send traffic through your credential.
- No attempt to identify, contact, deanonymise, deceive or interfere with the people supplying the connections, or to induce them to breach their own agreement with us.
3.14 Your credential #
- One active credential per customer. You must not attempt to obtain more, whether by opening additional accounts or otherwise.
- No sharing, sublicensing, reselling or redistribution of your credential or of access to the service, and no use of the service to build or supply a competing proxy pool.
- No creation of multiple accounts to obtain more than one free trial, and no evasion of a suspension by opening a new account.
- No tampering with, or attempted tampering with, quota accounting, usage reporting or billing.
4. What we monitor, and what we do not #
4.1 We do not inspect the content of your traffic. The gateway moves bytes; it does not read them, and it is not built to. That is a promise we make to the people supplying the connections as well as to you.
4.2 We do record, for each connection, the destination host, the source IP address the request came from, the credential used, the time, and whether it succeeded. We keep those records for 90 days and then delete them. They exist so that an abuse complaint can be answered with facts rather than a shrug, and so that we can defend a person whose connection was used for something they had no part in.
4.3 We record the number of bytes you move, per day, in order to bill you and to show you your usage.
4.4 We may disclose the records in clause 4.2 to a complainant, an internet service provider, or a law-enforcement or regulatory authority where we reasonably believe it is necessary to investigate a breach of this policy, to comply with the law, or to protect a person supplying a connection. The Privacy Policy sets out the full position.
5. Enforcement #
5.1 We may suspend or terminate your account, and revoke your credential, immediately, without prior notice, and without refund, on a first breach of this policy or on a reasonable suspicion of one. We do not have to warn you first, and we do not have to wait until we are certain.
5.2 We word clause 5.1 that plainly on purpose. A complaint about a proxy network arrives after the damage, and the person who bears that damage is whoever's connection was used. A prepaid customer suspended in error loses minutes; a person whose home IP address is blacklisted loses their internet service. We resolve that asymmetry in their favour, every time.
5.3 If we suspend you, we will tell you what triggered it and you may reply to support@busyip.com. If we conclude we were wrong, we will restore the account and the balance. Suspension does not by itself entitle you to a refund of an unused balance; refunds are discretionary and handled as described in the Terms of Service.
5.4 We may also, without terminating the account, block a destination, reduce your concurrency, or refuse specific traffic.
5.5 Where a breach causes loss to us or to a person supplying a connection, you are responsible for that loss, and you will reimburse us for costs we reasonably incur in responding to a complaint about your traffic.
6. Reporting abuse #
6.1 If you believe traffic from our network has been used against you or a system you operate, write to abuse@busyip.com. A human reads that address and will acknowledge within one business day.
6.2 Include the destination host or IP address, the source IP address you observed, timestamps with a timezone, and anything from your own logs. With that, we can usually identify the credential responsible within the 90-day window in clause 4.2. Without timestamps, often we cannot.
6.3 Our default action on a substantiated report is suspension under clause 5.1, and we will tell you what we did.
7. Changes to this policy #
7.1 We may revise this policy. Where a revision materially narrows what is permitted, we will give notice by email to the address on your account before it takes effect.
7.2 Each version carries a version identifier, shown at the top of this page. The version you accepted is recorded against your account.
8. Survival #
8.1 Clauses 3 (prohibited uses), 4 (monitoring and records), 5.5 (responsibility for loss), 8 and 9 survive the termination or closure of your account, however it occurs.
8.2 In particular, closing your account does not end your responsibility for traffic sent before it closed, and does not require us to delete the records described in clause 4.2 before the end of their retention period.
9. Governing law #
9.1 This policy is governed by the law of Singapore. The dispute-resolution provisions of the Terms of Service apply to any dispute arising under it.
Formal identification
busyip is operated by EFIRITY PTE. LTD., a private limited company incorporated in Singapore. The registered particulars of the contracting entity, which also appear on every invoice, are:
- Registered name
- EFIRITY PTE. LTD.
- Registration number
- 202402844G
- Registered address
- 68 Circular Road #02-01, Singapore 049422
- General and support
- support@busyip.com
- Abuse reports
- abuse@busyip.com
- Governing law
- Singapore
Legal process and law-enforcement requests should be directed to the registered address above.