No KYC — no ID, no selfie, no documents · Pay in crypto: BTC, USDT, USDC, ETH, SOL, LTC
Buy with crypto

Legal · effective 5 October 2026

Acceptable Use Policy

No KYC does not mean no rules. This policy lists what you may and may not do with Nameless Proxy, the targets the gateway blocks, and how we enforce it. It forms part of our Terms of Service.

Last updated: · 8 min read

Quick answer

What is not allowed on Nameless Proxy?

Nameless Proxy, a no-KYC proxy provider paid in crypto, sells residential and 4G/5G mobile proxies for lawful work only. Fraud, carding, account takeover, credential stuffing, spam, DDoS, malware, fake accounts, ban evasion, KYC bypass and SMS-verification abuse are banned. The gateway blocks banking, payment and government portals, crypto-exchange account pages and SMTP ports 25, 465 and 587. Confirmed abuse ends the account without refund. Abuse reports get a reply as a priority.

Policy summary

Applies toEvery account, sub-user, API key, dedicated port and IP whitelist entry
AllowedLawful work: public-data scraping, SEO and SERP tracking, price and ad checks, brand protection, research, geo-testing, personal privacy
BannedFraud, account abuse, attacks, spam, fake accounts, verification bypass and anything illegal (full list in section 4)
Blocked at the gatewayBanking and payment portals, government portals, crypto-exchange account pages, SMTP ports 25/465/587
EnforcementTarget blocks, suspension, termination without refund for abuse
Legal requestsAnswered under the Terms of Service; we can only hand over what we hold
Reports[email protected] · reply as a priority
Effective5 October 2026

1. Who does this policy apply to?

This policy applies to everyone who uses a Nameless Proxy account: the account holder, every sub-user, every API key, and anyone who uses your proxy credentials or your IP whitelist. You are responsible for all traffic sent with your credentials, including traffic from people you share them with.

This policy forms part of our Terms of Service. If the two documents differ on a point, the stricter rule applies. "We" and "us" mean Nameless Proxy and ProxyGoat LLC, the company that runs it.

2. Why does a no-KYC service have strict rules?

Because we do not check identity, we check behaviour. We never ask for ID, a selfie or documents, at any spend level. In exchange, every account accepts clear limits, and the gateway enforces the most important ones technically.

The rules also protect you. Residential and mobile IPs belong to real households and carrier subscribers. Abuse by one customer can get an address blocked for everyone who shares it, including you.

3. What can I use Nameless Proxy for?

You may use Nameless Proxy for lawful purposes, including:

  • Web scraping of public data, within the rules in section 5 (web scraping).
  • SEO and SERP tracking by country and city (SEO and SERP tracking).
  • Price monitoring of public product, travel and marketplace pages (price monitoring).
  • Ad verification and brand protection: checking how ads, creatives and landing pages appear in each location (ad verification).
  • Social media management of accounts you own, or manage with the owner's permission (social media management).
  • Market and academic research based on publicly available information.
  • Geo-testing of your own apps, websites, content and content delivery.
  • Personal privacy: keeping your home IP address away from the sites you visit (personal privacy).

A use that is not listed is allowed only if it is lawful and does not fall under section 4.

4. What is prohibited?

You must not use Nameless Proxy, directly or through your own customers, for any of the following:

  • Fraud of any kind, including phishing, payment fraud, refund fraud and impersonation of people or companies.
  • Carding: testing, buying, selling or using stolen payment card data.
  • Account takeover: accessing accounts that are not yours, or that you are not authorised to manage.
  • Credential stuffing and brute force: trying stolen or guessed logins against any service.
  • Spam: unsolicited bulk email, SMS, direct messages, comments or forum posts.
  • Sending email through our proxies (SMTP), even legitimate mail.
  • DDoS, flooding and stress testing of any system through our network, including your own.
  • Scanning: port scans, vulnerability scans or exploit attempts against systems you do not own or have no written permission to test.
  • Malware: distributing it, or running command-and-control (C2) servers, botnets or phishing kits.
  • Child sexual abuse material (CSAM): any access, upload or distribution. We report it to the competent authorities.
  • Harassment: threats, stalking, doxxing or intimidation of any person.
  • Ticket scalping and purchase bots: automated buying of event tickets, limited sneakers or other limited stock.
  • Bonus abuse: multiple accounts to claim sign-up bonuses, promotions, free trials or betting offers more than once.
  • Fake accounts and ban evasion: creating accounts in bulk, or returning to a platform after a ban or suspension.
  • KYC and verification bypass: defeating identity, age or location checks at banks, exchanges, payment apps, gambling sites or any other service.
  • SMS verification abuse: receiving or relaying one-time codes for accounts that are not yours, or running phone-number verification services.
  • Click and ad fraud: faking impressions, clicks, installs or traffic.
  • Illegal content: accessing, storing or distributing content that is illegal where you are or where the target is.
  • Sanctions evasion: serving sanctioned persons or territories, or hiding your location to get around sanctions or export controls.
  • Evading law enforcement: using the service to hide a crime, obstruct an investigation, or contact victims or witnesses.
  • Reselling for banned uses: giving or selling access to anyone who uses it for any item above.

5. What are the rules for scraping and automation?

Scraping and automation are allowed when they stay within these limits:

  • Public data only. Do not log in to accounts you do not own, and do not bypass paywalls or access controls.
  • Respect the site. Follow robots.txt and site terms where they apply to you, and keep request rates low enough not to degrade the target.
  • Personal data needs a lawful basis. Under the GDPR, personal data includes names, location data and online identifiers, even on public pages (Art. 4). Collect only what your purpose needs (data minimisation, Art. 5).
  • Check the law for your project. US courts have reached different results depending on the claim: contract, CFAA, copyright or DMCA. This policy is not legal advice.

Code and setup help is in the Python proxy guide and the browser automation guide.

6. Which targets are blocked at the gateway?

Some categories are blocked for every customer, on residential and mobile proxies alike, whatever the reason for the request:

  • Banking and payment portals: online banking, card processors, payment gateways and money-transfer services.
  • Government portals: tax, benefits, immigration, identity and other e-government services.
  • Crypto-exchange account pages: sign-up, login, verification and withdrawal pages of exchanges.
  • Outbound mail: SMTP ports 25, 465 and 587.

For HTTPS traffic, the gateway sees the destination hostname and port, but not the encrypted content (RFC 9110, CONNECT method). A request to a blocked target fails with an error. If you think a hostname is blocked by mistake, write to support with that hostname. We check it, but we do not unblock the categories above. We may add targets that attract abuse at any time.

7. What are my responsibilities?

As an account holder, you must:

  • Keep your account number, password, API keys and proxy credentials private. Anyone who holds them can use your balance.
  • Set a password and two-factor authentication (TOTP) if more than one person can reach your dashboard.
  • Give each team member or client a separate sub-user, so that one person's misuse can be stopped without stopping everyone.
  • Comply with the law where you are and where your target is, and with the target's terms where they bind you.
  • Tell us at [email protected] as soon as you learn that your credentials were misused.

8. How do we enforce this policy?

We act on abuse reports, on reports from partner networks and on requests the gateway blocks. Depending on the case, we may:

  1. Block a target or a request pattern for all customers.
  2. Suspend a sub-user, a port or the whole account while we check. A suspended account receives the error account_suspended at login.
  3. Terminate the account. Termination for abuse is final, and the balance and unused traffic are not refunded.
  4. Answer valid legal requests as set out in our Terms of Service. We can only hand over what we hold, and our privacy policy lists it item by item.

We may act without prior notice when the abuse is serious or still going on.

9. How do I report abuse?

Email [email protected] with the IP address, the time with timezone, the target and any log lines. We reply as a priority. The abuse page explains what to include and what happens next.

10. Can this policy change?

Yes. We may update it, for example to add blocked targets or new types of abuse. The date at the top of this page shows the current version, and material changes are listed in our changelog. If you keep using the service after a change, the new version applies to you.

Acceptable use: FAQ

Can I log in to my own bank account through Nameless Proxy?

No. Banking and payment portals are blocked for every customer, including for access to your own accounts. We cannot tell a genuine account owner from an attacker, so the block applies to everyone without exception. Connect to your bank directly instead. The same rule covers government portals and crypto-exchange account pages.

Can I send email through Nameless Proxy?

No. SMTP ports 25, 465 and 587 are blocked on all residential and mobile proxies, even for legitimate mail. Residential and carrier IPs are shared with real subscribers, and one spammer could get those addresses listed for everyone. Send mail through your mail provider's own servers instead.

Is web scraping allowed on Nameless Proxy?

Yes, for public data. Respect robots.txt and site terms where they apply to you, keep request rates reasonable, never log in to accounts that are not yours, and have a lawful basis before you collect personal data. US courts have reached different results depending on the claim, so check the law for your project.

Can I use Nameless Proxy for sneaker or ticket bots?

No. Automated buying of tickets, limited sneakers or other limited stock is prohibited, and so are bonus abuse and multi-accounting. Accounts used for them are terminated without refund. Price monitoring of public product pages, without automated checkout, is allowed and is a common use of residential proxies.

What happens if a sub-user or client breaks the rules?

You are responsible for every sub-user and every person who uses your credentials. We may suspend the sub-user, the port or the whole account while we check. Give each client a separate sub-user with its own traffic cap, so that a problem with one client does not stop the others.

Do I get a refund if my account is terminated?

Not when the termination is for abuse: the balance and unused traffic are forfeited. In every other case our refund policy applies: full refund within 24 hours of purchase if less than 100 MB of the pack was used; a dedicated port that cannot deliver a working IP is refunded in full. The details are on the refunds page.

Sources (3)
  1. GDPR Article 4: Definitions — gdpr-info.eu (consolidated text) (checked 2026-10-05)
  2. GDPR Article 5: Principles relating to processing of personal data — gdpr-info.eu (consolidated text) (checked 2026-10-05)
  3. RFC 9110 §9.3.6: CONNECT — IETF (June 2022)

Not sure whether your use case is allowed?

Ask before you buy. Support replies within 12 hours.