Security built into the architecture
AntiProxies is designed so that your users' data never leaves your infrastructure. Our self-hosted model eliminates the security risks inherent in API-based threat intelligence.
Self-Hosted Architecture
Databases run on your infrastructure. User IPs and emails never leave your servers.
Encrypted Delivery
All database downloads over HTTPS with TLS 1.3. Authenticated links and checksum verification.
Ethical Data Sourcing
Data compiled from public sources and community feeds. No PII scraping or unethical collection.
GDPR Compliant
No personal data transmitted to third parties. DPA available. Full data sovereignty.
Privacy architecture
Traditional threat intelligence requires sending user data to external servers for every lookup. AntiProxies reverses this model.
API-based services
- User IPs sent to third-party servers on every request
- Email addresses transmitted for validation checks
- Third-party data processing creates GDPR obligations
- Network dependency - if the API is down, protection stops
- 50-200ms latency added to every checked request
AntiProxies (self-hosted)
- All lookups happen locally - zero data leaves your servers
- No third-party data processing to manage or disclose
- GDPR compliance simplified - you control everything
- No network dependency - works offline, no single point of failure
- Sub-millisecond lookups - faster than any API
Data sourcing & ethics
Our threat intelligence databases are built from publicly available, ethically sourced data. Here is how we compile each database.
VPN & Proxy IPs
Compiled from public VPN provider infrastructure, network scanning of known proxy protocols, community threat feeds, and analysis of commercial VPN provider IP allocations. We do not use deceptive methods or entrapment techniques.
Disposable Email Domains
Aggregated from public disposable email service directories, community-maintained lists, DNS analysis of known temporary email patterns, and ongoing monitoring of new disposable email services as they launch.
Tor Exit Nodes
Sourced directly from the Tor Project's public directory authorities and consensus documents. This is entirely public data that the Tor network publishes by design.
ISP Reputation
Built from public ASN registries (ARIN, RIPE, APNIC), historical abuse reports from public blacklists, and aggregate traffic analysis. No individual user data is used in reputation scoring.
Datacenter IP Ranges
Mapped from public IP allocation records of cloud providers (AWS, GCP, Azure publish their ranges), hosting provider WHOIS data, and BGP routing tables. All sources are publicly accessible.
Infrastructure security
While the databases run on your infrastructure, we take the security of our distribution and update pipeline seriously.
TLS 1.3 Encryption
All downloads and communications secured with modern TLS encryption
Authenticated Downloads
Download links are tied to your license and expire after use
Checksum Verification
SHA-256 checksums provided for every database file to verify integrity
Access Control
License-based access with no shared credentials or public endpoints
Secure Infrastructure
Our distribution infrastructure follows security best practices
No Persistent Connections
Download once and query locally - no ongoing connection to our servers
Compliance
Our self-hosted architecture simplifies compliance by keeping user data entirely within your control.
- No user personal data is transmitted to AntiProxies servers
- Databases contain network intelligence, not personal information
- Data Processing Agreement (DPA) available on request
- Compatible with GDPR, CCPA, and PIPEDA requirements
- Full data sovereignty - host databases in any jurisdiction
- No third-party sub-processors involved in data queries
- Right to deletion is inherently satisfied (no data collected)
- Privacy impact assessment documentation available
Responsible disclosure
We take security vulnerabilities seriously. If you discover a security issue, we want to hear from you.
How to report
- 1. Email security@antiproxies.com with details
- 2. Include steps to reproduce and potential impact
- 3. We will acknowledge receipt within 24 hours
- 4. We provide status updates within 72 hours
Our commitment
- We will not take legal action against good-faith reporters
- We work with you to understand and resolve the issue
- We credit researchers who report valid vulnerabilities
- We disclose resolved issues transparently
Related reading
GDPR-Compliant Bot Protection
How local processing simplifies GDPR compliance for bot protection.
BlogBuilding a Fraud Prevention Stack
Essential security layers every business needs for comprehensive protection.
GlossaryThreat Intelligence
How threat intelligence feeds work and why ethical data sourcing matters.
Want to see what's in the database?
Download once, query as many times as you need. €99/year for all 22 databases, unlimited servers, and a full year of monthly updates. No usage limits, no per-query fees, no data leaving your servers.