Covers IP scores, residential and datacenter networks, WebRTC, DNS, timezone, and browser environments. Each entry provides definitions, potential impact, and verification steps.
What is IP cleanliness?
Basics
In Plain Terms
IP cleanliness combines network type, proxy, spam, abuse, and blacklist signals associated with an address. Different sources may disagree.
What it may affect
Addresses with more negative records may encounter CAPTCHAs, access limits, or extra review, but the destination service makes the final decision.
Checks
Before an important operation, record the check time, exit region, network type, and source details in the IP cleanliness report.
The score summarizes risk signals; use the source-level findings and matches to identify the underlying reason.
For sessions that require a stable route, record exit changes and avoid unplanned route switching.
Residential vs datacenter IP — what's the difference?
Basics
In Plain Terms
Residential or ISP IPs are generally allocated by access providers; datacenter IPs come from hosting and cloud networks. Vendors infer the type from ASN, routing, and usage history.
What it may affect
Some services apply additional checks to hosting networks, but network type alone does not prove whether an address is safe or usable.
Evaluate platform region, account, and network requirements separately; an aggregate score is not a compatibility decision.
Record results before and after a route change to compare exits and risk signals.
Why do shared IPs get flagged so often?
Basics
In Plain Terms
A shared proxy is reused by multiple customers, so its traffic history is harder to control. Abuse or scanning by another user can appear in third-party reputation datasets.
What it may affect
Sharing does not automatically mean high risk, but unrelated traffic on the same address may affect CAPTCHA or access-review frequency.
Checks
Compare the cost and limits of fixed, dedicated, and shared routes when a stable exit is required.
Record IP, ASN, and risk labels before and after use to identify unexpected address changes.
Run an IP Cleanliness Check before using a proxy and review the source-level findings.
Why can WebRTC show another IP while a proxy is active?
CoreLeak
In Plain Terms
WebRTC gathers network candidates for real-time communication. If the browser or proxy does not cover that path, a page may observe an address different from the expected exit.
What it may affect
An additional public IP is a useful routing clue, but it does not reveal an exact physical location by itself.
Checks
Use IPRisk Sentinel to monitor whether the WebRTC address departs from the saved baseline.
Review the proxy client routing mode. If TUN mode is available, confirm its actual traffic scope against the current configuration.
In browser environment managers, verify whether WebRTC uses proxy relay or a direct connection.
Use the Environment Scan to identify public addresses outside the expected route.
What is a DNS leak?
CoreLeak
In Plain Terms
Web traffic and DNS resolution can follow different routes. For example, traffic may use a remote exit while domain lookups still use a local resolver.
What it may affect
A resolver-region mismatch indicates different routing, not proof of a user's actual location.
Checks
Verify whether the proxy client uses remote DNS and whether resolution follows the intended route.
For Clash or similar clients, refer to the current product documentation and confirm the selected DNS mode with observed results.
Record browser DNS-over-HTTPS and operating-system DNS settings to identify overlapping configuration.
Compare resolver region with exit region in the Environment Scan.
What is environment consistency?
CoreEnvironment
In Plain Terms
A site can observe IP region, system timezone, browser language, and device capabilities. Differences can result from travel, remote work, proxy routing, or ordinary preferences.
What it may affect
A mismatch is not automatically risky, but it can help diagnose unexpected routing or settings.
Checks
Use the Environment Scan to compare timezone, language, DNS, and exit region.
Confirm that timezone and language match the intended environment while holding other variables constant during troubleshooting.
When multiple browser profiles are used, document the network and language settings of each profile.
What are Canvas / WebGL fingerprints?
Advanced
In Plain Terms
Canvas and WebGL output can vary with GPU, fonts, drivers, and browser versions. Sites may combine these results with other browser signals.
What it may affect
A hash is not proof of identity, but a stable value can contribute to repeat-device recognition when combined with other data.
Checks
Keep the browser current and review site permissions and privacy settings periodically.
Treat extensions that modify rendering output cautiously; inconsistent output can create compatibility issues.
Review the current hash in the Environment Scan. It describes output stability, not a unique identity.
Registration or login asks for extra verification?
CoreScenario
In Plain Terms
A failed registration can involve account details, service region, IP quality, browser settings, CAPTCHA, or service status. An IP report cannot identify the cause on its own.
What it may affect
Repeated attempts may trigger additional checks and make troubleshooting harder.
Checks
Save the exact error, time, and exit IP, then check official status and help pages.
Confirm required cookies and scripts are allowed and the system clock is correct.
For identity or payment reviews, provide accurate information through official support.
A payment service requests additional review?
CoreScenario
In Plain Terms
Payment services combine transaction, identity, account-history, device, and network information. A network change may be a clue, but it cannot explain a review by itself.
What it may affect
Only the payment provider can state why an account or transaction was held.
Checks
Read the notice carefully and complete verification through official channels.
Keep account, bank, and company information accurate and current.
Record network state and review obvious proxy or blacklist signals in the IP report.
Do not use route switching as a substitute for resolving an account issue with the provider.
How can I diagnose social-media access or distribution issues?
CoreScenario
In Plain Terms
Content performance depends on content, audience, timing, account history, and platform rules. Network checks can only show whether exit IP, DNS, or WebRTC changed.
What it may affect
A view count or account state cannot be attributed directly to an IP score, and no network setup guarantees distribution.
Checks
Review platform analytics, community rules, and account notices first.
Record the current exit with the IP report and compare it with a known working session.
Use the Environment Scan to look for unexpected DNS, WebRTC, or timezone changes.
Use IPRisk Sentinel when you need ongoing baseline-change alerts.
How do I troubleshoot AI-service access issues?
BasicsScenario
In Plain Terms
AI services may use CAPTCHAs, rate limits, regional availability, and other anti-abuse controls. Public information is not enough to attribute response quality or account state to one IP metric.
What it may affect
Connection failures or repeated verification can come from the route, account, service status, or browser configuration.
Record the error, exit IP, and time, then compare direct and proxy connections where permitted.
Change one variable at a time so the cause remains traceable.
Use IPRisk Sentinel to notice route changes during a session.
How should a team manage multiple authorized accounts?
Advanced
In Plain Terms
Organizations may manage several authorized accounts. Clear roles, browser configurations, and network records make auditing and troubleshooting easier.
What it may affect
Shared passwords, unknown browser tools, and undocumented route changes increase security and compliance risk.
Checks
Use the platform's team seats, role permissions, and audit logs instead of sharing personal credentials.
Record the authorized owner, device, and office route for each account.
Enable multi-factor authentication and follow the organization's browser-data policy.
Check in order so one change can be verified before moving to the next.
5-Minute Network Baseline
Confirm the proxy source, plan type, and logging information.
Record the routing and DNS settings in your proxy client.
Install IPRisk Sentinel and lock the baseline after the first scan.
Run the IP cleanliness check and save the network attributes and source details.
Run the Environment Scan to record WebRTC, DNS, timezone, and language for later comparison.
3-Step Check After Switching Nodes
Open the IPRisk Sentinel popup and run a new check.
Review whether all three checks match the route you expected and note any differences.
Once the route is confirmed, toggle the lock to save the new baseline.
60-Second Route Troubleshooting Check
Extension icon is green — not yellow or red.
Baseline IP matches the current IP.
WebRTC shows no local or alternate IPs.
Timezone and browser language match the current device settings.
If something changed, adjust one setting at a time and re-run the scan.
Need to monitor route changes?
IPRisk Sentinel compares current IP, WebRTC, and DNS signals with a saved baseline. It is useful for spotting route changes, not for replacing a platform's account or region review.