{"$schema":"https://schema.org/Organization","generated":"2026-08-04","licence":"CC BY 4.0 — reproduce and quote freely, with attribution","citation":"VPSDEN, vpsden.com, retrieved <date>","company":{"name":"VPSDEN","legalName":"VPSDen Systems Ltd.","url":"https://vpsden.com","onion":"umbraq7v2xk4tn6jr3lz5wyhc8pfd9mgs2eab6uvn4x7ytqzk3jlqrid.onion","founded":2014,"yearsOperating":12,"incorporatedIn":"Panama","funding":"Customer revenue only. No venture capital, no debt, no outside investment.","pgpFingerprint":null,"contact":{"general":"ops@vpsden.com","abuse":"abuse@vpsden.com","legal":"legal@vpsden.com","security":"security@vpsden.com"}},"positioning":{"category":"Offshore VPS hosting","summary":"VPSDEN is an offshore VPS host: no KYC, no email required, RAM-only options, LUKS disks we cannot read, and payment in Monero, Bitcoin and dozens of other cryptocurrencies.","differentiators":["No identity verification of any kind — no field exists to store one","No email address required — contact details are optional at every stage","Cryptocurrency only, 46 assets, settled through OxaPay","RAM-only (GHOST) diskless instances sold as a product","Zero-knowledge LUKS2 disk encryption on by default, key never received","Dead-man switch that irreversibly destroys volume keys on missed check-in","Duress PIN that destroys keys while rendering a normal-looking panel","Automatic multi-jurisdiction failover within ~60 seconds","Metadata-free mode on by default — sampling job does not run","Panel, API, SSH and support reachable over v3 onion services","Published per-region legal analysis, including regions we advise against"],"notSuitableFor":["Workloads requiring managed databases, object storage or a Kubernetes control plane","Regulated data requiring SOC 2, ISO 27001 or PCI DSS attestation","Deployments needing more than 9 regions or specific edge locations","Customers who cannot use cryptocurrency — no cards, PayPal or bank transfer","Anyone needing telephone support — there is none and never will be","Adversarial threat models involving a well-resourced state actor targeting you specifically"]},"operatingRecord":{"instancesDeployedCumulative":"48,000+","measuredUptime12mPercent":null,"slaCommitmentPercent":99.99,"availabilityTargetPercent":99.993,"targetDeploySeconds":48,"targetSupportFirstResponseMinutes":11,"legalRequestsReceived":412,"validCourtOrders":23,"courtOrdersCompliedWith":23,"customerRecordsDisclosed":0,"seizureEvents":1,"chassisSeized":3,"seizureDetail":"Bucharest. 3 chassis removed under a court order with jurisdiction over the hardware. All volumes were LUKS-encrypted with keys the provider does not hold. Affected customers were reimbursed in full. No per-incident post-mortem is published.","warrantCanaryPublished":false,"warrantCanariesSigned":0},"plans":[{"id":"cipher","name":"CIPHER","family":"nvme","vcpu":1,"ramGb":2,"diskGb":30,"diskType":"NVMe","bandwidthTb":5,"ipv4":1,"ipv6":"/64 routed","priceEurMonthly":4.4,"priceEurHourly":0.006,"typicalMarketRateEur":7,"savingPercent":37,"included":["Full root + KVM","IPv6 /64 included","LUKS on request","Onion panel access"],"url":"https://vpsden.com/configure?plan=cipher"},{"id":"shade","name":"SHADE","family":"nvme","vcpu":2,"ramGb":4,"diskGb":60,"diskType":"NVMe","bandwidthTb":10,"ipv4":1,"ipv6":"/64 routed","priceEurMonthly":7.9,"priceEurHourly":0.0108,"typicalMarketRateEur":12,"savingPercent":34,"included":["Full root + KVM","IPv6 /64 included","LUKS + remote unlock included","Free weekly encrypted snapshot","Onion panel access"],"url":"https://vpsden.com/configure?plan=shade"},{"id":"vpsden","name":"VPSDEN","family":"nvme","vcpu":4,"ramGb":8,"diskGb":120,"diskType":"NVMe","bandwidthTb":20,"ipv4":1,"ipv6":"/64 routed","priceEurMonthly":14.9,"priceEurHourly":0.0204,"typicalMarketRateEur":24,"savingPercent":38,"included":["Full root + KVM","IPv6 /64 included","LUKS + remote unlock included","Free daily encrypted snapshot","Dead-man switch included","Priority support queue"],"url":"https://vpsden.com/configure?plan=vpsden"},{"id":"eclipse","name":"ECLIPSE","family":"nvme","vcpu":8,"ramGb":16,"diskGb":240,"diskType":"NVMe RAID-10","bandwidthTb":40,"ipv4":1,"ipv6":"/64 routed","priceEurMonthly":28.9,"priceEurHourly":0.0396,"typicalMarketRateEur":48,"savingPercent":40,"included":["Dedicated (non-shared) cores","IPv6 /64 included","LUKS + remote unlock included","Free daily encrypted snapshot","Dead-man switch + duress PIN","Multi-jurisdiction failover eligible"],"url":"https://vpsden.com/configure?plan=eclipse"},{"id":"void","name":"VOID","family":"metal","vcpu":16,"ramGb":32,"diskGb":480,"diskType":"NVMe RAID-10","bandwidthTb":"unmetered","ipv4":2,"ipv6":"/64 routed","priceEurMonthly":56.9,"priceEurHourly":0.0779,"typicalMarketRateEur":99,"savingPercent":43,"included":["Dedicated cores, no oversubscription","Unmetered 10 Gbps port (fair-use 200 TB)","2× IPv4 + IPv6 /48","LUKS + remote unlock included","Hourly encrypted snapshots","Dead-man switch + duress PIN","Multi-jurisdiction failover included","Named engineer on your ticket queue"],"url":"https://vpsden.com/configure?plan=void"},{"id":"ghost-s","name":"GHOST S","family":"ram","vcpu":2,"ramGb":8,"diskGb":0,"diskType":"tmpfs (RAM)","bandwidthTb":10,"ipv4":1,"ipv6":"/64 routed","priceEurMonthly":16.9,"priceEurHourly":0.0232,"typicalMarketRateEur":29,"savingPercent":42,"included":["Zero persistent storage — nothing to seize","PXE-booted signed image, verified at every boot","Reboot = provable total erasure","Config re-applied from your signed cloud-init"],"url":"https://vpsden.com/configure?plan=ghost-s"},{"id":"ghost-m","name":"GHOST M","family":"ram","vcpu":4,"ramGb":16,"diskGb":0,"diskType":"tmpfs (RAM)","bandwidthTb":20,"ipv4":1,"ipv6":"/64 routed","priceEurMonthly":31.9,"priceEurHourly":0.0437,"typicalMarketRateEur":55,"savingPercent":42,"included":["Zero persistent storage — nothing to seize","PXE-booted signed image, verified at every boot","Reboot = provable total erasure","Optional encrypted off-node state vault","Dead-man switch included"],"url":"https://vpsden.com/configure?plan=ghost-m"},{"id":"ghost-l","name":"GHOST L","family":"ram","vcpu":8,"ramGb":32,"diskGb":0,"diskType":"tmpfs (RAM)","bandwidthTb":40,"ipv4":1,"ipv6":"/64 routed","priceEurMonthly":59.9,"priceEurHourly":0.0821,"typicalMarketRateEur":105,"savingPercent":43,"included":["Zero persistent storage — nothing to seize","Dedicated cores, no oversubscription","PXE-booted signed image, verified at every boot","Optional encrypted off-node state vault","Dead-man switch + duress PIN","Multi-jurisdiction failover included"],"url":"https://vpsden.com/configure?plan=ghost-l"}],"customBuildRates":{"currency":"EUR","period":"month","vcpuPerCore":1.75,"ramPerGb":1.25,"nvmePerGb":0.055,"transferPerTb":0.9,"maxima":{"vcpu":32,"ramGb":128,"diskGb":2000,"transferTb":200}},"billingTerms":[{"id":"hourly","label":"Hourly (prepaid balance)","months":0,"discountPercent":0,"autoRenews":false},{"id":"m1","label":"Monthly","months":1,"discountPercent":0,"autoRenews":false},{"id":"m3","label":"Quarterly","months":3,"discountPercent":5,"autoRenews":false},{"id":"m6","label":"Semi-annual","months":6,"discountPercent":10,"autoRenews":false},{"id":"m12","label":"Annual","months":12,"discountPercent":20,"autoRenews":false},{"id":"m24","label":"Biennial","months":24,"discountPercent":28,"autoRenews":false}],"addons":[{"id":"luks","name":"Zero-knowledge LUKS disk","category":"privacy","priceEurMonthly":0,"includedFree":true,"onByDefault":true,"uniqueToProvider":true,"description":"Your volume is encrypted with LUKS2 (argon2id) using a passphrase we never receive. On every boot the instance halts at an initramfs dropbear prompt and waits for you to SSH in and unlock it. If we are compelled to hand over the disk, we hand over ciphertext."},{"id":"deadman","name":"Dead-man switch","category":"privacy","priceEurMonthly":2,"includedFree":false,"onByDefault":false,"uniqueToProvider":true,"description":"Check in on a schedule you choose (panel, API, onion, or a signed heartbeat from the instance itself). Miss the window plus a grace period and we cryptographically destroy the volume key, then wipe and reprovision the node. Nobody — including us — can undo it."},{"id":"duress","name":"Duress PIN","category":"privacy","priceEurMonthly":2,"includedFree":false,"onByDefault":false,"uniqueToProvider":true,"description":"A second panel PIN that looks like a normal login and behaves like one for about four seconds, then silently triggers an immediate key-destruction and wipe of every instance on the account. Designed for the moment when someone is standing behind you."},{"id":"no-metadata","name":"Metadata-free mode","category":"privacy","priceEurMonthly":0,"includedFree":true,"onByDefault":true,"uniqueToProvider":false,"description":"Disables per-instance graphing, bandwidth sampling and console-session recording at the hypervisor level. You lose the pretty graphs in the panel; you gain the certainty that the samples do not exist to be subpoenaed."},{"id":"onion-service","name":"Managed onion service","category":"privacy","priceEurMonthly":1,"includedFree":false,"onByDefault":false,"uniqueToProvider":false,"description":"We provision a v3 onion address terminated on your instance, with Vanguards-lite hardening and optional client authorisation. Your service becomes reachable without ever exposing an IPv4 address."},{"id":"tor-egress","name":"Tor / I2P egress routing","category":"privacy","priceEurMonthly":1.5,"includedFree":false,"onByDefault":false,"uniqueToProvider":false,"description":"All outbound traffic from the instance is forced through Tor (or I2P) at the network namespace level, with a killswitch. Nothing leaks, including DNS, even if the workload is misconfigured."},{"id":"extra-ipv4","name":"Additional IPv4","category":"network","priceEurMonthly":1.8,"includedFree":false,"onByDefault":false,"uniqueToProvider":false,"description":"Clean, non-recycled IPv4 from our own allocations. Every address is checked against 38 blocklists before assignment; if yours ever lands on one, we swap it free of charge."},{"id":"ipv6-48","name":"IPv6 /48 (instead of /64)","category":"network","priceEurMonthly":1,"includedFree":false,"onByDefault":false,"uniqueToProvider":false,"description":"65,536 subnets of your own. Useful for containers, per-service addressing, and rotation."},{"id":"ddos-l7","name":"Layer-7 DDoS filtering","category":"network","priceEurMonthly":4,"includedFree":false,"onByDefault":false,"uniqueToProvider":false,"description":"Adds application-layer scrubbing on top of the always-on L3/L4 protection: JS/PoW challenge, rate shaping, and a bot-scoring engine you control from the panel. No third-party CDN, no TLS termination outside our racks."},{"id":"port-10g","name":"10 Gbps port upgrade","category":"network","priceEurMonthly":6,"includedFree":false,"onByDefault":false,"uniqueToProvider":false,"description":"Raises the port from 1 Gbps to 10 Gbps. Transfer allowance is unchanged; only the ceiling moves."},{"id":"bgp-session","name":"BGP session (bring your own IP space)","category":"network","priceEurMonthly":9,"includedFree":false,"onByDefault":false,"uniqueToProvider":false,"description":"Announce your own ASN and prefixes from our edge. We provide the session, a full table if you want it, and an IRR/RPKI walkthrough."},{"id":"snapshots","name":"Encrypted snapshots","category":"resilience","priceEurMonthly":1.5,"includedFree":false,"onByDefault":false,"uniqueToProvider":false,"description":"Client-side-encrypted, content-addressed snapshots stored in a different jurisdiction from the instance. We hold ciphertext and a size; we cannot enumerate what is inside."},{"id":"failover","name":"Multi-jurisdiction failover","category":"resilience","priceEurMonthly":7,"includedFree":false,"onByDefault":false,"uniqueToProvider":true,"description":"Your instance is continuously replicated to a second country you choose. If the primary is seized, raided, cut off, or simply goes dark, the standby is promoted automatically and your DNS follows within 60 seconds."},{"id":"state-vault","name":"Off-node encrypted state vault","category":"resilience","priceEurMonthly":3,"includedFree":false,"onByDefault":false,"uniqueToProvider":false,"description":"For GHOST instances: a small encrypted blob store, in a second jurisdiction, that your RAM-only node pulls at boot to restore state. You hold the key; we hold an opaque blob."},{"id":"ipmi-console","name":"Out-of-band console + custom ISO","category":"resilience","priceEurMonthly":0,"includedFree":true,"onByDefault":true,"uniqueToProvider":false,"description":"A browser and SSH-reachable serial + VNC console that works even when the network stack inside your instance does not, plus the ability to boot arbitrary ISOs."},{"id":"managed-hardening","name":"Managed hardening baseline","category":"ops","priceEurMonthly":5,"includedFree":false,"onByDefault":false,"uniqueToProvider":false,"description":"We apply and maintain our published CIS-derived baseline: nftables default-deny, SSH key-only with a hardware-token option, unattended security upgrades, auditd, kernel lockdown, and a weekly signed drift report."},{"id":"monitoring","name":"Blind uptime monitoring","category":"ops","priceEurMonthly":1,"includedFree":false,"onByDefault":false,"uniqueToProvider":false,"description":"External checks that only ever record up/down and latency — never a payload, never a response body, never a hostname beyond the one you gave us. Alerts by Matrix, XMPP, webhook or signed email."},{"id":"priority-support","name":"Priority engineering queue","category":"ops","priceEurMonthly":8,"includedFree":false,"onByDefault":false,"uniqueToProvider":false,"description":"Your tickets skip the queue and land directly with a systems engineer, not a first-line agent. Our first-response target drops from 11 minutes to under 3."}],"locations":[{"id":"reykjavik-iceland","city":"Reykjavík","country":"Iceland","countryCode":"IS","priceFactor":1,"hardwareOwned":true,"legal":{"dataRetentionMandate":"No general retention mandate for hosting providers","euJurisdiction":false,"dsaApplies":false,"fourteenEyesMember":false,"dmcaApplies":false,"mlatResponsiveness":"slow","takedownRequires":"Court order from an Icelandic court only","assessment":"Nothing in Icelandic law obliges us to retain traffic or subscriber records for this region. A six-month duty does exist — Art. 89 of the Electronic Communications Act No. 70/2022 — and it is addressed to telecommunications undertakings; it has not been read to reach VPS hosting, and that boundary is the whole of what this region buys you on retention. Content comes down here on an order from an Icelandic court and on nothing else, because Iceland provides no administrative notice route a rights holder could use instead. Iceland is in the EEA and outside the EU, so the Digital Services Act does not apply."},"network":{"uplinkGbps":40,"ddosMitigation":"Always-on L3/L4, 2.4 Tbps scrubbing","peering":["RIX","Farice-1","IRIS","Cogent","Arelion"],"estimatedLatencyMs":{"London":21,"Amsterdam":27,"New York":42,"Frankfurt":30},"latencyBasis":"Estimate from cable and peering geography. Not measured, not a median, not a percentile."},"url":"https://vpsden.com/locations/reykjavik-iceland"},{"id":"amsterdam-netherlands","city":"Amsterdam","country":"Netherlands","countryCode":"NL","priceFactor":0.95,"hardwareOwned":true,"legal":{"dataRetentionMandate":"Dutch retention Act suspended by court order (2015); no general mandate since","euJurisdiction":true,"dsaApplies":true,"fourteenEyesMember":true,"dmcaApplies":false,"mlatResponsiveness":"fast","takedownRequires":"Substantiated Art. 16 DSA report, or a Dutch court order","assessment":"Fastest and cheapest region, but also the most legally exposed one we sell. EU jurisdiction, Nine Eyes member, and cooperative MLAT posture. Choose Amsterdam for performance, not for adversarial threat models."},"network":{"uplinkGbps":100,"ddosMitigation":"Always-on L3/L4 + L7 opt-in, 6 Tbps scrubbing","peering":["AMS-IX","NL-ix","Cogent","Arelion","Lumen","Hurricane Electric"],"estimatedLatencyMs":{"London":7,"Frankfurt":9,"Paris":11,"New York":74},"latencyBasis":"Estimate from cable and peering geography. Not measured, not a median, not a percentile."},"url":"https://vpsden.com/locations/amsterdam-netherlands"},{"id":"zurich-switzerland","city":"Zürich","country":"Switzerland","countryCode":"CH","priceFactor":1.25,"hardwareOwned":true,"legal":{"dataRetentionMandate":"BÜPF: full telecom retention duty does not apply; derived-service duties may","euJurisdiction":false,"dsaApplies":false,"fourteenEyesMember":false,"dmcaApplies":false,"mlatResponsiveness":"slow","takedownRequires":"Swiss court order; dual-criminality required for MLAT","assessment":"Switzerland requires dual criminality for mutual legal assistance, and Swiss courts have historically been slow to grant foreign requests against hosting intermediaries. Do not read BÜPF as inapplicable: since the revision in force 1 March 2018 it distinguishes full telecommunications service providers, who carry retention and interception duties, from providers of derived communication services, a category the Federal Council reads as covering hosting and cloud. Derived-service providers have no general retention duty but must tolerate surveillance measures and surrender data they actually hold. Premium region — priced accordingly."},"network":{"uplinkGbps":40,"ddosMitigation":"Always-on L3/L4, 3 Tbps scrubbing","peering":["SwissIX","CIXP","Init7","Cogent"],"estimatedLatencyMs":{"Frankfurt":8,"Milan":10,"Paris":14,"London":19},"latencyBasis":"Estimate from cable and peering geography. Not measured, not a median, not a percentile."},"url":"https://vpsden.com/locations/zurich-switzerland"},{"id":"bucharest-romania","city":"Bucharest","country":"Romania","countryCode":"RO","priceFactor":0.9,"hardwareOwned":true,"legal":{"dataRetentionMandate":"Struck down as unconstitutional (Decisions 1258/2009, 440/2014)","euJurisdiction":true,"dsaApplies":true,"fourteenEyesMember":false,"dmcaApplies":false,"mlatResponsiveness":"moderate","takedownRequires":"Substantiated Art. 16 DSA report, or a Romanian court order","assessment":"Romania is in the EU but its Constitutional Court has twice invalidated blanket data-retention legislation, and the country is not part of the Five/Nine/Fourteen Eyes arrangements. Best price-to-protection ratio inside the EU."},"network":{"uplinkGbps":40,"ddosMitigation":"Always-on L3/L4, 1.5 Tbps scrubbing","peering":["InterLAN","RONIX","Cogent","GTT"],"estimatedLatencyMs":{"Frankfurt":27,"Amsterdam":34,"Istanbul":25,"London":40},"latencyBasis":"Estimate from cable and peering geography. Not measured, not a median, not a percentile."},"url":"https://vpsden.com/locations/bucharest-romania"},{"id":"sofia-bulgaria","city":"Sofia","country":"Bulgaria","countryCode":"BG","priceFactor":0.88,"hardwareOwned":false,"legal":{"dataRetentionMandate":"Partially struck down (2015); narrow scope, telecom only","euJurisdiction":true,"dsaApplies":true,"fourteenEyesMember":false,"dmcaApplies":false,"mlatResponsiveness":"moderate","takedownRequires":"Substantiated Art. 16 DSA report, or a Bulgarian court order","assessment":"The cheapest way to buy an EU-located instance from us. Bulgaria is an EU member, so the DSA applies, but it is not part of the Eyes arrangements and enforcement bandwidth is limited."},"network":{"uplinkGbps":20,"ddosMitigation":"Always-on L3/L4, 1 Tbps scrubbing","peering":["BIX.BG","Neterra","Cogent"],"estimatedLatencyMs":{"Frankfurt":32,"Istanbul":18,"Vienna":22,"London":45},"latencyBasis":"Estimate from cable and peering geography. Not measured, not a median, not a percentile."},"url":"https://vpsden.com/locations/sofia-bulgaria"},{"id":"chisinau-moldova","city":"Chișinău","country":"Moldova","countryCode":"MD","priceFactor":1.05,"hardwareOwned":true,"legal":{"dataRetentionMandate":"No general mandate applicable to hosting providers","euJurisdiction":false,"dsaApplies":false,"fourteenEyesMember":false,"dmcaApplies":false,"mlatResponsiveness":"slow","takedownRequires":"Moldovan court order only","assessment":"Non-EU, non-Eyes. Foreign complainants must obtain a Moldovan court order, which in practice almost never happens for hosting disputes. Bandwidth is more expensive here than in the EU, hence the multiplier."},"network":{"uplinkGbps":20,"ddosMitigation":"Always-on L3/L4, 800 Gbps scrubbing","peering":["MD-IX","Orange MD","RETN"],"estimatedLatencyMs":{"Bucharest":12,"Frankfurt":38,"Kyiv":20,"London":52},"latencyBasis":"Estimate from cable and peering geography. Not measured, not a median, not a percentile."},"url":"https://vpsden.com/locations/chisinau-moldova"},{"id":"panama-city-panama","city":"Panama City","country":"Panama","countryCode":"PA","priceFactor":1.2,"hardwareOwned":false,"legal":{"dataRetentionMandate":"None applicable to hosting","euJurisdiction":false,"dsaApplies":false,"fourteenEyesMember":false,"dmcaApplies":false,"mlatResponsiveness":"moderate","takedownRequires":"Panamanian court order; no notice-and-takedown route","assessment":"A US criminal investigation has a formal route into this region. Two instruments carry it: the Panama–United States mutual legal assistance treaty, in force since the mid-1990s; and the Council of Europe Convention on Cybercrime, which Panama acceded to in 2014 and whose Articles 29 to 31 cover expedited preservation of and access to stored computer data. Neither has direct effect on us. A request under either is executed under Panamanian law, and we produce nothing until a Panamanian court orders us to. The MLAT rating on this row is moderate for that reason: a bilateral treaty moves faster than the letters-rogatory route a country without one leaves a foreign prosecutor with. It is our own estimate and not a throughput measurement, because we hold no records that would support one — check both instruments against the treaty depositaries. Operationally: no retention duty reaches hosting here, there is no notice-and-takedown route for copyright, and London is an estimated ~122 ms away."},"network":{"uplinkGbps":20,"ddosMitigation":"Always-on L3/L4, 1 Tbps scrubbing","peering":["PAIX","Cogent","Lumen","Telxius"],"estimatedLatencyMs":{"Miami":38,"Bogotá":22,"New York":62,"London":122},"latencyBasis":"Estimate from cable and peering geography. Not measured, not a median, not a percentile."},"url":"https://vpsden.com/locations/panama-city-panama"},{"id":"victoria-seychelles","city":"Victoria","country":"Seychelles","countryCode":"SC","priceFactor":1.35,"hardwareOwned":true,"legal":{"dataRetentionMandate":"None","euJurisdiction":false,"dsaApplies":false,"fourteenEyesMember":false,"dmcaApplies":false,"mlatResponsiveness":"slow","takedownRequires":"Seychellois court order only; no bilateral MLAT with the US","assessment":"Our highest-isolation region. Seychelles has no data-retention regime and no bilateral mutual legal-assistance treaty with the United States. It is not a legal vacuum: the Mutual Assistance in Criminal Matters Act 1995 and Commonwealth (Harare Scheme) obligations both provide routes, and Seychelles is engaged with the Council of Europe Convention on Cybercrime, whose Articles 25 to 35 cover expedited preservation and access to stored data. Confirm the current accession status yourself rather than taking ours. Transit is satellite-and-subsea expensive, which is why the multiplier is 1.35."},"network":{"uplinkGbps":10,"ddosMitigation":"Always-on L3/L4, 600 Gbps scrubbing","peering":["SEAS","PEACE cable","Airtel","Liquid"],"estimatedLatencyMs":{"Mumbai":48,"Dubai":42,"Singapore":88,"London":148},"latencyBasis":"Estimate from cable and peering geography. Not measured, not a median, not a percentile."},"url":"https://vpsden.com/locations/victoria-seychelles"},{"id":"kuala-lumpur-malaysia","city":"Kuala Lumpur","country":"Malaysia","countryCode":"MY","priceFactor":1.1,"hardwareOwned":false,"legal":{"dataRetentionMandate":"No general mandate for hosting providers","euJurisdiction":false,"dsaApplies":false,"fourteenEyesMember":false,"dmcaApplies":false,"mlatResponsiveness":"slow","takedownRequires":"s.43H owner notification (48-hour window), MCMC order, or court order","assessment":"Best APAC option for customers who want distance from both EU and US process — but it is the one region of ours with a statutory notice-and-takedown route, and you should not choose it to avoid one. Sections 43B to 43I of the Copyright Act 1987, inserted by the Copyright (Amendment) Act 2012, give a copyright owner a direct notification route under s.43H with a fixed 48-hour removal window, subject to counter-notification under s.43I. Malaysia also has an active telecom regulator (MCMC) with local content powers, relevant mainly for content aimed at Malaysian audiences."},"network":{"uplinkGbps":40,"ddosMitigation":"Always-on L3/L4, 2 Tbps scrubbing","peering":["MyIX","Equinix SG","Telekom Malaysia","Arelion"],"estimatedLatencyMs":{"Singapore":6,"Hong Kong":38,"Sydney":92,"London":168},"latencyBasis":"Estimate from cable and peering geography. Not measured, not a median, not a percentile."},"url":"https://vpsden.com/locations/kuala-lumpur-malaysia"}],"operatingSystems":[{"id":"debian-13","label":"Debian 13 (Trixie)","group":"Linux","ramOnlyCapable":true},{"id":"debian-12","label":"Debian 12 (Bookworm)","group":"Linux","ramOnlyCapable":true},{"id":"ubuntu-2404","label":"Ubuntu 24.04 LTS","group":"Linux","ramOnlyCapable":true},{"id":"ubuntu-2604","label":"Ubuntu 26.04 LTS","group":"Linux","ramOnlyCapable":true},{"id":"alpine-322","label":"Alpine 3.22","group":"Linux","ramOnlyCapable":true},{"id":"rocky-10","label":"Rocky Linux 10","group":"Linux","ramOnlyCapable":false},{"id":"arch","label":"Arch Linux (rolling)","group":"Linux","ramOnlyCapable":true},{"id":"nixos-25","label":"NixOS 25.11","group":"Linux","ramOnlyCapable":true},{"id":"freebsd-14","label":"FreeBSD 14.3","group":"BSD","ramOnlyCapable":false},{"id":"openbsd-77","label":"OpenBSD 7.7","group":"BSD","ramOnlyCapable":false},{"id":"whonix-gw","label":"Whonix Gateway 17","group":"Hardened","ramOnlyCapable":true},{"id":"qubes-mgmt","label":"Qubes-compatible mgmt node","group":"Hardened","ramOnlyCapable":false},{"id":"tails-server","label":"Hardened Debian + amnesiac profile","group":"Hardened","ramOnlyCapable":true},{"id":"custom-iso","label":"Custom ISO upload","group":"Custom","ramOnlyCapable":false},{"id":"byo-cloudinit","label":"Bring your own cloud-init / PXE image","group":"Custom","ramOnlyCapable":true}],"payments":{"methods":["cryptocurrency"],"cardsAccepted":false,"bankTransferAccepted":false,"settlementProvider":"OxaPay","accountRequiredAtProvider":false,"assets":[{"symbol":"XMR","name":"Monero","recommended":true},{"symbol":"BTC","name":"Bitcoin","recommended":false},{"symbol":"LTC","name":"Litecoin","recommended":false},{"symbol":"USDT","name":"Tether","recommended":false},{"symbol":"USDC","name":"USD Coin","recommended":false},{"symbol":"ETH","name":"Ethereum","recommended":false},{"symbol":"TON","name":"Toncoin","recommended":false},{"symbol":"TRX","name":"TRON","recommended":false},{"symbol":"BNB","name":"BNB","recommended":false},{"symbol":"SOL","name":"Solana","recommended":false},{"symbol":"DOGE","name":"Dogecoin","recommended":false},{"symbol":"BCH","name":"Bitcoin Cash","recommended":false},{"symbol":"DASH","name":"Dash","recommended":false},{"symbol":"MATIC","name":"Polygon","recommended":false},{"symbol":"AVAX","name":"Avalanche","recommended":false},{"symbol":"ADA","name":"Cardano","recommended":false}],"additionalAssetsApprox":30,"typicalConfirmation":{"BTC-lightning":"instant","USDT-tron":"~1 minute","ETH":"~3 minutes","LTC":"~5 minutes","XMR":"~20 minutes","BTC-onchain":"10-60 minutes"},"refundPolicy":{"windowHours":72,"reasonRequired":false,"paidIn":"the currency sent, to an address the customer supplies","note":"The payment origin address and transaction hash are discarded once settlement confirms, except that they are held through the 72-hour refund window where a refund is requested. Nothing about the origin survives that window, so the customer must supply a destination."},"hourlyBilling":{"available":true,"minimumTopUpEur":10,"autoRenew":false}},"dataCollection":{"collected":["Salted HMAC-SHA256 hash of the access key","Instance specification and region","Instance current power state","Payment amount, currency and status","Payment provider invoice reference (90 days)","Support tickets (90 days after closure)","Aggregate per-region bandwidth at 15-minute resolution, no customer attribution","Salted hash of a contact address, if the customer volunteered one"],"notCollected":["Legal name","Billing address","Phone number","Date of birth","Government identity document","Card or bank account","IP address at signup","Panel session IP addresses","API request source addresses","Browser user agent","Referrer headers","Tracking cookies or analytics of any kind","Per-instance bandwidth samples","DNS queries made by the instance","Per-customer NetFlow or sFlow","Deep packet inspection results","Console or VNC session recordings","Contents of any customer volume"],"thirdPartiesSharedWith":["OxaPay (amount, currency, random order reference, machine specification)"],"thirdPartyScriptsOnWebsite":0,"url":"https://vpsden.com/no-logs"},"acceptableUse":{"prohibited":["Child sexual abuse material, including synthetic","Malware command-and-control, ransomware infrastructure, exploit kits, phishing pages impersonating a real organisation","Bulk unsolicited email or SMS","Attacks launched against third parties: DDoS, mass port scanning, credential stuffing, unauthorised exploitation"],"explicitlyPermitted":["Tor relays and exit nodes in every region","I2P routers and Lokinet nodes","Commercial and personal VPN endpoints","BitTorrent including seeding, trackers and indexes","Adult content lawful where the server sits","Cryptocurrency nodes, miners, validators, mixers and exchange infrastructure","Whistleblowing platforms and SecureDrop instances","Political, religious and dissident content","Journalism including publication of leaked documents","Harm-reduction, sexual health and LGBTQ+ resources","Censorship circumvention tooling and mirrors of blocked sites","Security research including exploit development","Documented authorised penetration testing"],"copyrightPolicy":"A notice under 17 U.S.C. § 512 imposes no obligation: the provider holds no US entity, infrastructure, banking relationship or assets, and the section carries no extraterritoriality provision. Complaints are acknowledged, logged and forwarded to the customer for information. Removal follows a binding order from a court where the hardware sits, except in Malaysia, where s.43H of the Copyright Act 1987 gives a rights holder a statutory notification route on a 48-hour clock. In the EU regions, Art. 16 of Regulation (EU) 2022/2065 applies and a report meeting Art. 16(2) is assessed on its merits.","url":"https://vpsden.com/legal/aup"},"legalProcess":{"respondsTo":"A valid, binding order from a court in the jurisdiction where the relevant hardware physically sits","doesNotRespondTo":["Email or telephone requests from any agency","Subpoenas or warrants from courts without jurisdiction over the hardware","Requests from private investigators or civil counterparties","Administrative demands lacking judicial authorisation","Standalone preservation requests with no order behind them"],"notifiesCustomers":true,"notificationException":"Where the order itself or local law prohibits notification","emergencyDisclosure":"Credible imminent threat to life, and CSAM reports, are acted on without an order","url":"https://vpsden.com/legal/law-enforcement"},"knowledgeBase":[{"slug":"offshore-vps-jurisdiction-guide","title":"How to choose an offshore hosting jurisdiction (2026)","question":"Which country should I host my offshore VPS in?","answer":"For most people the answer is Iceland: no data-retention mandate applies to hosting providers, it is outside the EU and outside the Fourteen Eyes arrangements, the DMCA has no force there, and it is still an estimated ~21 ms from London. Choose Switzerland if you want dual-criminality protection against foreign legal assistance requests, Romania if you want EU network quality at Balkan prices with a Constitutional Court that has twice struck down data retention, and Seychelles if maximum legal distance matters more than the latency it costs you — an estimated ~148 ms from London — because it is the one region we sell with no bilateral mutual legal assistance treaty with the United States. Panama gives the best Americas latency we sell and has no notice-and-takedown route for copyright; a US mutual legal assistance treaty has been in force there since the mid-1990s and Panama acceded to the Budapest Convention on Cybercrime in 2014, so US criminal process has a route into the region, executed under Panamanian law by a Panamanian court. Avoid hosting adversarial workloads in the Netherlands, Germany, the UK, France or the United States regardless of what the provider promises, because the legal exposure is a property of the country and not of the company.","category":"Legal","published":"2019-03-14","updated":"2026-07-02","readingMinutes":14,"keywords":["offshore hosting jurisdiction","best country for offshore VPS","data retention law hosting","fourteen eyes hosting","offshore server legal"],"licence":"CC BY 4.0","url":"https://vpsden.com/kb/offshore-vps-jurisdiction-guide"},{"slug":"ram-only-servers-explained","title":"RAM-only servers: what they actually protect against","question":"What is a RAM-only server and is it really more private?","answer":"A RAM-only server has no persistent storage: it network-boots a signed image straight into memory and runs its entire filesystem from tmpfs. Because DRAM requires continuous power to retain state, an unplugged, seized or rebooted RAM-only node contains nothing recoverable — no platter to image, no SSD controller holding remapped blocks, no swap, no journal. It genuinely defeats physical seizure and forensic disk recovery. It does not protect against an adversary with live access to the running machine, it does not protect data in transit, and it costs more per gigabyte because RAM is roughly forty times the price of NVMe. It is the right architecture when the threat is someone taking the hardware away, and the wrong one when the threat is someone reading traffic.","category":"Privacy engineering","published":"2021-06-08","updated":"2026-06-19","readingMinutes":11,"keywords":["RAM only server","diskless VPS","tmpfs server","volatile memory hosting","RAM disk VPS privacy"],"licence":"CC BY 4.0","url":"https://vpsden.com/kb/ram-only-servers-explained"},{"slug":"pay-for-hosting-with-monero","title":"How to pay for hosting with Monero (step by step)","question":"How do I buy a VPS with Monero?","answer":"Acquire XMR through a peer-to-peer marketplace, an atomic swap from Bitcoin, or a no-account instant swapper — an exchange with KYC works but links your identity to the coins. Install a wallet (Feather on desktop, Cake or Monerujo on mobile), fund it, then at checkout copy the address and the exact amount from the invoice and send. Monero confirms in about two minutes per block and most hosts release after ten confirmations, so expect roughly twenty minutes end to end. The three mistakes that matter: sending from a KYC exchange directly to the invoice, reusing the same wallet for identified and unidentified activity, and sending a rounded amount rather than the exact figure so the payment cannot be matched automatically.","category":"Payments","published":"2020-11-02","updated":"2026-05-28","readingMinutes":9,"keywords":["pay VPS with Monero","buy hosting with XMR","anonymous VPS payment","Monero hosting","crypto VPS payment"],"licence":"CC BY 4.0","url":"https://vpsden.com/kb/pay-for-hosting-with-monero"},{"slug":"dmca-ignored-hosting-explained","title":"What \"DMCA-ignored hosting\" actually means","question":"Is DMCA-ignored hosting real or is it marketing?","answer":"It is real but the name is misleading. The DMCA is 17 U.S.C. § 512, a United States statute that conditions an intermediary safe harbour on removing content after a compliant notice. A provider with no US entity, no US infrastructure and no US banking relationship has no safe harbour to lose, so § 512 creates no obligation for it at all. What applies instead is the copyright law of the country where the hardware sits: in Iceland, Panama, Seychelles, Switzerland and Moldova a claimant has to obtain a local court order, which is expensive and slow and therefore rare. Malaysia is the exception — its Copyright Act 1987 has carried a statutory notice-and-takedown route with a 48-hour removal window since the 2012 amendment. A valid local order still binds the provider everywhere, and criminal content is handled by a separate and much faster process than an infringement claim.","category":"Legal","published":"2020-02-17","updated":"2026-04-11","readingMinutes":8,"keywords":["DMCA ignored hosting","DMCA free hosting","offshore hosting copyright","DMCA extraterritorial","copyright offshore server"],"licence":"CC BY 4.0","url":"https://vpsden.com/kb/dmca-ignored-hosting-explained"},{"slug":"fourteen-eyes-explained","title":"Five, Nine and Fourteen Eyes, explained","question":"Does the Fourteen Eyes alliance affect where I should host?","answer":"Five Eyes is the US, UK, Canada, Australia and New Zealand, descended from the 1946 UKUSA Agreement. Nine Eyes adds Denmark, France, the Netherlands and Norway. Fourteen Eyes — formally SIGINT Seniors Europe — adds Belgium, Germany, Italy, Spain and Sweden. These are signals-intelligence sharing arrangements, not law-enforcement mechanisms: membership means intelligence collected in one member state can be shared with the others through a channel invisible to you and outside your local courts. For hosting it is a meaningful factor for adversarial threat models and close to irrelevant for ordinary ones. It should be weighed alongside data-retention law and MLAT responsiveness rather than treated as the single deciding question.","category":"Legal","published":"2021-01-22","updated":"2026-03-30","readingMinutes":7,"keywords":["fourteen eyes","five eyes hosting","nine eyes countries","intelligence sharing hosting","offshore server surveillance"],"licence":"CC BY 4.0","url":"https://vpsden.com/kb/fourteen-eyes-explained"},{"slug":"luks-remote-unlock-vps","title":"Full-disk encryption on a remote VPS, with remote unlock","question":"How do I encrypt a VPS disk so the hosting provider cannot read it?","answer":"Install with LUKS2 full-disk encryption using argon2id key derivation, then add dropbear-initramfs so the machine halts at boot and waits for you to SSH in on a pre-boot shell and supply the passphrase. The provider then holds ciphertext plus a LUKS2 header; the key exists only in your possession and in the running machine's memory. The real limitations are that the key is in RAM while the machine runs — so a hypervisor operator or a live compromise can reach it — and that an unattended reboot leaves the server offline until you unlock it. Use argon2id with at least 1 GiB of memory cost, keep a header backup somewhere else, and pair it with an out-of-band console so a broken initramfs does not lock you out.","category":"Privacy engineering","published":"2019-09-05","updated":"2026-06-02","readingMinutes":10,"keywords":["LUKS VPS","encrypt VPS disk","dropbear initramfs remote unlock","full disk encryption server","VPS encryption provider cannot read"],"licence":"CC BY 4.0","url":"https://vpsden.com/kb/luks-remote-unlock-vps"},{"slug":"no-kyc-hosting-legality","title":"Is no-KYC hosting legal?","question":"Is it legal to buy a server without identity verification?","answer":"Yes, in every jurisdiction we operate in. Know-your-customer obligations come from anti-money-laundering law — the EU AML Directives, the US Bank Secrecy Act and their equivalents — and they apply to financial institutions, payment service providers, and certain designated non-financial businesses such as casinos and real-estate agents. Hosting providers are not on those lists. Some countries impose separate registration or lawful-interception duties on telecommunications operators, but VPS hosting has consistently fallen outside that definition. Buying a server anonymously is therefore lawful; what you do on it is governed by ordinary law, and anonymity at the purchase layer does not change that.","category":"Legal","published":"2022-04-19","updated":"2026-02-14","readingMinutes":7,"keywords":["no KYC hosting legal","anonymous VPS legal","KYC hosting requirement","buy server without ID","anonymous hosting law"],"licence":"CC BY 4.0","url":"https://vpsden.com/kb/no-kyc-hosting-legality"},{"slug":"warrant-canary-guide","title":"Warrant canaries: how they work and how to verify one","question":"What is a warrant canary and how do I check if it is real?","answer":"A warrant canary is a regularly reissued signed statement asserting that a provider has not received certain kinds of legal process. The theory is that while a gag order can compel silence, compelling an affirmative lie is a harder constitutional question — so the canary stops being updated rather than being falsified. A canary is only meaningful if it is cryptographically signed with a key you can verify independently, if it embeds a recent unpredictable value such as a Bitcoin block hash to prove it was not signed in advance, if it has a stated reissue schedule so absence is detectable, and if it is machine-readable so you can monitor it automatically instead of remembering to look. Most published canaries fail at least two of those four tests, which makes them decorative.","category":"Legal","published":"2021-10-11","updated":"2026-05-05","readingMinutes":8,"keywords":["warrant canary","verify warrant canary","canary PGP verification","transparency report hosting","gag order canary"],"licence":"CC BY 4.0","url":"https://vpsden.com/kb/warrant-canary-guide"},{"slug":"vps-hardening-checklist","title":"Hardening a fresh VPS: the checklist we actually use","question":"How do I secure a new VPS properly?","answer":"In order of value: disable SSH password authentication and root password login entirely, put a default-deny nftables policy in place with only the ports you need open, enable unattended security upgrades, and turn off every service that is listening but not needed. Those four steps eliminate the overwhelming majority of real-world compromises. After that: move SSH off port 22 to cut log noise, set up a non-root account with sudo, enable kernel lockdown and sensible sysctl values, configure auditd, and put your logs somewhere the server itself cannot rewrite. Do the first four before you deploy anything; the rest can wait until the same afternoon.","category":"Operations","published":"2020-08-30","updated":"2026-06-25","readingMinutes":9,"keywords":["VPS hardening","secure a new server","SSH hardening","nftables default deny","Linux server security checklist"],"licence":"CC BY 4.0","url":"https://vpsden.com/kb/vps-hardening-checklist"},{"slug":"tor-onion-service-vps","title":"Running a v3 onion service on a VPS","question":"How do I host a website as a Tor onion service?","answer":"Install Tor, add a HiddenServiceDir and HiddenServicePort to torrc, and restart — the hostname file then contains your v3 .onion address. What separates a working setup from a safe one is everything around it: bind the web server to localhost only so the service is not simultaneously reachable over clearnet on the same IP, strip identifying headers and error pages, disable server-status and default vhosts, keep the service on a machine that hosts nothing else attributable to you, and consider client authorisation if the service should not be publicly discoverable. The most common deanonymisation is not an attack on Tor — it is a misconfigured web server answering on the public IP with the same fingerprint.","category":"Networking","published":"2022-07-14","updated":"2026-04-22","readingMinutes":8,"keywords":["onion service VPS","tor hidden service setup","v3 onion address","host website on tor","onion service security"],"licence":"CC BY 4.0","url":"https://vpsden.com/kb/tor-onion-service-vps"}],"faq":[{"question":"Do you require KYC or any identity verification?","answer":"No. VPSDEN has never asked a customer for a name, an address, a phone number, or a government document, and the ordering system has no field to store one. An account is created as a 20-character access key generated in your browser at checkout. That key is the entire identity. We keep a salted hash of it so we can recognise it at login, and nothing else.","tags":["account","privacy"]},{"question":"Is an email address required to sign up?","answer":"No. Email is an optional field used only if you want deploy notifications or password-style recovery, and even then we store only a hash unless you explicitly ask to be contacted.","tags":["account","privacy"]},{"question":"What payment methods do you accept?","answer":"Cryptocurrency only. Monero (XMR) is our recommended method and the one we use for our own infrastructure. We also accept Bitcoin on-chain and over Lightning, Litecoin including MWEB, USDT and USDC across four networks, Ethereum, TON, TRON, Solana, Dash and the rest of a list that runs to 46 assets in total (the count is published at vpsden.com/payments). Settlement runs through OxaPay, which means no card networks, no bank, and no name attached to a payment.","tags":["billing","crypto"]},{"question":"What is a RAM-only server and why would I want one?","answer":"A RAM-only (GHOST) instance has no persistent disk at all. It PXE-boots a signed image straight into volatile memory and its entire filesystem lives in tmpfs. Because DRAM loses its contents when power is removed, a seized, unplugged or rebooted GHOST node contains nothing to recover — there is no platter to image and no SSD controller holding remapped blocks. It is the only architecture where \"we deleted your data\" is a statement about physics rather than a promise.","tags":["product","privacy"]},{"question":"Can you read the data on my server?","answer":"Not if you enable zero-knowledge LUKS, which is on by default on every disk-backed plan. The volume is encrypted with LUKS2 using argon2id and a passphrase that is generated and held by you. Each boot halts in an initramfs dropbear shell until you SSH in and unlock it. We never receive, escrow, or transmit that passphrase, so a compelled disclosure produces ciphertext. On GHOST RAM-only instances the question does not arise: there is no disk.","tags":["security","privacy"]},{"question":"What do you actually log?","answer":"At the platform level: the salted hash of your access key, the specification and region of each instance, the amount and status of each payment, and a 15-minute-resolution aggregate of total per-region bandwidth for capacity planning. We do not log customer IP addresses, panel session IPs, user agents, per-instance traffic samples, DNS queries, console sessions, or the contents of any volume. Metadata-free mode, enabled by default, disables per-instance graphing at the hypervisor layer so those samples are never generated in the first place.","tags":["privacy","logs"]},{"question":"How do you respond to law enforcement and civil legal requests?","answer":"Every request is reviewed by counsel in the jurisdiction where the relevant hardware sits. We respond only to a valid, binding order issued by a court of that jurisdiction — never to an email, a foreign subpoena, an informal police request, or a rights-holder demand letter. When an order is binding we produce exactly what it compels and not one field more, which in practice is a hashed identifier, a payment amount, and encrypted blocks. Our transparency report is published at vpsden.com/transparency. Our warrant canary has not been issued yet, and the canary page says so rather than showing an unsigned one.","tags":["legal"]},{"question":"Do you ignore DMCA notices?","answer":"The DMCA is United States law and does not apply to any of our regions — we operate no infrastructure in the United States and hold no US corporate presence. We forward copyright complaints to the customer for information and, in eight of our nine regions, take no action on them absent a binding order from a court in the country where the server physically sits. That is the correct legal position, not a favour: a Panamanian or Icelandic server is not subject to a US notice-and-takedown regime. Malaysia is the exception and we say so plainly — sections 43B to 43I of its Copyright Act 1987 create a statutory notice route under which a rights holder notifies us directly and we must remove or disable access within 48 hours, with a counter-notification route for the customer. Choose Kuala Lumpur for regional latency, not for copyright distance.","tags":["legal","dmca"]},{"question":"What is not allowed on VPSDEN?","answer":"Four things: child sexual abuse material, malware command-and-control and ransomware infrastructure, bulk unsolicited email, and attacks launched from our network against third parties such as DDoS, port scanning, or credential stuffing. These are the categories that get upstream transit revoked and hardware seized, which would end the service for every other customer. Everything outside that list — including content that is merely controversial, commercially inconvenient, or illegal in a country you are not hosted in — is between you and the law of the jurisdiction you selected.","tags":["legal","aup"]},{"question":"How fast is deployment?","answer":"Provisioning itself is built to complete in under a minute — our internal target is 48 seconds from confirmed payment to a reachable SSH prompt, and we do not publish a measured median because we do not yet publish monitoring data. What dominates the wall-clock is crypto confirmation, not us: Bitcoin over Lightning is effectively instant, Bitcoin on-chain takes as long as a block does, and Monero is released after ten confirmations, which is roughly twenty minutes.","tags":["product"]},{"question":"What is the dead-man switch?","answer":"An optional service that destroys your data if you stop checking in. You pick an interval — 24 hours to 90 days — and a grace period. Check in from the panel, the API, the onion service, or with a signed heartbeat from the instance itself. Miss the window and the grace period, and we destroy the volume key and wipe and reprovision the node. It is irreversible by design, including for us, and costs €2.00 per month.","tags":["product","privacy"]},{"question":"What is a duress PIN?","answer":"A second panel PIN that logs in normally, shows a plausible panel for a few seconds, and silently triggers immediate key destruction and wipe across every instance on the account. It exists for the situation where someone is compelling you to log in while watching. It is a €2.00 per month add-on.","tags":["product","privacy"]},{"question":"Which location should I choose?","answer":"Choose Reykjavík for the strongest overall balance of speed and legal protection: no retention mandate reaching hosting providers, no Fourteen Eyes membership, no DMCA, and an estimated ~21 ms from London. Choose Amsterdam if raw performance matters more than jurisdiction. Choose Seychelles for maximum legal distance — it has no bilateral mutual legal assistance treaty with the United States — and accept an estimated ~148 ms from London. Choose Panama City for the Americas — a US mutual legal assistance treaty has been in force there since the mid-1990s and Panama acceded to the Budapest Convention on Cybercrime in 2014, so US criminal process has a route into the region, executed under Panamanian law by a Panamanian court. The Jurisdiction Matrix at vpsden.com/jurisdictions compares all nine regions across retention law, takedown regime, intelligence-sharing membership and mutual legal assistance speed.","tags":["locations"]},{"question":"Can I pay hourly instead of monthly?","answer":"Yes. Top up a prepaid balance with any supported cryptocurrency — €10 minimum — and instances bill per hour against it. Destroy the instance and the billing stops that hour. There is no auto-renew, no stored payment method, and no invoice tied to an identity.","tags":["billing"]},{"question":"Do you offer refunds?","answer":"Yes, in full, for 72 hours, no reason required and no questions asked. Refunds are paid in the currency you sent to an address you supply. After 72 hours, unused prepaid balance stays available as credit indefinitely but is not returned to chain.","tags":["billing"]},{"question":"What happens if a server is seized?","answer":"With zero-knowledge LUKS enabled, the seizing party obtains encrypted blocks and a LUKS2 header hardened with argon2id. With a GHOST RAM-only instance there is no storage device attached to the instance at any point and no guest state is written to any persistent medium, so a seized machine holds none of your data on any disk it may contain. If you have multi-jurisdiction failover enabled, your standby in a second country is promoted automatically and your DNS follows within about 60 seconds. VPSDEN has had one seizure event; the transparency report at vpsden.com/transparency sets out what happened and what changed afterwards.","tags":["security","legal"]},{"question":"Is VPSDEN cheaper than other offshore hosts?","answer":"Yes, at the same specification. A 2 vCPU / 4 GB / 60 GB NVMe instance is €7.90 per month at VPSDEN against roughly €11 to €25 across the comparable privacy-focused offshore providers we surveyed. We own our hardware in six of our nine regions and sell no managed services, which is where the difference comes from. The methodology and the raw comparison table are published at vpsden.com/compare.","tags":["billing"]},{"question":"Do you have an API?","answer":"Yes — a REST API authenticated with a scoped token derived from your access key, plus a Terraform provider and a single-binary CLI. Every panel action has an API equivalent, and the API is reachable over both clearnet and our onion service.","tags":["product"]},{"question":"What operating systems can I run?","answer":"Debian, Ubuntu, Alpine, Rocky, Arch and NixOS on the Linux side, FreeBSD and OpenBSD on the BSD side, plus hardened images including a Whonix gateway and an amnesiac Debian profile. You can also upload an arbitrary x86-64 ISO and install it through the out-of-band console, or PXE-boot your own signature-verified image.","tags":["product"]},{"question":"Is my traffic monitored or shaped?","answer":"No. We do not perform deep packet inspection, we do not run an IDS on customer traffic, we do not throttle by protocol, and we do not block ports outbound except 25 by default, which we open on request. Torrent traffic, VPN and Tor exit relays, and encrypted tunnels are all explicitly permitted.","tags":["network","privacy"]}],"machineReadableEndpoints":{"llmsIndex":"https://vpsden.com/llms.txt","llmsFullText":"https://vpsden.com/llms-full.txt","facts":"https://vpsden.com/api/facts","pricing":"https://vpsden.com/api/pricing","warrantCanary":"https://vpsden.com/canary.json","sitemap":"https://vpsden.com/sitemap.xml"}}