Terms
Last updated 2026-08-27. Plain English, and short enough to read. If a line is unclear, email info@honeylabs.net and we will explain rather than point at a clause.
Who you are contracting with
HoneyLabs is operated by Honeylabs.net, registered in the Netherlands under KVK number 42146845. Contact info@honeylabs.net for anything in this document. We reply in English or Dutch. Dutch law applies and the Dutch courts have jurisdiction.
What the service is
HoneyLabs runs honeypots on the public internet and indexes the probe traffic that reaches them. What you get is a record of what our sensors observed: which addresses connected, what they sent, and when. Anyone may browse it without an account. Paid plans raise the daily budget, widen the query window and unlock bulk and automated access.
We publish what we saw. We do not assert that any address is malicious, that any person or organisation is responsible for a probe, or that an address is safe. Addresses are reassigned, shared, spoofed and proxied, and a single observation is evidence of a connection and nothing more.
The data is provided as observed
The service is provided as it is and as it is available. We do not warrant that the data is complete, accurate, current, or fit for any particular purpose, and we do not warrant that the service will be uninterrupted or error free.
Decisions you take on the basis of this data are yours. That includes blocking an address, reporting an address to a provider, escalating internally, or feeding it into an automated system that acts without a human reading it. Check anything that matters before acting on it, and treat a match as a lead rather than a conclusion.
Nothing here excludes liability for damage caused intentionally or by deliberate recklessness on our part, or for death or personal injury, or anything else that Dutch law does not permit us to exclude. Where liability is limited, it is limited to the amount you paid us in the twelve months before the event.
What you may do with it
Use it in your own security work: investigate, block, enrich, correlate, and quote it in reports and research with attribution to HoneyLabs. Feed it into your own tooling through the API, MCP or a feed token.
Do not resell the raw data or republish it as a bulk dataset, and do not present it as your own feed. Do not use it to attack, harass or profile anyone. Do not attempt to identify the individuals behind observed addresses beyond what your own lawful security work requires.
Open research grants carry the same terms plus one more: the work is expected to be published and non-commercial, and we ask that HoneyLabs is credited.
Accounts, quotas and fair use
An account is personal to you and its API keys are yours to protect. Quotas and rate limits are part of the plan you hold and are enforced in software; working around them, sharing a key to multiply a quota, or scraping the site to avoid the API are all grounds for us to suspend the account.
We may change quotas and limits. If a change reduces what a paid plan gets, we will tell you before it takes effect and you may cancel and be refunded for the unused part of the term.
Paying, renewing and cancelling
Paid plans are billed in advance, monthly or annually, through Stripe. Prices on the site exclude VAT, which is added at checkout. Subscriptions renew automatically until cancelled.
Cancel at any time from the billing portal. Cancellation takes effect at the end of the period you have already paid for, and you keep the plan until then. If a payment fails we will keep the plan active while Stripe retries; if it never succeeds the subscription ends and the account returns to the free plan.
If you are a consumer rather than a business, you have fourteen days from purchase to withdraw. Asking us to start immediately means you may owe the part you used; email us and we will settle it without argument.
Ending it
You may delete your account at any time from the dashboard. We may suspend or end an account that breaks these terms, and where the breach is not serious we will say what is wrong and give you a chance to fix it first.
What happens to your personal data on deletion is described in the privacy policy.
Changes
We may change these terms. Material changes will be announced by email to account holders at least thirty days before they take effect, and continuing to use the service after that is acceptance. If you would rather not accept, cancel and we will refund the unused part of the term.
Privacy
What we store about you, why, where it lives and how to delete it is in the privacy policy, which is part of these terms.