Skip to content

Reseller workflows

Reseller accounts receive a customer-management workspace inside the same dashboard. They do not need operator-admin access to create managed users, assign supported products, inspect consumption, or retrieve credentials.

Annotated reseller users page with managed customer accountsOpen full size

The reseller workspace keeps managed customer records and creation actions together.

  1. Customer accounts show identity, assigned packages, usage, and status for the reseller scope.
  2. Create Customer starts a bounded managed-account workflow without operator permissions.
  1. Create the managed customer with a unique identity and the minimum required profile data.
  2. Set optional source-IP and blocked-domain controls according to the customer’s contract.
  3. Assign an available package and a customer data limit from the reseller’s eligible root order.
  4. Verify the new child order, package, active state, allowance, and current usage.
  5. Deliver the generated credentials through an approved secure channel.
  6. Review child usage and the shared root balance before adding or promising more data.
Annotated package assignment dialog for a reseller-managed customerOpen full size

A reseller assigns one of its eligible root packages and a specific customer allowance from the managed-user workspace.

  1. Select an eligible root package that the reseller already owns.
  2. Enter the child allowance in an explicit unit such as GB.
  3. Assign Package creates the customer order after the package and allowance are confirmed.

The package selector only lists root orders that are eligible for the selected customer. The allowance becomes that child order’s consumption limit; it does not create new upstream capacity or reserve the same number of physical bytes from the shared ledger.

Annotated proxy credentials dialog showing HTTP and SOCKS5 accessOpen full size

Credentials are generated from the selected customer and package rather than copied from an upstream provider.

  1. HTTP credentials use the package endpoint and the managed customer identity.
  2. SOCKS5 credentials remain a separate gateway protocol, not an API credential.

A child allocation is the amount that one managed customer may consume. It does not reserve physical bytes from the reseller’s root ledger. Multiple child limits can exceed the root balance, so resellers must monitor both committed child limits and the remaining shared pool.

Password reset invalidates credentials already delivered to that customer. Coordinate rotation, test the replacement, and avoid putting proxy passwords in support tickets or analytics exports.

For the underlying ledger model, read customers and data accounting. For API-driven reseller operations, use the reseller workflow.