Google currently imposes strict penalties for improper pop-ups and hidden redirects (cloaking). For example, if a bot posing as a user from the “wrong” geographic location visits a site and sees content being replaced or an additional pop-up, will Google issue a ban in Search Console for misleading users?
I’m also curious about the technical security of the script itself. Is there a risk of a data leak or of the site loading malicious content from third-party code? Has anyone implemented this on SEO sites with organic traffic, or is it solely intended for arbitrage traffic?