Skip to main content
Legal

Acceptable Use Policy

What you may and may not run on Vessl — and how to report abuse. By using the Service, you agree to these rules.

Last updated: June 22, 2026

1. Purpose & Scope

This Acceptable Use Policy ("AUP") describes what you may and may not do with Vessl ("the Service"). It supplements our Terms of Service — where this AUP and the Terms overlap, both apply. It covers everyone who uses the Service: account owners, team members, and the end users of any application you deploy.

Because Vessl builds and runs your code in containers on real servers (your own or ours), how you use it can affect other people, other tenants, and the wider internet. These rules keep the platform safe and available for everyone.

2. You Are Responsible for What You Deploy

You are solely responsible for the applications, container images, code, data, and content you deploy through the Service, and for the conduct of your end users.

• You must have the rights to use and deploy everything you upload or build

• You must comply with all laws that apply to you and to your end users

• You must secure your own applications, credentials, and data

• A violation by your end users that you enable, ignore, or fail to address is treated as your violation

3. Prohibited Content

You may not use the Service to host, store, build, serve, or distribute content that:

• Is illegal, or facilitates illegal activity, under any law that applies to you

• Exploits or endangers minors, including any child sexual abuse material (CSAM)

• Infringes the intellectual property, privacy, or other rights of any third party

• Is defamatory, harassing, threatening, or incites violence or hatred

• Is malware, ransomware, spyware, or any code designed to harm or gain unauthorized access

4. Prohibited Activities

You may not use the Service, or any server it manages, to:

• Send spam or bulk unsolicited messages, or operate "snowshoe" / bulk mail infrastructure

• Run phishing, credential-harvesting, fraud, or other deceptive operations

• Launch or relay denial-of-service (DoS/DDoS) attacks, port scans, or intrusion attempts against any system

• Operate botnet command-and-control, proxies, or anonymizers used to abuse third parties

• Probe, scan, or test the vulnerability of systems you do not own without authorization

• Circumvent the Service's billing, quotas, rate limits, or access controls

5. Resource & Fair Use

The Service runs shared infrastructure. You may not:

• Mine, generate, or farm cryptocurrency or similar proof-of-work / token rewards without our prior written permission

• Consume disproportionate compute, memory, storage, network, or PID resources in a way that degrades the platform or other tenants

• Deliberately evade the per-container resource limits the platform applies

• Use the Service primarily as bulk storage, a public file-sharing service, or a CDN for content unrelated to a deployed application

6. Security & Good-Neighbor Conduct

• Do not attempt to access, interfere with, or disrupt any part of the Service, the control plane, or other tenants' workloads

• Do not bypass container isolation or attempt to escalate privileges on shared hosts

• Report security vulnerabilities you discover to us responsibly, and do not exploit them

• Keep your account credentials and SSH keys confidential; you are responsible for activity under your account

7. Enforcement

We may investigate suspected violations and cooperate with law enforcement where required. Depending on severity, we may:

• Ask you to remedy the issue within a stated time

• Throttle, suspend, or stop an offending application or service

• Suspend or terminate your account, with or without prior notice for serious or ongoing abuse

• Preserve and disclose information where legally required

We aim to give notice and a chance to cure where it is safe and practical to do so, but we may act immediately to protect the platform, other tenants, or third parties.

8. Reporting Abuse

If you believe an application or account on Vessl violates this policy, tell us. Include the URL or service involved, what you observed, and any evidence (timestamps, logs, headers) so we can act quickly.

Report abuse: Contact Us — please use the subject line "Abuse report".

We review abuse reports promptly and take action proportionate to the violation.