This policy sets out what may and may not run on CheapServ servers. It exists to keep our IP space clean, our network fast and every customer's server reachable. It applies to every product, to every account, and to anyone you let use your servers. It forms part of the Terms of service.
1. Principles
We sell infrastructure, not judgement. We do not review the content of your servers, and we do not require an explanation of what you run. Three rules cover almost every case:
- Do not harm other people, other networks or other customers.
- Do not use the service to break the law.
- Do not put the reputation of our IP addresses at risk.
The sections below make these rules concrete. If you are unsure whether a use is allowed, ask through a ticket before deploying it.
2. Prohibited content and activities
The following are forbidden on every plan, without exception, and lead to immediate termination:
- Child sexual abuse material, in any form, including links to it.
- Content that incites or organises terrorism or violence against people.
- Malware, ransomware, botnet command-and-control, exploit kits, and the hosting or distribution of tools whose primary purpose is to compromise other people's systems.
- Phishing pages, fake login pages, and any site that impersonates another organisation to obtain credentials or payments.
- Carding, the sale or exchange of stolen payment data, stolen accounts or stolen personal data.
- Fraud of any kind, including investment scams and fake shops.
3. Network use
- Attacks. Launching or participating in denial-of-service attacks, flooding, amplification or any traffic intended to disrupt a third party is forbidden. So is running stressers, booters or similar services.
- Scanning and intrusion. Unauthorised access attempts, credential stuffing, brute-forcing and vulnerability scanning of systems you do not own or have written permission to test are forbidden. Security research against your own servers is fine.
- E-mail. Unsolicited bulk e-mail is forbidden, as is sending on behalf of lists without verifiable consent. Transactional mail and opt-in newsletters are allowed; keep valid reverse DNS and unsubscribe links, and expect us to act on complaints.
- VPN, proxies and Tor. VPN servers and proxies are welcome. Tor relays (guard and middle nodes) are allowed. Tor exit nodes are not allowed, because of the abuse load they place on our IP space.
- Addresses. Use only the IP addresses assigned to your server. Spoofing source addresses, announcing prefixes you are not authorised to announce, and hijacking routes are forbidden.
4. Resource use
- Cryptocurrency mining is allowed on dedicated servers and GPU servers, where you have the whole machine. It is not allowed on VPS or RDP plans, where it degrades the experience of other customers on the same host.
- VPS fair use. Standard VPS run on shared cores with a guaranteed baseline. Sustained 100% CPU load across all cores for days at a time, on a Standard plan, will be treated as a resource problem: we will ask you to move to a High-frequency VPS or a dedicated server.
- Traffic. VPS and RDP plans include a monthly allowance; beyond it the port is throttled to 100 Mbps until the next cycle. Nothing is billed. Dedicated 1 Gbps ports and GPU nodes are unmetered; 10 Gbps servers include 100 or 200 TB per month.
- Storage plans are for data, not for serving pirated media or acting as a public file dump without moderation.
5. Automation, scraping and bots
Browser automation, monitoring, crawling and rate-limited scraping are allowed on every plan, including Windows RDP. What matters is how it behaves toward the target:
- Respect rate limits, robots exclusions where they apply to you, and the terms of the sites you visit.
- No credential stuffing, no account creation at scale to defraud, no ticket or inventory scalping bots that violate the target's terms.
- No traffic that a reasonable operator would treat as an attack.
If a target network reports your server for abuse, we will forward the report and expect a fix within the deadline in section 7.
6. Intellectual property and takedown requests
Hosting or distributing material that infringes copyright or trademarks is forbidden. When we receive a specific, verifiable infringement notice for content on your server, we forward it to your account e-mail. You have 48 hours to remove the material or to send us a substantiated counter-notice. If neither happens, we may block access to the content or, for repeat cases, suspend the server. Three substantiated notices within 12 months lead to termination.
7. Enforcement
We aim to be proportionate: most cases are a compromised server or a misconfiguration, not intent.
We send the report to your account e-mail with a ticket number and a deadline. For spam, compromised hosts and copyright notices the deadline is 48 hours. For attacks in progress, phishing, malware distribution or any risk to third parties we null-route or suspend the server first and notify you immediately.
- If the problem is fixed within the deadline, the ticket is closed and nothing else happens.
- If it is not, the server is suspended until you confirm the fix. A second incident of the same kind within 90 days leads to termination of the server.
- Prohibited content under section 2 leads to immediate termination of the account, with no refund of balance used on the affected services, and, where the law requires it, a report to the competent authorities.
- Terminated accounts are not re-opened. Prepaid balance not tied to a breach is refunded under the Refund policy.
A server that has been taken over and is sending spam or attack traffic is treated as an abuse source regardless of intent. Keep your systems patched, use SSH keys, and watch the dashboard notifications: we tell you the moment we see a problem.
8. Reporting abuse
If a CheapServ IP address is attacking, spamming or hosting harmful content, report it at /abuse or by e-mail to [email protected]. Include the IP address, timestamps in UTC, and logs or URLs showing the problem. We acknowledge every report with a ticket number and act on substantiated reports within one business day; attacks in progress are handled immediately, around the clock.
9. Changes to this policy
We update this policy when new kinds of abuse appear or when the law changes. The effective date at the top of the page is updated with every revision, and material changes are announced on /status and by e-mail at least 14 days before they apply. Uses that were allowed and become prohibited get a 30-day migration period, except where the law leaves us no choice.
10. Contact
Questions about whether a use is allowed: /support or [email protected]. Abuse reports: /abuse or [email protected].
Something missing or wrong on this page? Open a ticket and tell us.