1. Scope
This policy applies to the Envelaro website, managed email, administration, APIs, communication features, storage, and related services. It supplements the Service Terms and applies during trials as well as paid subscriptions.
2. Prohibited activity
- Spam, unsolicited bulk email, purchased or harvested recipient lists, address enumeration, or deceptive list acquisition.
- Phishing, credential theft, malware, ransomware, malicious attachments, exploit delivery, or command-and-control activity.
- Fraud, impersonation, forged headers, misleading sender identity, domain abuse, or infringement of intellectual-property or privacy rights.
- Harassment, threats, exploitation, unlawful discrimination, or content that is illegal in an applicable jurisdiction.
- Operating an open relay or proxy, unauthorised scanning, credential stuffing, denial-of-service activity, or attempts to bypass authentication, quotas, or rate limits.
- Using compromised accounts or infrastructure, concealing abuse, or helping another person evade an enforcement action.
3. Responsible sending
- Send commercial or bulk messages only to recipients with a valid legal basis and the permission required by applicable law.
- Use accurate sender information, a monitored reply address, and a clear, functional unsubscribe method where required.
- Honour opt-outs promptly, maintain suppression records, and do not re-add recipients without valid renewed permission.
- Maintain SPF, DKIM, DMARC, bounce handling, complaint processing, and reasonable sending controls.
4. Account and domain security
Customers are responsible for authorised users, secure credentials, accurate domain configuration, and timely reporting of suspected compromise. Accounts must not be shared outside the licensed organisation or used to provide unauthorised downstream service.
5. Fair use of resources
You must not use shared resources in a way that materially degrades service for others. Published storage, message-size, connection, recipient, and sending limits must be followed. Attempts to evade technical limits are prohibited.
6. Investigation and enforcement
We may investigate credible reports, preserve relevant records, rate-limit sending, quarantine content, suspend access, or terminate service when reasonably necessary to protect recipients, customers, infrastructure, or legal compliance.
Where circumstances permit, we will consider severity, intent, history, remediation, and immediate risk before acting. Urgent threats may require action without advance notice.
7. Reporting abuse
Report suspected abuse through the contact page with the relevant domain, sender, timestamps, message headers, and a concise description. Do not include passwords or unnecessary sensitive content.
Contact
Questions, rights requests, or abuse reports can be submitted through our contact page. Please do not include passwords, mailbox contents, or unnecessary sensitive information.
