Acceptable Use Policy · v0-draft
Acceptable Use / Abuse Policy — 短.在线
Version: v0-draft
Last updated: 2026-09-13
DRAFT — NOT LEGAL ADVICE — NOT YET IN FORCE for production. Founder accepted for soft-launch prep (2026-09-13); live publish needs a separate explicit go-ahead.
Part of the Service under the Terms of Service. Entity Arasaka Ltd; privacyprivacy@短.在线(SMTPprivacy@xn--s7y.xn--3ds443g); abuseabuse@短.在线. Still draft / not production-in-force.
1. Purpose
This Acceptable Use Policy (“AUP”) protects users, the public, and the reputation of the 短.在线 domain and Service. Short-link platforms are attractive to phishing and malware operators; we enforce this AUP firmly.
We compete on compliant, reliable routing — never on censorship-evasion or “防红” features. Using the Service to build, market, or operate 防红 / block-evasion tooling is prohibited.
2. Prohibited destinations and content
You may not create, host metadata for, or distribute short links (or QR codes pointing at them) that lead to, promote, or facilitate:
- Phishing, credential theft, or social-engineering sites (including fake login, payment, or KYC pages).
- Malware, ransomware, exploit kits, or drive-by downloads.
- Fraud, scams, investment/romance scams, or unlawful financial schemes.
- CSAM or any sexual content involving minors — zero tolerance; we will report as required by law.
- Terrorism content, violent extremism recruitment, or clear incitement to imminent violent crime where prohibited by applicable law.
- Illegal goods or services (e.g. illicit drugs trafficking, illegal weapons sales) as prohibited where you or visitors are located.
- Non-consensual intimate imagery, doxxing packages intended to harass, or similar harmful targeting.
- Spam landing pages or unsolicited bulk messaging destinations designed primarily for abuse of third-party platforms.
- Destinations that attempt SSRF, open-redirect chains abused for attacks, or other technical abuse against our infrastructure or third parties.
- Content you lack rights to distribute, or that infringes IP when used as the primary purpose of the short link campaign (notice-and-takedown may apply).
We may use automated and manual review, including destination scanning (see §5), and may err on the side of quarantine when confidence of harm is high.
3. Prohibited behaviors
You may not:
- Exceed or circumvent rate limits or quotas (see §4), including via rotating IPs, disposable accounts, or API misuse.
- Brute-force or enumerate short codes / IDs.
- Interfere with security controls, CAPTCHA, risk scoring, bot classification, or verification.
- Use the Service as an open proxy, anonymizing relay for attacks, or command-and-control helper.
- Conduct unauthorized scanning, load testing, or vulnerability probing against the Service without prior written permission.
- Offer, advertise, or implement 防红 / evasion of platform or network safety blocks as a feature built on 短.在线.
- Place emails, real names, or other personal data on public analytics cards, or ignore in-product warnings against PII in public titles/aliases.
- Sell or attempt to resell identifiable clickstreams obtained via the Service.
- Misrepresent affiliation with 短.在线 or use our marks in a misleading way.
4. Rate limits and quotas (product locks)
These limits apply unless a plan or written agreement says otherwise. Risk scoring may impose stricter limits earlier.
| Context | Limit |
|---|---|
| Anonymous create | 3 links / IP / UTC calendar day |
| Anonymous burst | 2 creates / minute |
| Anonymous risk gates | CAPTCHA (or equivalent) when risk_score ≥ 60, or on a 2nd anonymous create in the same hour without cookie continuity |
| Authenticated Free (P-05) | 15 links / account / calendar month |
| Authenticated Free burst | 10 creates / minute |
Soft CTA to register may appear so anonymous users can retain history; registration is not a hard wall after the first link, but quotas and risk gates still apply.
5. Enforcement powers
Without limiting the Terms, we may:
- Rate-limit creates, redirects, or API calls.
- Scan destinations (including via disclosed threat-intel lookups such as Google Safe Browsing) at create time and thereafter.
- Quarantine (disable redirect pending review) or delete short links.
- Suspend or terminate anonymous IP capacity, accounts, API keys, or custom domains.
- Preserve logs needed for abuse investigation, appeals, or legal process under our retention schedule (see Privacy Policy).
Operational posture (not a contractual uptime/scanning guarantee): if a lookup dependency such as Google Safe Browsing is unavailable, operators may prefer REVIEW / quarantine over blindly allowing suspicious creates. We do not promise 100% scanning coverage or that every harmful link will be caught.
6. Reporting abuse
Mailbox: abuse@短.在线
SMTP / ASCII clients: abuse@xn--s7y.xn--3ds443g
(ASCII companion domain mailbox may be added later; update this AUP when live.)
Evidence pack (helpful fields)
Please include as much as you can:
- Short URL / short code and destination URL (if known)
- Time of observation (with timezone)
- Description of harm (phishing, malware, spam, etc.)
- Screenshots or headers if available
- Your contact email for follow-up
- Whether you are a platform, brand owner, or individual reporter
- Any related ticket IDs or Safe Browsing / browser-warning references
Operational response targets (not contractual SLAs)
- Acknowledgement: aim to acknowledge within ≤ 1 business day.
- High-confidence phishing/malware: aim for faster quarantine when automated or analyst confidence is high.
These are internal operational targets, not warranties or service-level commitments in the Terms.
7. Investigation, suspension, and appeals
We may investigate reports using visit/create logs (minimized as described in the Privacy Policy), destination scans, and account history. We may share necessary information with hosting providers, browsers/threat feeds, or law enforcement when legally required or appropriate to stop ongoing harm.
Appeals: if your link or account was suspended and you believe it was in error, email abuse@短.在线 with the short code / account email, reason you believe the action was wrong, and any mitigating evidence. We aim to review good-faith appeals, but we are not obligated to restore capacity where risk remains high.
Repeat or egregious violations may result in permanent bans and referral to authorities.
8. Cooperation with platforms and threat feeds
We may cooperate with platform abuse teams and consume Google Safe Browsing Lookup API (and similar publicly disclosed tools) to reduce phishing/malware on our domain. Commercial third-party URL-intel products are not promised in MVP documentation.
9. Changes
We may update this AUP as described in the Terms. Material enforcement changes will be reflected in the dated version header.
10. Contact
- Abuse:
abuse@短.在线 - Privacy:
privacy@短.在线(SMTP/ASCII form:privacy@xn--s7y.xn--3ds443g) - Legal entity: Arasaka Ltd
Related: Terms of Service · Privacy Policy
Controller: Arasaka Ltd · Law / venue: Singapore
Privacy: privacy@短.在线 · Abuse: abuse@xn--s7y.xn--3ds443g