Quick answer: Cloud2Y prohibits illegal content, spam, network attacks (DDoS, scanning, brute-force), phishing, malware distribution, copyright-infringing distribution and any activity that harms other systems or users. This is a plain-language summary — the binding list lives in the official Terms of Service.
Overview
Prohibited activities fall into three practical groups: illegal content (as defined by applicable law), harmful traffic (attacks, spam, abusive automation) and deceptive behaviour (phishing, fraud, malware). The rules exist to protect other customers who share the network and to keep Cloud2Y IP ranges clean and well-reputed — which directly benefits your own mail deliverability and site reachability.
Before you start
- Check your project against the categories below before deploying it.
- Remember that a hacked server doing these things is still a violation — securing your server is part of compliance.
- For borderline cases (security research, load testing your own systems), get written confirmation via ticket first.
Step-by-step guide
What is not allowed on any Cloud2Y service:
- Network attacks: DDoS in any form, port scanning of third parties, brute-force attempts, packet spoofing (see DDoS basics).
- Spam: unsolicited bulk email or messaging, harvested lists, spamvertised sites (see email sending limits and abuse policy).
- Malware and phishing: hosting, distributing or controlling malicious software, fake login pages, botnet C2.
- Illegal content: content that violates applicable law, including CSAM (zero tolerance) and stolen data.
- Infringement: distributing copyrighted material without rights — see the DMCA process.
- Fraud: carding, fake shops, payment fraud, identity theft infrastructure.
Common issues
- "It is legal in my country": content must be lawful both where the server runs and per the Terms of Service — location choice matters (see service locations).
- Security tools: pentesting is only acceptable against systems you own or have written permission to test.
- High-volume mailing: newsletters to opted-in subscribers are fine in principle; bought lists are not — confirm setups via ticket.
When to contact support
Ask via ticket before deploying anything you are unsure about — a two-line question is much cheaper than a suspended service. Also contact support immediately if you believe your server was used for prohibited activity without your knowledge.
Frequently asked questions
Can I run penetration testing tools on my Cloud2Y server?
Only against systems you own or have written permission to test. Scanning or attacking third-party systems from Cloud2Y infrastructure is prohibited and treated as network abuse.
Is sending newsletters from my VPS allowed?
Yes, if every recipient opted in and you provide working unsubscribe. Purchased or harvested lists count as unsolicited bulk email and violate the spam policy regardless of volume.
What happens if I host something prohibited without realising it?
You receive an abuse notice with details and a chance to remove the material. Fast, cooperative fixes usually end the case; ignoring notices leads to suspension of the service.
Related articles
- Acceptable Use Policy overview
- Abuse handling policy
- Spam policy
- Abuse policy and prohibited activities (security angle)
Need a hand? Contact Cloud2Y support →
