Acceptable Use Policy

Last updated: 29 July 2026

This Acceptable Use Policy ("AUP") sets out what you may and may not do with CrescoDB — the CLI, the hosted platform, and CrescoDB Cloud, which deploys and manages applications on servers and third-party providers you connect. It is part of, and incorporated into, our Terms of Service.

1. Your responsibility

You are responsible for everything you do with CrescoDB and for all code, data, and workloads you deploy through it. When you deploy to your own server or a connected provider, that infrastructure — and the acceptable-use rules of that provider — are also your responsibility. CrescoDB is an orchestration tool; you remain the operator of your apps.

2. Prohibited uses

You may not use CrescoDB, and may not deploy or operate anything through it, to:

  • Break the law, or infringe anyone's intellectual-property, privacy, or other rights.
  • Build, host, or distribute malware, ransomware, spyware, or other malicious code; or run phishing, credential-harvesting, or fraud operations.
  • Attack or interfere with any system or network — including denial-of-service attacks, port scanning, brute-forcing, or unauthorized access — whether ours, a provider's, or a third party's.
  • Send spam or unsolicited bulk messages, or operate in a way that gets your infrastructure or ours blocklisted.
  • Store or transmit content that is unlawful, that sexually exploits minors, or that incites violence against people.
  • Circumvent usage limits, plan entitlements, authentication, or billing; or share credentials to evade them.
  • Abuse our platform's resources — for example, using automated requests to degrade the service, or using the AI features to generate abusive, deceptive, or infringing content at scale.
  • Misrepresent your identity, or connect a server, repository, or provider account you are not authorized to use.
  • Resell or expose CrescoDB's hosted platform as your own service without our written permission.

3. Security & testing

Do not probe, scan, or test the security of CrescoDB's platform except as permitted by our Security policy. Do not attempt to access data or accounts that are not yours. Legitimate security research is welcome — please follow the responsible-disclosure process on that page.

4. Third-party providers

Deployments you create run under your accounts with providers like your VPS host, GitHub, Render, or Railway. You must comply with each provider's own terms and acceptable-use rules. We are not responsible for actions those providers take on your account, and we may be required to act on their reports of abuse.

5. Enforcement

If we reasonably believe you have violated this AUP, we may — with or without notice, depending on severity — limit, suspend, or terminate access to affected features or your account, remove offending content from our platform, and, where required, cooperate with providers or law enforcement. For urgent threats (active abuse, security risk, or legal exposure) we may act immediately. Whenever practical, we'll tell you what happened and how to resolve it.

6. Reporting abuse

To report a violation of this policy, contact support@crescodb.com. Security vulnerabilities should go to security@crescodb.com — see our Security page.

7. Changes

We may update this policy as the product and its risks evolve. We'll revise the "Last updated" date above and, for material changes, give notice through the product or by email.