Unio Cloud: Acceptable Use Policy
Last updated: 2026-07-22
Unio Cloud provides infrastructure to many customers from shared European IP space and shared hardware. This policy exists to protect our customers, our IP reputation, and the people your servers can reach. We are, and remain, responsible to our upstream providers for all traffic leaving our network, which is why violations are handled quickly.
1. Prohibited content and activity
You may not use the service to:
- store, distribute or transmit content that is illegal in the EU or in the hosting member state, including CSAM (zero tolerance, immediate termination and mandatory reporting), terrorist content, and content infringing third-party IP rights you do not hold;
- send unsolicited bulk email or operate open mail relays. Outbound SMTP (ports 25/465/587) is blocked by default; delivery of legitimate transactional mail can be unlocked per server on request with a stated use case (see Section 4);
- conduct network abuse: DoS/DDoS attacks of any kind, unauthorized port or vulnerability scanning, brute-forcing, spoofing, botnet command and control, or providing infrastructure for any of these;
- attack, probe or disrupt the Unio Cloud platform itself, other tenants, or the isolation between tenants;
- operate cryptocurrency mining or similar sustained full-load compute-for-token schemes on shared-vCPU plans (u-/a-series). On dedicated-vCPU plans (d-series) sustained load is permitted, but mining remains subject to fair energy use and may be restricted;
- run open resolvers, open NTP amplifiers, publicly writable relays, or other services commonly exploited for reflection attacks, unless properly secured;
- host phishing pages, malware distribution, "bulletproof" reselling, or anonymization services whose primary purpose is facilitating the above.
2. Fair use of shared resources
Shared-vCPU plans are sized for variable workloads. Sustained 100% CPU on all cores for extended periods, pathological I/O patterns designed to degrade neighbours, or circumvention of resource quotas may lead to throttling or a request to move to dedicated-vCPU plans. Included traffic allowances are per server; we contact you before enforcing anything about unusual traffic patterns.
3. Reselling and third parties
You may host services for your own customers, but you remain fully responsible for all activity under your account, including your users' content and traffic. You must pass equivalent obligations to your users and handle their abuse yourself, promptly.
4. Email policy
Outbound SMTP is blocked by default to protect shared IP reputation. To send mail from your server, request an unlock via support@uniocloud.eu stating the sending use case; we approve transactional/low-volume sending with valid rDNS, SPF and DKIM. Bulk marketing sending from our IP space is not permitted; use a dedicated email service provider for that.
5. Security of your own systems
You are responsible for securing the resources you run. Keep software patched, do not expose management interfaces or databases without authentication, use strong credentials, and do not run services misconfigured as open relays, open resolvers or amplifiers. A compromised server that is used to attack others is treated as an AUP violation on your account regardless of your intent; secure it promptly when notified. We may run non-intrusive external checks of our own IP space and will alert you to obvious exposures, but this is a courtesy, not a security service you can rely on.
6. Anonymization, VPN, proxy and Tor
Running your own VPN, proxy or privacy services for your own use or your own users is permitted, provided you handle the resulting abuse reports yourself and promptly. Services open to the anonymous public (public proxies, Tor exit nodes, open VPN gateways) attract a high volume of abuse and receive heightened scrutiny; you must be able to respond to reports quickly, and we may require you to restrict or relocate such a service if it materially harms our IP reputation. "Bulletproof" hosting or services whose primary purpose is to shield the prohibited activity in Section 1 is not permitted.
7. Abuse reports and enforcement
- Report abuse to abuse@uniocloud.eu. Include timestamps (with timezone), source/destination IPs and evidence (logs, headers, URLs).
- We acknowledge abuse reports within 24 hours and act on verified reports within 24–72 hours depending on severity.
- Enforcement ladder, at our discretion based on severity: (1) notice with a deadline to remedy → (2) suspension of the offending resource → (3) account suspension → (4) termination. Immediate suspension applies where delay would cause ongoing harm (active attacks, phishing, CSAM, legal orders).
- We preserve evidence as required by law and cooperate with competent EU authorities on lawful requests.
8. Consequences of violations
Charges continue to accrue during suspensions caused by AUP violations. We may charge for demonstrable extra costs caused by violations (e.g. blacklist delisting, upstream penalties) and claim damages where the law allows.