Acceptable Use Policy
The rules for what may and may not be hosted, sent or run on the Webscepts network, so the platform stays fast, secure and lawful for everyone.
This Acceptable Use Policy ("AUP") sets out the activities that are not permitted on any Service provided by Webscepts Solutions (Pvt) Ltd ("Webscepts"). It forms part of our Terms of Service and applies to every customer, and to anyone who uses the Services through a customer's account, including your own clients and website visitors.
You are responsible for all activity on your account, even if it was carried out by someone else or results from a compromised website or server. If you are unsure whether something is allowed, please ask our support team before you go ahead.
1. Illegal & Harmful Content
You may not use the Services to host, store, transmit or link to:
- Any content or activity that is illegal in Sri Lanka or in the country where you or your users are located.
- Child sexual abuse material or any content that sexualises minors. We report such material to the relevant authorities immediately and terminate the account without notice.
- Content that promotes terrorism or violent extremism, incites violence, or threatens or harasses any person.
- Material that infringes copyright, trademarks or other intellectual property rights, including pirated software, films, music, e-books and "warez".
- Fraudulent, deceptive or misleading content, including fake shops, investment or cryptocurrency scams, pyramid schemes and counterfeit goods.
- Defamatory content, or private or personal information about others published without their consent.
- The sale of illegal drugs, weapons, or other goods and services prohibited by law.
2. Security Violations & Malicious Activity
The following are strictly prohibited:
- Phishing pages, or any site that impersonates another organisation to collect passwords, card details or personal data.
- Hosting or distributing malware, viruses, ransomware, trojans, spyware or exploit kits.
- Botnet command-and-control servers, malicious proxies, or tools designed to hide criminal activity.
- Unauthorised access to, or attempts to probe, scan or test the vulnerability of, any system or network — including other customers' accounts and our own infrastructure — without explicit written permission from the owner.
- Launching or facilitating denial-of-service (DoS/DDoS) attacks, flooding, or packet spoofing.
- Intercepting or monitoring data that is not intended for you, or forging packet headers, email headers or any part of a message to disguise its origin.
- Attempting to bypass account limits, licence checks, billing systems or security controls.
3. Email & Anti-Spam
Webscepts has a zero-tolerance policy towards spam. Every email sent through our servers, or that advertises a website hosted with us, must comply with applicable anti-spam laws and the following rules:
- Do not send unsolicited bulk or commercial email. Recipients must have clearly opted in to receive your messages.
- Do not use purchased, rented, harvested or scraped email lists.
- Every marketing message must identify the sender, include a valid physical or contact address, and contain a working unsubscribe link that is honoured promptly.
- Do not use false or misleading subject lines, sender names or headers.
- Shared, business and email hosting plans are subject to hourly sending limits. Large newsletters should be sent through a dedicated email marketing provider.
- Accounts that cause our IP addresses or domains to be listed on spam blacklists may be suspended, and you may be charged for the cost of delisting.
4. Server Resources & Prohibited Uses
To protect the performance of shared servers, the following are not permitted on shared, business, WordPress or email hosting plans (some may be allowed on a VPS or dedicated server — ask us first):
- Cryptocurrency mining, or any processes that use sustained high CPU, memory or disk I/O.
- Using hosting space mainly as file storage, a backup destination, a media streaming service or a file-sharing / download site.
- Running game servers, IRC servers, bots, torrent clients or peer-to-peer software.
- Long-running background processes, daemons or cron jobs that run more often than every 15 minutes without our approval.
- Reselling or sub-letting hosting accounts unless you are on a reseller plan.
- Open mail relays, open proxies or open DNS resolvers.
5. VPS & Dedicated Servers
Customers with root or administrator access are responsible for securing their servers. You must keep the operating system and software patched, use strong authentication, and promptly fix any vulnerability or compromise. A server that is compromised and used to attack others, send spam or host malicious content may be isolated from the network until it has been cleaned and secured.
6. Compromised Accounts
Outdated CMS installations, plugins and weak passwords are the most common cause of hacked websites. If we detect that your account has been compromised, we may disable affected files, scripts or the entire account to protect other customers. We will notify you, and you must remove the malicious code and secure the account before it is restored. Our support team can help with clean-up as a paid service.
7. Reporting Abuse
To report spam, phishing, malware, copyright infringement or any other abuse involving our network, email info@webscepts.com with the subject line "Abuse Report" and include the relevant URLs, IP addresses, full email headers or other evidence. Copyright notices should identify the work, the infringing material and your contact details, together with a statement that you are the rights holder or authorised to act for them. We review every report and take action where appropriate.
8. Enforcement
We may investigate any suspected violation of this AUP. Depending on how serious the violation is, we may, at our sole discretion and with or without notice:
- Issue a warning and ask you to remove the content or stop the activity within a set time.
- Remove or disable access to specific content, files, scripts or email accounts.
- Limit resources, block outgoing email, or null-route an IP address.
- Suspend or terminate the Service, or your entire account, without refund.
- Charge reasonable fees for clean-up, investigation and blacklist removal.
- Report the activity to law enforcement and co-operate with their investigation.
Our failure to act on a violation does not waive our right to act later. We may update this AUP at any time; the latest version will always be published on this page.