Legal
Acceptable Use Policy
What you may and may not do with our services, and how we handle suspensions.
Last updated: 2 August 2026
01Who this applies to
This policy applies to everyone using an Azoria service – hosting, email, domains, Azoria Leads, AI agents, and automation – and it forms part of our Terms of Service. It applies to you, to anyone you give access to, and to anyone using your service whether you authorised them or not.
You are responsible for what happens on your service. If someone else's activity on it breaches this policy, we deal with you.
02What you must not do
Do not use our services to store, send, or publish material that is unlawful, that infringes someone else's intellectual property, that is defamatory, or that sexualises children. Do not use them to harass, threaten, stalk, or impersonate anyone.
Do not distribute malware, phishing pages, or content designed to deceive people into giving up credentials or money. Do not run open relays, proxies, or anything that lets third parties send traffic anonymously through our network.
Do not attempt to gain unauthorised access to any system, network, or account, whether ours or anyone else's, and do not scan, probe, or test the security of systems you do not own without written authorisation from their owner.
Do not send unsolicited bulk email. Marketing email sent from our services must comply with the Spam Act 2003 – consent, accurate sender identification, and a working unsubscribe. Purchased or scraped lists do not constitute consent.
Do not use a service in a way that degrades it for others: sustained resource consumption well beyond your plan, deliberate overload, or running workloads on shared hosting that belong on dedicated infrastructure. If you are outgrowing a plan we will tell you and help you move, rather than waiting for it to become a problem.
03Content you are responsible for
Where we build or host a website for you, the content on it is yours. You warrant that you have the right to use it, including images, fonts, and anything supplied by a third party, and that it does not breach this policy.
Where you collect personal information through a site we host – a contact form, a booking, an account signup – you are responsible for having a privacy policy and collection notices that accurately describe what happens to it. Our Data Processing Agreement sets out our side of that arrangement.
04AI agents and automation
AI agents we run for you act under rules you define and approve. Do not configure an agent to produce material that would breach this policy if you published it yourself, to impersonate a real person, or to send bulk unsolicited messages.
Do not feed sensitive information into an AI workflow unless we have designed it for that and agreed it in writing. Health records, financial account details, government identifiers, credentials, and anything you hold in confidence for someone else all fall into this. Model requests are routed to third-party providers whose retention terms we do not control, so this is a real constraint rather than a formality – it applies to what your staff put in and to what your customers can put in through an interface you have deployed.
Where an agent corresponds with your customers, it must not be presented as a human being if asked directly. Review its output, particularly after go-live – automated output can be confidently wrong, and it goes out under your name.
05Backups and your own copies
We take routine backups as a service-recovery measure, so that we can restore a service after a failure on our side. They are not a substitute for your own records, and we do not guarantee that a backup will contain a particular file or a particular version of your data at a particular moment.
Keep your own copies of anything you cannot afford to lose. If you need a defined backup and restore arrangement, ask us and we will quote one.
06Suspension and how we handle it
Where something on a service puts our infrastructure, our other clients, or third parties at risk – active malware, an outbound spam run, a phishing page, a compromised account – we may suspend the affected service immediately and tell you as soon as practical afterwards. In that situation acting first is the point.
For anything less urgent, we will contact you first and give you a reasonable opportunity to fix it before we suspend anything. We would much rather you fixed it.
Suspension does not delete your data. As with a suspension for non-payment, your data is retained for 30 days from the date of suspension, and resolving the underlying issue within that window restores the service. At the end of it the service is terminated and its data deleted, after a final notice.
Serious, repeated, or unlawful breaches are the exception: we may terminate immediately rather than waiting out that window, and where the law requires it, report the matter. We will still give you the opportunity to obtain a copy of your data unless doing so would itself be unlawful.
07Reporting a problem
To report abuse originating from a service we host – spam, phishing, malware, or infringing content – email [email protected] with the domain or IP address and enough detail for us to identify it. We investigate reports and act on the ones that are made out.
If you believe content we host infringes your copyright, tell us what the material is, where it is, and what right you hold, and we will follow it up with the client responsible.
08Changes
We may update this policy. Material changes will be notified to active clients, and the current version will always be published on this page.