Acceptable Use Policy
Effective date: 26 June 2026
Last updated: 28 July 2026
This Acceptable Use Policy ("AUP") defines the rules governing all content deployed, stored, or processed on Dropframe (dropframe.run). It applies to all users — free and paid — and to all content deployed through the platform, including content generated autonomously or interactively by AI assistants.
1. Core Principles
Dropframe is designed for hosting single-file HTML applications, web tools, calculators, dashboards, and client-side prototypes.
By deploying content on Dropframe, you accept 100% legal responsibility for that content. You represent and warrant that you hold all necessary rights, licenses, and permissions, and that your deployment complies with all applicable local, national, and international laws.
2. Strictly Prohibited Content and Activities
Deployment of any of the following content or engaging in any of the following activities will result in immediate termination of service, removal of content, permanent ban, and referral to law enforcement where applicable.
2.1 Malicious Code and Attacks
- Malware & Exploits: Ransomware, spyware, keyloggers, viruses, Trojan horses, rootkits, or exploits targeting vulnerabilities in browsers or operating systems.
- Phishing & Fraud: Pages impersonating financial institutions, identity providers, brands, or government portals designed to harvest credentials, tokens, or financial data.
- Cryptojacking & Unauthorized Mining: Scripts that utilize a visitor’s CPU/GPU resources for cryptocurrency mining or distributed computing without explicit, prominent, informed consent.
- Session & Credential Theft: Malicious scripts targeting browser storage, cookies, session tokens, or cross-site request forgery (CSRF) exploits.
- Denial of Service (DoS): Using deployed pages to participate in or orchestrate Distributed Denial of Service (DDoS) attacks, botnets, or brute-force automation.
2.2 Exploitative & Illegal Content
- Child Sexual Abuse Material (CSAM): Zero tolerance. Immediate takedown, account ban, and mandatory disclosure to NCMEC, IWF, and international law enforcement authorities.
- Human Trafficking & Violence: Content facilitating human trafficking, illegal weapon sales, terrorism, or incitement to imminent physical harm or violence.
- Non-Consensual Intimate Imagery (NCII): Deployment of intimate, explicit, or privacy-violating images or videos without explicit written consent.
- Harassment & Doxxing: Content published to harass, stalk, threaten, intimidate, or expose private personal details (doxxing) of any individual.
2.3 Intellectual Property & Consumer Protection
- Copyright & Trademark Infringement: Hosting copyrighted software, media, books, or proprietary assets without authorization.
- Counterfeit & Scam Outlets: Fake storefronts, fraudulent investment schemes, or deceptive promotional pages.
2.4 Infrastructure & System Abuse
- Spam & SEO Manipulation: Link farms, cloaked redirect networks, doorpages, or pages engineered to manipulate search engine algorithms or distribute unsolicited bulk messages.
- Resource Abuse & Rate Limit Bypass: Automated bots or scripts created to circumvent platform quotas, rate limits, or account creation controls.
- Unauthorized Reselling: Sublicensing or reselling access to Dropframe hosting or MCP endpoints without prior explicit written agreement from Dropframe.
3. AI-Generated Content
Dropframe integrates natively with AI assistants via the Model Context Protocol (MCP).
- User Responsibility: You are fully accountable for all content deployed by your AI assistant or agent on your behalf.
- Prompt Safety: Using prompt engineering or adversarial inputs to instruct an AI assistant to deploy prohibited content is a direct violation of this policy.
- Automated Takedowns: AI-generated deployments flagged by security systems will be removed immediately under the standard enforcement policy.
4. Enforcement and Penalties
Dropframe monitors platform telemetry and acts promptly on reports of abuse. Enforcement actions are taken at our sole discretion:
| Violation Severity | Action Taken |
|---|---|
| Critical (CSAM, Phishing, Active Malware, DDoS) | Immediate removal, permanent account ban, law enforcement report, no refunds. |
| High (IP Infringement, Harassment, Fraud) | Removal within hours, formal warning or account suspension. |
| Moderate (Spam, Policy Misunderstanding) | Content removal, 24-hour notice to rectify or face suspension. |
Removal of content or account termination for AUP violations does not entitle the user to a refund of any paid fees.
5. Reporting Abuse
We actively investigate abuse reports. If you discover a Dropframe deployment (*.dropframe.run or dropframe.run/preview/*) violating this policy:
- Email: hello@dropframe.run
- Subject line:
Abuse Report - {App ID or URL} - Details required: Full URL, description of violation, and supporting evidence or screenshots.
6. Contact
Email: hello@dropframe.run
Website: dropframe.run