1. Scope
This Acceptable Use Policy ("AUP") applies to every service provided by CoAI Host ("we", "us"), to everyone who uses those services, and to all traffic sent to or from your server. It forms part of our Terms of Service. You are responsible for all activity on your server, including activity by your own users and by anyone who gains access to it.
2. Prohibited activities
Spam and email abuse
- Sending unsolicited bulk or commercial email, or email to addresses that have not given verifiable consent.
- Operating open mail relays, or hosting or promoting websites advertised through spam.
- Outbound connections to TCP port 25 (SMTP) are blocked on all servers. Do not try to get around this block. If you need to send email, use an authenticated email-sending service on another port.
Attacks, scanning and network abuse
- Denial-of-service (DoS or DDoS) attacks, traffic flooding or stress-testing of any system you do not own.
- Port scanning, vulnerability scanning, brute-force login attempts or any other probing of systems without the owner's written permission.
- Unauthorised access to, or interference with, any system, network or account.
- Forging packet headers, spoofing IP or MAC addresses, or using IP addresses that are not assigned to your server.
- Intercepting traffic that is not addressed to you, or running botnet or command-and-control infrastructure.
- Running open proxies, open DNS resolvers or other open services that third parties can abuse, for example for amplification attacks.
Malware, phishing and fraud
- Creating, hosting or distributing viruses, worms, ransomware, trojans, spyware or other malicious software.
- Phishing, credential harvesting, impersonating others or hosting fraudulent websites.
- Any other fraudulent or deceptive activity, including payment or identity fraud.
Illegal and harmful content
- Any content or activity that is illegal, including material that infringes copyright, trademarks or other intellectual property rights.
- Child sexual abuse material, which is never tolerated. Accounts involved are terminated immediately and reported to the relevant authorities.
- Content that threatens, harasses or promotes violence against others.
Cryptocurrency mining
- Cryptocurrency mining and similar proof-of-work workloads are not permitted. They keep shared CPU cores permanently busy and degrade the service for other customers.
3. Fair use of resources
- CPU: vCPU cores run on shared physical hardware. Sustained high CPU use that affects other customers may be throttled, and we may ask you to reduce it or to move to a larger plan.
- Bandwidth: all servers share a 1 Gbps uplink, and each server is rate-limited to the speed of its plan.
- Monthly traffic: each plan includes a monthly traffic allowance, measured in binary units (each "GB" of allowance is one GiB, 1,073,741,824 bytes). It resets on the 1st day of each calendar month (Japan time, Asia/Tokyo). Once the allowance is used, the server's network speed is limited to 10 Mbps until the next reset.
- Disk: disk throughput and IOPS are limited per plan. Do not deliberately exhaust shared storage performance.
- Do not try to get around the resource, network or IP-address limits applied to your server.
4. Securing your server
You have full root access, so you are responsible for your server's security. This includes installing updates, using strong passwords or SSH keys, closing services you do not need, and configuring a firewall. A compromised server that sends spam, attacks others or hosts malware is treated as a breach of this AUP, even if you did not intend it. We may suspend or isolate the server until it has been cleaned and secured.
5. Backups
Our services do not include backups or snapshots. You are responsible for keeping up-to-date copies of your data in a location outside your server. We are not responsible for data lost through server compromise, your own actions, suspension, termination or hardware failure.
6. Abuse handling and enforcement
- We investigate abuse reports and suspected breaches of this AUP. We may ask you to fix a problem within a set time.
- To stop ongoing harm to our network, other customers or third parties, we may filter traffic, restrict network access, or suspend a server immediately and without prior notice.
- Serious or repeated breaches may lead to termination of the service and your account. The server and all of its data are then deleted, and no refund is given.
- We cooperate with law enforcement and may share information where required by law.
- Refunds or credits for any service interruption under this AUP are at CoAI Host's discretion.
7. Billing-related suspension
Separately from abuse handling, unpaid services are handled automatically as described in the Terms of Service:
- services are suspended 3 days after an unpaid due date;
- they are unsuspended automatically once payment is received;
- they are terminated, and all data permanently deleted, 14 days after an unpaid due date.
8. Reporting abuse
To report abuse involving a CoAI Host IP address, email support@coaiwork.com with "Abuse" in the subject line. Include the IP address, timestamps with time zone, and relevant evidence such as log extracts or message headers.
9. Changes to this policy
We may update this AUP from time to time. The current version is always published on this page with its "Last updated" date. Questions about this policy can be sent to support@coaiwork.com.