Acceptable Use Policy
Last updated 2026-06-23.
This Acceptable Use Policy ("AUP") sets out what you can and cannot do with DMARCHub. It forms part of our Terms of Service.
1. What DMARCHub is for
DMARCHub is for monitoring and improving email authentication on domains you own or legitimately operate. Within that purpose you may:
- Add domains you control, point their DMARC reporting at the mailbox we provision, and review the aggregate and forensic reports we ingest.
- Use our hosted DMARC and MTA-STS publishing to manage your own domains' policies, and move those policies towards enforcement at your own pace.
- Invite colleagues from your own organisation and manage their access.
2. You may not
- Monitor, or attempt to monitor, DMARC reports for any domain you do not own or legitimately operate, or add a domain you are not authorised to control.
- Use the reporting mailbox, hosted DMARC records, or MTA-STS publishing to misdirect, intercept, or interfere with mail for a domain you do not control.
- Submit malware, exploits, decompression bombs, or deliberately malformed reports intended to harm DMARCHub, its ingestion pipeline, or its other customers.
- Use DMARCHub to facilitate, prepare for, or evade defences against unsolicited commercial email (spam), phishing, or email spoofing.
- Use DMARCHub to harass any individual or organisation.
- Attempt to access another customer's data, exceed your plan's quotas through technical means, deliberately overload the ingestion or processing pipeline, or otherwise interfere with the operation of the service.
- Reverse-engineer, scrape, or otherwise extract DMARCHub's source code, API, or internal data structures beyond what is publicly documented.
- Resell DMARCHub to third parties without an explicit reseller agreement with us.
3. Your responsibility for the data you send us
DMARC reports are generated by third-party mail receivers and sent to the mailbox we provision for your domain. By directing that reporting to us, you confirm you are entitled to do so for the domains concerned and that you have a lawful basis for the data those reports contain.
4. Reasonable use
Your plan has explicit quotas. We do not impose secret limits. If you have a legitimate case to exceed your plan's quotas, contact us and we will work something out rather than cut you off mid-cycle.
5. Vulnerability disclosure
If you believe you have found a security vulnerability in DMARCHub, please email security@dmarchub.io with details. Please do not exploit the vulnerability against other customers or publish details before we have had a reasonable opportunity to fix it. We aim to acknowledge within one business day.
6. Enforcement
If we believe you have breached this AUP, we may (depending on severity) ask you to stop, restrict your account, suspend your account, or terminate your subscription. We will normally give you an opportunity to address the issue before taking action, unless immediate action is required to protect other customers or the service.
7. Reporting abuse
If you believe another DMARCHub user is misusing the service, email abuse@dmarchub.io.