Dommate · Legal

Acceptable Use Policy (AUP)

Effective: 2026-04-29 · Version: v1.5
Operator: Dommate
Authoritative version: English. Translations are not provided for legal text.

This policy is part of the Terms of Service. Violations lead to domain revocation and account suspension.

1. Absolutely Prohibited

On any *.net.rich, *.edu.rich, *.ii.pe, *.pa.ax, or *.ac.chat domain, you must not:

  • CSAM: immediate revocation; may be reported to law enforcement.
  • Phishing: impersonation of any organization, brand, bank, or service provider.
  • Malware: distribution or C&C (Trojans, ransomware, cryptominers, botnets).
  • DDoS tooling or traffic reflection.
  • Bulk unsolicited commercial email.
  • Scams: fraudulent investment, illegal fundraising, gambling, Ponzi/pyramid schemes.
  • Hate speech, terrorism, or violent extremism.
  • Targeted harassment or doxxing.
  • IP infringement beyond fair use.
  • Impersonating well-known brand labels; these are hard-reserved.
  • Bulk AI-generated content farms: LLM-produced pages with no human editorial input, optimized for SEO or ad revenue. AI-assisted human writing is still OK; unattended bulk output is not.
  • AI-generated application rationale or fake identity: including the purpose field and blog verification content.
  • Anything that violates Hong Kong law, the suffix's home-country law, or your own local law (see ToS §12.1: .rich → Germany/EU, .pe → Peru, .ax → Finland/EU, .chat → US).

2. Security Abuse (Strictly Prohibited)

Strictly prohibited: using the Service's multi-tenant DNS infrastructure to:

  • Launch cross-domain privilege escalation, cookie hijacking / injection, session fixation, or CSRF against other users.
  • Abuse cookie Domain attribute or same-site default semantics to bypass browser security boundaries.
  • Exploit PSL inclusion state changes to impersonate, inject into, or elevate privileges on another user's domain.

Such activities result in immediate revocation and account suspension; law-enforcement cooperation as applicable.

3. Technical Constraints

  • Labels 3–30 chars, lowercase + digits + hyphens only, no leading/trailing hyphen.
  • Record counts are tiered by domain age: 6 at approval, 10 / 20 / 30 after 30 / 90 / 365 days. Only A / AAAA / CNAME / TXT supported by default; MX requires 90 days of normal use plus content review to unlock.
  • TTL must be one of 300 / 600 / 3600 / 86400; other values are rejected.
  • Max 6 active domains per account, and a lifetime total of 15 applications (including revoked / rejected).
  • Domain applications use a per-user scoring system: bind external accounts at /verifications; score ≥ the per-suffix threshold (pa.ax/net.rich 20, ii.pe/ac.chat 35, edu.rich 42) means auto-approval, otherwise human review. See ToS §15.
  • Do not script / share / borrow accounts to inflate scores. Each external account can only be bound to one Dommate user; 30-day cooldown after unbind.

4. Gray-area Uses

The following may be rejected during human review or revoked based on community impact:

  • Crypto-heavy content.
  • Unlicensed aggregators.
  • Link farms, SEO manipulation.
  • Ad redirects, URL shorteners.
  • Non-educational uses of *.edu.rich.

5. Reporting Abuse

Anyone may report abuse via:

  • Web: dommate.com/report (preferred — guided form with field validation).
  • Email: abuse@dommate.com (preferred for CSAM / privacy-sensitive reports).
  • API: POST https://api.dommate.com/api/abuse (machine integration, with captcha and rate limit).

Please include: target FQDN, category, description with evidence, and your email (optional).

6. Response SLA

Responses by severity (identical to SLA §3):

Abuse Response SLA
CategoryResponse
CSAMImmediate
Phishing / Malware24 hours
Other (copyright, spam, etc.)72 hours

"Response" = investigation begins or revocation executed. Clock starts on receipt of a complete report.

7. Enforcement Actions

  • Revoke the domain (clear hosted DNS records, mark as revoked).
  • Suspend account.
  • Permanently blacklist email or GitHub ID.
  • Cooperate with law enforcement.

In serious cases (CSAM, active fraud, large-scale malware), simultaneous without prior appeal.

8. Appeal

If you believe revocation was mistaken, appeal within 30 days by emailing abuse@dommate.com with evidence. We review within 7 business days.