Qubesquad
LEGAL

Acceptable Use Policy

The rules for what may run on a Qubesquad server. Most people will never come close to breaking these. They exist because a few do.

LAST UPDATED 10 August 2026

01The short version

Run your game server. Do not attack anyone, do not mine cryptocurrency, do not send spam, do not host anything illegal, do not try to break out of your container, and do not hog a machine other people are sharing with you.

This policy applies to you, to anyone you give access to your server, and to anything running on your server, including mods and plugins you installed without reading what they do. If it happens on your server, it is your responsibility.

Breaking this policy can get your server suspended immediately and without warning. Suspension stops the server and keeps your files. Serious cases can end in permanent deletion with no refund.

02No attacks from our network

Our network may not be used to attack anyone, on our network or anywhere else. That includes:

  • Denial of service attacks of any kind, including UDP floods, amplification and reflection attacks.
  • Running or hosting booters, stressers, DDoS-for-hire panels, or any tool whose purpose is to send attack traffic. This includes tools you are only hosting for someone else.
  • Port scanning, vulnerability scanning or brute forcing anything you do not own.
  • Running proxies, VPN exits, Tor exits, open relays or anonymisers that are used to hide abusive traffic.
  • Botnet command and control, malware hosting, phishing pages, credential stuffing, or distributing stolen data.
  • Anything that gets our IP addresses onto a blocklist or triggers an abuse complaint from another network.

Testing an attack against your own server, or against a target that has given you permission, is still not allowed on our network. Use a lab you control.

03No cryptocurrency mining

Mining any cryptocurrency is not allowed, on any plan, at any scale. This covers miners you installed yourself and miners hidden inside a plugin, a mod or a modpack you installed.

Hosting a wallet, a node or other blockchain infrastructure is also outside what these servers are sold for. Our plans are game server plans.

A hidden miner is still your responsibility. Check what you install, and be careful with plugins from places you do not recognise.

04No spam or bulk mail

You may not send unsolicited bulk email, unsolicited bulk messages of any kind, or advertising to people who did not ask for it. That includes mass in-game messages sent to other servers or players.

Outbound email is blocked on our game network. Your server cannot send mail directly, by design, and we do not unblock it. If you need email for your community, use an email service.

You may not use our servers to harvest addresses, to relay mail for someone else, or to support a spam operation running elsewhere.

05Nothing illegal, and nothing that harms children

You may not store, share or distribute anything illegal under US federal law or the law of your state. That includes pirated games and software, stolen credentials, and content that infringes someone else's copyright.

Any content that sexually exploits or endangers a child leads to immediate termination without notice or refund, and we report it to the National Center for Missing and Exploited Children and to law enforcement, together with the account and connection records we hold.

You may not use a server to harass, stalk, threaten or dox anyone, or to run a community whose purpose is any of those things.

06Stay inside your own server

Your server runs in a container on a machine shared with other customers. You may use it fully, and you may not try to leave it.

  • Do not try to break out of the container, escalate privileges on the host, or load kernel modules.
  • Do not try to reach another customer's server, files or database. Traffic between customer containers is blocked, and trying to get around that is a breach of this policy in itself.
  • Do not try to reach our management systems, our control panel infrastructure, our databases or our internal networks.
  • Do not scan our network, or use our servers to scan anyone else's.
  • Do not attempt to bypass the limits on your plan, including memory, disk, backup slots and bandwidth shaping.

Found a real security hole? We would genuinely like to hear about it. Email [email protected] with the details and give us a reasonable chance to fix it. Report it, do not exploit it, and do not test it against another customer.

07Do not degrade the machine for other people

Your plan is an upper limit on a shared machine, not a private machine. Sustained use that damages the experience of other customers on the same hardware is abuse, even if you stay under your own limits.

  • Sustained outbound network traffic far above what a game server needs. Outbound bandwidth per server is shaped, and traffic well past that level triggers an automatic suspension.
  • Deliberately pinning the processor with work that is not your game, for example rendering, transcoding, compiling or number crunching.
  • Filling the disk, or writing to it in a loop, in a way that affects the machine.
  • Running non-game workloads generally. These are game server plans, and we do not sell them as general purpose compute.

A busy modded server using a lot of its allowance is normal, and is not what this section is about. We are talking about behaviour that shows up as harm to other customers.

08How we enforce this

Where abuse is actively happening, we suspend first and talk afterwards. Suspension stops the container and preserves every file. It is reversible, which is exactly why we are willing to do it automatically at three in the morning.

Automatic action

We monitor outbound traffic per server. A server sustaining traffic far above normal game levels is suspended automatically, and an alert goes to our team. If that was a false alarm, contact us and we will put it back.

Evidence

Before a container is stopped for suspected abuse, we collect evidence: the time, the server and account it belongs to, its network connections, its own logs, and a short capture of the traffic it was sending. We keep those evidence bundles for 90 days. We need them to answer the network that complained, to justify the suspension to you, and to hand to law enforcement if it comes to that.

What happens next

  • We email you what we saw, that your files are intact, and what needs to change.
  • Fixable problems (a malicious plugin, a misconfiguration, a compromised password) usually end with the server being unsuspended.
  • Serious or repeated abuse ends the account. Termination deletes the server and all of its backups permanently, and there is no refund.
  • Suspension and termination are deliberately separate steps in our system. An abuse incident is not, by itself, a decision to delete your data.

09Reporting abuse to us

If traffic or content from one of our servers is causing you a problem, email [email protected]. A person reads that mailbox and we investigate promptly, normally within one business day, and faster for an attack in progress.

What to include

  • The IP address, and the port if you have it.
  • The date and time of the traffic, with the time zone.
  • The protocol, and a short log extract or packet sample if you can share one.
  • What effect it had on you, and how to reach you.

We will tell you that we received the report and what action we took. We do not share our customer's personal details with a reporter. Law enforcement and legal requests go to [email protected] and are handled through proper legal process.

10Changes to this policy

We can update this policy as new kinds of abuse appear. The current version is always on this page with its effective date. Material changes are emailed to you at least 30 days before they take effect, the same as the Terms of Service.

QUESTIONS

Email [email protected] and a real person will answer. For privacy questions use [email protected]. To report abuse coming from one of our servers, use [email protected].