1.About this policy
This Acceptable Use Policy sets out what you may not do with qraffic. It is part of our Terms of Service and applies to everyone who uses the Service, including people invited to a workspace. If you use the Service for others, such as your customers or staff, you are responsible for making sure they follow it too. Capitalized terms have the meanings given in the Terms.
2.Illegal and harmful content
You may not use the Service to create, upload, store, send or share content that:
- sexually exploits or endangers children, including child sexual abuse material. We report it to the National Center for Missing and Exploited Children and to law enforcement;
- is unlawful, or promotes or facilitates illegal activity, including the sale of illegal goods;
- threatens, harasses, bullies or incites violence against any person or group;
- attacks or demeans people based on race, ethnicity, national origin, religion, sex, gender identity, sexual orientation, disability, age or another protected characteristic;
- shares sexually explicit or intimate images of a person without their consent, or promotes self-harm;
- infringes or misappropriates anyone's intellectual property, privacy or publicity rights, or discloses another person's private information without authorization (doxxing);
- supports or glorifies terrorism or violent extremism; or
- is deceptive, fraudulent or impersonates any person or organization.
3.QR codes, links, pages and forms
Because people scan a code before they can see where it leads, misuse of qraffic harms people who never agreed to anything. You must not use a code, short link, multilink page, landing page, form, A/B test or targeting rule to:
- run phishing, or collect passwords, one-time codes, payment card or bank details, or identity documents under false pretenses;
- distribute malware, spyware, ransomware or other unwanted or deceptive software;
- operate scams or fraud, including fake parking, toll, delivery, payment, prize, investment or cryptocurrency schemes;
- send people somewhere deceptive, including switching a destination after printing or review to content materially different from what was promised, or showing reviewers, moderators or platforms one destination and scanners another (cloaking);
- hide the real destination to evade security filters, blocklists or another platform's rules, including chaining redirects or using our domain as an open redirect;
- place codes over, or in place of, someone else's code or signage, or otherwise tamper with physical codes you do not own;
- impersonate a business, brand, government agency or person, or mimic their pages or login screens;
- link to or host content that is illegal, sexually exploits minors, promotes violence, infringes intellectual property, or sells regulated goods unlawfully;
- collect sensitive personal data through forms without a lawful basis, required consent and a clear privacy notice; or
- generate fake scans or clicks, or otherwise manipulate analytics, A/B test results or billing.
4.Security and platform abuse
You may not:
- access or try to access accounts, data or systems you are not authorized to access, or bypass authentication, rate limits or other security measures;
- probe, scan or test the vulnerability of the Service, except under our responsible disclosure terms by contacting security@qraffic.com first;
- upload or distribute malware, or use the Service to host phishing pages or command-and-control infrastructure;
- interfere with or disrupt the Service, including by denial-of-service attacks or by imposing an unreasonably large load on our infrastructure;
- create accounts in bulk or by automated means, share accounts to evade seat limits, or create new accounts after we suspend you;
- mine cryptocurrency or run workloads unrelated to the Service's intended use; or
- use the Service to build or train a competing product, or scrape it except through permitted APIs.
5.Spam and unsolicited communications
You may not use the Service to send unsolicited bulk messages or messages that violate anti-spam laws, including the CAN-SPAM Act, the Telephone Consumer Protection Act, the Florida Telephone Solicitation Act, Canada's Anti-Spam Legislation and the EU ePrivacy rules. In particular, you must:
- have the consent the law requires from every recipient before contacting them, and keep proof of it;
- never use purchased, rented, scraped or harvested contact lists;
- identify yourself as the sender and use accurate header and subject lines;
- include a working opt-out method and honor opt-outs promptly and permanently;
- respect quiet hours and frequency limits that apply where your recipients live; and
- comply with the policies of the email and messaging providers you send through.
6.AI features
When using AI features, you may not:
- attempt to bypass, disable or jailbreak safety filters or usage policies;
- generate content that violates this policy, including child sexual abuse material, non-consensual intimate imagery or targeted harassment;
- create realistic images, audio or video of real people without their consent, or present AI-generated media as authentic in a way that could mislead, including deepfakes of public figures or of anyone for fraud, political manipulation or harassment;
- pass off AI output as human-made where a law or platform rule requires disclosure, or use it to impersonate someone;
- use output as the sole basis for decisions with legal or similarly significant effects on people, such as decisions about employment, credit, housing, insurance, education, healthcare or legal status, without meaningful human review;
- use AI features for practices prohibited by the EU AI Act, including social scoring, manipulative techniques that exploit vulnerabilities, emotion recognition in the workplace or schools, or untargeted scraping of facial images;
- extract model weights, or use output to develop competing AI models; or
- provide individualized legal, medical or financial advice to others based on output without review by a qualified professional.
Our AI Terms have more detail.
7.Sharing files and content
You may not use sharing or publishing features to distribute content you do not have the right to share, including pirated software, films, music or books, to host files for phishing or malware campaigns, or to operate a public file-hosting or content-delivery service. Copyright complaints are handled under our Copyright Policy.
8.Reporting violations
If you see content or behavior on the Service that violates this policy, report it to abuse@qraffic.com with as much detail as you can, including links, screenshots and dates. We review every report and may contact you for more information. We do not tell the reported user who made a report unless the law requires it.
9.Reporting a malicious code and how takedowns work
Anyone can report a code, link, page or form made with qraffic, account or not. Email abuse@qraffic.com with the short link (or a photo of the code), where you found it, and what is wrong. Please do not enter any information on a page you believe is fraudulent.
We prioritize reports of phishing, malware and fraud. When we confirm a problem we may disable the code for every scanner at once, place a warning page in front of the destination, unpublish the page or form, suspend the account, preserve records and refer the matter to law enforcement. We tell the account owner what we did unless that would put people at risk or the law prevents it, and the owner may ask us to review the decision.
If you entered information or paid money after scanning a suspicious code, also contact your bank or card issuer right away and report the fraud to the U.S. Federal Trade Commission at reportfraud.ftc.gov. Copyright complaints follow the Copyright Policy.
10.Enforcement
We may investigate suspected violations and, depending on how serious they are, take action including a warning, removing or disabling content, limiting features, suspending or terminating accounts, and reporting illegal activity to law enforcement. We choose the response that is proportionate to the violation.
Except where the law prohibits it, or notice would create a risk of harm or compromise an investigation, we will tell you what action we took and why. If you think we made a mistake, reply to that notice or write to abuse@qraffic.com and a person will review your appeal. We are not obliged to monitor the Service, and our failure to act on a violation does not waive our right to act later.
11.Changes to this policy
We may update this policy as the Service and the risks to it evolve. We will notify you of material changes as described in our Terms of Service and update the "Last updated" date above.
12.Contact us
Questions about this policy can be sent to support@qraffic.com. To report abuse, use abuse@qraffic.com.