Acceptable Use Policy

Last updated: 12 August 2026

This policy summarizes what is allowed and what is prohibited on Uppic, keeping the service safe and fair for everyone. It forms part of the Terms of Service (/terms).

On this page

1. Encouraged uses

Uppic was built for these uses — please use them to the fullest:

  • Hosting images to share on social media, forums, blogs, documents, or your online store.
  • Embedding image links in your website or app within your plan's bandwidth quota.
  • Creating QR codes for restaurant menus, business cards, posters, events, Wi-Fi, and lawful marketing campaigns.
  • Optimizing and converting images for your own personal or commercial work.
  • Integrating your systems with Uppic via the API and Webhooks, within the published rate limits.

2. Prohibited content

You may not upload or distribute the following through the service:

  • Malware, viruses, or files designed to harm systems or users.
  • Phishing, scam, or deceptive content, such as pages imitating banks or authorities.
  • Images or graphics used to support spam campaigns.
  • Content infringing anyone's copyright or trademarks.
  • Illegal content, including child sexual abuse material, human trafficking, narcotics, or incitement to violence.
  • Other people's personal information published without consent.

3. Prohibited conduct

  • Bot or scripted uploads outside the official API.
  • Scraping or harvesting data from the service without permission.
  • Circumventing rate limits, quotas, detection systems, or protective measures — including rotating accounts or IPs.
  • Sharing accounts or API keys to evade quotas.
  • Penetration testing, vulnerability scanning, or DoS/DDoS attacks — if you find a vulnerability, please report it via Responsible Disclosure on /security.

4. Hosting, storage, and CDN

  • Use storage for images in supported formats only. Do not hide other file types inside images (steganography to evade validation).
  • Do not use the service as a backup system or file store for other systems at unreasonable volume.
  • Hotlinking to high-traffic sites must stay within your plan's bandwidth quota — sustained overage may be throttled or have links suspended.
  • Do not mass-upload duplicate files to burden the system.

5. QR codes and redirects

  • QR and redirect destinations must be lawful and honest — never phishing, malware, or content prohibited in section 2.
  • No layered redirects or cloaking techniques that disguise the real destination.
  • No bait-and-switch: editing a Dynamic QR destination to dangerous content later is prohibited — destinations are checked continuously.

6. API and automation

  • All automated integrations must go through the official API with your own API key.
  • Respect rate limits — on HTTP 429, back off instead of hammering retries.
  • Do not use the API to generate fake content or traffic, such as inflating QR scan counts.
  • Need more quota than standard plans offer? Contact us — we are always happy to talk.

7. Enforcement

We apply measures proportionate to severity, prioritizing the impact on other users and the system:

  • Warning and request to fix, for minor first-time violations.
  • Temporary throttling or partial feature suspension.
  • Disabling infringing links, QR codes, or files.
  • Account suspension or termination, for severe or repeated violations.
  • Reporting to law enforcement where required by law.

For severe cases such as malware, phishing, or illegal content we may act immediately without notice. If you believe we acted in error, contact us to request a review.

8. Reporting violations

Found content or usage violating this policy? Report it via the report page (/report) or the contact page (/contact). For copyright matters, please use the form on /copyright — we review every report.