ACCEPTABLE USE POLICY (AUP)

Version: 1.0.0 Effective Date: September 1, 2026 Last Updated: September 2026


1. INTRODUCTION

This Acceptable Use Policy ("AUP") governs the use of ClevMail ("Platform") provided by Devi Devs Technologies S.R.L. ("DeviDevs", "we", "us"). This AUP applies to all users, including agency clients and their authorised representatives ("Users", "you").

This AUP supplements the Terms of Service and forms an integral part of the agreement between you and DeviDevs. In case of conflict between this AUP and the Terms of Service, the more restrictive provision shall apply.

By using the Platform, you agree to comply with this AUP.


2. ACCEPTABLE USE

2.1. The Platform is designed exclusively for legitimate email marketing, newsletter distribution, and email automation activities.

2.2. You may use the Platform to:

  • (a) manage subscriber lists with properly obtained consent;
  • (b) create, schedule, and send email campaigns and newsletters;
  • (c) set up automated email flows (welcome sequences, nurture campaigns, etc.);
  • (d) track email engagement metrics (opens, clicks, bounces);
  • (e) generate AI-assisted newsletter content;
  • (f) manage email templates and branding;
  • (g) view analytics and reports on email performance.

2.3. All use of the Platform must comply with:

  • (a) all applicable laws and regulations (see our Anti-Spam Policy for specific legal requirements);
  • (b) this AUP, the Terms of Service, and the Anti-Spam Policy;
  • (c) the instructions and guidelines provided by DeviDevs from time to time.

3. PROHIBITED USE

You must NOT use the Platform for any of the following activities:

3.1. Spam and Unsolicited Communications

  • (a) Sending unsolicited bulk or commercial emails (spam)
  • (b) Sending to recipients who have not given verifiable consent
  • (c) Sending to purchased, rented, scraped, or harvested email lists
  • (d) Continuing to send to recipients who have unsubscribed
  • (e) Using the Platform to facilitate or promote spam by third parties

3.2. Fraud and Deception

  • (a) Phishing — attempting to obtain sensitive information by disguising as a trusted entity
  • (b) Impersonation — pretending to be another person, company, or organisation
  • (c) Social engineering — manipulating recipients into divulging confidential information
  • (d) Sending emails with false, misleading, or deceptive headers, subject lines, or content
  • (e) Advance fee fraud, lottery scams, or similar fraudulent schemes

3.3. Malicious Content

  • (a) Distributing malware, viruses, trojans, ransomware, or other harmful software
  • (b) Including links to malicious downloads or infected websites
  • (c) Embedding executable code in email content

3.4. Illegal Content

  • (a) Content that promotes or facilitates illegal activities
  • (b) Content that infringes intellectual property rights (copyright, trademarks, patents)
  • (c) Content that violates privacy or data protection laws
  • (d) Regulated products/services marketed without proper authorisations (pharmaceuticals, financial services, gambling)
  • (e) Content that is discriminatory based on race, ethnicity, gender, religion, sexual orientation, disability, or any other protected characteristic
  • (f) Content that promotes violence, terrorism, or self-harm
  • (g) Content that exploits or endangers minors

3.5. Technical Abuse

  • (a) Attempting to gain unauthorised access to the Platform, other accounts, or connected systems
  • (b) Attempting to disrupt, disable, or overload the Platform's infrastructure (DDoS, etc.)
  • (c) Bypassing or circumventing security measures, access controls, or rate limits
  • (d) Reverse engineering, decompiling, or disassembling any part of the Platform
  • (e) Using automated tools (bots, scrapers) to interact with the Platform in unauthorised ways
  • (f) Exploiting vulnerabilities in the Platform without responsible disclosure
  • (g) Manipulating email metrics (faking opens, clicks, or engagement data)
  • (h) Interfering with other Users' use of the Platform

3.6. Data Misuse

  • (a) Using subscriber data obtained through the Platform for purposes other than those consented to by the subscriber
  • (b) Selling, sharing, or transferring subscriber data to third parties without proper consent and legal basis
  • (c) Uploading special category data (health, biometric, genetic, political opinions, religious beliefs, etc.) without explicit consent and prior written agreement with DeviDevs
  • (d) Processing children's data (under 16, per GDPR Art. 8(1); Romania has not lowered this default age) without parental consent

4. RESOURCE LIMITS

4.1. Sending Limits

The Platform enforces sending limits based on your service plan. These limits exist to:

  • protect email deliverability for all Users;
  • prevent abuse of the shared infrastructure;
  • comply with the email provider's rate limits (Resend).
ResourceLimitNotes
Emails per hourPer planDefined in your Service Agreement
Emails per dayPer planDefined in your Service Agreement
Maximum subscriber list sizePer planDefined in your Service Agreement
Maximum email size10 MBIncluding all content and inline images
API rate limitPer planDefined in API documentation

4.2. Storage and Data Limits

ResourceLimitNotes
Subscriber data importPer planMaximum records per import batch
Template storageReasonable useTemplates should not be used for bulk data storage
Logo / media uploads500 KB per filePNG, JPG, GIF, WEBP formats

4.3. Fair Use

Even within your plan limits, we reserve the right to throttle or restrict usage that:

  • places disproportionate load on the Platform infrastructure;
  • negatively impacts other Users' experience;
  • exceeds reasonable usage patterns for your plan tier.

5. MONITORING AND ENFORCEMENT

5.1. Monitoring

DeviDevs monitors Platform usage to enforce this AUP and protect the Platform's integrity. Monitoring includes:

  • (a) automated analysis of bounce rates, complaint rates, and spam trap hits;
  • (b) automated content scanning for prohibited material;
  • (c) review of sending patterns for anomalies;
  • (d) investigation of abuse reports from recipients or third parties.

5.2. Enforcement Actions

SeverityExamplesAction
LowSlightly elevated bounce rate; minor content issueWarning with 7 days to correct
MediumRepeated bounce rate violations; sending to stale lists; misleading contentSending throttled; 48 hours to correct
HighSending without consent; ignoring unsubscribes; complaint rate > 0.3%Account suspended pending investigation
CriticalSpam; phishing; malware; illegal content; data breachImmediate termination without prior notice

5.3. Investigation Process

When a potential violation is detected:

  1. DeviDevs will review the evidence and circumstances;
  2. The User will be notified (except in Critical cases where immediate action is required);
  3. The User may provide an explanation within the specified timeframe;
  4. DeviDevs will make a determination and communicate the outcome;
  5. Enforcement actions are applied proportionally to the severity.

5.4. Appeals

Users may appeal enforcement actions by contacting salut@clevmail.ro within 14 days of notification. Appeals will be reviewed by a different member of the DeviDevs team than the one who made the original determination.


6. REPORTING VIOLATIONS

6.1. Reporting by Recipients

If you have received an unwanted email sent through the Platform, please report it to:

6.2. Reporting by Users

If you become aware of another User violating this AUP, or if you discover a security vulnerability in the Platform, please report it to:

We encourage responsible disclosure and will not take action against Users who report vulnerabilities in good faith.


7. YOUR RESPONSIBILITIES

7.1. You are fully responsible for all activities conducted through your account, including activities by any person you authorise to use the Platform on your behalf.

7.2. You must implement and maintain reasonable security measures for your account, including:

  • (a) using strong, unique passwords;
  • (b) not sharing account credentials;
  • (c) promptly notifying DeviDevs of any suspected unauthorised access.

7.3. You must promptly comply with any request from DeviDevs to remedy a violation of this AUP.


8. CONSEQUENCES OF VIOLATION

8.1. Violation of this AUP may result in:

  • (a) temporary or permanent suspension of your account;
  • (b) removal of offending content or data;
  • (c) restriction of specific Platform features;
  • (d) termination of your Service Agreement without refund;
  • (e) reporting to relevant law enforcement or regulatory authorities.

8.2. DeviDevs shall not be liable to you or any third party for any actions taken in good faith to enforce this AUP, including suspension or termination of service.

8.3. You shall indemnify DeviDevs against any losses, damages, costs, or expenses arising from your violation of this AUP.


9. CHANGES TO THIS POLICY

DeviDevs may update this AUP from time to time. Material changes will be communicated to Users at least thirty (30) days before they take effect. Continued use of the Platform after the effective date of changes constitutes acceptance of the updated AUP.


10. CONTACT

For questions about this AUP, please contact:

  • Email: salut@clevmail.ro
  • Address: Aleea Textiliștilor 7, Bl. MY12, Sc. 2, Et. 8, Ap. 63, Sector 3, București

Document ID: AUP-v1.0.0 Classification: Public This document does NOT constitute legal advice and should be reviewed by a qualified legal professional before publication.