Acceptable use policy
This policy exists for a specific reason: a monitoring service sends repeated, automated requests to whatever address it is given. Pointed at your own systems that is monitoring. Pointed at somebody else’s it is unsolicited traffic, and at a high enough frequency it is an attack — from our IP addresses, with our name on it.
So the rules are short and we enforce them.
You may only check what you are authorised to check
Every target you configure must be a system you own, operate, or have permission from the operator to test. Third-party services you legitimately depend on are fine to check at a normal interval — that is what a dependency monitor is for.
What we will suspend an account for
- Configuring checks against systems you have no relationship with, particularly at short intervals or across many endpoints — using this as a load generator, a scanner or a denial-of-service tool.
- Port scanning, credential stuffing, or probing for vulnerabilities.
- Using a webhook channel to relay traffic into a network you do not control, or to reach an address that is not publicly routable.
- Publishing content on a status page that is unlawful, that impersonates another company, or that is used to phish.
- Adding email addresses as status page subscribers or notification channels without the consent of the person they belong to. Subscription is double opt-in for this reason.
- Attempting to reach data belonging to another customer, or to circumvent plan limits.
- Reselling the service under another name without a written agreement with us.
Reasonable use of the platform
Plan limits are the limits — there is no separate hidden quota, and we do not throttle accounts for being busy within their plan. But automation that degrades the service for other customers, such as scripted creation and deletion of thousands of monitors, is not reasonable use whatever the limits say.
What we do about it
Where the situation allows, we contact the account owner and give them a chance to fix it. Where traffic is actively harming a third party, we stop the checks first and ask afterwards.
Accounts terminated for breach of this policy are not refunded. See the refund policy.
Reporting abuse
If traffic from our infrastructure is reaching a system you operate and you did not authorise it, email hello@vitrinaengine.com with the target hostname or IP and a timestamp. We can identify which account configured a given check and will stop it.
Last updated 31 August 2026.