Percher — Acceptable Use Policy
Effective date: 18 April 2026 Last updated: 2 July 2026 Version: 2.0
THIS ACCEPTABLE USE POLICY (THE "AUP") FORMS AN INTEGRAL PART OF PERCHER'S TERMS OF SERVICE. BY USING THE SERVICE YOU UNDERTAKE TO COMPLY WITH THIS POLICY. VIOLATIONS OF THIS POLICY MAY LEAD TO TEMPORARY SUSPENSION OR PERMANENT TERMINATION OF YOUR ACCOUNT AND YOUR APPS.
*This document is drawn up in English, which is the authoritative version. A Swedish translation is available at percher.app/sv/aup. In the event of any discrepancy, the English version prevails; this does not limit rights you have under mandatory law.*
1. Definitions
In this Acceptable Use Policy, the following expressions have the meanings set out below:
- "the Service" — the websites percher.app and percher.run, the associated APIs, CLI tool, MCP server, dashboard and all features provided by Percher.
- "We", "us", "our" — Mattias Malmborg, a sole trader (enskild näringsidkare) domiciled at 42260 Hisings Backa, Sweden, who operates Percher (the "Operator").
- "You", "your", "the User" — every natural or legal person who registers with or uses the Service.
- "App" — a web application that you publish via the Service and that runs in an isolated Docker container on Percher's shared infrastructure.
- "the Platform" — the underlying infrastructure the Service runs on, including servers, container management, network configuration and the routing layer.
2. Operator and contact details
| Operator | Mattias Malmborg, sole trader (enskild näringsidkare) |
|---|
| Postal address | 42260 Hisings Backa, Sweden |
| Email (abuse) | abuse@percher.app |
| Website | https://percher.app |
3. Scope
This policy applies to all content you publish, all code you deploy and all activities you carry out via the Service — including Apps, configuration files, uploaded files, environment variables, network traffic and interactions with the Platform's APIs.
4. Prohibited content
You may NOT use the Service to publish, store, distribute or otherwise make available the following types of content:
4.1 Illegal content
Content that violates applicable Swedish, European or international law, including but not limited to:
- material that constitutes or promotes criminal offences,
- content that is illegal to possess, distribute or display in Sweden or in the country where the User or the end user is located.
4.2 Child sexual abuse material (CSAM)
Material that depicts, promotes or facilitates the sexual abuse of children, including AI-generated such depictions. Such content leads to immediate and permanent suspension without prior notice and a report to the competent law enforcement authority. No exceptions, no remediation period.
4.3 Phishing, malware and fraud
- Phishing — web pages, forms or services designed to deceive users into disclosing login credentials, payment information or other sensitive data.
- Malware — programs, scripts or files intended to damage, disrupt or gain unauthorised access to computers, networks or data.
- Credential harvesting — mechanisms intended to collect usernames, passwords or other authentication information by deceptive means.
- Scams — services, pages or apps intended to mislead, deceive or financially harm third parties.
- Impersonation — presenting yourself as another person, organisation or public authority with intent to mislead.
4.4 Spam, botnets and cryptocurrency mining
- Spam — distribution of unsolicited bulk messages or automated outreach via Apps.
- Botnets — operating networks of compromised systems or command-and-control (C2) infrastructure.
- Cryptocurrency mining — using the Platform's resources to mine cryptocurrency, regardless of currency or method.
4.5 Threats, harassment and hateful content
- Doxxing — publishing a third party's private personal information (address, phone number, workplace, etc.) without consent and with the intent to harm or intimidate.
- Threats and harassment — content that constitutes threats of violence, systematic harassment or calls for harm against specific individuals or groups.
- Violent extremism — material that promotes, supports or recruits for violent ideologies or terrorist organisations.
4.6 Copyright infringement
Content that infringes a third party's copyright, trademark rights or other intellectual property rights. If you receive an infringement notice, you must remove the material concerned immediately.
4.7 Personal data without a legal basis
Storing unencrypted personal data belonging to third parties without:
- having obtained a valid and documentable legal basis under the GDPR (e.g. consent),
- taking appropriate technical and organisational safeguards.
4.8 Uploaded icons and visual content
Images you upload as per-app icons (or other visual material displayed on the Platform's public surfaces) are subject to the same prohibitions as other content in this section, and in particular:
- Manual review: Every uploaded icon enters a review queue and becomes publicly visible only after one of us has approved it. We may reject without justification beyond the short reason shown in your dashboard.
- No infringement of third-party marks: Logos, trademarks or other distinctive signs belonging to persons or organisations you do not represent may not be used.
- No misleading imitation: You may not use an icon that makes your app look like another well-known service (e.g. a bank, public authority or major platform) in a way that risks misleading visitors.
- No pornography, graphic depictions of violence or hate symbols: Icons must be displayable on an ordinary landing page without harming or frightening visitors.
- No harmful or illegal visual material: Everything covered by 4.1–4.5 above also applies to uploaded images.
In the event of repeated rejections or attempts to circumvent the review, we may block your ability to upload images or suspend the account under Section 9.
4.9 Uploaded preview images (gallery preview)
The preview image shown in the public gallery on percher.app is subject to the same rules as icons in 4.8 above, and in particular:
- The image must show the app's actual interface or a reasonably representative view. Screenshots from unrelated services or products may not be used.
- If the app's front page is a login screen, it is still permitted to upload a screenshot from a logged-in state, provided that the logged-in view does not expose third parties' personal data or other content prohibited by this section.
- Generic "coming soon"/"under construction" screens are not accepted as the preview for an active app in the gallery.
5. Prohibited activities
You may NOT use the Service to carry out, facilitate or plan the following activities:
5.1 Network attacks and attack infrastructure
- DDoS tools — operating tools, services or infrastructure designed to carry out or coordinate distributed denial-of-service attacks.
- Attack infrastructure — using the Platform as a launching point for network attacks, port scanning, intrusion attempts or other offensive activity directed at third-party systems.
- Proxy or VPN services — operating proxy, VPN or tunnelling services designed to circumvent network restrictions, conceal traffic sources or enable unauthorised access to third-party services.
5.2 Large-scale scraping and crawling
Systematic, automated retrieval of data (scraping/crawling) from third-party websites or APIs at scale, in particular where it:
- violates the terms of the scraped service,
- constitutes copyright infringement,
- results in undue load on third-party infrastructure, or
- is carried out without appropriate rate limiting.
Note: Apps on Percher have limited outbound internet access for legitimate purposes (e.g. API calls to external services). Percher reserves the right to block or restrict outbound traffic that is abused.
6. Resource usage
6.1 Circumventing resource limits
You may NOT attempt to circumvent, manipulate or undermine the resource and plan limits that apply to your account or your Apps, including but not limited to limits on:
- CPU time,
- working memory (RAM),
- number of processes (PID limit),
- disk space, and
- bandwidth.
6.2 Resource exhaustion
The following activities are expressly prohibited:
- Fork bombs — processes designed to multiply exponentially and exhaust the system process table or memory.
- Deliberate resource saturation — knowingly consuming CPU, memory, disk or other system resources beyond what is reasonably required for your App's normal operation.
- Deliberate crash-looping — Apps that deliberately and repeatedly crash in order to consume Platform resources, generate alerts or disrupt the operation of the infrastructure.
- Excessive file uploads — uploading files that substantially exceed what your App requires to function, in order to exploit storage space or circumvent storage limits.
6.3 Reasonable resource usage
We reserve the right to contact you if your App's resource usage deviates materially from normal usage patterns. We may ask you to optimise your App or upgrade to a plan that better matches your resource needs.
7. Platform integrity
7.1 Container escape
You may NOT attempt to break out of or circumvent your App's container isolation, including but not limited to:
- escalating privileges beyond those assigned to your container,
- mounting or accessing file systems outside your container's allocated storage area,
- communicating with the host operating system or its kernel in an unauthorised manner,
- exploiting vulnerabilities in the container engine or kernel to obtain unauthorised access.
7.2 Access to other Users' data
You may NOT attempt to access, read, modify or otherwise interact with other Users' Apps, data, containers, networks or accounts.
7.3 Exploiting vulnerabilities
You may NOT exploit security vulnerabilities in the Platform. If you discover a vulnerability, you must:
- report it immediately to abuse@percher.app,
- refrain from exploiting, documenting or disseminating the vulnerability beyond what is required for a responsible report,
- not disclose the vulnerability publicly before we have confirmed that it has been remedied.
We appreciate and encourage responsible disclosure. We will never take legal action against Users who report security vulnerabilities in good faith and without causing harm.
7.4 Reverse engineering
You may NOT reverse engineer, decompile, disassemble or otherwise analyse or map the Platform's underlying infrastructure, source code, security mechanisms, network configuration or routing layer — except to the extent expressly permitted by mandatory law (e.g. the EU Software Directive on decompilation of computer programs, 2009/24/EC Art. 6).
7.5 Automated account creation
You may NOT create multiple accounts by automated means, scripts or bots. Each natural person may hold at most one Account, unless expressly agreed otherwise with the Operator.
8. Monitoring and enforcement
8.1 Monitoring
We reserve the right to monitor use of the Service to the extent required to:
- enforce this AUP,
- protect the security and integrity of the Platform,
- comply with applicable law, and
- respond to legal demands from public authorities.
Monitoring takes place in accordance with our Privacy Policy and applicable data protection legislation.
9. Measures in the event of violations
9.1 Types of measures
We may take one or more of the following measures in the event of a violation of this AUP:
a) Warning and remediation period (minor violations)
- We notify you of the violation by email.
- You are given 14 days to remedy the violation.
- If the violation is remedied within the remediation period, no further measures are taken.
b) Temporary suspension (serious or repeated violations)
- We temporarily suspend the affected Apps and/or your Account.
- We notify you of the reason and give you the opportunity to respond.
- Access is restored once the violation has been remedied and confirmed.
c) Immediate and permanent suspension (very serious violations)
- We immediately suspend your Account and all Apps without prior warning.
- We delete the affected Apps and associated data.
- Immediate suspension is applied in the case of:
- child sexual abuse material (CSAM),
- phishing or active distribution of malware,
- ongoing or imminent network attacks,
- serious attempts to break container isolation or access other Users' data,
- content or activities that pose an immediate risk to persons, property or the integrity of the Platform,
- activities that require a report to law enforcement authorities.
9.2 Deletion of Apps and data
Upon permanent termination of your Account, we reserve the right to delete all Apps, associated data, configuration and uploaded material. You have no right to a refund for lost service time or data deleted as a result of a justified suspension or termination under this AUP — subject to the rights you have under mandatory consumer-protection legislation, e.g. the Swedish Distance Contracts Act (see Section 7 of the Terms of Service on the right of withdrawal). Nothing in this AUP contracts away mandatory consumer rights, and in the event of any conflict between this AUP and the consumer-protection clauses of the Terms of Service, the Terms of Service prevail.
9.3 Reporting to authorities
We reserve the right to — and are in some cases obliged to — report violations to the competent law enforcement authority, supervisory authority or other public authority. This applies in particular to suspected:
- child sexual abuse material,
- terrorism-related content,
- fraud or other criminal activity.
10. Appeals
10.1 Right to appeal
If you believe that a measure taken against your Account or your Apps is incorrect or disproportionate, you have the right to appeal the decision.
10.2 Procedure
Send your appeal to abuse@percher.app with:
- your username and the email address linked to your Account,
- a description of the measure you wish to appeal,
- an explanation of why you consider the measure incorrect, and
- any supporting material.
10.3 Processing time
We undertake to:
- confirm receipt of your appeal within 3 business days,
- communicate our decision within 14 days of receipt.
During the processing period the original measure remains in place, unless we consider there are grounds to lift it during the investigation.
11. Reporting abuse
11.1 Reporting address
If you observe content or activities on the Platform that you believe violate this AUP, please report it to:
Email: abuse@percher.app
11.2 Contents of a report (notice and action under DSA Art. 16)
For a report to be handled effectively and in accordance with the EU Digital Services Act (DSA, Regulation (EU) 2022/2065), please include:
- a sufficiently substantiated explanation of why you consider the content or activity to be illegal or in violation of this AUP,
- a clear identification of the exact location of the content — e.g. the full URL (
name.percher.run/path) or, for an App as a whole, the App name, - your name and your email address (required so that we can follow up; mandatory under DSA Art. 16.2.c, except for reports concerning material described in Articles 3–7 of Directive 2011/93/EU, where anonymous reports are accepted),
- a good-faith statement — an express confirmation that the information you provide is accurate and complete to the best of your knowledge (DSA Art. 16.2.d),
- the date and time (if known) when you observed the violation, and
- screenshots or other supporting evidence, if possible.
11.3 Handling of reports
We undertake to:
- confirm receipt of the report without undue delay and no later than within 3 business days (DSA Art. 16.4),
- investigate the report without undue delay, objectively and independently,
- take appropriate measures in accordance with Section 9, and
- notify you as the reporter of our decision and inform you of the options you have to appeal (DSA Art. 16.5).
11.4 Statement of reasons (DSA Art. 17) — notice to the affected User
If, following a report, our own discovery or an order from a public authority, we restrict, hide, remove or suspend an App or an Account, we undertake to — without undue delay — provide a clear and specific statement of reasons to the affected User via the email address linked to the Account. The notice will include:
- a description of the measure (e.g. "App suspended", "content removed", "Account terminated") and its geographical scope,
- whether the measure affects the visibility, availability or the underlying App,
- the facts and circumstances on which the decision was based, including whether the decision was based on a third-party report, our own discovery or an order from a public authority,
- the legal basis (the specific AUP clause, law or court order),
- information about how you can appeal the decision under Section 10 (internally), as well as about out-of-court dispute settlement bodies and the right to judicial review where available.
The notice is omitted only in the exceptional cases set out in DSA Art. 17.3 (e.g. where it would obstruct law enforcement or disclose confidential information). In such exceptional cases we document the reasons internally.
11.5 Good faith
Reports must be made in good faith. Repeated unfounded reports intended to harm another User may in themselves constitute a violation of this AUP and are handled in accordance with DSA Art. 23 (measures against manifestly unfounded notices).
12. Changes to this policy
12.1 Right to change
We reserve the right to update this AUP. Changes are notified as set out below.
12.2 Notice of changes
- Material changes (new categories of prohibited content, changed measures for violations): we will notify you by email at least 30 days before the change takes effect.
- Non-material changes (correction of typographical errors, clarifications): published on the website and effective immediately.
12.3 Continued use
By continuing to use the Service after a change to this AUP has taken effect, you confirm that you accept the updated policy.
13. Relationship to other agreements
This AUP supplements Percher's Terms of Service. In the event of any conflict between this AUP and the Terms of Service, the provision that provides the stronger protection for the Platform and its Users prevails, unless mandatory consumer legislation provides otherwise.
14. Contact information
| Abuse and AUP matters | abuse@percher.app |
|---|
| Website | https://percher.app |
*Last updated: 2 July 2026* *© 2026 Percher — percher.app*