the fine print
Acceptable Use Policy
This Acceptable Use Policy (“AUP”) governs use of the websites, customer panel, game-server hosting, KVM virtual private servers, networks, IP addresses, storage, support systems, and other services provided by Floatpoint, LLC, doing business as gummies.cloud (“gummies.cloud,” “Floatpoint,” “we,” “us,” or “our”).
This AUP forms part of the gummies.cloud Terms of Service. Capitalized terms not defined here have the meanings given in the Terms of Service.
You are responsible for ensuring that your administrators, users, players, customers, applications, and anyone else using your Services comply with this AUP.
1. General Standard
You may not use the Services in a way that:
- Violates applicable law or regulation.
- Violates the rights of another person.
- Facilitates fraud, abuse, exploitation, or harmful activity.
- Damages or disrupts Floatpoint infrastructure.
- Interferes with another customer’s use of the Services.
- Exposes Floatpoint or its providers to unreasonable security, legal, financial, or reputational risk.
- Violates the rules of a data center, network carrier, payment processor, software provider, or other upstream provider used to deliver the Services.
- Attempts to evade a restriction, suspension, investigation, or enforcement action.
An activity may violate this AUP even if it is not expressly listed below.
2. Illegal Activity
You may not use the Services to engage in, promote, facilitate, or conceal illegal activity.
Prohibited activity includes:
- Fraud, scams, theft, or deceptive schemes.
- Identity theft or impersonation.
- Trafficking or exploitation.
- Unlawful sale or distribution of controlled substances, weapons, stolen property, or regulated goods.
- Money laundering or unlawful financial activity.
- Unlawful gambling or wagering.
- Terrorist activity or material support for prohibited organizations.
- Transactions or services prohibited by United States sanctions or export-control laws.
- Solicitation, planning, or coordination of criminal activity.
Floatpoint is not required to wait for a criminal conviction or final court decision before acting on credible evidence of illegal or seriously harmful activity.
3. Child Safety
The Services may not be used for:
- Child sexual abuse material.
- Material that sexually exploits or depicts the sexual abuse of a minor.
- Grooming, enticement, or solicitation of a minor for sexual activity.
- Child sex trafficking.
- Sexual extortion involving a minor.
- Instructions or communities intended to facilitate child sexual exploitation.
- Links, archives, directories, or search tools primarily intended to locate prohibited child-exploitation material.
This prohibition applies to real, computer-generated, altered, animated, or otherwise created material where its possession or distribution is unlawful.
Floatpoint may immediately suspend access, preserve relevant information, and report apparent child exploitation to the National Center for Missing & Exploited Children or appropriate law-enforcement authorities.
Do not send suspected child sexual abuse material to Floatpoint by email. Reports should identify the relevant server, domain, IP address, account, URL, or other location without attaching or reproducing the material.
4. Malware, Phishing, and Compromised Systems
You may not use the Services to create, host, distribute, operate, test against third parties, or facilitate:
- Viruses, worms, ransomware, spyware, information stealers, rootkits, or other malware.
- Phishing pages or credential-collection systems.
- Botnets or command-and-control infrastructure.
- Malicious browser extensions, scripts, packages, or software updates.
- Software intended to gain unauthorized access to systems or accounts.
- Payload hosting, malware staging, or malicious redirect services.
- Credential stuffing, password spraying, or account-takeover activity.
- Cryptojacking or unauthorized use of another person’s computing resources.
- Services intended to conceal or monetize malicious traffic.
A system that has been compromised may violate this AUP even if the customer did not intentionally cause the compromise.
You must promptly investigate and remediate compromised systems. Floatpoint may isolate, filter, suspend, shut down, or reinstall an affected system where necessary to protect infrastructure or others.
5. Network Attacks and Unauthorized Security Testing
You may not use the Services to perform or facilitate:
- Denial-of-service or distributed denial-of-service attacks.
- Packet floods or amplification attacks.
- IP-address, source-port, or network-identity spoofing.
- Unauthorized vulnerability scanning.
- Unauthorized port scanning.
- Exploit attempts against systems you do not own or have permission to test.
- Brute-force login attempts.
- Interception of network traffic without authorization.
- Unauthorized access to another system, account, network, or dataset.
- Operation of a booter, stresser, attack-for-hire, or similar service.
- Collection or sale of compromised credentials.
- Attempts to bypass rate limits, access controls, firewalls, or security systems.
Security research and penetration testing are permitted only against systems you own or where you have clear authorization from the system owner.
Testing against Floatpoint infrastructure, hypervisors, management systems, networks, personnel, or other customers requires prior written authorization from Floatpoint.
6. Spam and Messaging Abuse
You may not use the Services to send, host, facilitate, or support:
- Unsolicited bulk email.
- Commercial messages sent without legally required consent.
- Email-address harvesting.
- Purchased, scraped, or unlawfully obtained mailing lists.
- Snowshoe spam or distributed spam campaigns.
- Spam advertised through another provider.
- Open mail relays or unauthenticated bulk-mail systems.
- Deceptive sender identities, headers, domains, or reply addresses.
- Messages containing phishing, malware, fraud, or misleading claims.
- Repeated communications to recipients who have opted out.
- Messaging activity that causes Floatpoint IP addresses or networks to be blocklisted.
Running an ordinary transactional mail service may require prior approval. Floatpoint may restrict outbound SMTP traffic or require evidence of appropriate consent, authentication, unsubscribe handling, and abuse controls.
7. Proxies, VPNs, Relays, and Anonymization Services
Unless Floatpoint gives prior written authorization, you may not operate:
- A public proxy service.
- A commercial VPN service.
- A residential proxy network.
- A Tor exit node.
- An open DNS resolver.
- An open recursive proxy or relay.
- A traffic-forwarding service offered to unrelated third parties.
- Infrastructure intended primarily to conceal the source of abusive activity.
- A service that sells or provides access to Floatpoint IP addresses to third parties.
Private VPNs used only to access your own systems are generally permitted, provided they do not cause abuse complaints or threaten infrastructure.
Authorization may be revoked if the service generates excessive abuse, fraud, chargebacks, blocklisting, or network complaints.
8. Intellectual Property and Deceptive Content
You may not use the Services to:
- Infringe copyrights, trademarks, patents, trade secrets, or other intellectual-property rights.
- Distribute pirated games, software, media, license keys, or circumvention tools unlawfully.
- Operate a service primarily intended to locate or distribute infringing material.
- Sell or promote counterfeit goods.
- Impersonate a brand, company, organization, or individual.
- Use deceptive domains, pages, branding, or interfaces to mislead users.
- Remove or falsify copyright, attribution, or ownership information.
Game servers, mods, plugins, server software, maps, textures, and other content must be used in accordance with applicable licenses and platform rules.
Copyright and trademark complaints may be submitted to office@gummies.cloud and should identify the protected work, the allegedly infringing material, its location, and the complainant’s contact information.
9. Privacy, Harassment, and Personal Harm
You may not use the Services to:
- Unlawfully collect, buy, sell, publish, or disclose personal information.
- Dox, stalk, threaten, extort, intimidate, or harass another person.
- Publish nonpublic personal information with the intent or likely effect of causing harm.
- Distribute nonconsensual intimate imagery.
- Facilitate swatting or false emergency reports.
- Operate unlawful surveillance or tracking systems.
- Record communications where doing so violates applicable law.
- Obtain or distribute account credentials, financial information, government identifiers, or private communications without authorization.
Good-faith journalism, security reporting, public-record archiving, and discussion of matters of public concern are not prohibited merely because they contain personal information. Floatpoint may consider context, public interest, consent, and risk of harm when reviewing a complaint.
10. Game-Related Abuse
You may operate legitimate game servers, communities, bots, plugins, mods, and related tools, subject to applicable licenses and platform rules.
You may not use the Services to:
- Steal game accounts, authentication tokens, inventories, virtual items, or payment information.
- Distribute malware disguised as a game, mod, plugin, launcher, cheat, or update.
- Operate fraudulent stores, giveaways, trading services, or account-verification systems.
- Facilitate unauthorized access to another game server or platform account.
- Launch attacks against competing servers or communities.
- Manipulate votes, reviews, player counts, rankings, or traffic through deceptive means.
- Host services primarily designed to evade bans or facilitate widespread cheating where doing so causes legal, security, or upstream-provider risk.
- Use a game community to exploit, groom, or endanger minors.
- Misrepresent affiliation with a game publisher, platform, server network, or other organization.
Floatpoint does not ordinarily adjudicate routine player disputes, moderation disagreements, gameplay rules, or disagreements between server communities.
11. Resource and Infrastructure Abuse
You may not use resources in a way that threatens the stability, availability, or performance of the Services.
Prohibited activity includes:
- Deliberately exceeding or bypassing plan limits.
- Sustained resource usage that materially harms other customers.
- Circumventing CPU, memory, storage, bandwidth, or packet-per-second restrictions.
- Creating excessive disk input/output or network load.
- Running fork bombs or similar resource-exhaustion tools.
- Deliberately filling storage, logs, connection tables, or system queues.
- Using unauthorized nested virtualization.
- Spoofing hardware, licensing, or metering information.
- Attempting to access a hypervisor, host system, management network, or another customer’s environment.
- Interfering with monitoring, billing, security, or abuse-detection systems.
- Using assigned IP addresses in a way that causes persistent blocklisting or reputational damage.
Floatpoint may throttle, filter, isolate, migrate, reboot, suspend, or terminate workloads that threaten infrastructure.
12. Cryptocurrency and Computational Workloads
Cryptocurrency mining and similarly intensive computational workloads are prohibited unless Floatpoint provides prior written authorization.
This includes:
- Proof-of-work mining.
- Mining pools.
- Mining-proxy services.
- Cryptojacking.
- Workloads primarily intended to generate cryptocurrency through sustained resource consumption.
Ordinary blockchain nodes, wallets, or development environments may also be restricted where they create security, bandwidth, storage, legal, or abuse concerns.
Authorization may be subject to a specialized plan, resource limits, or additional fees.
13. Resale and Downstream Customers
You may not resell, sublicense, lease, or provide the Services to unrelated third parties without prior written authorization from Floatpoint.
Authorized resellers remain responsible for:
- The conduct of their downstream customers.
- Maintaining accurate customer and contact information.
- Providing enforceable terms and an acceptable use policy.
- Promptly responding to abuse reports.
- Suspending abusive downstream users when directed.
- Ensuring that downstream users do not falsely represent themselves as Floatpoint.
- Paying all fees and charges associated with the account.
Floatpoint may communicate directly with a downstream user where reasonably necessary to address an urgent abuse or security issue.
14. Regulated and High-Risk Uses
Unless expressly approved in a separate written agreement, you may not use the Services for workloads requiring Floatpoint to provide specialized legal, security, or regulatory compliance.
This includes systems requiring:
- HIPAA business-associate obligations.
- CJIS compliance.
- Government security classifications.
- Provider-inaccessible or zero-knowledge storage.
- Specialized financial-services licensing.
- Compliance certifications not expressly offered by Floatpoint.
- Guarantees that Floatpoint personnel cannot access hosted systems.
You must not falsely represent that Floatpoint or gummies.cloud is certified for a regulatory framework or has approved a regulated use.
15. Abuse Reports
Suspected violations may be reported to:
Security and technical abuse: security@floatpoint.net
Copyright, trademark, and general legal complaints: office@gummies.cloud
Privacy complaints: privacy@floatpoint.net
A useful report should include:
- The relevant IP address, hostname, domain, server, account, or URL.
- The date, time, and time zone of the activity.
- A description of the alleged violation.
- Relevant logs, headers, screenshots, or other evidence.
- The reporter’s contact information.
- Any steps already taken to contact the customer or service operator.
Do not submit passwords, private keys, unnecessary personal information, or unlawful material.
Knowingly submitting false, misleading, or abusive complaints is prohibited.
16. Investigation and Cooperation
Floatpoint may investigate suspected violations using information reasonably available to us, including:
- Network and system logs.
- Resource and traffic information.
- Account and billing records.
- Customer Content.
- Virtual-machine consoles, filesystems, memory, and processes.
- Reports from users, security researchers, providers, or authorities.
- Blocklists, threat-intelligence systems, and automated security alerts.
You must reasonably cooperate with an investigation, including by providing relevant information, securing affected accounts, removing prohibited content, or correcting vulnerable configurations.
Failure to respond within a stated deadline may result in suspension or termination.
Floatpoint is not obligated to disclose confidential security methods, third-party information, internal logs, the identity of a reporter, or information we are legally prohibited from disclosing.
17. Enforcement
Depending on the nature and severity of a violation, Floatpoint may:
- Issue a warning.
- Require remediation within a specified period.
- Block ports, protocols, destinations, or traffic.
- Remove routing or null-route an IP address.
- Disable a website, process, account, virtual machine, or game server.
- Quarantine or remove malicious files.
- Limit resources or network access.
- Suspend or terminate Services.
- Delete Customer Content.
- Refuse future service.
- Preserve information for an investigation or legal process.
- Notify affected parties, providers, payment processors, or authorities.
- Charge reasonable investigation, cleanup, or provider-imposed costs where permitted by the Terms of Service and applicable law.
We may act without advance notice when we reasonably believe immediate action is necessary to prevent harm, protect infrastructure, comply with law, or satisfy an upstream-provider requirement.
Repeated violations, attempts to conceal violations, failure to cooperate, or evasion of enforcement may result in immediate termination.
Suspension or termination for an AUP violation does not entitle you to a refund.
18. No Duty to Monitor
Floatpoint is not obligated to monitor all Customer Content or activity.
Our failure to detect, prevent, or act against one violation does not waive our right to act against that or another violation later.
Enforcement decisions may account for:
- Severity and likelihood of harm.
- Whether the conduct was intentional.
- Whether the system was compromised.
- The customer’s response and cooperation.
- Prior violations.
- Legal requirements.
- Impact on infrastructure and providers.
- Availability of a proportionate technical response.
19. Changes to This Policy
Floatpoint may update this AUP to address changes in the Services, threats, laws, provider requirements, or operational practices.
The revised AUP will be posted with a new “Last updated” date.
Where a change is material, we may provide additional notice through email, the customer panel, the website, or another reasonable method.
Continued use of the Services after the revised AUP takes effect constitutes acceptance of the revised AUP to the extent permitted by law.
20. Contact
Questions about this AUP may be sent to:
Floatpoint, LLC d/b/a gummies.cloud
General inquiries: office@gummies.cloud
Security and abuse reports: security@floatpoint.net
Privacy inquiries: privacy@floatpoint.net