Acceptable Use Policy
Last updated August 1, 2026
This policy is part of our Terms of Service. It applies to everyone who uses the API, the dashboard, or the free tools. We wrote it in plain language on purpose: validation data is useful for stopping fraud and wasteful, and it is harmful when pointed at a person. The line between the two is the purpose you bring.
What the Service is for
Veriastra exists to answer a narrow question: is this phone number, email address, IP address, or domain real, reachable, and risky. Legitimate uses include signup and checkout fraud prevention, list hygiene before a campaign you are already permitted to send, lead qualification, KYB and sanctions screening, and data-quality work in your own records.
Prohibited uses
You may not use the Service, or any result from it, to:
Target or harm a person
- stalk, harass, threaten, dox, or intimidate anyone;
- locate a person who has taken steps to avoid being found, including survivors of domestic violence or abuse;
- conduct surveillance of individuals without a lawful basis, or on behalf of a government seeking to suppress dissent, journalists, or minority groups;
- build or enrich a public directory, people-search site, or any product whose purpose is exposing individuals;
- look up a person out of curiosity, including yourself-adjacent lookups of family, partners, ex-partners, or colleagues.
Regulated decisions
- determine eligibility for credit, insurance, employment, housing, or any other FCRA-covered purpose. Our data is not a consumer report and we are not a consumer reporting agency;
- make an automated decision with legal or similarly significant effect on a person without human review and a lawful basis.
Unwanted contact
- send spam, bulk unsolicited email, or SMS to people who have not consented;
- place calls or texts in violation of the TCPA, do-not-call registries, calling-time rules, or equivalent laws in your market;
- treat a "valid" or "mobile" result as permission to contact someone. It is a technical signal, nothing more;
- validate a purchased, scraped, or otherwise unconsented contact list in order to make it deliverable.
Attack, abuse, or resell
- probe, scan, overload, or bypass rate limits, credit metering, or the free-tier gate;
- share, sublicense, or resell API keys or raw results, or present the Service as your own, without a written agreement;
- reverse engineer the Service, or use it to build a competing dataset by systematic extraction;
- use the SMTP verification path to send mail, deliver content, or interfere with any mail server;
- submit malware, or use the Service as part of a credential-stuffing, account-takeover, or phishing operation.
Sanctions and export
- use the Service from a comprehensively sanctioned territory, or provide access to a restricted party;
- use sanctions screening results as a substitute for your own compliance program.
Volume, fairness, and the free tier
Free-tier requests are rate-limited per IP and are for evaluation and the public tools, not as a production API. Automating around those limits, rotating IPs, or creating multiple accounts to multiply free quota is a violation. On paid plans, credits are per-account: do not pool one account across unrelated end customers without a written arrangement.
If you handle other people's data
When you submit third-party personal data you are the controller and we are your processor. Before you submit, confirm you have a lawful basis, that your privacy notice covers validation by a service provider, and that you can honor a deletion request for that person. Our retention limits are documented in the Privacy Policy.
How we enforce this
We investigate reports and monitor for abuse patterns. Depending on severity we may warn you, rate-limit or suspend a key, terminate the account, refuse a refund of unused credits, and where the law requires it, report the conduct and preserve records for authorities. Identity-sensitive products log the permitted purpose you declared, and we may ask you to substantiate it.
Serious violations, particularly stalking, harassment, or targeting a vulnerable person, result in immediate termination without notice or refund.
Report abuse
If you believe someone is misusing the Service, or you are a person whose data was looked up and you have a concern, contact [email protected]. We read every report. For privacy requests about your own data, see Privacy or email [email protected].