At a glance
- Use only authorized mailboxes and service-approved destinations.
- Do not use warm-up to support fraud, abuse, or provider evasion.
- Report security concerns without sending credentials.
A short guide to this document—not a replacement for the sections below.
This document is a working draft, not a final effective policy. The publication checklist at the end identifies what still needs confirmation.
On this page
01Use the service for authorized warm-up
MailboxWarm is for controlled warm-up of business mailboxes you own or are authorized to administer. The service schedules exchanges with MailboxWarm-operated seed inboxes. You may not turn it into a campaign sender, open relay, contact-harvesting service, or a way to deliver messages to arbitrary recipients.
If you administer mailboxes for clients, obtain their permission, keep their connection information secure, and follow their instructions. Adding a mailbox does not establish a separate client account.
02Prohibited content and purposes
- Phishing, credential theft, malware, scams, impersonation, or fraudulent offers.
- Harassment, threats, exploitation, or unlawful discriminatory targeting.
- Infringing, unlawfully obtained, or confidential information you do not have permission to use.
- Using warm-up to facilitate unlawful unsolicited email, evade opt-outs, or conceal the origin of abusive campaigns sent through another service.
- Providing payment-card data, government identifiers, sensitive health information, or other unnecessary sensitive data in warm-up content or support messages.
03Respect email-provider rules
Follow the terms and restrictions of every connected provider. Availability of an integration guide does not mean a provider endorses MailboxWarm or permits every kind of automated activity. You are responsible for checking that your account and intended use permit it.
Do not bypass suspensions, throttling, consent requirements, anti-abuse controls, or account restrictions. Do not rotate identities or connect replacement accounts to continue prohibited activity. Keep warm-up volumes appropriate and investigate connection or abuse warnings before continuing.
04Protect the seed network
- Do not export, scrape, sell, or repurpose seed addresses as leads or prospect lists.
- Do not contact seed inboxes outside authorized service activity or enroll them in newsletters or third-party services.
- Do not share, resell, or attempt to obtain credentials for seed accounts.
- Do not manipulate placement records, reply activity, or reports to misrepresent automated warm-up as human customer engagement.
05Protect accounts and the platform
- Do not access another customer’s data, impersonate another account owner, or use stolen credentials.
- Do not circumvent mailbox allowances, billing reviews, rate limits, payment controls, or disabled service capabilities.
- Do not probe, overload, disrupt, or exploit the platform or its providers. Obtain written authorization before conducting intrusive security testing.
- Do not create multiple accounts to abuse trial eligibility or avoid a restriction.
06How concerns are handled
Mailbox Warm may review service activity and relevant operational records to investigate suspected misuse. Where reasonably necessary, we may pause warming, restrict a connection, suspend access, or close an account to protect the service, comply with law, or enforce the final agreement.
When practical and safe, we will describe the issue and the steps needed to resolve it. Immediate threats may require action first. You may contact us with relevant context or to request a review of a restriction. Billing, refunds, and retained data are handled under the Terms of service, Privacy policy, and applicable law—not an automatic forfeiture rule in this policy.
07Report abuse or a security concern
Email contact@mailboxwarm.com with the relevant mailbox or account reference, approximate time, message identifier if available, and a short description. Share only what is necessary for investigation. Do not send passwords, access tokens, full payment details, or unrelated mailbox contents.
If you suspect a credential has been exposed, revoke it with the email provider and secure the associated account. Do not continue exploiting a vulnerability or access other people’s information to demonstrate it. This policy does not establish a bug bounty or promise permission for security testing.
Publication review
Before publication: confirm enforcement and appeal procedures, abuse-response ownership, and consistency with the final Terms of service. This policy is a review draft until the legal set is approved.