Back to Home

Acceptable Use Policy

Last updated: September 2026 • Zero Tolerance for Malicious Use

HoldQR is built to empower legitimate businesses, restaurants, creators, and professionals with permanent dynamic QR codes. To protect users and scanner safety, we enforce a strict policy against malicious, illegal, or deceptive activities.

1. Prohibited Destinations & Content

You may not configure dynamic QR codes to point to destinations that:

  • Distribute Malware or Harmful Code: Viruses, trojans, ransomware, spyware, keyloggers, or unauthorized file downloads.
  • Phishing & Social Engineering: Fake login screens, credential harvesters, or deceptive brand impersonation designed to steal personal or financial credentials.
  • Scams & Financial Fraud: Ponzi schemes, unauthorized investment solicitations, advance-fee fraud, or counterfeit goods.
  • Illegal & Regulated Goods: Illicit drugs, firearms, weapons, counterfeit prescription medications, or human trafficking materials.
  • Violent or Extremist Material: Promotion of violence, terrorism, hate speech, or harassment against individuals or protected groups.

2. Technical & Infrastructure Abuse

You may not:

  • Attempt to bypass dynamic QR creation quotas via race conditions, script attacks, or multiple burner accounts.
  • Point QR codes to internal, private IP addresses (SSRF targets like 127.0.0.1 or cloud metadata endpoints 169.254.169.254).
  • Launch denial-of-service (DoS) or distributed denial-of-service (DDoS) traffic against our redirection endpoints.

3. Enforcement & Account Termination

We actively monitor reported destination URLs and review community abuse submissions:

  • Any QR code confirmed to point to a malicious, phishing, or deceptive destination will be immediately paused (returning an HTTP 410 inactive page).
  • Severe or repeated violations will result in permanent account termination without notice and without refund.
  • We cooperate fully with law enforcement authorities in cases involving criminal conduct or consumer harm.

4. Reporting Abuse

If you encounter a QR code powered by HoldQR that violates this policy, please report it immediately:

Email: abuse@holdqr.com

Include the QR code URL (e.g., https://holdqr.com/q/slug) or destination link. Abuse reports are reviewed promptly by our team.