This Acceptable Use Policy (“AUP”) is issued by Patolink Investments Limited. It applies to Cloud EA virtual machines, the customer portal, bandwidth we provide, and systems we manage under a Patolink service — including networks, security stacks, voice platforms, and Microsoft tenants we administer.
If a use is unlawful in Kenya or in the place the traffic lands, it is forbidden here even if this page does not name it. The Terms of Service and the SLA sit with this policy. We may suspend first and discuss after when the platform or other customers are at risk.
01
Lawful use only
You may use the services only for lawful business and technical purposes. You must not use them to commit, aid, or conceal a crime, to breach another person’s rights, or to evade a court order or a regulator.
You are responsible for the people you allow onto an instance or a tenant, including contractors and end users.
02
Content you may not host
You may not store, publish, or transmit material that is illegal to host in Kenya, including but not limited to child sexual abuse material, content that incites violence, and content that infringes copyright or other intellectual property after a valid notice we are required to act on.
Phishing pages, credential-harvesting forms, counterfeit storefronts, and malware distribution are forbidden. So is content that is primarily intended to defraud.
03
Network and platform abuse
You may not attack, scan, or overload systems you do not own or are not authorised to test. That includes denial-of-service, open relays, traffic amplification, and unauthorised access attempts — against our platform or against anyone else, from our addresses.
You may not attempt to reach the host layer, other tenants’ instances, or management interfaces. Those stay on the backend. A penetration test of your own instance is allowed if it stays inside that instance and does not degrade neighbours; a test that leaves your instance needs written approval from the desk first.
04
Email, messaging, and spam
Bulk unsolicited email, SMS, or voice traffic from Cloud EA or from a Patolink-hosted PBX is forbidden. Transactional mail for your own users is allowed if you keep lists clean, honour unsubscribes, and do not hide the sender.
You may not operate an open proxy, an open resolver used to attack others, or a botnet command channel.
05
Security of the instance
You must not run an instance that is an obvious source of abuse because it is unpatched, open to the world on administrative ports without control, or already compromised, after we have told you and a reasonable window to remedy has passed.
If we detect that an instance is part of an attack, we may filter, rate-limit, or power it off to protect the platform and then notify the email on the account.
06
Resource use
Published plans have a defined vCPU, memory, and disk. You may use that capacity. You may not run a workload whose sole purpose is to interfere with other customers — noisy-neighbour attacks, disk-fill bombs aimed at a shared path, or sustained abuse of a burst that starves the node.
Cryptocurrency mining and similar proof-of-work loads are not permitted on published Cloud EA plans unless a Custom quotation expressly allows them. They concentrate heat and complaints; they are not what the matrix is for.
07
Voice, security, and Microsoft estates
On a 3CX, Yeastar, or other voice platform we host or manage, you may not use trunks for unlawful interception, unsolicited calling campaigns that break Kenyan or destination-country rules, or toll fraud. Keep extension credentials under your control.
On a security or Microsoft estate we administer, you may not ask us to disable logging, bypass a control, or hide an incident from people who have a right to know inside your organisation. We will not do that work.
08
Investigation and enforcement
We may investigate a suspected breach, preserve logs, and share what the law requires with a regulator or a law-enforcement body in Kenya. We may:
- check_circle Ask you to stop the activity and give a deadline.
- check_circle Filter traffic, disable an address, or suspend the instance or the portal login.
- check_circle Terminate the service under the Terms of Service.
- check_circle Refuse to reconnect an account that was used for abuse.
Fees already paid for a period we suspend for an AUP breach are not refunded. A credit under the SLA does not apply to a suspension we make under this policy.
09
Reporting abuse
If you believe a Cloud EA address or a Patolink-managed system is being used to attack you, write to info@patolink.com with the timestamps in East Africa Time, source and destination addresses, and a sample of the traffic or headers. We will acknowledge and act as the facts require.
Phone for an active incident: +254 709 343 000 / +254 722 616 999.
10
Changes
We may update this policy when the law or the platform requires it. The date at the top is the effective date. Continued use after that date is acceptance of the updated policy.
Office: Unit 1105, Applewood Adams, Ngong Road, Nairobi, Kenya. Desk hours: Monday–Saturday, 8.00 AM–5.00 PM East Africa Time.
Nairobi desk
Questions about these terms
Write to info@patolink.com or call +254 709 343 000. Unit 1105, Applewood Adams, Ngong Road. Monday–Saturday, 8.00 AM–5.00 PM.