← All legal documents

Platform rules

What you can and cannot build, host and publish with Getyn. These rules apply to every project, preview and published site.

Last updated 19 July 2026

This is a working draft published for transparency. It has not yet completed legal review, so it should not be relied on as final contractual terms. Questions: legal@getyn.com.

Getyn lets anyone describe an application and publish it to the web in minutes. That speed is only worth having if the things people ship are safe to visit. These rules set out what is not allowed on the platform.

They apply to everything you create with Getyn: the prompts you write, the code that is generated, the data you store in a provisioned backend, and anything you publish to a getyn.dev address or a custom domain you connect.

If you are not sure whether something is allowed, ask us first at legal@getyn.com. We would rather answer a question than take a site down.

1Deception and fraud

You may not use Getyn to deceive people about who you are or who you represent. This is the category we act on fastest, because published sites are trivially shareable and the harm compounds.

  • Phishing pages, fake login screens, or any site designed to capture credentials, card numbers or one-time codes under false pretences
  • Impersonating a real person, business, government body or public institution, including copying their branding, name or domain style
  • Fake stores, fake charities, fake investment schemes, or any site that collects payment for goods or services that do not exist
  • Fabricated reviews, testimonials, endorsements or press coverage presented as genuine
  • Counterfeit documents, forged records, or tools intended to produce them

2Malware and technical abuse

Getyn runs real code and provisions real infrastructure. Using either to attack other systems — or ours — is prohibited.

  • Distributing malware, ransomware, spyware, keyloggers or any code intended to damage or gain unauthorised access to a system
  • Command-and-control infrastructure, botnet coordination, or exfiltration endpoints
  • Denial-of-service tooling, credential stuffing, or automated attacks against systems you do not own or have written permission to test
  • Cryptocurrency mining, or any workload run primarily to consume compute rather than serve an application
  • Deliberately circumventing platform limits, credit accounting, quotas or access controls

3Harmful and illegal content

Some content is prohibited regardless of how it is framed, including as fiction, satire, research or art.

  • Child sexual abuse material. We report this to the relevant authorities and permanently ban the account, with no exceptions and no appeal
  • Content that sexualises minors in any form, including generated or stylised depictions
  • Non-consensual intimate imagery, or tools for producing it
  • Material that incites, praises or provides operational support for terrorism or mass violence
  • Instructions for producing weapons, explosives, or biological, chemical, radiological or nuclear agents
  • Content promoting self-harm, suicide, or disordered eating
  • Harassment campaigns, targeted abuse, doxxing, or the publication of another person's private information without consent
  • Content that unlawfully discriminates against or dehumanises people on the basis of a protected characteristic

4Regulated activity

Some activities are legal but heavily regulated. You may build in these areas only if you actually hold the licences and permissions required in every jurisdiction you serve, and your site makes the required disclosures.

  • Gambling, betting, lotteries and games of chance played for money
  • Sale of prescription medicines, controlled substances, tobacco, vaping products, alcohol or firearms
  • Consumer lending, money transmission, securities dealing and investment advice
  • Adult content, which additionally requires robust age verification and must never be published on a getyn.dev subdomain

5Intellectual property

Do not publish material you do not have the right to use. That includes source code, images, fonts, video, audio, written content, trade marks and brand assets.

If you believe something published on Getyn infringes your copyright, our DMCA copyright policy explains how to submit a notice.

6Privacy and other people's data

If your project collects personal data, you are the controller of that data and you are responsible for handling it lawfully.

  • Publish a privacy notice that accurately describes what you collect and why
  • Obtain any consent your jurisdiction requires, including for non-essential cookies and tracking
  • Do not scrape personal data, or build tools whose main purpose is scraping personal data
  • Do not collect special-category data (health, biometric, religious or political data, and similar) without a lawful basis and appropriate safeguards
  • Do not use a provisioned backend to store data you have no right to hold

7How we enforce these rules

We investigate reports and act proportionately. Depending on severity and history, we may ask you to make changes, unpublish a site, suspend a project, restrict provisioning, or terminate an account.

Where we can, we tell you what happened and give you a chance to fix it. Where the harm is severe or ongoing — child sexual abuse material, active phishing, live malware distribution — we act immediately and without notice.

If you believe we have made a mistake, reply to the notice we send you and a person will review it.

8Reporting a problem

To report a site that breaks these rules, use our report abuse page or email abuse@getyn.com. Include the full URL and a short description of the problem. Reports about live phishing or malware are prioritised.