Trust & Safety
1. Our position
TDS.SO is infrastructure for routing and measuring advertising traffic. Like any infrastructure, it can be misused — and we have zero tolerance for that misuse. We do not hide behind generic language about "illegal activity": the abuse we act on, by name, is malware and ransomware distribution, phishing and credential harvesting, fraudulent investment and crypto schemes, fake storefronts and payment fraud, impersonation of brands, media outlets or public authorities, and content that sexualises minors.
Accounts used for any of the above are terminated. We would rather lose the revenue than host the traffic.
This page describes our posture and our process. The binding rules are set out in the Acceptable Use Policy in Section 5 of our Terms of Service, and the enforcement and reporting commitments in Section 7 — this page summarises them and makes them easier to find.
2. What the product is for
Traffic distribution is a mainstream advertising technology. Our customers use it to:
- Defend ad spend against bots — filter automated traffic, scrapers and click fraud so budget reaches real people.
- Split-test offers, creatives and landing pages, and measure which combination performs.
- Route by geography and device so visitors reach a page in their language, currency and regulatory context — a compliance requirement in many verticals.
- Attribute conversions end-to-end across sources, with postbacks and click-level analytics.
- Serve a safe default page to traffic that falls outside the campaign's intended audience, rather than showing an irrelevant offer.
Using routing to show advertising reviewers content that differs from what real users of the same campaign receive, in order to obtain approval for an advertisement that would otherwise be rejected, is not a legitimate use and is prohibited under our AUP.
3. Prohibited activity
The full, binding list is in Terms Section 5. In summary, you may not use TDS.SO to deliver, route, host or link to:
3.1 Prohibited content
- Malware, ransomware, spyware, keyloggers, drive-by downloads and cryptojacking.
- Phishing, credential harvesting, and impersonation of financial institutions, government agencies, payment processors, media outlets or any other party.
- Fraudulent e-commerce, fake storefronts, deceptive billing, and scam funnels including fake-shop, courier, romance and tech-support fraud.
- Fraudulent investment, "crypto doubling", and automated-trading schemes.
- Child sexual abuse material and any content sexualising minors.
- Terrorism, mass violence, human trafficking, illegal weapons and hate speech as defined by applicable law.
- Controlled substances, prescription drugs without prescription, and pharmaceuticals unapproved in the destination jurisdiction.
- Unlicensed gambling, lotteries or financial services where restricted.
- Counterfeit goods, software piracy, unlicensed streaming and other IP infringement.
- Doxxing, harassment, threats and non-consensual intimate imagery.
3.2 Prohibited techniques
- Routing designed to deceive advertising-platform review about the nature of the destination content.
- Impersonating legitimate brands, media outlets or news sites.
- Forced redirects, clickjacking and malvertising payloads.
- Bot-driven inflation of ad metrics, and click fraud against third-party networks.
- Evading security-vendor or law-enforcement inspection.
- Using the Service as an open redirector or anonymisation proxy for traffic unrelated to bona fide marketing.
4. Reporting abuse
If you believe content routed through TDS.SO is illegal, fraudulent, infringing or otherwise violates our AUP, email abuse@tds.so. Please include:
- The full URL(s) or domain(s) involved.
- A description of the violation and any supporting evidence (screenshots, headers, samples).
- Your contact details, and — for intellectual-property claims — proof of authority to act for the rights holder.
Our commitment: we acknowledge legitimate reports within 2 business days and act within 5 business days. For clear and serious violations — child sexual abuse material, active phishing campaigns, malware distribution, threats to life — we act immediately upon verification, without waiting for that window.
We review every substantiated report. We do not require a court order to act on a violation of our own AUP.
5. How we enforce
Depending on severity, history and intent, we apply one or more of:
- Warning with a required remediation window.
- Feature restriction — disabling specific capabilities on the account.
- Removal or disabling of specific URLs, domains or campaigns.
- Suspension pending investigation.
- Termination of the account, without refund, under Terms Sections 5 and 14.
- Permanent ban, enforced technically across email addresses, payment methods and infrastructure, where the abuse was deliberate or repeated.
Serious categories — CSAM, malware, phishing — go straight to termination on first verified instance. There is no warning ladder for those.
We preserve relevant logs and account data where needed for investigation, dispute resolution or legal process.
6. Security researchers
We actively welcome reports from security researchers and threat-intelligence teams. If you have identified abuse infrastructure, a vulnerability, or a pattern of misuse involving TDS.SO, contact security@tds.so — machine-readable contacts are published at /.well-known/security.txt.
Safe harbour. We will not pursue legal action against researchers who act in good faith: who avoid privacy violations, service degradation and destruction of data, who give us reasonable opportunity to remediate before publishing, and who do not exploit findings beyond what is necessary to demonstrate them. We will not ask you to delay publication indefinitely.
We do not run a paid bug-bounty programme. For a valid, previously unreported finding we may, at our discretion, offer an extended subscription or a plan upgrade as thanks, and credit you publicly if you want that. We would rather hear about a problem from you than read about it later.
7. Law enforcement and legal process
Law-enforcement and regulatory requests should be sent to legal@tds.so from an official address, identifying the requesting authority, the legal basis and the specific data sought.
We respond to valid legal process under applicable Georgian law and, where relevant, the law of the requesting jurisdiction. We disclose only what the request lawfully covers. Where we are legally permitted to notify the affected customer, we do so.
8. Contact
TDS GLOBAL
Individual entrepreneur
Georgia, Batumi, Airport Highway Street, N 186, Apartment N33
Reg. No.: 345849610
Abuse / IP / takedown: abuse@tds.so
Security / vulnerability disclosure: security@tds.so
Legal process: legal@tds.so