Back to Home

Acceptable Use Policy

Last updated: August 2026

Ship your app to your testers. Put your privacy policy, support page, release notes or landing page online. Do not use BetaDrop to hurt people, break the law, or turn our domains into a hazard for everyone else who uses them.

1. What this policy covers

BetaDrop is operated by Immersive Mobile Designs Private Limited, a private limited company incorporated in India, of 203, Shree Kashi Parekh Complex, Near Swastik Cross Roads, Navarangpura, Ahmedabad - 380009, Gujarat, India. This Acceptable Use Policy explains what you may not upload, host, link to, or do with BetaDrop. It applies to everything you do on or through the service:

  • Beta build distribution — uploading an iOS .ipa or Android .apk (up to 500 MB) and sharing the over-the-air install link or QR code.
  • Static site hosting — uploading a .zip of a built site or a single index.html (up to 100 MB) that is then served publicly at {name}.betadrop.site.
  • Guest uploads — anonymous uploads made without an account, which expire after 24 hours.
  • Our website, API, CLI, MCP server, and any other way of reaching BetaDrop.

This policy sits on top of our Terms & Conditions and Privacy Policy. Where they cover the same ground, read them together; nothing here reduces the rights we already reserve in the Terms.

2. You are responsible for what you upload

You are responsible for every file you upload and every page you publish, including anything your build downloads or your site loads at runtime. That covers code written by someone else, code generated by a tool, and third-party SDKs or scripts you have bundled in.

We do not review or approve uploads before they go live, and we have no obligation to monitor. We may still scan, inspect or check files and hosted pages at any time — including with automated tools and third-party threat feeds — when we are looking into a report or protecting the service.

Install links and hosted sites are public to anyone who has the URL. Do not upload anything you are not allowed to distribute publicly.

3. Child sexual abuse material — zero tolerance

Child sexual abuse material (CSAM) and any sexual content involving minors — real, drawn, animated or AI-generated — is absolutely prohibited. There is no warning, no strike, and no appeal on the first offence.

If we find it or receive a credible report, we will:

  • remove or suspend the content immediately;
  • permanently terminate the account and, where we can, block the uploader from creating another one;
  • preserve the content, logs, IP addresses and account records as evidence rather than deleting them; and
  • report it to law enforcement and to the appropriate child-protection authority, including the National Center for Missing & Exploited Children (NCMEC) and India's National Cyber Crime Reporting Portal, as applicable law requires.

We will do this without notifying the account holder where notice is prohibited or would risk destruction of evidence. Reports of CSAM are prioritised above everything else in our queue — use the reason csam on the abuse report form, or email [email protected] with “CSAM” in the subject line.

4. Prohibited content and conduct

You may not upload, host, publish, link to, distribute, or use BetaDrop for any of the following.

Malware and malicious code

No viruses, worms, trojans, ransomware, spyware, stalkerware, keyloggers, rootkits, botnet clients, remote-access trojans or exploit kits. No builds whose real purpose is to compromise a device, exfiltrate data, or take control of a system without the owner’s informed consent. Not even as “research” — use an environment built for that.

Phishing and credential harvesting

No fake login pages, no cloned sign-in screens, no forms collecting passwords, OTPs, banking details, UPI IDs, card numbers, national ID numbers or wallet seed phrases under a false identity. No page that copies the look of a bank, a government service, a courier, an exchange or an app store to trick a visitor. This covers hosted sites and the screens inside a distributed build alike.

Impersonation

No pretending to be a person, company, brand or public body you are not authorised to represent. No using someone else’s logo, name, app icon, package name or branding to make an install page or hosted site look official. No fake “updates” to a real app.

Other illegal content

No content illegal under the laws that apply to you, to us, or to the people who will see it — including non-consensual intimate imagery, terrorist or violent-extremist material, incitement to violence, sale of weapons or controlled goods, human trafficking, fraud, forged documents, stolen credentials or card data, unlicensed gambling, and anything breaching sanctions or export-control law.

Intellectual property

No uploading or hosting apps, code, assets, fonts, media or text you do not have the right to distribute. No cracked, pirated, modded or re-signed builds of someone else’s app. No circumventing DRM or licence checks. We terminate repeat infringers.

Spam, doorway pages and SEO abuse

Hosting is for real sites — your privacy policy, support page, release notes, docs or landing page. It is not an SEO tool. No doorway pages, scraped or auto-generated filler, link farms, cloaking, redirect chains or bulk keyword subdomains. No using BetaDrop links in unsolicited bulk email, SMS or messaging campaigns.

File dumps, CDNs and hotlinking

Hosting is for websites, not storage. No personal file dumps, backup targets, general-purpose CDNs or asset origins hotlinked from another site or app. No distributing movies, TV, music or video libraries, ISOs, game ROMs, archives or installer binaries as the substance of a “site”. Distributing your own .ipa or .apk through build distribution is, of course, exactly what it is for.

Cryptocurrency mining

No mining scripts, no in-browser miners, no code that uses a visitor’s CPU or GPU without their clear consent, and no builds or sites that exist to mine, drain wallets, or run “airdrop” and “connect wallet” scams.

Proxies, VPNs and traffic relays

No open proxies, VPN endpoints, CORS proxies, URL shorteners, redirectors, Tor relays or exit nodes, or any service that launders third-party traffic through a betadrop.site or betadrop.app address.

Anything that gets our domains blocklisted

The whole service depends on betadrop.app and betadrop.site staying trusted by browsers, mobile OS vendors and security vendors. Anything likely to get our domains, subdomains, IPs or storage endpoints flagged by Google Safe Browsing, Microsoft SmartScreen, Apple, a carrier or an anti-virus vendor is a violation on its own — a single bad subdomain can break the service for every other developer using it.

Attacks on BetaDrop itself

No probing, scanning or attacking our systems beyond good-faith security research reported responsibly. No bypassing size limits, expiry, quotas, rate limits or account suspension — including by creating new accounts, cycling guest uploads, or automating uploads to work around a limit. No interfering with other users’ builds, links, sites or subdomains.

You must comply with the law of your own country as well as the laws of India. If something is legal where you are but illegal where we operate or where your visitors are, we may still remove it. Copyright complaints are handled under our Content Takedown & Grievance Policy.

5. Fair use: storage, bandwidth and rate limits

Free accounts run on real infrastructure, and that infrastructure costs money. Free use is subject to fair use.

  • Published limits — per-file size, account storage and link retention, currently 1 GB of storage, up to 24 hours for guest uploads, 30 days for registered build links, and 30 days for a free hosted site — are set out in the product and on our pricing page, and may change.
  • We may set, publish, lower, meter or enforce storage, bandwidth, request-rate and upload-frequency limits at any time, and we may throttle, pause or suspend serving for an account or a single site that consumes a disproportionate share of resources.
  • We will make a reasonable effort to warn you before throttling normal, good-faith usage. A popular privacy-policy page or a widely-shared build is not abuse, and we would rather talk to you than cut you off.
  • We will not wait to act where the cause is abuse under section 4, or where the load threatens the service for other users.

6. Enforcement

If you break this policy we may take any of the following steps, in any order, and combine them:

  1. 1WarningA notice by email with a chance to fix it.
  2. 2Content removalDeleting or disabling a specific build, install link, file or page.
  3. 3Site suspensionA hosted site is suspended and stops serving.
  4. 4Account suspensionThe account is suspended and its builds stop serving too. Install links, QR codes and hosted pages stop working.
  5. 5StrikeA strike is recorded against the account. Three strikes suspends it automatically, and deleting the offending content afterwards does not remove the strike.
  6. 6Permanent banTermination and a refusal to provide the service again. Reserved for severe or repeated violations.
  7. 7Rate limiting or blockingRestricting uploads from an account, IP address or network where abuse arrives through guest uploads or new accounts.

We may act immediately and without notice where the violation is severe or where waiting would cause harm — CSAM, active malware distribution, live phishing, a credible threat to a person, anything creating a legal risk to us, and anything likely to get our domains blocklisted.

About takedown timing. Suspension takes effect at our origin straight away. Copies already cached at CDN edges can survive for a short period until the cache entry expires. We may purge caches to shorten that window.

We may also decline to restore content, refuse service, or terminate an account under the discretion reserved in our Terms & Conditions. Suspension or termination for a violation does not entitle you to a refund, except where the law requires one — see our Refund Policy.

7. Appeals

If you think we got it wrong, email [email protected] from the address on the account. Include the build ID, install link or subdomain, and explain what you believe happened. We aim to look at appeals within 72 hours, and usually much sooner. Appeals are not available for CSAM (section 3). Our decision on an appeal is final, subject to any rights you have under applicable law.

8. Preservation and disclosure to law enforcement

We may preserve, and we may disclose, account information, uploaded files, hosted content, logs, IP addresses and other records where we believe in good faith that it is required by applicable law, a court order, a subpoena or a valid request from a law-enforcement or regulatory authority; necessary to comply with a mandatory reporting duty (CSAM in particular); necessary to detect, prevent or address fraud, security or technical issues; or necessary to protect the rights, property or safety of BetaDrop, our users, or the public.

Where an investigation is open we may retain data beyond the ordinary retention periods in our Privacy Policy, including after a build has expired or an account has been deleted. We may do this without notice to you where notice is prohibited by law or would defeat the purpose of the preservation.

9. How to report a violation

If you see something on BetaDrop that breaks this policy, tell us. Anyone can report — you do not need an account. Use the abuse report form or email [email protected]. Please include:

  • the exact URL, subdomain or install link;
  • a category — malware, phishing, csam, copyright, illegal, spam or other;
  • what is wrong, with enough detail for us to verify it — screenshots, headers, hashes or a sample all help; and
  • an email address, if you are willing to be contacted for follow-up.

Every report goes into a moderation queue and is reviewed by a human. CSAM, active malware and live phishing jump the queue. We may not be able to tell you the outcome of a report about someone else's content.

Do not abuse the report form. It is rate-limited, and filing knowingly false or automated reports to harass another developer or drown the queue is itself a violation of this policy.

10. Changes and contact

We may update this policy as the product changes, as new kinds of abuse appear, or as the law requires. We will update the “Last updated” date and give notice of material changes as described in our Terms & Conditions. Continuing to use BetaDrop after a change means you accept the updated policy.

Immersive Mobile Designs Private Limited

203, Shree Kashi Parekh Complex, Near Swastik Cross Roads, Navarangpura, Ahmedabad - 380009, Gujarat, India

[email protected]

iMobile Designs
Developed by iMobile Designs
Made with
in India