Dual Login is committed to keeping our Services free from fraud and abuse. This policy explains how we prevent, detect and respond to misuse. It supports our Acceptable Use Policy and Terms of Service.
In plain English
A policy has to be precise, which makes it hard to read. Here is the same document answered as the questions people usually arrive with. It is a summary: where the two could be read differently, the numbered sections below govern.
What is this policy for?
It explains how we act on the Acceptable Use Policy: what we look at, what we do when something is wrong, and what protects you from being wrong-footed by a mistaken report. A rule that is never enforced protects nobody, and enforcement without a process is arbitrary — this covers the second half.
Are you watching what I browse?
No. Section 2 sets out what we actually look at, and it is the shape of platform usage rather than its content — signals such as an account behaving like automated bulk signup, or payment activity matching known fraud patterns. Your browsing sits in profiles on your machine. The isolation would be worthless if we were reading through it.
What can happen to my account?
Section 3 describes graduated actions rather than a single switch: a warning where a warning is proportionate, a limit on a specific capability, suspension, and termination for the serious cases. Most reports do not end in the last of those.
What if the report about me was wrong?
Section 4 is there for exactly that. You are told what the finding was, which means you can answer it, and a mistaken or malicious report is a thing we expect rather than a thing we are surprised by. Anonymous accusations do not close accounts on their own.
How do I report someone abusing the service?
Email abuse@duallogin.com with what you saw and anything that lets us verify it — section 5. A report we can check gets acted on. A report we cannot check is not ignored, but it starts a look rather than finishes one.
How do you tell abuse from ordinary heavy use?
Mostly by shape rather than volume. A large agency creating two hundred profiles across a week looks nothing like an account creating them in an hour against one platform with disposable payment instruments. Volume alone is not a signal -- if it were, the biggest legitimate customers would be the most suspected, which is exactly backwards.
Will I be told before something happens to my account?
Wherever it is safe and proportionate, yes, and the graduated actions in section 3 exist so that the first step is usually a conversation. The exception is active harm to other people -- payment fraud in progress, credentials being used that are not the user's -- where acting first and explaining immediately after is the only responsible order.
Can I appeal?
Yes, and section 4 is the reason the finding is shared with you in the first place: an appeal against something you have not been told is not an appeal. Bring the context that was missing. Mistaken reports and misread patterns both happen, and neither is embarrassing enough for us to defend a wrong call rather than reverse it.
Why publish this at all?
Because the alternative is enforcement nobody can predict. A user is entitled to know what the tool may not be used for, what is being looked at, and what happens if somebody points a finger. Publishing it also sets a standard we can be held to when we get a case wrong, which is the point of writing anything down.
Do you cooperate with law enforcement?
Where we are legally required to, yes, and we hold very little to hand over -- account details and billing records rather than browsing, because browsing sits in profiles on your machine that we cannot read. That is a consequence of the architecture rather than a policy we could change on request.
Does a suspended account lose its data?
Suspension stops access; it is not deletion. Profile directories on your own disk are unaffected in any case, and synced data is retained through the process so that a reversed decision is actually reversible. A policy that destroyed data at the moment of an unproven finding would make every mistake permanent.
Does a warning stay on my account forever?
No. The point of a graduated process is that the early steps are corrective rather than punitive, so a resolved matter does not sit as a permanent mark waiting to be counted against something unrelated years later. What does accumulate is a pattern -- repeated valid findings about the same behaviour, which is the situation the later steps exist for.
Who reviews these decisions?
People, not an automated rule alone. Signals start a review; they do not conclude one, which is the practical reason the process has stages at all.
1. Our commitment
We build tools for legitimate business and privacy work, and we actively discourage and act against illegal use. We cooperate with lawful requests from authorities and payment networks.
2. What we monitor
To protect the Services and our users, we monitor for signals of abuse such as payment fraud, mass automated sign-ups, and patterns consistent with prohibited activity. We screen payments for fraud through our processor. We do not routinely inspect the contents of your browser profiles.
3. Enforcement actions
Depending on severity, we may:
- •Issue a warning or request clarification.
- •Apply rate limits or restrict specific features.
- •Suspend an account pending review.
- •Terminate an account without refund for serious or repeated violations.
- •Preserve records and report suspected crime to authorities.
4. Fair process
We aim to be proportionate and to give notice where it is safe and practical. If you believe an action was taken in error, contact support@duallogin.com and we will review it.
5. Report abuse
To report suspected abuse of Dual Login, email abuse@duallogin.com. Please include details and any evidence so we can act quickly.