Last updated 10 August 2026
To report something, email support@allocus.dev with the link and a short explanation of what's wrong with it. A person reads every report.
If someone is in immediate danger, contact the police first. Allocus can take content offline; it can't respond to an emergency.
Allocus rents servers to developers, who deploy their own applications to them. It does not review, select or monitor what they deploy — there is no feed, no recommendation system, and nothing is published by Allocus itself. In EU terms it is a hosting service, which is why the procedure below is built around acting on reports rather than policing content in advance.
That also means that when something on a customer's app is wrong, the customer is usually the faster and better route. Their app will normally say who runs it.
Email support@allocus.dev. To act quickly — and, for illegal content, to be treated as having proper notice — a report needs:
Reports missing these are still read, but may take longer or be closed for want of detail.
| Stage | Target |
|---|---|
| Report acknowledged | Within 2 working days |
| Assessed and decided | Within 5 working days of acknowledgement |
| Manifestly illegal or actively harmful content | Acted on immediately, ahead of the above |
| Reporter told the outcome | When the case is closed |
Decisions are made by a person, not automatically. Nothing here is decided by an algorithm.
The response is chosen to be the smallest one that ends the problem:
Some things are removed as soon as they're confirmed, and the customer is told afterwards rather than first:
Child sexual abuse material and credible threats to life are also reported to the police, as the law requires.
Everything else normally starts with a message to the customer and a deadline — usually 72 hours, shorter where the harm is greater. Meet it and the case closes. Miss it, and the app comes down.
You'll be told what was removed, the facts it was based on, which rule or law it breached, and that a person made the decision.
To challenge it, reply to that message within 30 days. A human being re-examines the case — someone gets a second look, not a rubber stamp — and you'll have an answer within 10 working days. If the original call was wrong, the content and the account are restored and it counts for nothing against you.
Data belonging to a removed app is kept for 90 days so that a successful challenge can actually restore something, and so it exists if the police ask for it. After that it is deleted.
Reporting is free and stays open, but it isn't a weapon. Repeatedly sending reports that are unfounded, or using the process to harass a competitor, will get the sender ignored.
Orders from a competent authority are complied with to the extent the law requires, and the affected customer is told unless the order or the law forbids it. Send them to support@allocus.dev; this is also the contact point for authorities and for customers on these matters.
Allocus holds far less than people expect: a GitHub username, a contact address, and billing references. It does not hold payment card details, and it does not routinely inspect what runs inside a customer's applications.
These are the ordinary steps, not a contract. Where a situation is serious, ambiguous, or simply doesn't fit, Henning Holgersen may act sooner, differently, or not at all — including acting on a strong suspicion before a report has been fully investigated. Where that happens, the affected customer is still told what was done and why, and the challenge route above still applies.