Acceptable Use Policy
The rules for what may be sent through OmniMessage and how the service may be used. It forms part of the Terms of Service.
OmniMessage is a GridStudio product.
Last updated: 5 October 2026
1.Scope
This policy applies to everyone who uses the OmniMessage API, console and webhooks, and to every message sent through an account, including messages you send on behalf of your own clients. You are responsible for making sure that the people and systems using your account follow it.
Capitalised terms have the meaning given in the Terms of Service.
2.Consent and unsolicited messages
You must not send spam. In particular:
- message only recipients who have given the consent or opt-in that the law and the Channel Provider require for that kind of message, and keep a record of it;
- do not send to purchased, rented, scraped or otherwise harvested contact lists;
- tell recipients how to opt out, and stop messaging a recipient who has opted out, without delay;
- identify the sender clearly and do not disguise the origin or purpose of a message;
- do not send bulk messages at a volume, frequency or time of day that recipients would not reasonably expect.
3.Prohibited content
You must not send, or use the service to promote or facilitate:
- anything unlawful, or the sale of goods or services that are illegal where the message is sent or received;
- fraud, phishing, pretexting, impersonation or other deception, including messages designed to obtain credentials, payment details or one-time passcodes;
- malware, links to it, or anything intended to compromise a device or an account;
- threats, harassment, incitement to violence, or content that promotes hatred of people because of who they are;
- sexual exploitation, or any sexual content involving minors;
- content that infringes intellectual property, privacy or other rights of other people;
- regulated goods or services, such as gambling, financial products, medicines, alcohol or tobacco, without the licences and the consents required and where the Channel Provider does not allow them.
4.Channel provider policies
Each Channel has rules of its own, and you must follow the rules of every Channel you use. They include:
- for WhatsApp: the WhatsApp Business Messaging Policy, the WhatsApp Business terms and Meta’s commerce policies, including the rules on opt-in, on template messages and on the 24-hour customer service window;
- for Messenger and Instagram: Meta’s platform terms and messaging policies;
- for Telegram: the Telegram terms of service and the rules for bots;
- for TikTok: the TikTok terms and policies for business messaging;
- for SMS: the terms of your SMS provider and the rules of the mobile carriers and of the telecommunications regulators in the countries you send to, including sender registration where it is required.
The SMS OTP channel type is intended for one-time passcodes and verification codes. Do not use it for marketing or for other content.
If a Channel Provider restricts, suspends or bans your Channel, that is a matter between you and the provider. We may suspend the Channel on our side while the restriction lasts.
5.Security and fair use of the service
You must not:
- access or try to access accounts, data or systems that are not yours, or probe, scan or test the vulnerability of the service without our written permission;
- circumvent rate limits, quotas, billing or other technical controls, or create accounts to avoid suspension or to obtain promotional credits repeatedly;
- interfere with the service or place an unreasonable load on it, for example by ignoring the retry guidance in error responses;
- publish API keys or share them with people outside your organisation, or embed live keys in software that you distribute;
- point webhooks at systems you do not control;
- use test mode for anything other than building and testing an integration.
If you discover a vulnerability, report it privately to support@omnimessage.co and give us reasonable time to fix it before you disclose it.
6.High-risk use
Do not use the service as the only means of delivering emergency alerts or other messages on which life, health or safety depends. Delivery over third-party networks cannot be guaranteed.
7.Monitoring and enforcement
We do not review messages as a matter of routine, but we may investigate when we receive a complaint, when a Channel Provider or an authority contacts us, or when our systems indicate abuse.
If we believe this policy has been breached, we may ask you for information, including proof of consent, limit or suspend sending, suspend a Channel, an API key or the Account, and, for a serious or repeated breach, close the Account as set out in the Terms of Service. We may report unlawful activity to the competent authorities and to the Channel Provider concerned.
Where we can, we tell you what the problem is and give you the opportunity to fix it. We act without notice where a delay would cause harm.
8.Reporting abuse
To report a message that appears to breach this policy, write to support@omnimessage.co with the sender, the date and time and, if you have it, the content of the message.
Questions about this document: support@omnimessage.co