Legal
Acceptable Use Policy
Last updated: July 2026
MultiProfile isolates browser identities. That is useful, and it is also open to misuse. This policy draws the line, and we enforce it. It forms part of the Terms of Use, and breaking it ends your licence.
web/src/lib/legal-config.ts and delete the RELEASE-BLOCKER line.1. What MultiProfile is
MultiProfile runs multiple browser profiles side by side on one Windows machine, each with its own data directory, proxy and fingerprint. It exists so that separate identities stay separate — the same reason browsers ship profiles and private windows, applied properly.
MultiProfile does not break authentication, defeat encryption, exploit vulnerabilities, bypass paywalls or DRM, solve CAPTCHAs, or grant access to anything you could not otherwise reach with an ordinary browser. It gives you no access you do not already have. It changes how separate your sessions are, not what you are allowed into.
2. What it is for
These are the uses we build for and support:
- Managing accounts you own, or that a client has authorised you to manage on their behalf — social, marketing, marketplace and advertiser accounts.
- Agency and freelance work where each client must stay walled off from the next, and a leaked cookie between two clients is a real incident.
- Quality assurance and testing — reproducing a bug as a specific device, locale or region; checking a signup flow from a clean state.
- Ad verification and affiliate compliance — confirming what creatives actually render in a given geography, and detecting fraud committed against you.
- Privacy and security research, including studying tracking and fingerprinting.
- Separating your own identities — keeping professional and personal browsing from being correlated.
3. What it is not for
You must not use MultiProfile to do any of the following. This list is not exhaustive, and “the profile is isolated so nobody will know” is not a defence.
Unauthorised access
- Accessing any account, system or data you are not authorised to access.
- Credential stuffing, password spraying, brute forcing, session hijacking or account takeover — including against accounts whose credentials you happen to possess.
- Exploiting vulnerabilities, or circumventing security or authentication controls.
Fraud and deception
- Payment fraud, carding, testing stolen card numbers, or money laundering.
- Creating accounts under false identities to defraud, or impersonating a real person or organisation.
- Abusing signup bonuses, referral schemes, free trials, vouchers or promotional offers beyond what the offer permits.
- Click fraud, impression fraud, or any manipulation of advertising metrics.
- Astroturfing — fake reviews, fake engagement, coordinated inauthentic behaviour, vote or poll manipulation, or ticket and stock scalping in breach of applicable law.
Harm to others
- Distributing malware, ransomware, phishing pages or spam.
- Harassment, stalking, doxxing, or evading a block placed by another person.
- Child sexual abuse material, terrorist content, or trade in illegal goods, weapons or drugs.
- Infringing copyright, trademarks, trade secrets or personal data rights.
- Collecting personal data in breach of the GDPR or equivalent law — scraping something publicly reachable does not make processing it lawful.
Evasion of enforcement and sanctions
- Evading a suspension, ban or legal order imposed on you for abusive or unlawful conduct. Coming back under a fresh identity after being removed for cause is prohibited, whatever the technical means.
- Breaching EU, French, UK, US or UN sanctions, or export control rules, including using the software from an embargoed territory.
4. Third-party terms are your responsibility
Websites and platforms set their own rules, and some restrict or forbid multiple accounts. Those rules are a contract between you and them — not between you and us, and not something we can waive on your behalf. Before you run several profiles against a service, it is on you to check what that service allows. Breaching those rules can cost you your accounts, your balances and your standing with that platform, and we cannot recover any of it for you.
We do not promise that any profile will go undetected, and we do not sell ban avoidance. Any claim that a tool guarantees either is a claim you should distrust, including if you ever think you read it from us.
5. Enforcement
We investigate credible reports of abuse. Where we conclude this policy has been broken, we may suspend or terminate your licence and your account, with no refund for the remaining period, and we may decline to serve you again. Serious cases are reported to the competent authorities, and we comply with lawful requests for information addressed to us.
We enforce this policy on our own service. Note what we cannot do: MultiProfile runs on your machine and stores its data there, so we do not see your profiles, your proxies, your cookies or the sites you visit. We act on what is reported to us and on our own billing and licensing records — not on surveillance of your usage. That is a deliberate design choice, and it does not make the conduct above acceptable.
6. Reporting abuse
If you believe MultiProfile is being used against you or against the rules above, write to hello@multiprofile.app with the evidence you have. Reports from platforms, victims and researchers are all welcome, and we answer them.
7. Changes
We may update this policy as misuse patterns change. Material changes are announced in the app or by email before they take effect.