Document version 2026-09-09.2. English text is authoritative.
Public URL: https://novamx.eu/abuse-policy.html
Related: [Acceptable Use Policy](47-Acceptable-Use-Policy.md), [Notice-and-Take-Down procedure](71-Notice-and-Take-Down-Procedure.md)
This policy describes how NovaMX B.V. handles reports of abuse of its internet services. It supplements the Acceptable Use Policy (AUP). It aligns with the sectoral Gedragscode Abusebestrijding 2026 v2.1 (Clean Networks).
1. Purpose
1.1 This Abuse Policy provides a transparent procedure for reporting and handling abuse, tells users and third parties what to expect, and protects NovaMX systems, networks and customers against harmful or unlawful use.
1.2 NovaMX B.V. (Salland 1, 1948 RE Beverwijk, the Netherlands, KvK 42107118) has signed the Gedragscode Abusebestrijding. That signature is recorded at https://www.cleannetworks.net/deelnemers/novamx/. This page is how we make that code known to customers and reporters. It is not a certification claim.
2. Relation to the AUP and to notice-and-take-down
2.1 The AUP states what users may and may not do with NovaMX services. This Abuse Policy states how we handle complaints about misuse and which measures may follow.
2.2 Reports about allegedly unlawful or criminal content are handled under the [Notice-and-Take-Down procedure](https://novamx.eu/notice-and-take-down.html), which follows the Gedragscode Notice-and-Take-Down 2026 v2.0 and Article 16 of the Digital Services Act (DSA).
3. Types of reports
3.1 This policy covers:
operational abuse of infrastructure (spam, phishing, malware, botnet, brute force, DDoS, open relays, compromised accounts);
hosting or publication of allegedly unlawful content (for example defamation, copyright infringement, fraud);
criminal content (including CSAM and terrorist content);
reports from competent authorities (for example ATKM or a law-enforcement body) and from hotlines such as Offlimits.
3.2 We treat reports as:
NTD reports (content removal);
other abuse complaints (operational misuse);
authority orders (statutory powers; these sit outside the voluntary NTD code).
4. How to report
4.1 Send reports to abuse@novamx.eu. The same mailbox is also reached via security@novamx.eu.
4.2 A useful report includes:
name and contact details of the reporter;
a clear description of the problem;
technical identifiers: IP addresses, timestamps (timezone), domains, URLs, mail headers where relevant;
for NTD reports: why NovaMX is approached as an intermediary, and what steps were already taken towards the content provider;
a statement that the report is, to the best of the reporter's knowledge, accurate and complete.
4.3 A reporter who wants to remain anonymous towards the content provider should say so in the report. NovaMX will not share that identity with the content provider unless the law requires it.
4.4 The current version of this policy is always at https://novamx.eu/abuse-policy.html.
5. Handling
5.1 We accept automated and human-written reports in good faith. We assess each report.
5.2 For ordinary abuse complaints we aim to send a substantive reply within two working days. For NTD reports the acknowledgement and assessment clocks in the NTD procedure apply (acknowledgement within one working day).
5.3 Depending on the report we may warn the customer, require remediation, filter or rate-limit traffic, suspend or terminate services, remove or block content, or refer the matter to competent authorities where the law requires it.
5.4 Where abuse is causing or would cause serious harm to individuals if it continued, we take immediate measures to prevent or limit further harm.
5.5 Repeated, substantial or long-running AUP breaches lead to suspension, quarantine or termination of the contract.
6. Customer identification (not bank-style KYC)
6.1 NovaMX verifies that a new customer is identifiable before paid services are delivered. We require a working contact e-mail address that is verified at registration. For organisations we collect Chamber of Commerce and VAT details where applicable. Domain registrations are subject to the Cbw domain registration data verification policy.
6.2 NovaMX does not offer unpaid hosting or other paid infrastructure without a customer account and (when ordering is open) payment for the ordered service. A one-cent bank micro-transfer is therefore not used as an identity check.
6.3 NovaMX does not accept cryptocurrency as payment.
6.4 This identification is not a Wwft customer due diligence programme, UBO file, or passport collection as a default. Extra identity fields are collected only when a registry or the law requires them for that product.
7. Authorities and serious crime
7.1 Formal orders from competent authorities about illegal content are carried out, with feedback and information as required by law. Those orders are not voluntary NTD reports.
7.2 If we obtain information that gives rise to a suspicion of a criminal offence that threatens the life or safety of a person, we inform the competent law-enforcement or judicial authorities of the Member State concerned without undue delay and provide the relevant information we have. This follows Article 18 DSA.
8. Changes
8.1 NovaMX may update this policy. The published version on this URL is the current one.
9. Licence
9.1 This Abuse Policy is inspired by the policy of BIT B.V. and by the Clean Networks template, reused and adapted under Creative Commons Attribution-ShareAlike 4.0 International (CC BY-SA 4.0). Original BIT version: https://www.bit.nl/nl/over-bit/voorwaarden-en-policies/abuse-policy. This version is available for reuse under the same licence.
Public URL: https://novamx.eu/abuse-policy.html
Related: [Acceptable Use Policy](47-Acceptable-Use-Policy.md), [Notice-and-Take-Down procedure](71-Notice-and-Take-Down-Procedure.md)
This policy describes how NovaMX B.V. handles reports of abuse of its internet services. It supplements the Acceptable Use Policy (AUP). It aligns with the sectoral Gedragscode Abusebestrijding 2026 v2.1 (Clean Networks).
1. Doel
1.1 Dit misbruikbeleid biedt een transparante procedure voor het melden en behandelen van misbruik, maakt duidelijk wat melders en afnemers mogen verwachten, en beschermt systemen, netwerken en klanten van NovaMX tegen schadelijk of onrechtmatig gebruik.
1.2 NovaMX B.V. (Salland 1, 1948 RE Beverwijk, Nederland, KvK 42107118) heeft de Gedragscode Abusebestrijding ondertekend. Die ondertekening staat op https://www.cleannetworks.net/deelnemers/novamx/. Deze pagina maakt die code kenbaar voor klanten en melders. Dit is geen certificeringsclaim.
2. Verhouding tot de AUP en notice-and-take-down
2.1 De AUP beschrijft wat gebruikers wel en niet met NovaMX-diensten mogen doen. Dit misbruikbeleid beschrijft hoe we klachten over misbruik behandelen en welke maatregelen kunnen volgen.
2.2 Meldingen over vermeend onrechtmatige of strafbare inhoud lopen via de [notice-and-take-down-procedure](https://novamx.eu/notice-and-take-down.html), volgens de Gedragscode Notice-and-Take-Down 2026 v2.0 en artikel 16 van de Digital Services Act (DSA).
3. Soorten meldingen
3.1 Dit beleid geldt voor:
operationeel misbruik van infrastructuur (spam, phishing, malware, botnet, brute force, DDoS, open relays, gecompromitteerde accounts);
hosting of publicatie van vermeend onrechtmatige inhoud (bijvoorbeeld smaad, auteursrechtinbreuk, oplichting);
strafbare inhoud (waaronder CSAM en terroristische inhoud);
meldingen van bevoegde autoriteiten (bijvoorbeeld ATKM of een opsporingsdienst) en van meldpunten zoals Offlimits.
3.2 We onderscheiden:
NTD-meldingen (inhoud verwijderen);
overige abuseklachten (operationeel misbruik);
bevelen van autoriteiten (wettelijke bevoegdheden; die vallen buiten de vrijwillige NTD-gedragscode).
4. Hoe u meldt
4.1 Stuur meldingen naar abuse@novamx.eu. Dezelfde mailbox is ook bereikbaar via security@novamx.eu.
4.2 Een bruikbare melding bevat:
naam en contactgegevens van de melder;
een duidelijke beschrijving van het probleem;
technische kenmerken: IP-adressen, tijdstippen (tijdzone), domeinen, URL's, mailheaders waar relevant;
bij NTD-meldingen: waarom NovaMX als tussenpersoon wordt benaderd, en welke stappen al richting de inhoudsaanbieder zijn gezet;
een verklaring dat de melding naar beste weten juist en volledig is.
4.3 Een melder die anoniem wil blijven tegenover de inhoudsaanbieder vermeldt dat in de melding. NovaMX deelt die identiteit niet met de inhoudsaanbieder, tenzij de wet dat vereist.
4.4 De actuele versie van dit beleid staat altijd op https://novamx.eu/abuse-policy.html.
5. Behandeling
5.1 We accepteren geautomatiseerde en door personen opgestelde meldingen te goeder trouw. We beoordelen elke melding.
5.2 Voor gewone abuseklachten streven we naar een inhoudelijke reactie binnen twee werkdagen. Voor NTD-meldingen gelden de termijnen uit de NTD-procedure (ontvangstbevestiging binnen één werkdag).
5.3 Afhankelijk van de melding kunnen we de klant waarschuwen, herstel eisen, verkeer filteren of beperken, diensten schorsen of beëindigen, inhoud verwijderen of blokkeren, of de zaak doorzetten naar bevoegde autoriteiten waar de wet dat vereist.
5.4 Als misbruik bij voortduren ernstige schade aan personen veroorzaakt of zou veroorzaken, nemen we direct maatregelen om verdere schade te voorkomen of te beperken.
5.5 Bij langdurig, substantieel of herhaald overtreden van de AUP schorsen we de dienstverlening, plaatsen we diensten in quarantaine of beëindigen we het contract.
6. Klantidentificatie (geen bank-KYC)
6.1 NovaMX verifieert dat een nieuwe klant identificeerbaar is voordat betaalde diensten worden geleverd. We vragen een werkend contact-e-mailadres dat bij registratie wordt geverifieerd. Voor organisaties verzamelen we KvK- en btw-gegevens waar van toepassing. Domeinregistraties vallen onder het Cbw-beleid verificatie domeinnaamregistratiegegevens.
6.2 NovaMX biedt geen onbetaalde hosting of andere betaalde infrastructuur zonder klantaccount en (als bestellen openstaat) betaling voor de bestelde dienst. Een overboeking van één cent gebruiken we daarom niet als identiteitscheck.
6.3 NovaMX accepteert geen cryptovaluta als betaling.
6.4 Deze identificatie is geen Wwft-cliëntenonderzoek, UBO-dossier of standaard paspoortinzage. Extra identiteitsvelden vragen we alleen als een registry of de wet dat voor dat product eist.
7. Autoriteiten en ernstige misdrijven
7.1 Formele bevelen van bevoegde autoriteiten over illegale inhoud voeren we uit, met terugkoppeling en informatie zoals de wet vereist. Die bevelen zijn geen vrijwillige NTD-meldingen.
7.2 Als we informatie krijgen die aanleiding geeft tot het vermoeden van een strafbaar feit waarbij het leven of de veiligheid van een persoon wordt bedreigd, informeren we onverwijld de bevoegde rechtshandhavings- of gerechtelijke autoriteiten van de betrokken lidstaat en verstrekken we de relevante informatie die we hebben. Dit volgt uit artikel 18 DSA.
8. Wijzigingen
8.1 NovaMX mag dit beleid bijwerken. De gepubliceerde versie op deze URL is de actuele versie.
9. Licentie
9.1 Dit misbruikbeleid is geïnspireerd op het beleid van BIT B.V. en op het Clean Networks-template, hergebruikt en aangepast onder Creative Commons Naamsvermelding-GelijkDelen 4.0 Internationaal (CC BY-SA 4.0). Originele BIT-versie: https://www.bit.nl/nl/over-bit/voorwaarden-en-policies/abuse-policy. Deze versie is onder dezelfde licentie herbruikbaar.