On this page
Publiq is a platform that businesses use to send email and to run conversations on messaging channels. If a business used it to send you something you did not consent to, or something unlawful, we want to know.
Send reports to [ABUSE EMAIL]. That address is monitored on business days and is the fastest route to a human.
You do not need an account to report abuse, and you do not need to know who sent the message. Report it with whatever you have.
1. What to report here
- Unsolicited bulk email or messages — you never gave the sender permission to contact you.
- An unsubscribe link that does not work, or messages that continue after you unsubscribed.
- Phishing: a message that imitates a bank, a delivery company, a government body or any service in order to obtain your data.
- Malware, or links and attachments that install something.
- Fraud, scams, fake invoices and deceptive financial, health or credit offers.
- Hate speech, harassment, threats, or content that endangers a child.
- Impersonation of you, your business or your brand.
- Any other content that breaches our Acceptable Use Policy.
If your only goal is to have your personal data erased rather than to report a sender, the Data Deletion page is the faster route — though you can do both.
2. What to include
The more of this you can give us, the faster we can identify the sending account. Send what you have; a partial report is better than none.
- The channel: email, WhatsApp, Instagram, Messenger, Telegram, TikTok or website chat.
- The sender: the from address, the phone number, the page or the username the message came from.
- Your own address or username that received it.
- The date and approximate time of the message.
- A copy of the message — forwarded as an attachment where possible, or a screenshot for a messaging channel.
- For email, the full message headers. They identify the sending account precisely, and without them a report about a spoofed sender can be impossible to trace. Most mail clients expose them under "Show original", "View source" or "Show headers".
- Anything else that matters: whether you had ever heard of the sender, whether you tried to unsubscribe, and what happened.
Do not click a link or open an attachment in a message you believe is phishing or malware, and do not reply to it. Forward it to us instead.
3. What we do with your report
- We acknowledge the report within 2 business days, to the address you wrote from.
- We identify the account that sent the message, from the headers or the message identifiers.
- We investigate: what the account sent, to how many people, how the list was built, and what its complaint and bounce rates look like.
- We act under the Acceptable Use Policy. Depending on severity that means a warning with a deadline, a limit on sending, or suspension. A serious breach — phishing, malware, child sexual exploitation material, a clearly purchased list — is suspended immediately and without prior notice.
- Where the report is about the content of a customer's own message rather than a platform-level abuse, we forward it to that customer as the party responsible for the content, with a deadline to respond, and we follow up.
- We suppress your address for the sender concerned, so it cannot be messaged again by that account while the matter is open.
- We come back to you with the outcome within 15 days. Where an investigation takes longer, we tell you that within the same period.
We do not disclose the identity of a customer to a reporter, and we do not disclose the identity of a reporter to a customer, except where the law requires it or where you ask us to. Reporting in good faith never exposes you to action from us.
Content that endangers a child is reported to the competent authorities, not merely removed.
4. For mailbox providers, blocklist operators and platform teams
The same address, [ABUSE EMAIL], is our contact for operational abuse handling. We welcome feedback loop reports, spam-trap notifications, blocklist listings and trust-and-safety escalations, and we act on them as a priority.
- We maintain per-recipient suppression and apply complaint and bounce thresholds per organisation and per sending domain, as published in the Acceptable Use Policy.
- We monitor our sending domains against public blocklists and act on a listing.
- For an urgent matter — an active phishing campaign, malware in flight — mark the subject "URGENT" and we will treat it outside normal hours.
- Security vulnerabilities in the platform itself go to [SECURITY CONTACT EMAIL] instead.
5. If you just want the messages to stop
- For a marketing email: the unsubscribe link at the bottom takes effect immediately, and the address is added to a suppression list that prevents the sender contacting it again.
- For a messaging channel: replying to ask the sender to stop is honoured, and you can also block the sender in the platform's own app.
- To have your data erased rather than merely suppressed, follow the Data Deletion page.
- If none of that works, write to [ABUSE EMAIL] and we will apply the suppression ourselves.
6. Contact
Abuse reports: [ABUSE EMAIL]. Privacy and data subject requests: [DPO EMAIL]. Security vulnerabilities: [SECURITY CONTACT EMAIL]. [LEGAL ENTITY NAME], [CNPJ], [REGISTERED ADDRESS].
Related documents: the Acceptable Use Policy, the Data Deletion instructions and the Privacy Policy.
This document is a template generated from how the product actually works. It is not legal advice and must be reviewed by a qualified lawyer before it is relied on with real customers.