Last updated: 14 August 2026
UpHunt prohibits the advertising of our website and any domain we own through unsolicited bulk or commercial email. That prohibition binds us, our customers, and any third party. This page sets out what mail we actually send, the basis on which recipients receive it, how to opt out, and how to report abuse. It is written to be checked, so every statement in it is one we can evidence.
UpHunt is operated by GenericBytes FZE, Sharjah Publishing City Freezone, Sharjah, United Arab Emirates. UpHunt is a software-as-a-service product for freelancers and agencies working on the Upwork marketplace. Our website and product are at https://uphunt.io.
This policy states the rules we apply to email that advertises or references UpHunt, whether that email is sent by us, by our customers, or by anyone else. It applies to every domain we own.
Two rules govern every domain we own, and neither has an exception:
The prohibition on advertising our domains through unsolicited bulk email binds:
We operate no affiliate, referral, or reseller programme that permits the promotion of UpHunt by email. Any message advertising UpHunt that claims a commission, affiliate, or referral relationship as justification for emailing you is sent without our authorisation and in breach of this policy.
We send four kinds of email, and nothing else. Each is listed with the basis on which a recipient receives it.
Signup confirmation, password reset, billing and subscription receipts, and service notices about the account. Recipients receive these because they created an UpHunt account themselves. These messages are required to operate the account and are not marketing.
Job alerts and application updates, delivered only to the channels the user connected in their own dashboard. The user turns these on and can turn them off in the product at any time.
If someone enters their email address into a form on our own website, for example to receive a free Upwork profile analysis or to request our jobs dataset, we send them the result they asked for and a limited number of follow-up messages about UpHunt. Recipients receive these because they submitted the address to us directly on uphunt.io. Every one of these messages carries a working unsubscribe link.
We write to agencies at the business contact address the agency publishes on its own company website, about its own business. These are business correspondence, not a campaign blast, and we hold them to conditions we will state precisely so they can be checked:
We are describing this plainly rather than omitting it, because a policy that hides a category of mail is worth nothing to the person reading it. If you consider our outreach unwelcome, the opt-out in Section 5 and the abuse address in Section 7 both work and both are honoured.
We do not send any other category of email. We run no bulk newsletter, no purchased-list campaign, and no mail on behalf of third parties.
We can state the following without qualification:
Addresses reach us in exactly two ways: a person types their address into a form on uphunt.io, or a company publishes a business contact address on its own public website and we record it for the business-to-business outreach described in Section 3.4. Nothing else is a source.
Every marketing or outreach message we send carries a working unsubscribe or opt-out link. We handle requests as follows:
Transactional messages about an existing account, such as a password reset or a billing receipt, are not subject to unsubscribe, because they are required to operate the account. Closing the account stops them.
Sending unsolicited bulk or commercial email that advertises UpHunt, links to any of our domains, or promotes a customer's use of our product is a material breach of our terms of service.
There is no warning tier and no second chance for bulk unsolicited email. One confirmed incident ends the account.
If you receive any email advertising UpHunt or any domain we own that you did not ask for, report it to us:
info@uphunt.io
Please include the full message headers where you can, since they are what let us identify the true sender. Reports without headers are still acted on.
We acknowledge every report within two business days and complete our investigation within ten business days. If the message came from a customer, we act under Section 6. If it did not come from us or from a customer, we say so plainly and tell you what we were able to determine about its origin. This mailbox is monitored by a person, not an autoresponder.
Mailbox providers, blocklist operators, and abuse desks may use the same address and will be prioritised.
We own three domains and use them for the following, and nothing else:
We list them here rather than leaving them to be discovered. If you receive mail from any of these three domains that you did not ask for, Section 5 stops it and Section 7 is where to report it. If you receive mail from a domain that is not on this list and it claims to be UpHunt, it is not us.
Every domain we own publishes an SPF record and a DMARC record set to p=reject with strict alignment. Receiving systems can therefore verify whether a message claiming to come from one of our domains actually did, and we have asked them to reject it outright when it did not. If you received a message that fails authentication for one of our domains, it is forged and it is not ours.
We do not authorise anyone to send mail advertising our domains other than as described in Section 3. Any message outside that description is unauthorised, and we want to hear about it at the address in Section 7.
We may update this policy. Any update is published on this page with a revised date below. We will not weaken the prohibition in Section 2.