RoLeaf.ro - Web Hosting in Romania
Web Hosting VPS Servers
AI Tools
Domain Generator Find the perfect domain with AI
Logo Generator Create logos with AI
Other Services
Email Hosting Free email with your own domain
Game Servers Minecraft, CS2, FiveM and more
Română RO Clients
Clients
Web Hosting VPS Servers
AI Tools
Domain Generator Logo Generator
Other Services
Email Hosting Game Servers
Română RO

Legal Documents

Terms and conditions, privacy policies and other important information about our services.

  • Terms and Conditions
  • Privacy Policy
  • Acceptable Use
  • VPS Terms
  • Cookies

Terms and Conditions

Version 1.0 • Updated: March 2024

1. Definitions

"Company" refers to SC CLOUD FOREST INFRASTRUCTURE SRL, VAT: 46309790, headquartered in Buzău, Romania.

"User" refers to the natural or legal person who uses the web hosting services offered by the company.

"Services" refers to the web hosting plans offered by the company through the roleaf.ro platform.

"Account" refers to the user account created for access to web hosting services.

"Login credentials" refers to identification information, such as username and password, used for access to the web hosting account.

2. Account Creation and Management

Users are responsible for providing correct and complete information during the account registration process.

Users are responsible for the security of their login credentials and must keep them confidential. Any suspicious or unauthorized activity must be reported immediately to the company.

3. Use of Services

Users agree to use the services only for legal purposes and in accordance with these Terms and Conditions, as well as all applicable laws and regulations.

Use of services in the manner described in the Acceptable Use Policy is prohibited.

The company reserves the right to suspend or terminate the user's account in case of violation of these Terms and Conditions or the Acceptable Use Policy.

4. Affiliate Program

Users can register as affiliates on our hosting platform where they can recommend our services and earn a 10% commission in the form of credit that can be used to pay invoices for services we offer. The commission applies repeatedly, for each payment made by the referred customer.

5. Payments and Billing

Users agree to pay applicable fees for web hosting services according to the selected plan and billing period.

Invoices must be paid in advance, according to the terms and payment methods specified by the company.

6. Warranty and Money-Back Guarantee

According to the withdrawal right guaranteed to consumers under EU consumer protection law (Directive 2011/83/EU, transposed into Romanian law by OUG 34/2014), individual consumer customers have the right to a refund of the amount paid for web hosting services within 14 calendar days from the date the contract is concluded, without giving a reason.

Customers who want a refund must submit a formal request through the electronic channels provided (email/ticketing system) within the 14-day period.

In accordance with EU consumer protection regulations (Art. 16(c) of Directive 2011/83/EU), domain registration is not subject to the money-back guarantee, as it constitutes the supply of a personalised product or service that cannot be returned.

No refund will be issued — partial or full — for services suspended or terminated as a result of a violation of the Acceptable Use Policy or any other provisions of these Terms and Conditions. This includes, without limitation: spam, network scanning, malware distribution, DDoS attacks, operating Tor nodes, phishing, hosting copyright-protected material without authorisation, or any other prohibited activity. Any amount paid for the remaining period is forfeited in full.

For VPS services, a specific refund policy applies — please refer to the VPS Terms, art. 6 section of this document.

7. Uptime Guarantee

The company guarantees 99.9% uptime for web hosting services. If this guarantee is not met (excluding force majeure), we offer account credits of 10 lei for every 24 hours of downtime.

To request credits, users must open a ticket in the client area within 7 days of the incident.

8. Account Suspension and Termination

The company reserves the right to suspend or terminate the user's account in case of violation of these Terms and Conditions or the Acceptable Use Policy, without prior notice.

In case of account suspension or termination, users may lose access to data stored on the company's servers. The company is not responsible for any data loss or damages resulting from account suspension or termination.

9. Limitation of Liability

The company is not responsible for any data loss, damages or service interruptions caused by improper use of services by users or events beyond the company's control.

In no case shall the company be liable to users or third parties for any indirect, special, incidental or consequential damages.

10. Changes to Terms and Conditions

The company reserves the right to modify these Terms and Conditions at any time, with immediate or subsequent effect, by publishing an updated version on the roleaf.ro website.

Users are responsible for periodically reviewing these Terms and Conditions and accepting them before continuing to use the services.

11. Contact

For questions or clarifications regarding these Terms and Conditions, please contact us at office[at]cloudforest.ro or through the ticketing system in the client area.

Privacy Policy

Version 1.0 • Updated: March 2024

Our website complies with the General Data Protection Regulation ("GDPR"), Regulation (EU) 2016/679. The data protection policy is based on the general mandatory principles of the act:

  • Processing in a lawful, fair and transparent manner
  • Collection only for specific legitimate purposes
  • Adequate, relevant and limited to what is necessary use
  • Data must be accurate and up to date
  • Stored only as long as necessary
  • Security, integrity and confidentiality appropriately ensured

1. Company Information

SC CLOUD FOREST INFRASTRUCTURE SRL, VAT: 46309790, with registered office in Buzău, Romania, registered with the Trade Register under number J10/768/2022, respects the confidentiality of your data.

This privacy policy informs you about our practices regarding the collection, use and disclosure of personal information we receive from users of our website.

2. Types of Data Collected

In the registration and service delivery process, we collect the following personal data:

  • First and last name
  • Email address
  • Physical address
  • National ID (for .ro domain registration, according to RoTLD requirements)
  • Payment information (securely processed through third-party providers)

3. Purpose of Data Collection

Personal data is collected for:

  • Creating and managing accounts on our platform
  • Processing hosting service orders
  • Domain registration according to RoTLD requirements
  • Issuing invoices and tax documents
  • Providing customer support
  • Communications about services and important updates

4. Data Collection Methods

Personal data is collected exclusively through online forms available on the roleaf.ro and clienti.roleaf.ro websites.

5. Legal Basis for Data Processing

Collection and processing of personal data is carried out based on:

  • User consent
  • Necessity for execution of the service contract
  • Legal obligations (billing, domain registration)

6. User Rights

According to GDPR, users have the following rights:

  • Right of access - you can request a copy of personal data
  • Right to rectification - correction of incorrect or incomplete data
  • Right to erasure - deletion of personal data ("right to be forgotten")
  • Right to restriction - limitation of data processing
  • Right to portability - receiving data in a structured format
  • Right to object - objection to data processing

To exercise these rights, contact us at office[at]cloudforest.ro.

7. Disclosure of Data to Third Parties

Users' personal data will not be disclosed or transferred to third parties except in cases where:

  • There is a legal obligation
  • It is necessary for domain registration (RoTLD)
  • Payment processing (secure payment providers)

8. Data Retention Period

Personal data is kept for the duration of the contractual relationship and according to legal archiving requirements (minimum 5 years for tax documents).

9. Contact

For questions regarding personal data protection, contact us at office[at]cloudforest.ro.

Acceptable Use Policy

Version 1.0 • Updated: March 2024

1. Introduction

The Acceptable Use Policy (AUP) establishes the conditions and restrictions applicable to the use of web hosting services offered by SC CLOUD FOREST INFRASTRUCTURE SRL through the roleaf.ro platform.

This policy is designed to ensure a safe and respectful experience for all customers and to protect the integrity and performance of our infrastructure.

2. Appropriate Use of Resources

Users are responsible for the appropriate use of resources offered, in accordance with the specifications of the chosen hosting package and all applicable laws.

Excessive or abusive use of resources (CPU, memory, bandwidth) that may affect server performance or other users is prohibited.

3. Prohibited Content

Publication or distribution of the following is strictly prohibited:

  • Pornographic or adult content
  • Pirated software or materials that infringe copyright
  • Content that promotes violence, hatred or discrimination
  • Malware, viruses or other harmful programs
  • Phishing or fraudulent websites
  • Any content illegal under Romanian law

Any illegal activity will be reported to the competent authorities.

4. Spam and Unsolicited Emails

Sending unsolicited emails (spam) through our servers is prohibited. This includes:

  • Sending unsolicited commercial messages
  • Promoting services through spam
  • Using email lists purchased or obtained without consent

Users must comply with electronic communications legislation and obtain recipient consent.

5. Account Security

Users are responsible for the security of their account and must keep login credentials confidential.

Attempting to gain unauthorized access to other accounts or systems is prohibited, including:

  • Password brute-force attempts
  • Exploiting security vulnerabilities
  • Port scanning or attacks on other servers

6. Shared Resources

Web hosting plans offer resources in a shared environment. Users must use their resources responsibly, without negatively affecting other users or overall server performance.

7. Consequences of Violation

Violation of this Policy may result in:

  • Warning and request for remediation
  • Temporary account suspension
  • Account termination without right to refund
  • Reporting to authorities in case of illegal activities

8. Contact

For questions or reports related to this policy, contact us at office[at]cloudforest.ro.

Terms and Conditions — VPS Servers

Version 1.1 • Updated: March 2026

This document establishes the specific terms and conditions applicable to Virtual Private Server (VPS) services offered by SC CLOUD FOREST INFRASTRUCTURE SRL through the roleaf.ro platform. By purchasing or using a VPS service, the customer expressly accepts these terms, which supplement the General Terms and Conditions and the Acceptable Use Policy.

1. Definitions

"VPS Service" refers to the virtual private server allocated to the customer, running on the company's own physical infrastructure located in Romania.

"Customer" refers to the natural or legal person who is the holder of the VPS service contract.

"Network Traffic" refers to the totality of data transmitted and received by the VPS server, regardless of protocol or destination.

"IDS" (Intrusion Detection System) refers to the automated systems used by the company to detect intrusions and abusive activities for monitoring its infrastructure.

"Abuse" refers to any use of the VPS service contrary to this document, applicable legislation, or generally accepted internet usage norms.

2. Customer Rights and Responsibilities

The customer has full root access to the allocated VPS server and is solely responsible for its configuration, administration and security.

The customer is fully responsible for all activities carried out on the VPS server, including activities of third parties to whom access has been granted.

The customer agrees to use the service exclusively for lawful purposes, in compliance with Romanian law, EU regulations and applicable international electronic communications standards.

The customer is responsible for updating and securing the software installed on the VPS server, including promptly remedying security vulnerabilities.

3. Strictly Prohibited Activities

Use of VPS services for any of the activities listed below is strictly prohibited and constitutes grounds for immediate suspension or termination of the service:

3.1. Spam and Unsolicited Communications

  • Sending unsolicited bulk emails (spam), regardless of volume or frequency
  • Operating mail servers configured as open relays
  • Using address lists obtained without recipient consent
  • Any other form of large-scale unsolicited communication (bulk SMS, instant messaging, web forms)

3.2. Network Scanning and Reconnaissance

  • Scanning ports or networks of third parties without the explicit consent of the owner
  • Running network scanners, vulnerability scanners or service enumeration tools against external infrastructure
  • Aggressive automated data collection (scraping) that affects the availability of third-party services

3.3. Malware and Malicious Code

  • Hosting, distributing or operating malware, viruses, ransomware, spyware, adware or any other malicious code
  • Operating command-and-control (C&C / C2) servers for botnets or other malicious networks
  • Participating in coordinated cyberattack operations
  • Hosting exploit kits or pages for automatic malware distribution

3.4. DoS / DDoS Attacks

  • Launching or facilitating Denial of Service (DoS) or Distributed Denial of Service (DDoS) attacks against any systems
  • Participating in amplification attacks (DNS amplification, NTP amplification, etc.)
  • Using the VPS server as a reflector or amplifier of malicious traffic
  • Any activity that generates network traffic intended to overload or disrupt third-party systems

3.5. Tor Network and Anonymous Proxies

  • Operating Tor exit nodes, entry/guard nodes or Tor relays
  • Operating proxies or VPNs for the purpose of anonymising illegal traffic or circumventing legal blocks
  • Hosting services dedicated exclusively to anonymising illicit traffic

3.6. Copyrighted Material and Illegal Content

  • Hosting, distributing or indexing copyright-protected content without authorisation from the rights holders (movies, music, software, games, books, etc.)
  • Operating torrent tracker sites, warez platforms or illegal file-sharing platforms
  • Any content that infringes the intellectual property rights of third parties
  • Child sexual abuse material (CSAM) — in which case the company will immediately notify the competent authorities (Romanian DIICOT, Europol)

3.7. Fraud and Deceptive Activities

  • Hosting phishing pages that impersonate banking services, payment platforms or other online services
  • Operating carding schemes, financial fraud or online scams
  • Impersonating legitimate entities for fraudulent purposes
  • Any activity intended to deceive users or third parties

3.8. Unauthorised Access to Systems

  • Attempts to gain unauthorised access to third-party computer systems (offensive hacking)
  • Brute-force attacks against external services
  • Exploitation of software vulnerabilities in third-party systems without authorisation

3.9. Abusive Cryptocurrency Mining

  • Using VPS resources for cryptocurrency mining in an abusive manner, consistently exceeding 80% of the allocated CPU capacity for extended periods, compromising infrastructure stability

4. Monitoring and IDS Systems

The company uses automated intrusion and abuse detection systems (IDS — Intrusion Detection Systems) that continuously monitor network traffic and server behaviour across its own infrastructure.

These systems analyse traffic patterns, abnormal data volumes, known signatures of malicious activities and other indicators of compromise or abuse, without accessing the personal content of the customer's data.

Alerts generated by IDS systems, corroborated with traffic data and system logs, constitute the documented basis for any decision to suspend or terminate service. The company retains this data as evidence in the event of reports filed with authorities.

The company may also act on complaints received from third parties (ISPs, anti-abuse organisations, authorities) submitted through standard channels (abuse@, CERT-RO, Spamhaus, AbuseIPDB, etc.).

5. Service Suspension and Termination Policy

The company reserves the right to immediately suspend or terminate any VPS service, without prior notice, in any of the following situations:

  • Detection of prohibited activities through IDS systems or through reports received from third parties
  • Activity that jeopardises the integrity or availability of the company's own infrastructure or that of third parties
  • Non-compliance with this document or the General Terms and Conditions
  • Legal obligations requiring suspension (court orders, CERT-RO requests, DIICOT, etc.)

In serious cases (DDoS, active malware, phishing, CSAM), suspension is carried out immediately, without any grace period or prior warning.

In less serious cases, the company may, at its sole discretion, send a warning notification with a reasonable remediation deadline before suspension.

Data stored on a VPS server suspended or terminated due to abuse may be permanently deleted without possibility of recovery.

6. Refund Policy for VPS Services

6.1 Consent to Immediate Performance and Loss of Withdrawal Right

VPS services are activated and delivered immediately upon payment confirmation. By activating the VPS service — regardless of the means by which this is done (control panel, API, provisioning confirmation email) — the individual consumer customer expressly declares and confirms that:

  • they have requested and consent to the immediate commencement of service delivery before the expiry of the 14-calendar-day period provided under EU consumer protection law (OUG 34/2014);
  • they acknowledge that, once service delivery has begun with their prior express consent, they lose the legal right of withdrawal under Art. 9 of OUG 34/2014, pursuant to Art. 16(a) of OUG 34/2014 (transposing Art. 16(a) of Directive 2011/83/EU of the European Parliament and of the Council).

VPS activation constitutes proof of the customer's express consent to immediate service delivery and acknowledgement of the loss of the right of withdrawal.

6.2 Voluntary Money-Back Policy

As a voluntary commercial policy and at the company's sole discretion, the company offers the possibility of a refund within 14 calendar days from the date of VPS activation, subject to the cumulative fulfilment of all of the following conditions:

  • The refund request is submitted through the electronic channels provided (email/ticketing system) within the 14-calendar-day period from activation;
  • The server has not been used in an abusive, unlawful, or Acceptable Use Policy-violating manner;
  • No prohibited activities have been confirmed under this document or related policies.

This voluntary commercial facility does not constitute acknowledgement of the existence of a legal right of withdrawal after service activation and may be withdrawn by the company at any time without prior notice.

6.3 Absolute Exclusions from Refund

No refund will be issued — partial or full — in any of the following circumstances:

  • Prohibited activities have been confirmed on the VPS server: spam, network scanning (port scanning / vulnerability scanning), malware distribution, DDoS attacks or botnet participation, operating Tor nodes or hidden services (.onion), phishing, CSAM, computer hacking, or any other prohibited activity under the Acceptable Use Policy;
  • The service has been suspended or terminated as a result of a violation of this document, the Acceptable Use Policy, or any other applicable terms;
  • There is evidence that the server was used to commit computer crimes, fraud, or other illegal acts;
  • Semi-annual or annual subscriptions are terminated due to abuse — no proportional refund will be issued for unused months.

Confirmation of abusive activities is based on data collected by IDS systems, network logs, internal technical analysis, and/or reports received from third parties (CERT-RO, Spamhaus, AbuseIPDB, etc.), which constitute sufficient evidence for the refusal of any refund.

A customer who has used the VPS service for prohibited activities forfeits all right to a refund, including for unused periods of service, regardless of the duration of the paid subscription and regardless of whether the refund request is made within or after the 14-day period.

7. Traffic Limits and Resource Usage

Each VPS plan includes a monthly traffic allowance as specified in the chosen plan. Exceeding this limit may result in automatic suspension of network access or the application of additional charges, at the company's discretion.

Persistent use of CPU, RAM or storage resources at maximum capacity, to the detriment of infrastructure stability, may constitute grounds for requesting a plan upgrade or, in case of refusal, for suspension of the service.

8. Cooperation with Authorities

The company cooperates with competent authorities (Romanian Police, DIICOT, CERT-RO, Europol, ANCOM) in investigations concerning illegal activities carried out through VPS services.

Upon request from authorities or based on court orders, the company may provide customer identification data, traffic logs and any other information relevant to an investigation.

The company is under no obligation to inform the customer of an authority request if there is a legal prohibition to do so.

9. Abuse Reporting

Any abuse identified on our servers can be reported to abuse[at]cloudforest.ro. Reports are reviewed within 24 hours on business days.

The company subscribes to the generally accepted principles of combating internet abuse and collaborates with organisations such as Spamhaus, AbuseIPDB and CERT-RO.

10. Changes to This Document

The company reserves the right to modify this document at any time. The updated version will be published on the roleaf.ro website with the revision date noted. Continued use of the VPS service after publication of changes constitutes implicit acceptance of the new terms.

11. Contact

For questions related to this document or to report abusive activities, contact us at abuse[at]cloudforest.ro (abuse reports) or office[at]cloudforest.ro (general enquiries).

Cookie Policy

Version 1.0 • Updated: March 2024

1. What are cookies?

Cookies are small text files stored on the user's device when accessing a website. They are used to improve the browsing experience and provide information about how users interact with the site.

2. Cookies used on roleaf.ro

Essential cookies (session)

We use session cookies to allow users to authenticate and access their accounts. These cookies are essential for the service to function and do not collect personal information for marketing purposes.

Google Analytics

We use Google Analytics to collect anonymous information about site usage, including:

  • Number of visitors
  • Pages visited
  • Traffic sources
  • Visit duration

This information helps us improve the user experience.

3. Managing Cookies

Users can manage cookie preferences through browser settings:

  • Blocking all cookies
  • Deleting existing cookies
  • Notifications when cookies are placed
  • Selective acceptance of certain types of cookies

Note: Blocking essential cookies may affect site functionality.

4. User Consent

By continuing to use our site, users agree to the use of cookies according to this policy.

Users can withdraw consent at any time by modifying browser settings.

5. Contact

For questions regarding the use of cookies, contact us at office[at]cloudforest.ro.

RoLeaf.ro

We are a Romanian company dedicated to providing high-quality web hosting services on our own enterprise infrastructure in Romania.

Services

Web Hosting .ro Domain Registration Domain Transfer Cloud VPS Servers

Resources

Knowledge Base DNS Check Schema.org Generator cPanel Access

Contact

CLOUD FOREST INFRASTRUCTURE SRL
VAT: 46309790 | REG: J10/768/2022
WhatsApp: 0729 643 498

© 2026 RoLeaf.ro - All rights reserved

Terms and Conditions Privacy ANPC - SAL ANPC