Service Description & Fair Use Policy
1. Subscription tiers
| Feature | Sandbox | Starter | Business | Enterprise |
|---|---|---|---|---|
| Monthly price | Free | EUR 39 | EUR 99 | EUR 249 |
| MAU limit | 3 | 5,000 | 25,000 | 100,000 |
| Tenants | 1 | 2 | 3 | 5 |
| Support | Docs + AI | + Personal email (8h) | + Phone callback (1h) | |
| SLA | Best effort | Best effort | 99.5% | 99.5% |
2. Monthly Active Users (MAU)
A Monthly Active User (MAU) is any unique user identity that performed at least one authentication event (login, token refresh, or password change) via the Tuurio ID service within a calendar month (1st to last day). Each unique user identity is counted once per calendar month per tenant, regardless of the number of authentication events performed.
MAU are counted per account (not per tenant). An account with multiple tenants shares the MAU limit across all tenants. The current MAU count is visible in the dashboard at all times.
Approaching and reaching limits
| Threshold | Action |
|---|---|
| 75% | Dashboard notification |
| 90% | Email notification to account admin + prominent dashboard banner with upgrade recommendation |
| 100% | Email notification. 14-day grace period begins. Service operates without changes during the grace period. |
| After grace period | New user registrations are rejected. Existing users can still sign in. Admin dashboard access remains fully available. |
3. Prohibited use
- Automated mass registrations (bot accounts) for the purpose of artificial MAU inflation or abuse
- Systematic brute-force attacks on login endpoints
- Token harvesting (systematic collection or resale of tokens)
- Reverse engineering of the API for competitive analysis or reproduction
- Resale of API access or operating tenants for third parties without a reseller agreement
- Use for unlawful purposes (fraud, identity theft, money laundering, etc.)
- Deliberate overloading of the infrastructure (intentionally causing outages for other tenants)
4. Enforcement process
In case of violations against these fair use rules, Tuurio follows a graduated process:
- Written notification by email to the account administrator describing the violation.
- Request to remedy the violation within a reasonable deadline (at least 14 days).
- Temporary restriction of the affected tenant or endpoint (not the entire account, where technically possible). Lifted once the violation is resolved.
- Extraordinary termination pursuant to the general terms, as a last resort for repeated or severe violations.
5. Tenant usage
Included tenants are for the customer's own use (own employees, customers, members). Operating tenants for third parties as an independent identity service (reseller use) requires a separate reseller agreement.
Contact: reseller@tuurio.com
Version 2.0, March 9, 2026