We use cookies
We use essential cookies to keep you signed in, plus optional analytics and marketing cookies. Affiliate referrals use browser storage and need your consent. Cookie policy
Technical and behavioural rules for all users of Lesso.
Last updated: July 2026
This policy applies to all users of lesso.app. It supplements our Terms of Service and Community Guidelines. Violations may result in account suspension or termination.
Images you upload (lesson images, course covers, profile photos) are checked automatically before publication and may also be reviewed by a human moderator. You must hold the rights to any image you upload. The following are prohibited in any uploaded image:
Automated checks may decline an image or hold it for review. If you believe an image was declined or removed in error, you can appeal to hello@lesso.app and a human will re-review it. Uploads are rate-limited per account. Animated images are converted to static images.
Every course and lesson page has a Report button (when signed in). You can also email hello@lesso.app. We review every report, remove content that breaks these rules or the law, and report illegal material to the relevant authorities. Copyright complaints should include the location of the infringing content and proof you own the work.
We reserve the right to implement rate limiting on API access and content requests to ensure fair platform performance for all users. Abnormally high usage volumes may be investigated and, if necessary, restricted.
If you discover a security vulnerability, please report it responsibly to security@lesso.app before disclosing it publicly. Include enough detail to reproduce the issue: the affected URL or endpoint, steps taken, and any proof-of-concept. We will acknowledge your report within 48 hours and work to resolve verified issues promptly, keeping you updated on progress. We do not operate a formal bug bounty programme at this time but may offer recognition for significant responsible disclosures.
In scope: lesso.app and its subdomains. Good faith research and testing against these is welcome.
Out of scope: anything that degrades the service for other users, denial-of-service testing, spam, social engineering of Lesso staff or creators, and physical-security testing. Do not access, modify, or exfiltrate other users' data beyond what is strictly needed to demonstrate a vulnerability, and stop and report as soon as you have proof of impact.
We will not pursue legal action against researchers who make a good faith effort to follow this policy and report issues privately before any public disclosure.
Violations of this policy may result in immediate account suspension, permanent banning, and, where appropriate, referral to law enforcement authorities. For access-related violations, we reserve the right to pursue civil remedies under the Computer Misuse Act 1990.
Security reports: security@lesso.app
General queries: hello@lesso.app