Content moderation

How to Moderate an Online Community at Scale

By the GetFame team Published 12 min read

Short answer

Moderate at scale in four layers: clear written rules, automated rules that catch routine problems, member reports that feed a queue, and people who decide, volunteers inside communities and paid staff above them. Add an escalation ladder from warning to ban, a route to appeal, and a log of every decision so the work stays fair and explainable.

Key takeaways

  • Moderation scales by layers: rules, automation, reports and human decisions, each handling what it does best.
  • Automation should catch the routine and hold the doubtful, and it should never be the only judge of a ban.
  • Volunteers need tools, training, recognition and limits, or the arithmetic of growth burns them out.
  • An escalation ladder with consistent saved reasons makes enforcement fair and cheap to run.
  • Every action needs a record: who decided, when, under which rule, with what notice to the member.
  • App stores and the EU Digital Services Act expect reporting, blocking, explanations and complaint routes; this is not legal advice.
On this page 11 sections
  1. The four layers
  2. Rules people can follow
  3. Automated rules
  4. Volunteer moderators
  5. Volunteers versus paid staff
  6. An escalation ladder
  7. Appeals and transparency
  8. Evidence and audit trail
  9. Sizing the team: a worked example
  10. What to put in writing
  11. What to do next

You moderate a growing community in layers, because no single tool or person scales. Written rules set the standard. Automated rules catch the routine. Member reports bring the rest to a queue. People decide what is left: volunteers inside each community and paid staff above them. Around those layers you need an escalation ladder, a way to appeal and a record of every decision.

This guide is for a community manager who is hitting the limit of doing it by hand. It focuses on the forum and community case, where members vote, comment and often run their own rooms. For the broader choice between in-house, outsourced and AI-first teams, see content moderation models, and for a video product, content moderation for a short video app. A white-label community forum platform ships with the moderator tooling this guide describes, but the structure applies whatever software you run. This is general information, not legal advice.

The four layers

Think of moderation as a funnel. Each layer removes work so the next one sees less.

LayerWhat it doesWho or what runs itCost shape
1. RulesTell members what is and is not welcome, so most posts never need actionYou and each community's leadersWriting time up front
2. AutomationBlocks or holds routine problems such as known spam and floodingSoftware rulesSetup time, then near zero per item
3. ReportsMembers flag what the rules and automation missedMembers, feeding a queueFree to collect; costs reviewer time
4. Human decisionsJudge context, apply penalties, handle appealsVolunteers and paid staffGrows with volume

The point of the funnel is to spend human attention where it is worth most. If people review spam that a rule could stop, you pay for judgment on trivial cases. If software decides who gets banned, you pay for it in mistakes and lost trust. Design each layer for the job it is good at. For a view of how a vote-driven community assigns these roles, read how Reddit-style communities work.

Rules people can follow

Everything else applies the rules, so poor rules make every other layer harder. Good rules share a few traits.

  • Short. Five to ten rules a member can read in a minute. A forty-page policy gets ignored.
  • Specific. "No personal attacks" works better than "be nice", and an example helps: "Criticize the idea, not the person."
  • Layered. Site-wide rules cover what is never allowed. Each community adds rules for its own topic, such as a required format for questions.
  • Linked to consequences. Say what happens on a first, second and third breach, so enforcement looks predictable.
  • Visible where people act. Show the rules when a member posts or reports, not only on a page nobody visits.

Write the rules before launch, test them on a handful of real cases ("would this post be removed?") and revise when three moderators answer the same case three ways. A disagreement among moderators is a signal that a rule is unclear, not that a moderator is wrong.

Store removal explanations the same way you store rules. A library of saved removal reasons, each tied to a rule, keeps the wording consistent and spares moderators from retyping. Our platform includes such a library, and each community can define its own reason taxonomy for member reports.

Automated rules

Automation is where scale starts. A good rule is cheap, predictable and reversible. The main kinds, and the risks that come with each, are in this table.

Rule typeWhat it catchesTypical actionFalse positive risk
Keyword or phraseSpam phrases, slurs, banned topicsHold for review, or removeHigh: innocent uses of the same word, quotes and discussion of the term
New-account limitsBrand-new accounts posting links or media in bulkHold the post, or cap links per dayMedium: genuine newcomers get delayed
Link and domain rulesKnown spam or unsafe sites, repeat self-promotionHold or removeMedium: legitimate sources on a list by mistake
Rate limitsFlooding, repeated posts, rapid votingSlow the account, show a messageLow to medium: a lively member can hit a tight limit
Report thresholdsContent many members flagHide pending reviewMedium: a group can mass-report to silence someone
Duplicate detectionThe same post pasted across roomsRemove the copiesLow

Three habits keep automation safe.

  1. Prefer "hold" to "delete". A held post can be released with one click. A deleted one is a complaint.
  2. Log what each rule did. Review a sample weekly. A rule that catches 90 percent real spam and 10 percent real members needs tightening.
  3. Let each room tune its own rules. A programming community and a parenting community have different spam. Our platform lets each community define its own automatic rules instead of sharing one global policy, and it applies rate-limit presets per route family at the platform level.

Never let automation be the only decider of a permanent ban or of a removal that involves a minor. Context changes meaning, and a human should confirm penalties that are hard to undo. Platform staff writing rules for a large site often add a review step for rules that touch many accounts at once.

Volunteer moderators

Volunteers make topic communities scalable, because the people who care most about a room are the best placed to judge it. They also introduce risk, since unpaid people carry a task that can be heavy. Handle them well and the model works.

Recruiting

Look at members who already help: they answer questions, report problems accurately and stay calm in arguments. Invite them personally and explain the job. Some platforms promote helpful members automatically. The Discourse project, for instance, documents trust levels that grant more abilities as members stay active, plus manual promotion by staff, in its moderation guide. A tiered path from member to trusted helper to moderator means you recruit from proven people, not volunteers on day one.

Training

Give each new moderator the rules, the saved removal reasons and a set of ten sample cases with the answers you would give. Pair them with an experienced moderator for their first week. Teach the escalation ladder below so they know when a case is theirs and when it goes to staff.

Tools and recognition

A volunteer with only a delete button will burn out. Give them a queue that sorts by age and severity, notes on members, a log of past actions and a way to hand a case to a colleague. Our community tooling gives moderators a queue with reason categories, bans that can expire, an appeals route, private mod notes and a mod log, so a rotating team shares memory. Recognition costs little: public thanks, a flair, early access to features, a direct line to staff.

Limits and burnout

Watch the arithmetic. Say a community has 20,000 members and generates 80 reports a day after automation, an invented example. At 2 minutes each, that is about 160 minutes of review daily. Four volunteers can carry that at 40 minutes each, but if the community doubles, the same four are at 80 minutes a day, which is an unpaid part-time job. Track hours per moderator, rotate the hardest queues, allow people to step back without guilt, and add staff before the team asks.

Volunteers versus paid staff

You rarely choose between them. You decide which work goes where.

WorkVolunteers in a communityPaid platform staff
Enforcing a room's topic rulesBest fitRarely needed
Welcoming newcomers and setting toneBest fitOccasionally
Spam and routine removalsGood, with automationBackstop
Harassment of a specific personFirst look, then escalateDecide on bans and safety steps
Illegal content and anything involving minorsReport straight to staff, do not investigateRequired
Legal requests, regulator contact, store inquiriesNot their jobRequired
Appeals of a moderator's decisionReview by a different moderatorFinal say on disputed cases
Overnight and holiday coverageUnreliableRota or outsourced cover

The principle is that volunteers apply a community's rules and staff apply the platform's rules and the law. Make that line clear to both groups, in writing.

An escalation ladder

A ladder keeps enforcement proportionate and consistent. Each step has a trigger, an action and a record.

  1. Remove with a reason. For a first, minor breach. The member sees which rule and why.
  2. Warn. A private message that names the rule and says what happens next.
  3. Timeout or temporary ban. For repeat or moderate breaches. Set an end date, so a cooling-off period does not become exile by accident. Our platform supports bans with expiry for this reason.
  4. Permanent ban. For serious or persistent breaches, ideally approved by a second moderator or a staff member.
  5. Escalate to staff or authorities. For illegal content, threats of harm and anything involving minors. Skip the earlier steps.
  6. Appeal. Available after steps 3 and 4, with a different reviewer.

Some conduct skips straight to the top: spam bots, illegal material and credible threats do not need a warning. Write down which categories those are. Everything else follows the ladder, with a written reason at each step.

Appeals and transparency

An appeal is a promise that the system can be wrong and will fix itself. It builds trust, catches mistakes and feeds learning back to moderators. A usable appeal route has these parts:

  • A plain way to request a review, available from the notice the member received.
  • A different reviewer from the one who made the decision.
  • A stated target time, and a message when the decision is made.
  • A recorded outcome: upheld, reversed or changed.
  • A pattern review: if many appeals against one moderator or one rule succeed, fix the cause.

Our platform stores member appeals with explicit states and timestamps, and moderators resolve them through those states, with all actions visible to operators from one oversight view.

The law is moving the same way. The European Commission's page on the Digital Services Act says platforms must explain to users why content was removed or suspended, that users can challenge moderation decisions through the platform or out-of-court dispute bodies, and that rules are proportionate, with lighter requirements for smaller companies and extra duties for very large platforms. Which duties apply to you depends on your size, your services and where your members live, so ask a lawyer.

App stores add their own expectations. Apple's guideline 1.2 for apps with user-generated content asks for a way to filter objectionable material, a report mechanism with timely responses, the ability to block abusive users and published contact information. Google Play's user-generated content policy expects users to accept terms before posting, and in-app reporting and blocking, with moderation matched to the type of content. A report button that nobody answers can fail review as surely as having no button.

Transparency can also be voluntary and cheap: publish your rules, a short note on how enforcement works and, once a year, counts of reports received and actions taken. It shows members the system is fair and prepares you for any formal reporting later.

Evidence and audit trail

Every decision should leave a record that a person who was not there could understand months later. Without one, a dispute becomes your word against theirs, and a new moderator inherits nothing. Store these items for each action:

  1. The report: who filed it, when and the reason given.
  2. The content as it stood, including edit history, so a member cannot rewrite the evidence.
  3. The decision: remove, warn, ban or no action.
  4. The moderator who decided, and a second reviewer where required.
  5. The rule applied, and the saved reason sent to the member.
  6. The time of each step, so you can measure response times.
  7. The appeal and its outcome, if any.

Soft deletion helps here: removed content leaves public view but keeps its moderation context, so an audit can reconstruct events. Our community platform stores reports, actions, notes and appeals with the resolver and timestamps, and keeps edit history on posts and comments. That gives you an answer when a member disputes a decision or a partner audits your policy.

Be careful with what you keep. Records of members contain personal data, so decide who may read them, how long you keep them and how you delete them when the law requires. Treat access to moderation logs as a privilege and log who looked.

Sizing the team: a worked example

Use your own numbers, but the method is the same. These figures are invented for illustration.

StepExample figure
Posts and comments per day10,000
Items caught by automatic rules and handled without review300
Reports from members120
Items held for review by rules80
Items to review per day200
Average minutes per review2
Review time per day400 minutes, about 6.7 hours
Appeals and escalations at 10 minutes each, 10 per day100 minutes
Total daily workload500 minutes, about 8.3 hours

If each volunteer gives 5 hours a week, that is about 43 minutes a day, so the workload needs roughly twelve volunteers, plus cover. If you add one staff member for 6 productive hours a day, volunteers carry the rest. Improving a rule so it handles 100 more items a day saves more than recruiting a thirteenth volunteer. Re-run this sum every quarter, and trigger changes from measured queue age, not from gut feeling.

What to put in writing

Documents make fairness repeatable. Keep these current and easy to find:

  • Site rules and community rules, with examples.
  • A moderator handbook: the ladder, saved reasons, when to escalate, how to handle a hostile member, and how to step back.
  • An appeals policy: how to ask, who reviews, how long it takes.
  • A contact route for reports, legal requests and press, published where members and app stores can see it.
  • A named owner for legal questions. Moderators should not give legal advice and neither does this guide. When a case involves illegal content, threats or a regulator, the moderator's job is to escalate to that owner and preserve the record.
  • A short privacy note on what moderation records you keep and for how long.

What to do next

  1. Write or tighten your rules, and test them on ten real cases.
  2. List the routine problems and turn the top three into automatic rules that hold content for review.
  3. Set up a report queue with reasons, saved removal reasons and an owner for each shift.
  4. Define the escalation ladder and the conduct that skips it.
  5. Add an appeal route and a log of every action.
  6. Do the sizing sum, and decide the trigger for adding paid staff.
  7. If you build a mobile app, check the store rules above before you submit, and confirm local legal duties with a lawyer.

If your tooling does not give moderators queues, saved reasons, bans with expiry, appeals and logs, that is the gap to close first. The Reddit clone features page lists the moderator and operator tooling in our platform, a branded Android app is included and a native iOS app is available too. We also set up automated AI moderation for your build, with the scope confirmed with us at kickoff through our contact page. If you would rather start from a ready-made multi-community platform than assemble these pieces, the tooling is already part of its moderator and operator consoles. The same layers apply to newer communities; our guide to the community cold start problem shows what to have ready before opening, and the Reddit clone development cost page explains the published price of the ready-made build. For crowd-based tools that complement staff review, see community notes and crowd moderation.

Questions and answers

Do I need paid moderators?

Not at the start, often. A small community can run on volunteers and the founder. Paid staff become necessary when reports pile up, when you handle illegal content, when you need coverage at all hours or when volunteers are being asked to do work that looks like a job. Paid staff also serve as the layer volunteers can escalate to.

What should automation never decide?

Permanent bans, removals involving minors, legal threats and anything where context changes the meaning. Automation can hold content for review, hide it pending a decision and flag accounts that behave oddly. A person should confirm any penalty that is hard to undo, because classifiers make mistakes and members notice.

How should appeals work?

Give the member a clear way to ask for a second look, ideally from someone other than the original decider. State the time you aim to respond, record the outcome and notify the member. Appeals catch mistakes, show members the system is fair, and under rules such as the EU Digital Services Act larger platforms must offer complaint routes.

How many moderators do I need per member?

No honest universal ratio exists. Measure your own numbers: reports per day, minutes per report, and the share your automation handles. Divide the hours by what one volunteer can reasonably give each week. Then add cover for illness and holidays. Re-measure every quarter, because both volume and the mix of problems shift as you grow.

Can communities be private?

Yes. Private and restricted communities are normal design options. You still need rules, a reporting route and a way for staff to act on illegal content. Privacy for members does not remove your duty to respond when something is reported, so decide in advance what staff may see and under which conditions.

What records should I keep?

Keep the report, the content as it was, the decision, the moderator, the time, the rule applied and the message sent to the member. Records support appeals, repeat-offender decisions, store inquiries and regulator questions. Decide retention periods with your lawyer, because privacy law can limit how long you may keep personal data.

Sources

  1. European Commission: The Digital Services Act package
  2. Apple: App Review Guidelines (section 1.2 User-Generated Content)
  3. Google Play Console Help: User Generated Content policy
  4. Discourse Meta: Discourse Moderation Guide
  5. NodeBB Documentation: moderation tools and privileges

Checked in October 2026. Rules, fees and programme terms change; confirm on the source before you rely on them.

Independence note. GetFame is an independent software company. Reddit is a trademark of its owner and is named here only to describe a category of platform. GetFame is not affiliated with, sponsored by or endorsed by Reddit.

Reddit guides All articles

→Start here

Tell us what you want to launch.

Share the platform and your market. You get a walkthrough of the live demo, the exact scope of what ships, and a fixed price in writing. First response in under 2 hours, Monday to Saturday, 10:00 to 19:00 IST.

We reply to every inquiry. No newsletters, no shared data. See our privacy policy.