Tor's default exit policy (accept *:*) forwards traffic to any destination and any port. This maximizes network usefulness but generates the broadest range of abuse complaints. The Tor Project's recommended reduced exit policy accepts most common web and application ports while blocking ports most commonly associated with abuse:
ExitPolicy accept *:80,*:443,*:110,*:143,*:993,*:995,*:6660-6667,*:6697,*:8080,*:8443 ExitPolicy reject *:*
This policy allows HTTP, HTTPS, email (POP3, IMAP, SMTPS, IMAPS), IRC, and alternative web ports while blocking ports most associated with spam (port 25 SMTP), malware C2 (many high ports), and other abuse-generating traffic. The vast majority of legitimate Tor usage does not require ports outside this list.
The most impactful single policy decision is whether to allow port 25 (SMTP). Allowing port 25 generates massive spam complaints because spammers actively seek exit nodes with SMTP access. Blocking port 25 alone reduces abuse complaint volume by 70 to 90% with minimal impact on legitimate users, who use authenticated submission ports (465, 587) through their email provider's infrastructure rather than sending directly on port 25.