Acceptable Use Policy
This policy sets out what is and is not acceptable when using the SecuryxAI platform. It is incorporated by reference into our Terms of Service.
1. Permitted Use
SecuryxAI is a business-to-business GRC platform. You may use the Service for:
- Managing your organisation’s security controls, frameworks, and compliance posture
- Processing vendor security questionnaires and managing supplier risk
- Storing and organising compliance evidence and policies
- Collaborating with internal teams and external auditors on compliance workflows
- Publishing a trust centre to communicate your security posture to customers
- Generating reports and compliance artefacts for internal or audit use
2. Prohibited Activities
The following uses are prohibited and may result in immediate account suspension, termination, and reporting to law enforcement where required:
Illegal Activity
- Using the Service in violation of any applicable law, regulation, or court order
- Storing, distributing, or processing content that infringes copyright, trademark, or other intellectual property rights
- Engaging in fraud, identity theft, or impersonation of any person or organisation
- Facilitating money laundering, sanctions evasion, or other financial crimes
- Operating the Service in jurisdictions where such use is prohibited by law
Abusive or Harmful Content
- Uploading, storing, or transmitting content that is defamatory, obscene, or harassing
- Creating, distributing, or storing child sexual abuse material (CSAM) — zero tolerance, immediately reported to law enforcement
- Targeting individuals with harassment, threats, or discriminatory content
- Using AI features to generate content intended to deceive, manipulate, or harm others
Credential Theft & Account Abuse
- Attempting to gain unauthorised access to SecuryxAI systems, user accounts, or customer data
- Sharing account credentials with unauthorised individuals
- Attempting to bypass authentication, rate limiting, or other security controls
- Using automated tools to scrape, crawl, or extract data from the platform beyond normal API use
- Creating multiple accounts to circumvent usage limits, suspensions, or other restrictions
Malware & Malicious Code
- Uploading files containing viruses, trojans, ransomware, spyware, or other malicious code
- Using the platform to distribute or host malicious software or phishing content
- Attempting to exploit vulnerabilities in the SecuryxAI platform or its infrastructure
- Conducting denial-of-service (DoS) or distributed denial-of-service (DDoS) attacks
- Injecting malicious scripts, SQL, or other payloads into platform inputs
Platform Abuse
- Using the Service in a manner that degrades performance or availability for other customers
- Reselling, sublicensing, or providing the Service to third parties without authorisation
- Reverse engineering, decompiling, or attempting to extract source code from the platform
- Submitting false or misleading information during account registration or support interactions
- Using the platform for competitive intelligence gathering against SecuryxAI or its customers
3. Content Standards
Content you upload to SecuryxAI (evidence documents, policies, questionnaire responses) must:
- Be content you own or have the right to upload and process
- Not contain personally identifiable information beyond what is necessary for your compliance use case
- Not be used to create false, misleading, or fabricated compliance records
SecuryxAI does not review uploaded content for compliance with this policy in real-time but reserves the right to remove content that violates this policy.
4. Security Obligations
As a user of the platform, you are responsible for:
- Keeping your account credentials secure and not sharing them
- Using the platform from secure devices and networks
- Reporting suspected security vulnerabilities to security@securyxai.com promptly
- Notifying SecuryxAI immediately if you believe your account has been compromised
- Ensuring that users you provision in your organisation comply with this policy
5. Reporting Violations
If you believe someone is violating this policy, please report it:
- Security violations: security@securyxai.com
- Abuse reports: security@securyxai.com
- Legal requests: legal@securyxai.com
6. Enforcement
Violations of this policy may result in:
- Warning: For minor or first-time violations where no harm occurred
- Feature restriction: Limiting access to specific features while the issue is investigated
- Suspension: Temporary suspension of account access
- Termination: Permanent account closure for serious or repeated violations
- Legal action: Referral to law enforcement for illegal activity
We will make reasonable efforts to notify you before enforcement action except where immediate action is required to prevent harm to other customers or the platform.
7. Changes to This Policy
We may update this policy from time to time. Material changes will be communicated with at least 14 days’ notice. Continued use of the Service constitutes acceptance of the updated policy.
8. Contact
Questions about acceptable use: legal@securyxai.com