This Acceptable Use Policy ("AUP") describes activities that are not permitted on the CoreAccess Service. The AUP is incorporated into the Terms of Service. Violation may result in suspension or termination, with or without notice.
1. Prohibited content & activity
You may not use the Service to upload, store, transmit or facilitate:
- Content that is illegal, infringes intellectual property, or violates anyone's privacy.
- Malware, viruses, ransomware or any code intended to disrupt or compromise systems.
- Content depicting child sexual abuse, terrorism, or incitement to violence.
- Personal data of any individual without a lawful basis to process it.
- Spam, phishing, or unsolicited commercial communications.
- Material that harasses, threatens or defames others.
2. Security & integrity
You may not:
- Probe, scan or test the vulnerability of any system without explicit written authorization.
- Bypass authentication, rate limits, RLS, or any access controls.
- Attempt to access data, accounts or organizations you are not authorized to access.
- Interfere with the performance of the Service, including denial-of-service attacks.
- Reverse-engineer, decompile or attempt to extract source code from the Service.
3. Fair use
CoreAccess is designed for legitimate organizational use. Accounts that exceed reasonable usage limits (excessive API requests, unusual data volumes, automated scraping) may be subject to throttling. We will contact you before taking action where possible.
4. Credentials & access devices
Member credentials (QR, NFC, mobile, biometric) must only be issued to individuals who have consented and whose identity has been verified. Reselling or sharing credentials across organizations is prohibited.
5. Communications & notifications
Notifications sent through CoreAccess (SMS, email, push) must be transactional or legitimately related to a recipient's membership. CoreAccess is not a marketing platform; bulk marketing campaigns are prohibited.
6. Reporting abuse
If you become aware of any AUP violation, report it to abuse@getcoreaccess.com with as much detail as possible. We investigate every report.
7. Enforcement
CoreAccess may, at its sole discretion: (a) remove or disable access to violating content, (b) suspend or terminate offending accounts, (c) cooperate with law-enforcement requests, and (d) pursue any other legal remedies available to it.
8. Changes
We may update this AUP as new threats and use cases emerge. The current version always lives at this URL.