Acceptable Use Policy
Plain-English rules for responsible use of Aegis Firma. The core principle: use us to document your compliance honestly, not to create a false appearance of compliance.
The core principle
Aegis Firma generates documentation drafts and evidence tools β not legal opinions, not compliance guarantees, not regulatory certifications. You use our outputs as a starting point for your compliance program. You and your legal counsel make the compliance decisions. If you use our outputs honestly, you stay within this policy. If you use them to create a false impression of compliance you don't actually have, you don't.
What you may do
- βUse generated documents as draft templates, reviewed and approved by your legal counsel before adoption
- βShare assessment reports internally with your team, board, or compliance officers
- βShare verification-linked reports with customers or partners as evidence of your compliance program
- βExport your data at any time, for any lawful purpose
- βUse the API within documented rate limits for integration with your own systems
- βUse multiple team seats on a single organization account (within your plan limits)
- βContact us to request an MSP/agency arrangement to manage multiple client accounts
What you may not do
Legal misuse
- βUsing Aegis Firma-generated documents as finished legal instruments without independent legal review. All outputs are DRAFTS. They must be reviewed by qualified legal counsel before being adopted, distributed, or relied upon.
- βRepresenting Aegis Firma outputs as certified compliance opinions, legal opinions, or regulatory clearances.
- βPublishing generated documents publicly as statements of guaranteed compliance (e.g., "We are certified compliant with EU AI Act as verified by Aegis Firma").
- βUsing the Service to deceive regulators, customers, or auditors about your actual compliance status.
Misrepresentation
- βSubmitting false, misleading, or fabricated information in assessments, AI tool registrations, or evidence uploads.
- βUsing the Service to generate documents for an organization you do not have authority to represent.
- βClaiming Aegis Firma has audited, certified, or approved your compliance program.
- βPassing off Aegis Firma reports as independent third-party audits.
Technical abuse
- βScraping, harvesting, or downloading the jurisdiction database in bulk.
- βReverse engineering, decompiling, or attempting to extract our document templates or jurisdiction data.
- βAttempting to circumvent usage limits, tier restrictions, or access controls.
- βSharing account credentials across organizations (each organization requires its own account).
- βUsing the API in ways that exceed documented rate limits or damage Service performance for other customers.
Unlawful use
- βUsing the Service for any purpose that violates applicable law.
- βUploading content that infringes third-party intellectual property rights.
- βUsing the Service to process special categories of personal data (health, biometric, genetic, etc.) without our prior written approval.
Resale and redistribution
- βReselling access to the Service or reselling generated outputs to third parties without written permission.
- βUsing the Service to provide compliance consulting services to multiple clients (each client organization requires its own account, unless you have written MSP/agency authorization from us).
- βWhite-labeling the Service or its outputs without a written white-label agreement.
Enforcement
Violations of this AUP may result in suspension or termination of your account. We will provide notice where feasible, except in cases of severe misuse, fraud, or active harm to other customers.
If you believe your account was suspended in error, contact us via in-app feedback for review.