Acceptable Use Policy
Effective date: 23 May 2026
This Acceptable Use Policy ("AUP") forms part of the Terms of Service and sets out the activities that are prohibited when using the AssuranceLoop platform (the "Service"). The Customer is responsible for ensuring its Authorised Users comply with this AUP.
1. Prohibited activities
You must not use the Service to:
- Violate any applicable law, regulation or third-party right, including data protection, intellectual property and export control laws.
- Upload, store or transmit any content that is unlawful, defamatory, harassing, threatening, hateful or otherwise objectionable.
- Upload special category personal data (such as health, biometric, racial or ethnic origin, religious belief, sexual orientation, criminal conviction data) unless your use case requires it and you have a valid legal basis under Article 9 GDPR and any local law.
- Upload payment card data or other regulated data the Service is not designed to host (such as PCI cardholder data or PHI).
- Upload, transmit or distribute viruses, malware, ransomware, worms, or any code intended to disrupt, damage or gain unauthorised access to any system.
- Attempt to gain unauthorised access to any part of the Service, other accounts, or any connected systems.
- Probe, scan or test the vulnerability of the Service without our prior written permission, or breach security or authentication measures.
- Use the Service to develop, train or evaluate a product that competes with AssuranceLoop, or to reverse engineer the Service.
- Use the Service to send unsolicited commercial communications (spam) or to harvest contact information.
- Use automated means to scrape, copy or extract data from the Service beyond the Service's documented APIs and exports.
- Impose an unreasonable load on the infrastructure, or interfere with or disrupt the integrity or performance of the Service.
- Impersonate any person or entity, or misrepresent your affiliation with a person or entity.
2. Responsible AI use
Because AssuranceLoop is a governance tool for AI systems, we expect Customers to use the Service in a manner consistent with recognised responsible-AI principles. Customers must not use the Service to document, justify or evidence AI systems whose intended purpose is unlawful under the EU AI Act, including but not limited to social scoring of natural persons by public authorities, or prohibited biometric categorisation.
3. Reporting violations
If you become aware of any actual or suspected violation of this AUP, please report it to abuse@assuranceloop.co.uk. We investigate reports and may suspend or terminate accounts engaged in prohibited activities.
4. Enforcement
Violation of this AUP may result in suspension or termination of access to the Service in accordance with the Terms of Service. Serious violations may be reported to law enforcement. We will make reasonable efforts to notify the Customer before taking enforcement action unless doing so would cause harm or compromise an investigation.