LEGAL & TRUST
Acceptable Use Policy
Use KRAVIA services lawfully, within your authority and without harming people, compromising systems or violating privacy. Enforcement is proportionate and reviewable where safe and lawful.
1
Who this Policy applies to
This Policy applies to users, organizations, administrators, developers and other people using a service that incorporates it. It covers direct use, API access, integrations, uploads, AI functions and automated communications. Customers must take reasonable steps to ensure their authorized users follow applicable rules. Product-specific restrictions may address additional risks.
2
Unlawful conduct and harm to people
Do not facilitate fraud, theft, exploitation, trafficking, illegal goods or services, or other unlawful conduct. Do not threaten, harass, stalk, dox or unlawfully discriminate against a person. Do not impersonate a person, organization, authority or KRAVIA brand in a misleading way, or misrepresent your authorization to act for them.
Child sexual abuse material, sexual exploitation of minors, grooming, non-consensual intimate imagery and content facilitating those harms are prohibited. Do not use AI or synthetic media to deceive people about material identity, authority or consent. Lawful pseudonyms and clearly identified fictional or satirical content are not inherently deceptive impersonation, but do not excuse other violations.
3
Privacy and customer information
Collect and process personal information only with appropriate authority, notices and lawful grounds. Do not upload stolen databases, private records obtained unlawfully, or information for a purpose incompatible with the service. Publicly accessible information remains subject to applicable restrictions and reasonable privacy safeguards.
Do not use contact access, location tools, recordings, analytics or integrations for covert surveillance or unrelated marketing. Do not attempt to identify people from de-identified information supplied under a non-reidentification restriction. Do not pool another customer's information or bypass data segregation.
4
Security and platform integrity
Do not distribute malicious code, obtain credentials deceptively, evade authorization, access another account, exploit a vulnerability beyond authorized research scope, or disrupt availability. Do not perform destructive testing, denial-of-service activity, abusive load generation or extraction of secrets. Do not conceal abusive traffic through account rotation or bypass usage limits and safety controls.
Legitimate security reports and research within the Vulnerability Disclosure Policy are treated separately from malicious exploitation. That policy does not authorize testing of third-party infrastructure or unrelated customers' accounts.
5
Messaging and automation
Do not send spam or use purchased, scraped or harvested lists for unsolicited messaging through KRAVIA. Honor recipient opt-outs and channel-specific requirements. Do not disguise promotion as a transaction, security alert or support message. Automated actions must be within the user's permissions and the recipient relationship actually authorized.
Repeated low-quality, deceptive or unconsented messaging may justify limits even when every message is not independently adjudicated unlawful. The Electronic Communications and Anti-Spam Policy provides the detailed standard.
6
Intellectual property and extraction
Do not knowingly infringe copyrights, trademarks, confidentiality or other rights. Do not remove required notices, falsely claim ownership of a resource, redistribute confidential documents, or use automated extraction in violation of lawful access restrictions or in a way that harms privacy, security or service integrity.
This Policy does not prohibit conduct that applicable law or a binding open-source licence expressly permits. Automated retrieval authorized by a documented API is permitted within its approved scope and usage limits.
7
High-impact and regulated use
Do not use a general-purpose feature as an unapproved medical diagnostic, financial decision, employment rejection, safety-critical control or other consequential system. Specialized uses require an expressly supported product, appropriate legal basis, competent human oversight and any sector-specific requirements. A customer cannot remove KRAVIA's responsibilities by labelling the use “at its own risk.”
8
Reports, investigation and enforcement
Report suspected misuse through product support, support@kraviaprivatelimited.com or legal@kraviaprivatelimited.com. Give enough context to locate the relevant activity, but do not send unnecessary private records. Immediate threats may also require the appropriate emergency or law-enforcement channel.
We may investigate relevant records using narrowly scoped, authorized access. Depending on seriousness and evidence, action may include a warning, content restriction, workflow limits, temporary suspension or termination. We provide notice and a remedy opportunity where appropriate. Urgent risks, legal restrictions or potential evidence destruction can justify action without advance notice.
9
Review and appeals
Where safe and lawful, affected users receive a general explanation and can request review through the Grievance and Appeals Policy. A complaint alone does not establish a violation, and an appeal does not automatically reverse a justified restriction. We protect other people's privacy and sensitive detection methods when explaining decisions. Legitimate complaints or exercise of privacy rights are not reasons for retaliation.