Gridheart Acceptable Use Policy
Version 2026-10, effective 9 October 2026. Replaces the Gridheart Acceptable Use Policy, version 2025-03.
1. Scope and relationship to the Partner Terms
1.1 This Acceptable Use Policy ("AUP") applies to all use of the Platform, the Gridheart Services and the Third-party Products by You, Your Users and Your Customers. It forms part of the Gridheart Partner Terms. Capitalised terms not defined here have the meaning given in the Partner Terms.
1.2 You must comply with this AUP and ensure that Your Users and Your Customers comply with it. You are responsible for their compliance under Section 4.7 of the Partner Terms.
1.3 The acceptable use policies and other Specific Product Terms of each Vendor also apply to its Third-party Products. If a Vendor's terms are stricter than this AUP, the Vendor's terms apply to that Product.
2. Prohibited use: general
You must not use the Platform or any Product, or allow anyone else to use them:
- in breach of any applicable law, regulation or order of a competent authority, including data protection, sanctions and export control laws;
- to infringe the rights of others, including intellectual property, privacy and personality rights;
- to gain, or attempt to gain, unauthorised access to any service, account, device, network or data;
- to send spam, run phishing campaigns or distribute deceptive or fraudulent content;
- to store, transmit or distribute malware, ransomware or other harmful code, except as part of authorised security work in an isolated environment that cannot affect others;
- for unauthorised surveillance, or for the unauthorised modification, exfiltration, encryption for ransom or destruction of data;
- to store or distribute content that is illegal, including content that sexually exploits children, promotes terrorism or incites violence;
- in any situation where a failure of the Platform or a Product could lead to death, serious personal injury or severe physical or environmental damage; or
- to resell, sublicense, rent or otherwise make the Platform or any Product available to third parties, except as permitted under Sections 3.1 and 4.8 of the Partner Terms.
3. Prohibited use: technical, Platform and API
You must not, and must not allow anyone else to:
- copy, modify, decompile, disassemble or reverse engineer the Platform or any Product, except to the extent the law expressly permits it;
- access the Platform or any Product to build a competing product or service;
- access the Platform other than through its user interface or the Partner API, or use scraping, bots or other automated means to extract data from it;
- exceed or circumvent rate limits, usage limits, quotas or billing mechanisms, or use the Platform or a Product in a way designed to avoid Fees;
- share login credentials or API keys, or let more than one person use the same User account;
- remove or change any copyright, trademark or other proprietary notice;
- disable, bypass or interfere with any security, authentication, licensing or access control mechanism;
- probe, scan or test the vulnerability of the Platform, a Product or any shared infrastructure, or carry out penetration tests, without Gridheart's prior written approval;
- disrupt or degrade the integrity or performance of the Platform, a Product or the data in them; or
- use the Platform or any Product to mine cryptocurrency or for other resource-intensive tasks unrelated to their intended purpose.
4. Security and regulatory obligations
4.1 Security. You must protect Your accounts, credentials and API keys as required by Section 3.3 of the Partner Terms, and maintain appropriate security for Your own systems and Your administrative access to Customer environments as required by Section 12.4. API keys and administrator credentials must never be stored in source code, shared documents or messages.
4.2 No attacks through Products. You must not use the Platform or any Product to attack, probe or compromise the systems of third parties, Your Customers or other Gridheart partners.
4.3 Incidents. You must report any actual or suspected security incident, unauthorised access or compromise involving the Platform or a Product to support@gridheart.com within the time set out in Section 12.4 of the Partner Terms.
4.4 Regulation. You are responsible for Your own compliance with NIS2, GDPR and other regulation that applies to You or Your Customers, as set out in Section 12.5 of the Partner Terms. Use of the Products does not in itself fulfil those obligations.
5. AI Features
When You use AI Features in the Platform, or AI functionality in a Product, You must:
- review and validate AI output before relying on it or passing it on, as set out in Section 6.6 of the Partner Terms;
- not use AI Features for any practice prohibited under the EU AI Act, or to generate content that is misleading, discriminatory or otherwise unlawful;
- not use AI output to make decisions that have legal or similarly significant effects on individuals without appropriate human review; and
- not submit personal data to AI functionality unless You have a lawful basis for doing so.
6. Reporting, enforcement and changes
6.1 Reporting. If You become aware of any breach of this AUP by a User, a Customer or anyone else using the Platform or a Product through Your account, You must stop it, and notify support@gridheart.com without undue delay.
6.2 Investigation. Gridheart may investigate suspected breaches. You must cooperate and give Gridheart reasonable access to relevant information and records.
6.3 Measures. If Gridheart reasonably believes this AUP has been breached, Gridheart may, without liability:
- disable Users, API keys, integrations or content;
- suspend Your account, the Platform or any Product, or terminate the Partner Terms, under Section 9.4 of the Partner Terms;
- inform the Vendor concerned; and
- report the matter to the relevant authorities where required or appropriate.
Fees continue to accrue during any suspension under Section 9.5 of the Partner Terms, and You indemnify Gridheart under Section 14 of the Partner Terms for claims arising from a breach.
6.4 Changes. Gridheart may change this AUP in accordance with Section 16 of the Partner Terms.