1. Purpose and scope
This Acceptable Use Policy (Policy) supplements the Frameleaf Master Terms. It applies when you use Frameleaf Cloud, its relay, encrypted backup, AI, accounts, support, commercial APIs and proprietary Applications. It is intended to protect customers, depicted individuals, infrastructure and lawful service operation. It does not create an additional restriction on Frameleaf Library or other open-source software licensed under AGPLv3 or another applicable open-source license.
You must use the Services lawfully, within your authority and within the technical scope and disclosed limits of your Plan. Organization administrators must take reasonable steps to communicate applicable restrictions to authorized users and act on credible misuse reports.
2. Unlawful and harmful activity
Do not use the Services to commit or facilitate fraud, theft, extortion, stalking, credible threats, exploitation, unlawful discrimination, unauthorized surveillance, or an infringement of intellectual-property, privacy or publicity rights. Do not distribute malware, stolen credentials, unauthorized access tools in an operational attack, or content designed to compromise a recipient’s device.
Do not create, possess, process, store, request or distribute child sexual abuse material or material that sexually exploits minors where prohibited by law. Frameleaf prohibits using its Services to create or distribute sexualized depictions of minors, including synthetic depictions. Report suspected exploitation without attaching or unnecessarily redistributing the material.
Do not create or distribute non-consensual intimate imagery, sexual deepfakes of real people without valid consent, voyeuristic material, or content used for sexual coercion. Copyright ownership is not a defense to a violation of another person’s consent or privacy. A depicted person may report such material without establishing ownership of the image.
Lawful private family photographs, artistic works or medical records are not prohibited merely because they contain nudity or sensitive information. Their use must nevertheless comply with consent requirements, applicable law, selected AI restrictions and the security limits of the service. A narrowly restricted AI model does not automatically make lawful material prohibited in an unrelated encrypted backup.
3. Access and infrastructure abuse
Do not access accounts, keys, devices or networks without authorization; defeat access controls; probe another customer’s data; exploit a vulnerability; interfere with monitoring; or conceal an active attack. Do not conduct disruptive penetration tests against Frameleaf infrastructure without written authorization. Good-faith research performed within published authorization and applicable law is not prohibited merely because it reveals a vulnerability.
Do not use relay service as an open proxy, VPN substitute, public traffic exchange, unauthorized content-distribution network, spam relay or gateway for unrelated applications. Do not evade rate limits, usage meters, payment requirements, geographic safety restrictions or suspension by rotating accounts or falsifying identities. Creating an independent compatible client or competing service is not prohibited in itself; consuming Frameleaf’s paid infrastructure without authorization is.
Do not intentionally overload shared resources, run unrelated cryptocurrency mining or unapproved workloads on AI infrastructure, or upload crafted content intended to escape a processing sandbox. Ordinary large-library backup and good-faith disaster restoration within purchased entitlements are not abuse simply because they involve high volume.
4. Content rights, representations and impersonation
Only submit content and instructions you are entitled to process for the relevant purpose. Do not misrepresent a person’s authorization, impersonate Frameleaf or another entity, fabricate official notices, or remove legally required provenance disclosures to deceive others. Do not claim that AI-generated evidence is an unaltered original, or use a generated likeness to defraud a person.
Do not scrape private libraries or assemble face databases from people who have not lawfully authorized that use. Do not use cloud face identification for covert monitoring, prohibited mass surveillance, or decisions that unlawfully affect a person’s rights. Access to a shared album is not permission to train a model or redistribute its contents.
5. Commercial and regulated use
A business may use a business-authorized Plan within its disclosed scope. Reselling Frameleaf commercial service entitlements, creating a multi-customer service bureau or representing yourself as a Frameleaf reseller requires the applicable written authorization. This restriction does not prohibit commercial hosting of AGPL-covered Library code using your own infrastructure.
Do not submit regulated data for a use requiring a contract, certification or configuration that Frameleaf has not expressly agreed to provide. In particular, the ordinary Terms are not a business associate agreement, regulated-records archive, immutable legal-hold system, government-security authorization, or guarantee of a particular data residency. Personal photographs are not automatically prohibited merely because they incidentally show health information; a regulated organization’s systematic processing is a different use requiring evaluation.
6. Enforcement and proportionality
Frameleaf may investigate credible reports using information lawfully available to it, request clarification, temporarily restrict a feature, remove or disable material within its control, or suspend or terminate access under the Master Terms. Encryption may limit what Frameleaf can inspect. This Policy does not grant a general right to decrypt customer-controlled backups or continuously review all private photographs.
Where feasible and lawful, Frameleaf will identify the nature of the issue, the restriction, corrective steps and a review channel. It will prefer measures directed to the affected content, credential or feature over unnecessary destruction of unrelated lawful data. Immediate action may be necessary for imminent harm, compromised accounts, unlawful material, legal process or serious infrastructure risk. Required legal reporting or preservation may apply.
A disputed allegation is not automatically treated as proven. Frameleaf may preserve relevant evidence and restrict access while reasonably reviewing the matter. It will not retaliate against good-faith criticism, lawful competition, a genuine payment dispute or a lawful complaint to a regulator. Suspension does not extinguish mandatory consumer remedies or independently granted open-source rights.
7. Reporting and review
Send abuse reports to [email protected]. Identify the account, share link, job or other service location; explain the issue and the authority under which you report it; and provide a safe way to contact you. Do not include passwords, private encryption keys or illegal image files. Copyright, intimate-image and legal-process reports have the additional procedures in the Copyright and Abuse Policy.
Security reports should go to [email protected] with reproducible, non-destructive details. This Policy is not itself authorization to test systems or access another person’s information. Requests to review an enforcement decision may be sent to [email protected] with the case reference and any relevant explanation. Frameleaf will conduct a reasonable review by personnel who can reconsider the decision, subject to legal restrictions and the need to prevent renewed harm.
Frameleaf, Inc., 14 Wall Street, Suite 2000, New York, NY 10005, United States, administers this Policy. Material amendments follow the Master Terms and do not silently reduce an existing contractual retrieval period.
Telephone: +1 (332) 287-1911.