Acceptable Use Policy
Platform-wide prohibited conduct and enforcement rules for the Services.
Effective September 1, 2026Last updated September 1, 2026
1. Scope
This Acceptable Use Policy applies to all Customer and Authorized User use of the Demand Trail Services, APIs, integrations, communication functionality, and external-facing functionality.
A violation of this Policy may be treated as a breach of the Agreement. Additional rules apply to messaging and AI features under the Messaging and Anti-Spam Policy and AI Acceptable Use Policy.
2. Illegal, Harmful, and Rights-Infringing Use
You may not use the Services to violate applicable law, facilitate criminal conduct, infringe intellectual property or privacy rights, distribute unlawful content, or knowingly assist another person in doing so.
You may not use the Services to create, store, transmit, or facilitate material that is fraudulent, materially deceptive, threatening, harassing, exploitative, or intended to facilitate violence or unlawful discrimination.
3. Security Abuse
You may not probe, scan, test, exploit, or circumvent the security or access controls of the Services or another system without authorization.
You may not introduce malware, destructive code, credential theft, phishing, denial-of-service activity, or other technical mechanisms intended to compromise systems, data, or users.
You may not access another Customer's Tenant, workspace, records, or resources without authorization or attempt to bypass Tenant, role, workspace, ownership, or subscription boundaries.
4. Impersonation and Deception
You may not impersonate another person or organization in a deceptive manner, falsify sender identity, create misleading account information, or misrepresent affiliation, authority, or message origin.
5. Data and Privacy Misuse
You may not upload, obtain, process, disclose, or use Personal Data through the Services without a lawful right to do so.
You may not use the Services to facilitate unlawful surveillance, unlawful discrimination, identity theft, credential trafficking, or unauthorized disclosure of confidential information.
6. Abusive Automation and Resource Use
You may not use bots, scripts, APIs, imports, exports, workflows, or other automation to overload the Services, defeat usage limits, evade rate limits, create disproportionate load, or interfere with other customers.
You may not scrape or extract the Services, Documentation, or other customers' data except through functionality expressly provided for Customer's own authorized data and use.
7. Communications
All email and other communications sent, managed, or automated through the Services must comply with the Messaging and Anti-Spam Policy and applicable law.
You may not continue contacting a recipient through the Services after a valid opt-out where applicable law or the Messaging and Anti-Spam Policy requires suppression.
8. Regulated and High-Risk Uses
Unless expressly approved in writing, the Services are not designed for storing regulated health information, payment card account data, government identification numbers, or other highly sensitive regulated data requiring specialized contractual or certification frameworks.
Customer is responsible for determining whether the Services are appropriate for its regulated use case and for obtaining any written addendum required by Demand Trail before processing regulated data.
9. Competitive and Unauthorized Commercial Use
You may not reverse engineer, decompile, copy, or use the Services to build a materially similar competing service except to the limited extent such restriction is prohibited by law.
You may not resell or provide the Services as a standalone hosted service without written authorization.
10. Enforcement
Demand Trail may investigate suspected violations and may remove content, restrict features, throttle activity, suspend sending, suspend access, or terminate accounts where reasonably necessary to protect the Services, customers, recipients, or third parties.
Where practical, Demand Trail will use proportionate measures and provide notice. Immediate action may be taken where delay could create security, legal, reputational, or infrastructure risk.