Acceptable Use Policy
Rules protecting ZeroLapse customers, users, and systems.
01Overview
This Acceptable Use Policy protects ZeroLapse customers, users, and systems. It forms part of the Terms of Service and applies to everyone who uses the service.
02Scope
This Policy forms part of the Terms of Service and applies to every customer, administrator, manager, staff user, and person accessing or interacting with the service.
03Prohibited conduct
You must not:
- Use the service for unlawful, fraudulent, deceptive, discriminatory, harassing, abusive, defamatory, or rights-infringing activity.
- Upload malware, illegal material, stolen data, or content the Customer lacks authority to process.
- Probe, scan, test, defeat, bypass, or exploit security, authentication, permissions, rate limits, tenant isolation, or access controls without prior written authorisation.
- Attempt to access another organisation’s data, accounts, storage paths, documents, or audit records.
- Interfere with availability, overload systems, automate excessive requests, scrape, reverse engineer where prohibited, or disrupt another user.
- Share credentials, impersonate another person, or falsify records, approvals, evidence, expiry dates, or audit information.
- Use the service to send spam, unsolicited marketing, phishing, malicious links, or deceptive communications.
- Resell, sublicense, or provide bureau access to the service unless a written agreement allows it.
- Use confidential security information to cause harm, or disclose a vulnerability publicly before responsible remediation.
- Use the service in a way that creates a material risk to people, property, ZeroLapse, a provider, or another customer.
04Customer controls
Customers must supervise authorised users, promptly revoke unnecessary access, investigate suspected misuse, preserve relevant evidence, and cooperate with reasonable security enquiries. Customers must not treat a ZeroLapse role as a substitute for their own employment, delegation, or approval controls.
05Enforcement
ZeroLapse may investigate suspected violations and may remove content, rate-limit, restrict features, suspend users or organisations, preserve evidence, notify affected parties or authorities, or terminate service. Immediate suspension may occur for illegal activity, abuse, attacks or exploits, material cross-tenant risk, or non-payment. Where safe and practicable, we will notify the Customer and allow a reasonable opportunity to remedy.
06Reporting
Report abuse or security concerns to hello@zerolapse.co.nz. Do not include sensitive evidence in an initial email; request a secure transfer method. Good-faith vulnerability research does not authorise access to customer data or service disruption.