1. Purpose
This policy forms part of the Trelyqo Terms. Customers are responsible for their users’ compliance.
2. Prohibited activity
You must not use Trelyqo to break law, infringe rights, harass or discriminate, distribute malware, facilitate fraud, evade sanctions, attack systems, impersonate others, manipulate authentication, bypass permissions, or intentionally disrupt the Services.
- No credential stuffing, password spraying, phishing or unauthorised access.
- No malware, ransomware, botnet, crypto-mining or destructive payloads.
- No unlawful surveillance or processing of personal data.
- No hosting or transmission of material that infringes intellectual-property rights or confidentiality duties.
- No use that materially consumes resources in a way that harms other customers.
3. Security testing
Do not perform penetration testing, vulnerability scanning, exploit attempts, load testing or security research against Trelyqo without prior written authorisation and agreed scope. Good-faith vulnerability reports should be submitted through Keephy’s designated security contact when published.
4. Restricted data
Unless expressly supported and agreed, do not place payment-card data, passwords, secret keys, health data, biometric data, criminal-offence data, highly sensitive government identifiers or regulated classified information into Trelyqo.
5. Automation, APIs and scraping
Automated use must follow documented APIs, rate limits and permissions. Scraping, bulk extraction, model training on protected Trelyqo materials, or automated actions designed to bypass normal controls are prohibited unless Keephy expressly permits them.
6. Enforcement
Keephy may investigate suspected violations and suspend, restrict or terminate access where reasonably necessary. We may preserve or disclose information where required by law or needed to protect legal rights, security or users. Customers remain responsible for consequences of prohibited use by their users where attributable to the Customer.