Acceptable Use Policy

Version 1.0 · Last updated April 21, 2026

This Acceptable Use Policy ("AUP") governs your use of the Struxcor platform (the "Service"). It is incorporated into the Terms of Service. By using the Service, you agree to this AUP on behalf of yourself and anyone using the Service under your account. Violation may result in suspension or termination without refund and, in severe cases, referral to law enforcement.

1. Prohibited Content

You will not upload, generate, store, or transmit content that:

  • violates any applicable law or regulation, including U.S. export and sanctions laws, or construction, labor, wage, tax, procurement, or privacy laws;
  • is fraudulent, misleading, falsified, or designed to deceive a government agency, auditor, court, contractor, or project owner (including falsified daily reports, forged signatures, fabricated payroll records, or backdated inspections);
  • infringes any patent, copyright, trademark, trade secret, moral right, right of publicity, or other intellectual property or proprietary right;
  • contains unlawful harassment, threats, hate speech, or content that sexualizes or endangers minors;
  • contains personal data that you have no lawful basis to process (see the Privacy Policy);
  • includes payment card data, Social Security numbers, government-issued identification numbers, health records, or other regulated sensitive data outside of fields explicitly designed to hold them; or
  • contains viruses, worms, ransomware, spyware, or other malicious code.

2. Prohibited Activities

You will not:

  • attempt to gain unauthorized access to the Service, other accounts, or any underlying infrastructure, systems, or networks;
  • probe, scan, or test the vulnerability of the Service except under a written authorization (see Section 7);
  • bypass, disable, or interfere with authentication, rate-limiting, billing, security, or usage-metering mechanisms;
  • reverse engineer, decompile, disassemble, or attempt to derive the source code of the Service, except to the limited extent permitted by non-waivable law;
  • scrape, crawl, harvest, or extract data from the Service (including public pages) except through our documented APIs, within published rate limits, and in compliance with these Terms;
  • use the Service or AI Outputs to create, train, fine-tune, or benchmark a competing product, dataset, or machine-learning model;
  • resell, sublicense, or make the Service available to unauthorized third parties;
  • interfere with or disrupt the Service, including by transmitting viruses, initiating denial-of-service attacks, or sending disproportionate traffic;
  • use the Service to send unsolicited commercial communications ("spam") or to violate the CAN-SPAM Act, TCPA, CASL, or similar;
  • impersonate any person or entity or misrepresent your affiliation; or
  • use the Service in a way that could cause material harm to construction workers, the public, or real property (for example, by circulating inspection sign-offs without performing the inspection).

3. AI-Specific Rules

  • Do not use AI Outputs to create forged signatures, fabricated photos, or synthetic media intended to deceive.
  • Do not use AI features to generate content that is illegal, violates the Anthropic Usage Policy, or infringes third-party rights.
  • Do not present AI Outputs to regulators, agencies, or courts without the independent review of a qualified licensed professional. See the AI Disclosure.
  • Do not submit prompts designed to jailbreak, bypass safety guardrails, or extract system prompts.
  • Do not upload Customer Data that includes another party's confidential information unless you have authority to do so.

4. Stripe-Prohibited Businesses

Because we process payments through Stripe, we may not be used by or in connection with any business or activity listed on Stripe's prohibited and restricted business lists, including (without limitation):

  • illegal products or services;
  • activities that infringe, misappropriate, or violate a third party's intellectual property, publicity, privacy, or other rights;
  • activities that violate the law of the buyer's or seller's jurisdiction;
  • counterfeit goods, adult content, weapons, ammunition, explosives, gambling, lotteries, or sweepstakes without a license;
  • pyramid schemes, multi-level-marketing plans with no underlying product, "get rich quick" schemes;
  • investment advice, credit repair, debt collection, or credit counseling without appropriate licensing; or
  • activities prohibited by card-network rules (Visa Core Rules, Mastercard Rules, etc.).

The current Stripe list is available at stripe.com/legal/restricted-businesses.

5. Fair Use, Rate Limits, and API Usage

Plans are provided subject to fair-use expectations consistent with typical construction-management usage. We may throttle, rate-limit, or suspend access if your usage materially degrades service for other customers, imposes disproportionate infrastructure cost, or appears automated beyond permitted levels.

  • API requests must include a valid API key or session token and remain within documented rate limits.
  • Do not share API keys. Rotate keys if compromised and notify security@struxcor.com.
  • AI token consumption is metered. Excessive usage beyond plan allotment may be billed at published overage rates or paused until the next billing cycle.

6. Reporting Abuse

If you become aware of a violation of this AUP, report it to abuse@struxcor.com. For security vulnerabilities, follow our coordinated disclosure process at security@struxcor.com with the subject line "Security Report." We do not currently run a paid bounty program but recognize good-faith researchers publicly (with consent) and do not pursue legal action for research conducted within the rules of good-faith security testing (no data exfiltration, no service disruption, no social engineering of staff or users).

7. Enforcement

We review suspected violations based on reports and automated signals. Depending on severity, we may:

  • issue a warning and request remediation within a stated time;
  • remove or quarantine offending content;
  • temporarily suspend account access pending investigation;
  • terminate the account without refund; or
  • cooperate with law enforcement, including providing information in response to lawful process.

Material, repeated, or willful violations typically result in immediate termination. We will provide notice where feasible but may act without notice where user safety, platform integrity, or legal obligations require it.

8. Changes

We may update this AUP as threats and use cases evolve. Material changes will be announced at least 30 days in advance through email or in-product notice. Continued use after the effective date constitutes acceptance.