Acceptable Use Policy
Version 1.0
Last Updated: July 19, 2026
Purpose
This Acceptable Use Policy ("AUP") defines permitted and prohibited uses of the SetRoasFlow Services.
Its purpose is to protect the security, reliability and integrity of the platform while ensuring compliance with applicable laws.
This policy forms part of the Terms of Service.
Permitted Use
Merchants may use SetRoasFlow only for lawful business purposes consistent with the documentation and Terms of Service.
Merchants are responsible for ensuring that their use of the Services complies with all applicable laws and regulations.
Prohibited Activities
Merchants may not use the Services to:
- violate applicable laws or regulations;
- infringe intellectual property rights;
- transmit unlawful or fraudulent content;
- distribute malware or malicious code;
- facilitate phishing or identity theft;
- interfere with the operation of the Services;
- attempt unauthorized access to systems or accounts;
- circumvent security controls;
- overload or disrupt platform infrastructure;
- scrape or harvest information from other users;
- engage in deceptive or misleading practices.
Privacy Violations
Merchants may not use SetRoasFlow to:
- process Personal Data without an appropriate legal basis;
- ignore applicable consent requirements;
- collect data through deceptive means;
- transmit data that the Merchant has no legal right to process;
- intentionally circumvent privacy protections implemented by the platform.
Prohibited Data
Unless expressly supported and lawfully processed, Merchants should not use SetRoasFlow to transmit:
- passwords;
- payment card numbers;
- authentication credentials;
- government-issued identification numbers;
- biometric templates;
- protected health information;
- classified information;
- trade secrets belonging to third parties.
Merchants remain responsible for the data submitted to the platform.
Security
Merchants must:
- maintain appropriate account security;
- protect API credentials;
- keep authentication information confidential;
- promptly report suspected security incidents affecting their account.
Merchants are responsible for activity occurring under their accounts unless caused by SetRoasFlow.
Platform Integrity
Merchants may not:
- reverse engineer the Services except where permitted by law;
- attempt to discover confidential implementation details;
- interfere with APIs;
- intentionally generate excessive traffic;
- bypass usage limitations;
- exploit software vulnerabilities.
Responsible security research should be coordinated with SetRoasFlow before testing production systems.
Destination Integrations
Merchants are solely responsible for ensuring that configured Destinations are used in compliance with:
- applicable laws;
- contractual obligations;
- platform policies;
- privacy requirements.
SetRoasFlow does not independently validate the legality of Merchant-configured data routing.
Enforcement
Where SetRoasFlow reasonably believes that this policy has been violated, it may:
- investigate reported activity;
- request additional information;
- temporarily restrict platform functionality;
- suspend access to the Services;
- terminate accounts for serious or repeated violations;
- cooperate with competent authorities where legally required.
Enforcement actions are intended to protect the platform, other Merchants and affected individuals.
Reporting Abuse
Suspected abuse, security issues or policy violations may be reported to:
Policy Updates
This Acceptable Use Policy may be updated periodically to reflect:
- legal developments;
- new platform capabilities;
- emerging security threats;
- operational improvements.
Continued use of the Services after publication of an updated version constitutes acceptance of the revised policy where permitted by applicable law.
Contact
Questions regarding this policy may be directed to:
Operator
Matteo De Giuseppe
Italy
Version History
| Version | Date | Description |
|---|---|---|
| 1.0.0 | July 19, 2026 | Initial publication. |
End of Acceptable Use Policy