Acceptable Use Policy
This Acceptable Use Policy ("AUP") governs what you may and may not do when using CORE — the AI-powered enterprise software generation platform at core.ssdbtech.com, operated by SSDB Tech Services, Inc. ("SSDB Tech"). By accessing or using CORE, you agree to comply with this AUP. This AUP forms part of your agreement with SSDB Tech alongside our Privacy Policy, Security Policy, and Disclaimer. A full Terms of Service will be published at a future date and will incorporate and supersede applicable provisions of this AUP.
1. Who this policy applies to
This AUP applies to all individuals and organisations who access or use CORE in any capacity, including:
- Individuals who register for a CORE account on behalf of a business organisation
- Authorised users within customer organisations who use CORE under a shared account or subscription
- Any third party who accesses CORE outputs or integrates with CORE through an API or integration
If you access CORE on behalf of an organisation, you represent that you have authority to bind that organisation to this AUP, and that your organisation accepts responsibility for ensuring that all its authorised CORE users comply with this policy.
CORE is a professional platform intended exclusively for business users aged 18 and over, using verified business email addresses. Personal, consumer, or non-commercial use is not permitted.
2. Permitted use
CORE is an AI engine that generates enterprise software specifications, data models, API definitions, user interface blueprints, and — where applicable — application code, based on business requirements you provide. You may use CORE to:
- Design and generate software applications for your own organisation's internal use
- Design and generate software applications for your clients, in the ordinary course of a software development, consulting, or professional services business
- Upload business requirements documents, technical specifications, architecture documents, and similar professional materials to support CORE's software generation process
- Review, edit, and approve AI-generated outputs at each stage of the CORE workflow
- Access CORE's documentation, tutorials, and support resources
- Integrate CORE with your existing tools and workflows in ways expressly permitted by SSDB Tech
All use must be for lawful, legitimate business purposes and must comply with all applicable law in every jurisdiction relevant to your use.
3. Prohibited conduct
Category 1 — Harmful, illegal, and malicious use
- Illegal software generation: Using CORE to design, generate, or specify software intended to facilitate illegal activity, including but not limited to fraud, money laundering, tax evasion, illegal surveillance, human trafficking, or the distribution of controlled substances
- Malicious code: Using CORE to generate malware, ransomware, spyware, viruses, trojans, keyloggers, botnets, or any other software designed or intended to damage, disrupt, gain unauthorised access to, or exfiltrate data from any system
- Cyberweapons and offensive tools: Using CORE to design exploit frameworks, attack tools, denial-of-service systems, or any technology primarily designed to attack or compromise systems without authorisation
- Prohibited content systems: Using CORE to build platforms designed to produce, distribute, or host content that is illegal in the jurisdiction of use or that violates the rights of individuals, including child sexual abuse material (CSAM), non-consensual intimate imagery, or content inciting violence or hatred
Category 2 — Unauthorised access and data misuse
- Unauthorised system access: Using CORE to design systems intended to gain unauthorised access to computer systems, networks, databases, or accounts
- Data harvesting without consent: Designing systems through CORE that collect, process, or exploit personal data without the knowledge or consent of the individuals concerned, in violation of applicable privacy law
- Credential harvesting or phishing: Using CORE to build systems designed to impersonate legitimate services, harvest credentials, or deceive users into disclosing sensitive information
- Platform scraping and automated abuse: Using bots, scripts, or automated tools to access, scrape, or interact with the CORE platform in any manner not expressly authorised by SSDB Tech
Category 3 — Misrepresentation and IP infringement
- Misrepresentation of identity or purpose: Misrepresenting your identity, your organisation, or the intended purpose of any software you are generating through CORE to obtain access or outputs you would not otherwise be entitled to
- Intellectual property infringement: Uploading to CORE any material that infringes the intellectual property rights of any third party, including copyrighted source code, confidential third-party trade secrets, or proprietary specifications uploaded without authorisation
- Circumventing platform controls: Attempting to bypass, reverse-engineer, circumvent, or undermine CORE's authentication, access controls, usage limits, security measures, or AI safety controls
Category 4 — Commercial misuse
- Unauthorised resale: Reselling, sublicensing, white-labelling, or otherwise commercialising access to CORE as a service without SSDB Tech's express written authorisation
- Infrastructure overloading: Deliberately sending excessive traffic, running stress tests, or otherwise attempting to overload, destabilise, or degrade CORE's infrastructure
- Sanctioned entities: Accessing or using CORE if you, your organisation, or any beneficial owner are subject to applicable trade sanctions, export control restrictions, or appear on any relevant government sanctions list, including OFAC SDN, EU consolidated list, or UN sanctions lists
4. AI-specific obligations
Because CORE is an AI-powered platform, you have additional obligations with respect to how you use AI-generated outputs:
- Mandatory human review: You acknowledge that CORE requires human review and approval at each stage of the software generation workflow before proceeding. You must not attempt to circumvent, automate, or bypass these review stages.
- No autonomous deployment: You must not deploy software generated by CORE into any production or live environment without independent technical review, security assessment, and — where applicable — regulatory compliance validation by qualified professionals.
- AI transparency: If the software you build using CORE interacts with or makes decisions about individuals, you are responsible for complying with applicable AI transparency obligations in your jurisdiction, including those arising under the EU AI Act, relevant US state AI regulations, or equivalent law.
- No manipulation of AI outputs: You must not attempt to manipulate, jailbreak, or engineer CORE's AI processing pipeline to produce outputs that would otherwise violate this AUP or applicable law, including through prompt injection, adversarial inputs, or other techniques.
5. Data upload obligations
When you upload documents, specifications, code, or other materials to CORE, you represent and warrant that:
- You hold all necessary rights, licences, or permissions to upload and process the material through CORE
- The material does not infringe the intellectual property rights or confidentiality obligations of any third party
- Where the material contains personal data, you have complied with all applicable data protection law, including obtaining necessary consents and establishing an appropriate legal basis for processing
- You are not uploading real customer personal data, government-issued identification numbers, financial account credentials, protected health information, or similar sensitive personal data unless strictly necessary and legally justified
- The material does not contain export-controlled information or material subject to government security classifications that would restrict its processing through commercial AI infrastructure
Data minimisation: We recommend uploading only the information necessary for CORE to understand your requirements. You do not need to upload real customer data to generate software — representative synthetic data or anonymised examples serve equally well and reduce your regulatory exposure.
6. Security responsibilities
You are responsible for the following security obligations in connection with your use of CORE:
- Maintaining the security of your authentication credentials and ensuring that multi-factor authentication is enabled on the identity provider account used to access CORE
- Ensuring CORE access is provisioned only to authorised personnel within your organisation, and is promptly deprovisioned when individuals leave or change roles
- Notifying SSDB Tech immediately at report@ssdbtech.com if you become aware of any unauthorised access to your CORE account, any security incident affecting CORE, or any vulnerability in the CORE platform
- Conducting your own independent security assessment — including penetration testing and code review — on any software derived from CORE outputs before deploying in a production environment
7. Output use and deployment responsibility
Software specifications, code, and other outputs generated by CORE are provided to you as professional tools subject to mandatory human review. As the deploying party, you are solely responsible for:
- Ensuring all outputs are reviewed, tested, and validated before deployment
- Ensuring deployed software complies with all applicable laws and regulations in every jurisdiction in which it operates
- Ensuring the software does not infringe the intellectual property rights of third parties
- Assuming all liability to third parties arising from the software you deploy, irrespective of whether it was generated with the assistance of CORE
CORE outputs are intended for use in building legitimate business software. You must not represent Core-generated outputs as constituting professional legal, financial, regulatory, medical, or security advice. See our Disclaimer for full details.
8. Pricing and subscription management
Access to CORE is provided under subscription plans or bespoke commercial agreements. Pricing, payment terms, and plan features are communicated at the point of purchase or in your commercial agreement with SSDB Tech. Matters relating to refunds, credits, plan changes, and cancellations are handled at the discretion of SSDB Tech management and in accordance with your specific agreement. To discuss commercial terms, contact legal@ssdbtech.com.
9. Compliance with laws
You must use CORE in compliance with all applicable local, national, and international laws. This includes, without limitation:
- Data protection and privacy law (including GDPR, UK GDPR, CCPA/CPRA, India DPDP Act, Brazil LGPD, Canada PIPEDA/Law 25, Australia Privacy Act, and equivalent laws in your jurisdiction)
- Export control and trade sanctions regulations (including US EAR, ITAR, OFAC sanctions, EU dual-use regulations, and applicable UN sanctions)
- Intellectual property law applicable to the content you upload and the outputs you deploy
- AI-specific regulation applicable in your jurisdiction, including the EU AI Act where it applies to systems you build or deploy
- Sector-specific regulation applicable to your industry and the software you develop (such as HIPAA for healthcare, PCI-DSS for payment processing, FCA rules for financial services)
10. Monitoring and enforcement
SSDB Tech reserves the right to monitor use of CORE to detect and investigate potential violations of this AUP, applicable law, or our other policies. Monitoring is conducted in accordance with our Privacy Policy.
If we determine, in our reasonable judgement, that you have violated this AUP, we may take one or more of the following actions:
- Issue a formal warning requiring cessation of the violating conduct
- Suspend your access to CORE, with or without prior notice, depending on the severity of the violation
- Permanently terminate your access to CORE and cancel your subscription without refund
- Remove or disable access to any content, outputs, or data involved in the violation
- Report the conduct to relevant law enforcement, regulatory authorities, or professional bodies where required or appropriate by law
- Pursue civil remedies, including injunctive relief and damages, where the violation has caused harm to SSDB Tech, other users, or third parties
Termination or suspension of your access does not affect any rights or obligations that accrued prior to termination, including any indemnification obligations or liability for violations that occurred before termination.
11. Reporting violations
If you become aware of any use of CORE — by any user, including within your own organisation — that appears to violate this AUP, applicable law, or our other policies, please report it promptly:
- AUP violations: report@ssdbtech.com — Subject line: "AUP Violation Report — CORE"
- Security incidents or vulnerabilities: report@ssdbtech.com — Subject line: "Security Vulnerability Report — CORE"
- Privacy concerns: privacy@ssdbtech.com
All reports are treated as confidential. We will not retaliate against any person who makes a good-faith report under this section.
12. Governing law
This AUP is governed by the laws of the State of Texas, United States, without regard to conflict of law principles. For users in jurisdictions where mandatory local consumer or business protection laws impose obligations that cannot be contractually excluded, those mandatory obligations apply. Nothing in this AUP limits rights you have under mandatory applicable law in your jurisdiction.
13. Changes to this policy
SSDB Tech reserves the right to update this AUP at any time to reflect changes in the CORE platform, legal requirements, or our policies. Material changes will be communicated to active users by email at least 30 days before the effective date of the change. Continued use of CORE after a revised AUP has been published constitutes acceptance of the revised terms. If you do not accept a revised AUP, you must discontinue use of CORE and may request account and data deletion by contacting legal@ssdbtech.com.
Contacts under this policy
AUP violations & security reports: report@ssdbtech.com
Legal and commercial enquiries: legal@ssdbtech.com
Privacy and data protection: privacy@ssdbtech.com
Website: core.ssdbtech.com
SSDB Tech Services, Inc. · Incorporated in Texas, USA · We respond to all AUP reports within 3 business days