1. Scope
This policy applies to the Wirtor website, platform, APIs, trials, demonstrations, assessments, documentation and connected services. It applies to customers, users, visitors and anyone acting through their accounts or systems.
2. Prohibited activity
You must not use Wirtor to:
- break any law, regulation, court order or binding obligation;
- infringe intellectual property, privacy, confidentiality or other rights;
- harass, threaten, discriminate against, exploit or cause unjustified harm to a person;
- make unlawful or unfair decisions about employment, credit, insurance, housing, health, education or access to essential services;
- mislead people about the origin, authority, certainty or human review of content or decisions;
- upload malware, exploit vulnerabilities, disrupt services or bypass security controls;
- gain unauthorised access to accounts, systems, data, models or infrastructure;
- scrape, extract or harvest data at a scale or by a method not expressly authorised;
- reverse engineer or probe the service except where the law permits or our Security Policy expressly authorises it;
- send spam, phishing, fraudulent communications or deceptive impersonations;
- create or distribute unlawful, abusive or intentionally dangerous content;
- circumvent usage limits, safeguards, monitoring or account restrictions;
- use outputs as the sole basis for a consequential decision without appropriate human oversight;
- represent machine-generated conclusions as verified facts without reasonable validation.
3. Data and authority
You must have a lawful basis, necessary permissions and appropriate authority for information submitted to Wirtor. You must apply proportionate access controls, avoid unnecessary personal or confidential information, and comply with agreed retention and deletion requirements.
4. Organisational use
Customers are responsible for defining authorised users, decision rights, escalation paths and boundaries for automation. Material decisions should have a clearly accountable human owner. Wirtor outputs must be interpreted in context and challenged where evidence is incomplete, conflicting or uncertain.
5. Enforcement
We may investigate suspected misuse and may restrict, suspend or terminate access, preserve relevant evidence, remove content, contact an administrator, or report conduct to an appropriate authority where reasonably necessary. We will seek to act proportionately, taking account of severity, intent, recurrence and risk.
6. Reporting concerns
Report misuse to [email protected]. Security vulnerabilities should be reported under the Security and Vulnerability Disclosure Policy.