Acceptable Use Policy
Rules for using Frostbridge websites, the SaaS platform, APIs, agents, and related services.
Acceptable Use Policy
This Acceptable Use Policy (“AUP”) applies to use of Frostbridge’s websites, SaaS platform, APIs, agents, browser extensions, integrations, and related services (“Services”). Capitalized terms not defined here have the meanings in the Frostbridge Customer Agreement.
Customer is responsible for all activity under its accounts, users, API keys, integrations, agents, and connected systems.
1 Legal compliance
Customer may use the Services only in compliance with applicable laws, regulations, contracts, third-party terms, and internal policies. Customer is responsible for notices, consents, approvals, employment-law compliance, monitoring policies, BYOD policies, works council approvals, and sector-specific requirements.
2 No unauthorized access or surveillance
Customer may not use the Services to access, monitor, scan, collect, or process data from systems, devices, accounts, users, tenants, repositories, browsers, AI tools, or networks unless Customer has the legal right to do so.
3 No harmful or abusive activity
Customer may not use the Services to develop, distribute, host, transmit, or facilitate malware, credential theft, phishing, spam, denial-of-service attacks, unauthorized scanning, exploitation, evasion, or other harmful activity.
4 No misuse of AI features
Customer may not use AI-related features to generate unlawful content, evade security controls, create malicious instructions, exfiltrate data, impersonate others, make legally significant decisions without appropriate human review, or violate third-party model/provider terms.
5 No prohibited data
Customer may not submit data that is prohibited by law or contract, payment card data subject to PCI DSS unless expressly agreed, highly regulated health/financial data unless expressly agreed, data from children, or sensitive personal data except as permitted by the Customer Agreement, this AUP, and Customer’s configuration.
6 No interference with Frostbridge
Customer may not interfere with or disrupt the Services; bypass rate limits; probe or test Frostbridge infrastructure without authorization; use excessive resources; circumvent security controls; share accounts in violation of seat rules; or attempt to reverse engineer, decompile, or derive source code or underlying models except as permitted by law.
7 Third-party services
Customer is responsible for complying with the terms and policies of third-party services connected to Frostbridge, including cloud providers, identity providers, code repositories, communication tools, AI tools, browser vendors, app marketplaces, and SaaS platforms.
8 MSP and client environments
Customer may not use the Services to manage, monitor, or secure third-party client environments as an MSP, MSSP, consultant, or reseller unless permitted in the Subscription Record or a written MSP/partner agreement.
9 Suspension and enforcement
Frostbridge may investigate suspected violations and may suspend or restrict access to the Services if Frostbridge reasonably believes that Customer’s use violates this AUP, creates security risk, may harm Frostbridge or others, may violate law, or may expose Frostbridge to liability. Frostbridge will use reasonable efforts to give notice where practicable, but may act immediately when needed.
10 Reporting
To report abuse, contact security@frostbridge.ai.
