# Acceptable Use Policy

## 1. Scope

This Acceptable Use Policy forms part of the [Podda Terms of Service](/terms). It applies to accounts, apps, generated code, prompts, files, app state, network connections and every other use of Podda.

You must not use Podda to create, store, request, facilitate, link to or distribute prohibited content or activity, even inside a private app.

## 2. Illegal and exploitative content

Do not use Podda for:

- child sexual abuse material, grooming, sexual exploitation or any sexual content involving a person under 18;
- trafficking, modern slavery or facilitation of sexual services;
- terrorist content, violent-extremist recruitment or instruction, or credible threats of violence;
- fraud, scams, phishing, impersonation, deceptive credential collection, money laundering or evasion of sanctions;
- illegal goods, controlled substances or instructions primarily intended to facilitate a serious offence;
- unlawful hate, harassment, stalking, coercive control, doxxing or targeted intimidation;
- non-consensual intimate imagery, sexual deepfakes or content that exploits a person without consent;
- content or conduct that infringes intellectual property, privacy, confidentiality, publicity or data-protection rights; or
- any other content or activity that is unlawful where you or affected people are located.

## 3. Sexual and harmful content

Podda does not permit pornography, explicit sexual content, sexualised nudity, sexual-services content or fetish content. Do not encourage, instruct or glorify suicide, self-harm, eating disorders or dangerous challenges.

Do not create realistic deceptive media intended to mislead people about a person's conduct, identity or endorsement. Clearly label benign synthetic media where a reasonable person could otherwise be deceived.

## 4. Security and platform abuse

Do not:

- create or distribute malware, ransomware, spyware, botnets, exploit kits or destructive code;
- obtain or test access to systems, accounts or data without clear authorisation;
- bypass authentication, membership, exact-origin network grants, rate limits, quotas or safety controls;
- scrape or harvest data unlawfully or contrary to a provider's enforceable restrictions;
- launch denial-of-service activity, abusive automation, spam or unsolicited bulk messaging;
- use Podda as an open proxy, traffic relay, cryptocurrency miner or concealed hosting service;
- probe another user's app or attempt to derive internal object keys, credentials or infrastructure secrets;
- share accounts, invitations, access codes or credentials; or
- interfere with Podda, its providers or other users.

Good-faith security research requires our written authorisation and a defined scope before testing begins.

## 5. High-risk information is prohibited

Podda is intended for ordinary personal, household and business information.

Do not submit:

- children's personal information;
- medical, mental-health, genetic or safeguarding records;
- payment-card numbers, bank credentials or detailed financial records;
- government identifiers, immigration records or identity-document images;
- passwords, API secrets, private keys or authentication tokens;
- biometric templates or persistent facial-recognition data;
- precise-location histories or covert tracking information;
- employment, insurance, credit, tenant-screening or educational decision records; or
- confidential professional-client material or information subject to a regulated secrecy duty.

Do not use Podda output to make medical, legal, financial, employment, insurance, housing, education, immigration, safeguarding or other decisions that determine a person's important rights or access to essential services.

## 6. Respect people and household boundaries

Only invite people who should have access. Tell members what information an app collects and where an approved external connection sends it. Do not use an app to monitor a household member secretly or to make consequential decisions about them without a lawful and fair basis.

Minimise stored information, use the narrowest external grant and remove access when it is no longer needed.

## 7. Enforcement

We may restrict a feature, quarantine or remove an object, disable an app or account, preserve evidence, report to a competent authority or terminate access when reasonably necessary to address a suspected breach.

Where urgency and law allow, we will provide a reason and an appeal route. Repeated or severe breaches may result in permanent termination. We may treat attempts to evade an enforcement action as a further breach.

Report concerns through the [Safety page](/safety) or email [legal@podda.app](mailto:legal@podda.app). Do not attach or retransmit illegal material.
