Acceptable Use

Acceptable Use Policy

A short list of things that are not allowed, so the boundaries are unambiguous for every workspace.

Version 1.0

Effective 30 August 2026 · Last updated 30 August 2026. These documents describe how Business OS 365 works today. They are prepared for professional Malta/EU legal review and are not legal advice. Nothing here is certified, audited, regulator-approved or lawyer-approved.

1. Unlawful or fraudulent use

Business OS 365 must not be used for unlawful activity, fraud, deception, money laundering, sanctions evasion or any attempt to disguise the true nature of a transaction or record.

2. Unauthorised access and security abuse

Do not attempt to access another company's workspace, another user's account, or any system, data or interface you have not been granted. Do not probe, scan or test the security of the service without written permission, and do not exploit or publicise a vulnerability instead of reporting it.

3. Malware, interference and automated abuse

Do not upload or transmit malware, attempt to disrupt or overload the service, interfere with other users, or use scripted, automated or bulk access that degrades the service or circumvents intended limits.

4. Impersonation, harassment and spam

Do not impersonate another person, company or Business OS 365 itself, and do not use the product to harass, threaten or send unsolicited bulk communications.

5. Intellectual property and privacy of others

Do not enter or distribute content that infringes intellectual property rights, breaches confidentiality, or records personal data about people where you have no proper basis for holding it.

6. Circumventing access, roles or billing

Do not attempt to bypass role permissions, workspace isolation, database authorization, subscription entitlements, seat limits or any other access control — whether through the interface, the API surface or otherwise.

7. No clinical, patient or diagnostic use

Business OS 365 must not be used as a clinical system, patient record system, diagnostic tool or any component of medical decision-making. Healthcare businesses may use it for operational functions such as stock, suppliers, expenses and staffing only.

8. No payment card data in operational fields

Never enter payment card numbers, card verification values or full bank credentials into operational fields such as notes, descriptions, references or contact records. Card data belongs with Stripe on payment surfaces, and nowhere else in this product.

9. No unsupported special-category data

Do not deliberately record special-category or highly sensitive information — such as health, biometric, genetic, religious, political or similar data — in a product that is not designed to support it.

10. Enforcement

Breach of this policy may lead to access being limited, suspended or terminated, in line with the Terms of Service.

Operator and contact

Business OS 365 is operated by YK Digital Marketing in Malta. Full operator and contact details — including registered address, company registration and VAT information where applicable — are to be finalised before publication.

Until a published contact address is finalised, legal, privacy and billing requests should be raised through the account or workspace channel you were invited with. A dedicated legal contact address will be published here before general availability.