Acceptable use
Acceptable use policy
Last updated: 2026-05-10
Scope
This policy applies to anyone using the Aethis developer platform, including the API, dashboard, CLI, MCP server, SDKs, and any output produced by the engine. It supplements the Terms of Service.
Human in the loop for high-stakes decisions
Aethis returns a deterministic decision against a compiled ruleset. It does not exercise legal, medical, or professional judgement. For any outcome that materially affects a person's rights, finances, employment, housing, immigration status, healthcare, or access to public services, a qualified human reviewer must remain accountable for the final decision.
Using Aethis as the sole decision-maker for such outcomes, without meaningful human review, is not permitted.
Lawful basis for inputs
You must have a lawful basis to process every personal attribute you pass to the API. You must not submit data that you have obtained unlawfully, that you have no right to process, or that you know to be false.
Prohibited uses
You must not use the Service to:
- —Make a final adjudication on benefits, immigration, asylum, parole, sentencing, hiring, lending, insurance, or housing without a qualified human reviewer accountable for the decision.
- —Generate, automate, or assist fraudulent applications to a public authority, regulator, or counterparty.
- —Evade sanctions, export controls, or anti-money-laundering obligations.
- —Process personal data of children except where explicitly permitted by applicable law and with appropriate consent.
- —Profile individuals on the basis of protected characteristics (race, religion, sexual orientation, political opinion, trade union membership, health, biometric or genetic data) where prohibited or unlawful.
- —Mislead a user about whether a decision was produced by software, or about its scope and limits.
- —Misrepresent the output of the engine as legal, medical, financial, or other professional advice.
- —Reverse-engineer, decompile, or attempt to extract trade secrets, model weights, or non-public components of the Service.
- —Probe, scan, or stress-test the Service beyond the published rate limits without prior written permission.
- —Send unsolicited communications, conduct phishing, or distribute malware using any Aethis surface.
- —Resell, sublicense, or wrap the Service in a way that bypasses our terms or rate limits.
- —Share API keys outside your organisation, or commit them to public source repositories.
Domain-specific notes
Eligibility, regulatory, and compliance domains often have sector-specific obligations (FCA, ICO, Home Office, GMC, SRA, sector ombudsmen, equivalent overseas regulators). Compliance with those obligations is your responsibility. Where the engine's output is one input into a wider regulated process, you are responsible for ensuring the wider process meets its own standard of care.
Reporting abuse
Report suspected misuse of the Service, abusive content produced through it, or violations of this policy to abuse@aethis.ai. Suspected security vulnerabilities should go to security@aethis.ai.
Enforcement
Material breach of this policy may result in suspension, termination of access, and forfeiture of fees paid for the affected period. Where conduct is unlawful we may report it to the relevant authorities and assist any investigation.
Changes
We will update this policy from time to time. Material changes will be flagged in the dashboard and on this page, with the “Last updated” date revised.