1. Scope
This Acceptable Use Policy ("AUP") governs how customers may use SignalGate. It applies to all use of the API, SDK, dashboard, documentation and support channels. The AUP is incorporated by reference into the Terms of Service — violating it is a material breach of the Terms.
2. Underlying principles
SignalGate exists to help legitimate operators block fraud while disturbing real users as little as possible. The paragraphs below are specific examples; the underlying principles are simple:
- Don't harm end users.Don't use the Service to surveil, discriminate against, or harass individuals.
- Be honest with end users about the fact that fingerprinting is happening and link them to a privacy policy that says so.
- Operate within the law in every jurisdiction where you do business.
- Don't abuse the system. No reverse-engineering, no security probing without permission, no resale of API verdicts to third parties as a separate product.
3. Prohibited uses
You may not use the Service to:
- Surveil or profile individuals without a lawful basis under applicable privacy law (GDPR, CCPA/CPRA, LGPD, etc.).
- Discriminate against individuals or groups based on a protected characteristic (race, ethnicity, religion, gender, sexual orientation, disability, age, etc.) in a manner prohibited by law.
- Suppress lawful speech, voting, journalism, or organising — for example, by deploying fingerprint-based blocks against critics, journalists, unions, or political opponents.
- Process special-category data (health, biometric for identification, sexual orientation, religious/political beliefs, etc.) without all required consents and safeguards.
- Target children under the age threshold applicable in their jurisdiction (typically under 13 in the US, under 16 in most of the EU).
- Send malicious or illegal content through the API, including malware, illegal pornography, stolen credentials, or content infringing third-party rights.
- Circumvent the API limits or pricing by sharing API keys across organisations, masking client identity, or distributed scraping.
4. End-user transparency
You must inform end-users that you use SignalGate (or a comparable description like "a fraud-prevention service") in your published privacy notice and obtain all consents required by law for the fingerprinting and processing performed by the SDK.
We recommend (but do not require) a line such as:"We use SignalGate, a third-party anti-fraud service, to assess the risk of fraudulent activity from your device. SignalGate processes signals about your browser and device on our behalf."
5. Technical conduct
- No reverse engineering of the SDK, API, models, or backend.
- No security probing of SignalGate infrastructure without prior written authorisation. To report a vulnerability, see our Security Overview.
- No volumetric abuse — sustained traffic that exceeds your contracted rate, or designed to degrade the Service for other customers.
- No re-sale of verdicts as a derivative product or service. SignalGate verdicts are for use within your own business.
- No use as a model-training input for third-party ML systems without our prior written consent.
6. Enforcement
If we reasonably believe you have violated this AUP, we may (in our sole discretion, proportionate to the breach):
- Contact you to discuss and remediate the issue.
- Suspend the affected functionality, API key, or your entire account.
- Terminate the agreement for material breach, subject to the cure period in the Terms of Service where applicable.
- Cooperate with law-enforcement authorities and disclose relevant information in accordance with our legal obligations.
Where a violation poses an imminent risk to third parties (e.g. an active mass-harassment campaign), we may suspend access immediately without prior notice.
7. Reporting abuse
To report suspected abuse of the SignalGate platform — either by another customer or by SignalGate itself — email [email protected]. Reports are reviewed by our trust-and-safety team and treated as confidential to the extent permitted by law.
8. Changes
We may update this AUP from time to time. Material changes will be announced at least 30 days before they take effect via email to active customers and a banner on the dashboard.