What our products and services may not be used for.
Last updated
This Acceptable Use Policy sets out what you may not do with the websites, applications, platforms and other services operated by MaffeiTech Information Technology L.L.C. (“MaffeiTech“, “we“, “us“). It applies to everyone who uses our services, whether you are a client, a client's end user, or a visitor.
It forms part of our Terms and Conditions. Where a signed agreement between us says something different, that agreement takes precedence for the party who signed it.
We build and host software. Some of it carries other people's data, and some of it is reachable by the public. A single account used for fraud, abuse or attack can put every other user of the same service at risk, and can expose us to liability under United Arab Emirates law. This policy is how we set that boundary before it becomes a problem, rather than after.
You must not use our services to do anything unlawful under the laws of the United Arab Emirates or of any other jurisdiction that applies to you. Without limiting that, you must not use our services to:
Commit or facilitate fraud, deception, money laundering, or the financing of terrorism.
Infringe anyone's intellectual property, including by hosting or distributing material you have no right to.
Store, publish or transmit material that is defamatory, obscene, or that constitutes harassment, threats, or incitement to violence or hatred.
Publish material prohibited under the laws of the United Arab Emirates, including content that offends public morals, religious values, or the State.
Breach the privacy of any person, including by publishing personal data you have no lawful basis to publish.
Do anything that would constitute an offence under UAE Federal Decree-Law No. 34 of 2021 on Combatting Rumours and Cybercrimes.
You must not attempt to compromise our services, the infrastructure they run on, or any other user's use of them. In particular, you must not:
Access, or try to access, any account, system, data or network you are not authorised to reach.
Probe, scan or test the vulnerability of any system without our prior written permission.
Introduce malware, ransomware, or any other code intended to damage, disrupt or gain unauthorised access.
Interfere with service to any user, including by denial-of-service attack or by deliberately overloading a system.
Circumvent any authentication, rate limit, quota, licensing or access control we apply.
Reverse engineer, decompile or disassemble any part of our software, except where that right cannot lawfully be excluded.
If you believe you have found a security vulnerability in something we operate, we would rather hear from you than not. Report it to security@maffeitech.com with enough detail for us to reproduce it, and give us a reasonable opportunity to fix it before you tell anyone else.
We will not pursue a claim against anyone who reports a genuine vulnerability in good faith, who does not access or alter data beyond what is necessary to demonstrate the issue, and who does not disrupt the service for others. Testing that goes further than that is not covered by this paragraph.
You must not use our services to send unsolicited bulk or commercial messages, whether by email, SMS, push notification or any other channel. Where a service we build for you is used to send messages, you are responsible for having a lawful basis and, where required, the recipient's consent — and for honouring any request to stop.
You are responsible for the content and data you upload, store or process using our services, and for having the right to do so. We do not routinely monitor what our clients store, and we do not want the ability to read it where it is not necessary for us to operate the service.
You must not use our services to store or process personal data of a kind, or on a scale, that you have not told us about, where doing so would change what we need to do to keep it secure. If you are unsure whether that applies to you, ask us before you start.
Where our services connect to something operated by someone else, you must comply with that provider's terms as well as ours. We are not responsible for a third-party service and cannot grant you rights to it.
You must not use automated tools to extract data from our services or from anything we host for a client, except where we have said in writing that you may, or where a published interface is provided for that purpose and you stay within its documented limits.
Where we believe this policy has been breached, we may suspend or restrict access, remove or disable material, or terminate an account. Where the breach is serious, presents an immediate risk to other users, or is required to be reported, we may act without notice and may notify the relevant authorities.
We will tell you what we have done and why as soon as we reasonably can, unless we are prevented from doing so by law or by an ongoing investigation. Where the breach is capable of being fixed and does not present an immediate risk, we would ordinarily raise it with you first.
If you believe someone is using our services in a way this policy prohibits, tell us at legal@maffeitech.com. Include enough detail for us to identify what you are referring to. We treat reports seriously and confidentially.
We may update this policy as our services change or as the law does. The date at the top of this page tells you when it last changed. Where a change materially reduces what you are permitted to do, we will give reasonable notice to clients with an active agreement.
Questions about this policy go to legal@maffeitech.com. Security reports go to security@maffeitech.com.
MaffeiTech Information Technology L.L.C., Business Bay, Dubai, United Arab Emirates.