Acceptable Use Policy

Last updated: April 2026

Introduction

This Acceptable Use Policy ("AUP") describes how you may and may not use ValiqAI. This policy is part of our Terms of Service. By using ValiqAI, you agree to follow these guidelines.

ValiqAI is a tool for testing and improving your own web applications. It is not designed for scanning websites you do not own, penetration testing without authorization, or any activity that could harm others or violate the law.

What You May Do

ValiqAI is intended for the following use cases:

  • Scan your own websites: Test websites and applications that you own, operate, or are responsible for maintaining.
  • Scan with permission: Test websites belonging to clients or employers who have given you explicit written permission.
  • Development and staging environments: Test pre-production environments before deploying to production.
  • Continuous integration: Integrate scans into your CI/CD pipeline for automated quality checks.
  • Accessibility testing: Check your sites for accessibility issues and WCAG compliance.
  • Bug detection: Find functional issues, broken links, console errors, and other quality problems.

What You May NOT Do

The following activities are prohibited. Violating these rules may result in immediate suspension or termination of your account.

Unauthorized Scanning

  • Scanning websites you do not own without explicit written permission from the owner
  • Scanning competitor websites to gather intelligence or compare features
  • Scanning websites that belong to government agencies, financial institutions, or healthcare providers without proper authorization
  • Using ValiqAI to test websites as part of a bug bounty program unless the program explicitly allows automated scanning tools

Security Testing Without Authorization

  • Using ValiqAI to perform penetration testing or security assessments on systems you do not have authorization to test
  • Attempting to exploit vulnerabilities discovered during scans
  • Using scan results to attack or compromise websites
  • Testing authentication systems or login forms on sites you do not own

Harmful or Disruptive Activities

  • Running scans at a frequency or intensity that could overload or disrupt target websites
  • Using ValiqAI to perform denial-of-service attacks or stress testing on websites
  • Submitting malicious URLs or content designed to exploit our scanning infrastructure
  • Attempting to interfere with other users' scans or accounts

Illegal Content

  • Scanning websites that host illegal content, including child exploitation material, illegal weapons, or controlled substances
  • Using ValiqAI for any activity that violates applicable laws or regulations
  • Scanning sites involved in fraud, phishing, or other criminal activity

Account Abuse

  • Creating multiple accounts to circumvent usage limits or bans
  • Sharing your account credentials with others
  • Reselling or redistributing access to ValiqAI without authorization
  • Using automated tools to access the Service outside of our provided APIs
  • Attempting to reverse engineer, decompile, or extract source code from the Service

Privacy Violations

  • Using ValiqAI to collect personal information from websites without proper authorization
  • Scraping user data, email addresses, or other personal information from scanned sites
  • Using scan results to harass, stalk, or harm individuals

Best Practices

To use ValiqAI responsibly and get the most value from the Service:

  • Get permission in writing: If you are scanning a client's website, get written authorization before running scans. Keep records of this authorization.
  • Start with staging environments: Test on staging or development environments before scanning production sites, especially for the first time.
  • Respect rate limits: Do not attempt to run more scans than your plan allows. Contact us if you need higher limits.
  • Review results responsibly: Scan results may contain sensitive information. Handle them appropriately and do not share them with unauthorized parties.
  • Use test credentials carefully: If you provide test credentials for authenticated scanning, use accounts created specifically for testing, not real user accounts.
  • Keep integrations secure: If you connect third-party services (Slack, Jira, etc.), ensure those integrations are properly secured and access is limited to authorized team members.

Reporting Violations

If you believe someone is using ValiqAI in violation of this policy, or if your website is being scanned without your authorization, please contact us immediately at abuse@valiqai.com.

When reporting, please include as much detail as possible: the URL being scanned, when the scanning occurred, and any other relevant information that can help us investigate.

Enforcement

We take violations of this policy seriously. Depending on the severity and nature of the violation, we may:

  • Issue a warning and request that you stop the offending activity
  • Temporarily suspend your account while we investigate
  • Permanently terminate your account
  • Report the activity to law enforcement if required by law or if the activity poses a serious threat

We aim to be fair and proportionate in our enforcement. For minor first-time violations, we will typically reach out to discuss the issue before taking action. For serious violations (such as unauthorized scanning of critical infrastructure or illegal activity), we may take immediate action.

Changes to This Policy

We may update this Acceptable Use Policy from time to time. If we make significant changes, we will notify you by email or by posting a notice in the application. Your continued use of ValiqAI after changes are posted means you accept the updated policy.

Questions

If you have questions about this policy or are unsure whether a particular use is permitted, contact us at support@valiqai.com before proceeding. We are happy to clarify.