Fair, lawful, secure

Acceptable Use Policy

Last updated September 18, 2026 · Version 2026-09-18
The date above is the version your account is bound by. Questions: legal@kavvim.com.

The conduct we require to keep Kavvim safe and reliable for everyone. This policy is part of the Terms of Service and applies to everyone who uses Kavvim, including team members, freelancers, and client-portal users.

You may not

  • Break the law. Use the Service for any unlawful purpose, or to store or transmit material that is illegal, fraudulent, or infringing.
  • Harm others. Upload or transmit material that is defamatory, harassing, threatening, or that invades another person’s privacy. Do not use the Service to stalk or surveil anyone.
  • Upload what you have no right to upload. Personal information about your clients, photographs of their properties, and their correspondence are theirs. Put them into Kavvim only where your relationship with them permits it.
  • Upload sensitive categories the Service is not built for. Government identification numbers, financial account numbers, health or medical information, biometric data, or information revealing race, religion, sexual orientation, or union membership. Free-text fields do not validate content; that restraint is yours to exercise.
  • Attack the Service. Probe, scan, or test the vulnerability of any system without written authorization; circumvent authentication or tenant isolation; access another studio’s data; introduce malware; or interfere with any other user’s access.
  • Abuse resources. Automated scraping, excessive API load, circumventing rate limits, or using the Service in a way that degrades it for others.
  • Misuse email. Send unsolicited bulk email through the Service, add recipients who have no business relationship with your studio, or misrepresent the sender.
  • Misuse AI features. Attempt to extract training data or model internals; generate deceptive material; use AI output as legal, financial, structural, or safety advice; or leave client-data AI features enabled where your agreement with the client does not permit it.
  • Resell or reverse engineer. Sublicense, resell, or provide the Service to third parties as a service; reverse engineer or decompile it; or use it to build a competing product.

Security research

We welcome responsible disclosure. Report to security@kavvim.com. Do not access data belonging to others, do not degrade the Service, and give us reasonable time to remediate before publishing. We will not pursue legal action against research conducted in good faith within these bounds.

Enforcement

Violations may result in warning, feature restriction, suspension, or termination, depending on severity and risk. Where a violation creates immediate risk to the Service or to any person, we may act without prior notice. Where we can, we will tell you what happened and how to resolve it.

Where we believe conduct is illegal, we may report it to authorities.

Report violations to legal@kavvim.com, and security issues to security@kavvim.com.

Document history

2026-09-18First published version of all nine documents. (current)
Related