top of page

Effective Date:

24 Jul 2026

Acceptable Use Policy

Legals

Version: 2026.1  ยท  Effective Date: 24 JULY 2026


This Acceptable Use Policy ("Policy") governs the use of the services, software, and platforms provided by Exenai Limited ("Exenai", "we", "us"). All users, including Customers, Customer Users, Community Users, and third-party integrators (collectively, "Users") must comply with this Policy as a condition of using the Services.


This Policy forms part of and is incorporated by reference into the Exenai Master Services Agreement and applies to all use of the Exenai Platform, Candidate Experience Platform, Exenai Connect (including AI clients connected through it, agents, and applications hosted on the Connect App Host), and any connected tools or services.


1. General Principles

Users must:

  • Use the Services only for lawful business purposes;

  • Comply with all applicable laws and regulations, including data protection, privacy, employment, and communications laws;

  • Ensure any content submitted through the Services is lawful, accurate, and free from malicious code;

  • Maintain the security and confidentiality of access credentials.


2. Prohibited Activities

Users may not:

  • Use the Services for unlawful, harmful, or fraudulent purposes;

  • Violate the rights of others, including intellectual property, privacy, or data protection rights;

  • Upload or distribute any viruses, worms, or malicious code;

  • Attempt to gain unauthorised access to systems, networks, or accounts;

  • Use the Services to send unsolicited or unauthorised advertising, marketing, or spam;

  • Engage in scraping, data mining, or bulk data harvesting without written permission, whether performed directly or through an AI client, agent, or application;

  • Interfere with or disrupt the integrity or performance of the Services or data therein.


3. AI and Automated Use

In connection with Exenai Connect, AI clients, agents, and AI features of the Services, Users may not:

  • Attempt to bypass, disable, or manipulate the Exenai Connect gateway or its policy controls (including allow-lists, interception, rate or cost caps, approval requirements, or audit logging), whether directly, through prompt injection, or by any other means;

  • Use prompts, agents, or applications to seek discriminatory outputs, or to infer, derive, or surface special categories of personal data or protected characteristics of individuals;

  • Use AI outputs as the sole or decisive basis for any decision that produces legal or similarly significant effects on an individual, including automated rejection of candidates;

  • Configure agents, applications, or AI clients to operate outside the scopes, permissions, or approval requirements assigned to them, or to evade human-approval controls;

  • Use AI clients, agents, or applications to extract, exfiltrate, or bulk-export data from connected systems in circumvention of gateway controls;

  • Misrepresent AI-generated content as human-authored where the distinction is material to the recipient.

The Customer is responsible for the conduct of its agents and applications as if it were the Customer's own conduct.


4. Community User Obligations

Customers must ensure that all Community Users:

  • Only access and use the Services as authorised by the Customer;

  • Receive appropriate privacy notices and terms of use before accessing the platform;

  • Are not granted broader access or permissions than necessary for their intended purpose.


5. Enforcement and Consequences

Exenai reserves the right to:

  • Investigate suspected violations of this Policy;

  • Suspend or terminate access to the Services for Users who breach this Policy;

  • Suspend, disable, or remove agents or applications (including customer-created applications hosted on the Connect App Host) that violate this Policy or applicable law;

  • Remove or disable access to content that violates this Policy or applicable law;

  • Report any activity that appears to violate law or regulation to the relevant authorities.

Exenai will act at its sole discretion and will notify the Customer of any action taken unless legally restricted from doing so. Blocking, interception, capping, or approval-holding of requests by the Exenai Connect gateway in accordance with configured policy is a normal function of the Services and not an enforcement action requiring notice.


6. Reporting Violations

Suspected violations of this Policy should be reported to Exenai at: security@exenai.com


By using the Services, Users acknowledge and agree to comply with this Acceptable Use Policy.

bottom of page