Acceptable Use Policy
Our Services include remote access to machines, monitoring of other people's systems and cameras that detect weapons. This policy exists so those capabilities are only ever used with authority and consent. It forms part of the Terms of Service.
Table of Contents
1. Introduction
This Acceptable Use Policy ("AUP") sets out what you may and may not do with SentinelGrid's Services. It is part of our Terms of Service and applies to everyone who uses our website, the Client Portal, the Helpdesk, monitoring and status pages, fleet and remote-support tooling, the diagnostics drop box, SentinelVision, and any Managed IT engagement, whether as a client, a client's staff, a contractor or a visitor.
Several of our Services are powerful by nature: remote access to machines, monitoring of other people's systems, cameras that detect weapons. This AUP exists so that those capabilities are only ever used with authority and consent. This AUP is governed by the laws of the State of Florida.
2. Prohibited Activities
2.1 Illegal activity
- Anything that violates applicable local, state, federal or international law.
- Fraud, deception or misrepresentation, including impersonating SentinelGrid, a client, or a client's staff.
- Unauthorised access to, use of, or interference with any computer system, account or data.
- Distribution of malware, pirated or counterfeit material, or content you have no right to share.
- Use of any Service in breach of U.S. export-control or sanctions laws, or on behalf of a sanctioned person.
2.2 Harmful or abusive conduct
- Harassment, threats, intimidation, or abuse of our staff, contractors, or other users, including through support tickets and email.
- Stalking, tracking or surveilling any individual without their knowledge and lawful consent.
- Inciting or promoting violence, or content that sexualises minors (which we report to NCMEC and law enforcement).
- Discriminatory conduct or content targeting people on the basis of protected characteristics.
3. Content Standards
Content you submit to any Service (tickets, attachments, form entries, monitoring messages, uploaded diagnostics, documentation) must not:
- Infringe anyone's intellectual property, privacy or publicity rights.
- Contain credentials, secrets or personal data you are not authorised to share with us. If you must send us a credential, use the method we specify, never a plain ticket body.
- Be knowingly false, defamatory or misleading.
- Contain malware or links to it, except where you are sending a sample to us for analysis and have said so.
4. Security
You must not:
- Probe, scan, or test the vulnerability of any SentinelGrid system or any client system without written authorisation. Good-faith security research against our own public services is welcome if it avoids denial of service, data destruction and access to other people's data, and is reported promptly to support@sentinelgrid.us.
- Attempt to bypass authentication, forge or replay sign-in links or session cookies, or use another person's access.
- Use a sign-in form, heartbeat endpoint or status URL to enumerate our clients, their staff or their systems.
- Share, forward or publish sign-in links, self-registration links, heartbeat tokens, private status-page URLs or remote-access credentials. They are credentials; treat them as such.
- Interfere with the operation of any Service, including by flooding monitors, heartbeat endpoints, form endpoints or email addresses.
5. System Abuse
- No denial-of-service, excessive automated requests, or scraping of the Helpdesk, Portal or status pages.
- No use of our email addresses, forms or auto-replies to relay spam or to verify lists of addresses.
- No use of the diagnostics drop box as general file storage or to transfer material unrelated to the support issue.
- No circumvention of rate limits, honeypots or other anti-abuse measures.
- No resale or sublicensing of any Service without a written agreement.
6. Remote Access & Monitoring
The fleet tooling, remote-support agents, heartbeat monitors and diagnostics drop box may be used only on systems you own or are explicitly authorised to manage. Specifically:
- Do not enrol a device that belongs to someone else, or a device whose user has not been told it is managed and may be accessed remotely.
- Do not ask us to monitor, access, or collect data from a system, account or person you do not have authority over, including an employee's personal device, a former partner, a neighbour, or a competitor.
- Do not use remote access to surveil a person's activity. The tooling is for supporting machines, not watching people.
- Do not ask our staff or contractors to take actions that would breach your own obligations to your staff or customers.
- Do not use HTTP monitors to hammer or probe third-party sites you do not control. Monitoring a public site you do not own is acceptable only at reasonable intervals and for legitimate availability purposes.
7. SentinelVision
SentinelVision is licensed for the protection of premises you own or lawfully control. You must not:
- Deploy it, or point its cameras, where people have a reasonable expectation of privacy, or where recording requires consent or notice you have not obtained or given.
- Modify, extend or combine it with other software or services to perform facial recognition, gait or body analysis, licence-plate recognition, or any other biometric identification of individuals. This restriction is absolute and survives any licence we grant.
- Use it to track, profile, or build a record of the movements of any identifiable individual.
- Use it against any person on the basis of a protected characteristic, or to harass, intimidate or stalk.
- Represent it to anyone as a certified security, alarm or life-safety system, or as monitored by SentinelGrid.
- Use it in any jurisdiction or setting where automated weapon or person detection is prohibited.
- Use it, or any output from it, as an input to a system that performs a practice prohibited by the EU AI Act (Article 5) or by U.S. biometric-privacy laws, including untargeted scraping of facial images, emotion recognition in workplaces or schools, or biometric categorisation of people.
8. Managed IT Clients
Clients in a Managed IT engagement additionally agree to:
- Give us accurate information about your environment and tell us promptly when it changes.
- Ensure your staff know that devices are managed and that support conversations may be logged.
- Not ask us to access accounts, mailboxes or files of your staff except for legitimate business purposes you are entitled to, and to confirm that entitlement in writing when asked.
- Not use the Helpdesk to abuse the people answering it. We will close a ticket, and if necessary an account, for abusive conduct.
- Not place regulated data (health records, cardholder data, criminal-justice information, student records) in systems we operate for you until the matching addendum (HIPAA, PCI DSS, CJIS or FERPA) is signed, and not ask us to process personal data in a way that would breach a privacy law that applies to you.
- Use the documentation and credentials we hand over responsibly. They are yours; they are also the keys to your business.
9. Reporting Violations
To report abuse of any SentinelGrid Service, a security vulnerability, or misuse of SentinelVision or remote-access tooling, email support@sentinelgrid.us with "Abuse" or "Security" in the subject line. Include as much detail as you can. We acknowledge reports within 2 business days and treat reporters' identities as confidential where they ask us to.
10. Enforcement
If we believe this AUP has been breached we may, at our discretion and without prior notice:
- Remove or block the offending content.
- Suspend or terminate the account, the client organisation, or the device enrolment involved, which ends live sessions immediately.
- Revoke any licence to SentinelVision or other software.
- Suspend or end a Managed IT engagement under the Managed IT Service Terms.
- Report conduct to law enforcement or affected third parties.
- Pursue legal remedies under Florida and federal law, including injunctive relief and damages.
We will tell you what we did and why, unless doing so is unlawful or would compromise an investigation. If you think we got it wrong, reply and we will review.
11. Contact
SentinelGrid Trust & Safety, operated by Mason Collier, sole proprietor, Florida
Email: support@sentinelgrid.us