Sumchat Acceptable Use Policy
Effective date: September 27, 2026 · Version 1.0
This Acceptable Use Policy ("AUP") applies to everything done through the Sumchat Services ; by you, your workspace members, your Agents acting at your direction, your published sites, and your sites' end users. It is part of the Terms of Service. Capitalized terms have the meanings given there.
The short version: don't use Sumchat to break the law, hurt people, deceive people, or abuse the platform. You are responsible for what your workspace, including its Agents; does.
1. Illegal and harmful content and conduct
You may not use the Services to create, host, publish, send, or facilitate:
- anything that violates applicable law, or that facilitates a crime;
- child sexual abuse material of any kind; real, drawn, or AI-generated. We report CSAM to the National Center for Missing & Exploited Children and terminate accounts immediately and without notice;
- content that sexualizes minors, or that facilitates child exploitation or trafficking;
- terrorism advocacy or material support for violent extremism;
- credible threats of violence, incitement, or content intended to harass, stalk, or intimidate a private individual;
- non-consensual intimate imagery, including AI-generated imagery of real people;
- instructions or material assistance for making weapons of mass destruction;
- the sale of illegal drugs, counterfeit goods, or stolen property, or content facilitating human trafficking.
2. Infringement
You may not host or publish content that infringes copyright, trademark, publicity, or other proprietary rights, and you may not use the Services to circumvent technical protection measures. This includes AI-generated content: publishing output that copies a protected work, imitates a real person's name, voice, or likeness without documented consent, or trades on someone else's brand is prohibited regardless of how it was made. Our takedown process and repeat-infringer policy are in the Copyright & Content Complaints Policy.
3. Deception, fraud, and impersonation
You may not use the Services to:
- phish, defraud, scam, or run deceptive schemes, including fake storefronts, advance-fee fraud, and investment fraud;
- impersonate any real person, business, or government entity, or publish sites or send messages that imitate another organization's branding, name, or domain in a way likely to mislead;
- create or publish fake reviews, testimonials, or endorsements, including AI-generated reviews, reviews from personas who do not exist, or reviews of your own or your clients' products presented as customer voices (16 C.F.R. Part 465 prohibits these; so do we);
- suppress, gate, or selectively publish customer reviews to mislead (for example, flows that only publish high ratings), or impose contractual penalties on customers for honest reviews;
- present an AI agent to a consumer as a human. Agents interacting with the public must be disclosed as AI; you may not remove or defeat the Services' built-in AI disclosures;
- publish fabricated records, receipts, credentials, or documents presented as genuine;
- make claims about products or services (including AI capabilities) that are false or lack substantiation.
4. Communications abuse
You may not use the Services to:
- send unsolicited bulk email, texts, or calls, or any communication to recipients who have not given any consent the law requires (see Terms § 7);
- continue contacting a recipient after they opt out;
- send communications with forged headers, misleading subject lines, or a concealed sender;
- use harvested, purchased, or scraped contact lists;
- place calls or send texts using an artificial or AI voice without the recipient consent the law requires, or record calls without required notice and consent;
- run political robocalls, political text campaigns, or political advertising through the Services' communications and social publishing features.
5. Security and platform abuse
You may not:
- probe, scan, or test the vulnerability of the Services or other tenants' workspaces or sites except your own, or bypass authentication, isolation, or usage-metering mechanisms;
- host or distribute malware, or operate phishing pages, command-and-control infrastructure, or proxies/mirrors designed to conceal abusive traffic origins;
- use the Services to launch denial-of-service attacks, credential stuffing, or automated abuse of third-party services, or to circumvent third-party bot detection, CAPTCHAs, or rate limits;
- resell or white-label raw platform capacity (compute, email sending, calling) detached from the Services' intended use; agencies operating client workspaces and building client sites are of course fine;
- interfere with the integrity of the Services, other customers' use of them, or our metering, billing, or safety systems;
- scrape the Services, other tenants' sites, or connected third-party services in violation of law or the third party's terms.
6. Sensitive uses
You may not use the Services to:
- provide regulated professional advice (legal, medical, financial, tax) to consumers through an Agent or site without a licensed professional responsible for the advice and all required disclosures; Agents may draft materials for professionals to review, but an Agent must never be the professional;
- make automated decisions that produce legal or similarly significant effects on individuals (credit, employment, housing, insurance, education admission) without human review and all legally required process;
- operate sites or agents directed to children under 13 without a COPPA-compliant program (Terms § 8.6);
- collect or process biometric identifiers, health records, or Social Security numbers through published sites without our prior written approval and all required notices and consents;
- present an Agent as a companion, therapist, or emotional-support persona. Sumchat agents are work tools.
7. Published-site obligations
Every published site must:
- have a lawful operator identified to us (the workspace Customer), who is responsible for the site under Terms § 8;
- post the privacy notices applicable law requires of its operator (for sites collecting personal information from Californians, a CalOPPA-compliant privacy policy);
- display honest, all-in pricing where prices are shown, with any mandatory fee or surcharge clearly and conspicuously disclosed with its purpose wherever prices appear;
- disclose automated chat or voice assistants as AI;
- not deploy tracking, session recording, or analytics of visitors beyond what the site's privacy notices disclose and applicable law permits.
We may unpublish a site that violates this AUP (Terms § 8.7). The abuse-report door on published sites lets anyone report a violating site to us; reports are reviewed by a person.
8. Fair use of Agents and compute
Usage is metered and priced in dollars, so there is no "unlimited" to abuse; but you may not use the Services to mine cryptocurrency, run unrelated compute workloads, generate content farms or SEO spam networks, or mass-produce near-duplicate sites or posts whose purpose is to manipulate search or recommendation systems.
9. Reporting and enforcement
Report abuse; of the platform, or by a site we host; to abuse@sumchat.ai, or through the report link on published sites. We review reports promptly; a person makes every enforcement decision.
We enforce this AUP using the narrowest effective remedy: warning; removing content; unpublishing a site; disabling a capability, Connection, or Agent; suspending a workspace; or terminating it (Terms §§ 12–13). For serious violations; CSAM, malware, fraud, threats to safety; we act immediately and may notify law enforcement. Where the violation is curable and does not create urgent risk, we tell you what the problem is and give you a chance to fix it.
We may update this AUP as the Services and the law evolve; material changes follow the Terms' change-notice process.
Questions: abuse@sumchat.ai