For the MuchSkills platform.
Scope. This Acceptable Use Policy forms part of the Agreement, which means the MuchSkills Enterprise Terms and the documents they incorporate, published at muchskills.com/legal. It applies to the Customer and to everyone who uses the platform under the Customer's account, and to individuals who sign up themselves under the User Terms. A breach of it is a material breach of the Agreement.
1.1 The Customer and its users must not upload or share content that is unlawful, infringing, deceptive, fraudulent, defamatory, obscene, harassing, hateful, discriminatory, violent or extremist, harmful to minors, or that contains a virus, malware or other harmful code.
2.1 The Customer and its users must not: (a) attempt to gain unauthorised access to the platform, other customers' data or any account, or circumvent an authentication or security measure; (b) probe, scan, or carry out load or penetration testing of the platform without MuchSkills' written consent, except for testing carried out against the tester's own account and data in good faith and in accordance with the MuchSkills Vulnerability Disclosure Policy, which constitutes that consent for this purpose; (c) access the platform other than through its supported interfaces or API, including by automated scraping, harvesting or bots; (d) impersonate any person or misrepresent affiliation or the origin of any data; (e) reverse-engineer, decompile or copy the platform; (f) interfere with, disrupt or impose an unreasonable load on the platform; (g) use the platform to send spam or unlawful communications; or (h) use the platform to harass any person.
3.1 The Customer and its users must not put Sensitive Data into the platform, as defined in the Enterprise Terms, including special-category personal data under Article 9 of the GDPR, criminal-offence data, protected health information, payment-card data governed by PCI DSS, government-issued identification numbers, and personal data of children under 16, except where a feature is expressly designated for it, the Customer has a valid lawful basis, and it complies with any conditions MuchSkills sets. The Customer must not store personal data in an unprotected manner or in breach of law.
4.1 When using AI-assisted features, the Customer and its users must not: (a) use an output as the sole or determinative basis for a decision about a person, including on recruitment, promotion, termination, pay, or access to education or training, or use the platform for automated decision-making within Article 22(1) of the GDPR; (b) use them for a practice prohibited under applicable AI law, including biometric categorisation, emotion recognition in the workplace, social scoring, or untargeted scraping of facial images; (c) put the platform to an intended purpose that would make it a high-risk AI system under applicable AI law, except under a separate written schedule agreed with MuchSkills; (d) generate disinformation, deepfakes or deceptive synthetic media; or (e) rely on an output without checking it before acting on it. The AI Addendum sets out the further terms applicable to AI-assisted features and prevails on an AI matter. In any event, the Customer meets the obligations that applicable AI law places on it in its own role, including human oversight, input-data governance, monitoring, logging and any information or consultation owed to workers and their representatives. The Customer remains the decision-maker for any decision about a person, and outputs may be inaccurate.
5.1 MuchSkills may investigate a suspected breach, remove offending content, and suspend or terminate access, without affecting its other remedies and acting reasonably. Where practicable and not prohibited by law or by a security concern, MuchSkills gives notice and a chance to cure; it may act immediately and without notice where a breach is unlawful, poses a security risk, or risks harm to MuchSkills, its users or a third party. A suspected breach may be reported to security@muchskills.com.