Acceptable Use Policy
Incorporated into the Master Subscription Agreement · Version 1.0 · Effective 25 September 2026
1. Scope
This Acceptable Use Policy governs all use of the Meridian service and applies to the Customer and to each of its Authorised Users. Breach of this policy is a breach of the Master Subscription Agreement and may result in suspension or termination.
2. Data you must not upload
You must not upload to, create in, or synchronise with the Service any of the following:
- special-category personal data — data revealing racial or ethnic origin, political opinions, religious or philosophical beliefs, trade-union membership, genetic or biometric data, health data, or data concerning sex life or sexual orientation;
- criminal-offence data, including criminal convictions, allegations and related proceedings;
- payment-card data, including primary account numbers, card verification values and cardholder authentication data;
- sector-regulated data subject to specific regulatory regimes, including protected health information and defence or export-controlled material;
- personal data you have no lawful basis to process, or that you are contractually or legally barred from disclosing to a processor.
Ordinary business personal data — the names, work email addresses and business-context references to colleagues that appear naturally in engineering documentation — is permitted, and is governed by the Data Processing Addendum.
3. Prohibited conduct
You must not:
- use the Service unlawfully, or to infringe intellectual property, privacy or other rights;
- upload malware, or content that is defamatory, harassing, obscene or otherwise unlawful;
- attempt to gain unauthorised access to, probe, scan or test the vulnerability of the Service or its infrastructure, or breach any security or authentication measure;
- reverse engineer, decompile or attempt to extract source code, except to the extent that restriction is prohibited by applicable law;
- disrupt the Service through denial-of-service attacks, excessive automated load or scraping, or circumvent usage limits or Seat allocations;
- resell, sublicense or provide the Service to third parties, or use it to build or benchmark a competing product or service;
- use the Service, or Customer Content extracted from it, to develop, train or evaluate a competing artificial-intelligence model or dataset;
- misrepresent your identity or affiliation, or use the Service on behalf of an organisation without authority.
4. Security research
We welcome good-faith security research and reports at security@meridianide.com. Please do not access other customers' data, degrade the Service, or publicly disclose a vulnerability before we have had a reasonable opportunity to remediate it. We will not pursue legal action against researchers who act in good faith and comply with this policy.
5. Enforcement
We may investigate suspected breaches of this policy and may suspend access or remove content, with or without prior notice where the risk warrants it. We will use reasonable efforts to notify you unless prohibited from doing so or where notice would increase the risk. Repeated or serious breaches may result in termination under the Master Subscription Agreement.
6. Changes
We may update this policy from time to time. Material changes take effect at the start of your next Subscription Term on at least 30 days' notice, except where an immediate change is required by law or to address a security risk.