Acceptable Use Policy (AUP)

Last Updated: February 9th 2026

This Acceptable Use Policy (“AUP”) governs Customer's and Users' access to and use of the Clerks platform, operated by Dropex, Inc., a Delaware corporation doing business as “Clerks” (“Dropex,” “Clerks,” “we,” “our,” or “us”), including Clerks' web application, mobile applications, APIs, AI-powered features, integrations, and related systems (collectively, the “Services”).

This AUP forms part of the Master Services Agreement (“MSA”). Capitalized terms not defined in this AUP have the meanings set forth in the MSA. By accessing or using the Services, Customer and its Users agree to comply with this AUP.

1. General Obligations

Customer and its Users must:

  • Use the Services solely for lawful business purposes
  • Comply with all Documentation, usage limits, technical requirements, and approval workflows
  • Maintain the security and confidentiality of all accounts and access credentials
  • Use reasonable measures to prevent unauthorized access or misuse
  • Ensure that all data submitted to the Services is accurate, complete, and lawfully obtained
  • Comply with all applicable laws and regulations, including accounting, tax, financial reporting, data protection, export controls, and sanctions laws

Customer is responsible for all activity occurring under its Account, whether authorized or unauthorized.

2. Prohibited Content

The following content may not be uploaded, stored, generated, transmitted, or processed through the Services.

2.1 Illegal or Harmful Content

  • Content that violates any applicable law or regulation
  • Harassing, defamatory, hateful, discriminatory, or threatening material
  • Child sexual abuse material (CSAM)
  • Human trafficking, exploitation, or abuse-related content
  • Terrorist or violent extremist materials

2.2 Malicious or Security-Threatening Content

  • Malware, ransomware, spyware, viruses, bots, or harmful scripts
  • Phishing, spoofing, or social engineering content
  • Content intended to bypass authentication, authorization, or security controls

2.3 Unauthorized or Highly Sensitive Regulated Data

Unless expressly permitted and all required agreements are in place (e.g., a signed BAA), Customer may not upload or process:

  • Protected Health Information (“PHI”)
  • Sensitive personal data about minors
  • Unmasked payment card data or bank account credentials
  • Government-issued identification numbers
  • Export-controlled or sanctioned materials

2.4 Intellectual Property–Infringing Content

  • Unauthorized copyrighted materials
  • Counterfeit, pirated, or unlicensed content
  • Content that infringes or misappropriates third-party intellectual property rights

3. Prohibited Activities

3.1 System Misuse

Customer may not:

  • Interfere with or disrupt the Services or infrastructure
  • Bypass authentication, authorization, rate limits, or approval safeguards
  • Access the Services using unsupported or undocumented methods
  • Reverse engineer, decompile, disassemble, scrape, extract, or attempt to derive source code or models
  • Conduct penetration testing or vulnerability scanning without prior written authorization

3.2 Fraud, Deception, or Misrepresentation

Customer may not:

  • Create or submit fraudulent, misleading, or deceptive financial records or transactions
  • Falsify accounting data, invoices, bills, journal entries, or reports
  • Impersonate any person or entity
  • Misrepresent authority, credentials, or approval status

3.3 Network or Resource Abuse

Customer may not:

  • Engage in excessive or abusive consumption of system resources
  • Send spam or unsolicited communications
  • Use automated processes that degrade performance or availability

3.4 Data Abuse

Customer may not:

  • Access or attempt to access another customer's data
  • Circumvent role-based permissions or escalate privileges improperly
  • Upload stolen, unlawfully obtained, or improperly sourced data

4. Accounting & Financial-Specific Restrictions

Customer may not use the Services to:

  • Evade taxes, conceal income, or falsify financial records
  • Circumvent internal controls, approval processes, or audit trails
  • Generate accounting records intended to mislead auditors, regulators, lenders, or investors
  • Submit unreviewed or unapproved AI-generated accounting actions in violation of the MSA

Customer remains solely responsible for compliance with all accounting, tax, and financial reporting obligations.

5. AI-Specific Acceptable Use Rules

The Services include AI-enabled functionality. Customer may not use AI Features to:

5.1 Generate Harmful or Illegal Outputs

  • Fraudulent or misleading financial documents
  • Deceptive deepfakes or impersonations
  • Content that violates law or causes harm

5.2 Improper Reliance or Automation

AI Outputs may not be used as the sole basis for:

  • Legal, tax, or financial determinations
  • Regulatory filings or compliance submissions
  • Employment, credit, or underwriting decisions
  • Automated execution of accounting actions without human review

5.3 Abuse or Exploitation of AI Models

Customer may not:

  • Attempt to extract training data or model parameters
  • Circumvent AI safety controls or guardrails
  • Train or improve competing models using Clerks outputs

5.4 Misrepresentation of AI Outputs

Customer must not represent AI-generated content as human-generated professional advice where doing so would be misleading.

6. Security Requirements

Customer must:

  • Use strong passwords and enable multi-factor authentication where supported
  • Maintain secure devices and networks
  • Immediately notify Dropex of suspected credential compromise
  • Restrict access using least-privilege principles

Customer may not:

  • Share credentials between users
  • Allow multiple individuals to use a single user account
  • Automate access outside documented APIs

7. Automated Access, Bots, and Scraping

Customer may not:

  • Scrape, crawl, or harvest data from the Services
  • Copy large volumes of data for competitive or abusive purposes
  • Use bots or automation outside documented APIs
  • Monitor or analyze system behavior to replicate or compete with the Services

8. Intellectual Property Restrictions

Customer may not:

  • Copy, reproduce, or frame the Services
  • Modify or create derivative works of the Services
  • Use Clerks or Dropex trademarks, logos, or branding without written permission
  • Build competing products using knowledge gained from the Services

9. Enforcement

Dropex may, at its discretion:

  • Issue warnings
  • Remove or restrict access to violating content
  • Suspend or terminate Accounts
  • Report violations to regulators or law enforcement where required
  • Seek injunctive relief or other legal remedies

10. Reporting Violations

Suspected violations of this AUP may be reported to:

security@chatclerks.com

Reports should include sufficient detail to allow investigation.

11. Updates to This Policy

Dropex may update this AUP from time to time. Material changes will be communicated in accordance with the MSA. Continued use of the Services constitutes acceptance of the updated AUP.