Acceptable Use Policy.

Zinvyl is for authorized, bounded business work—not access circumvention or harmful automation.

Effective September 18, 2026

Authorized business use only

Use Zinvyl only for lawful business purposes within systems, data, and workflows you own or are expressly authorized to test. Accurately describe your authority, intended outcome, and restrictions.

Prohibited content and activity

Do not use the service to develop or deploy malware, credential theft, phishing, spam, surveillance, harassment, discrimination, fraud, sanctions evasion, illegal goods or services, unauthorized scraping, destructive code, access-control bypasses, or activity that violates law or another party’s rights.

No secrets or regulated data in public intake

Do not submit passwords, tokens, API keys, private keys, banking credentials, full payment-card data, Social Security numbers, protected health information, unredacted government identifiers, export-controlled technical data, or raw confidential documents through public intake or MCP tools.

Platform and agent abuse

Do not overload, scan, probe, reverse engineer, evade request limits, replay payment events, forge funding states, impersonate a buyer, automate purchases without explicit delegated authority, or create misleading transaction evidence.

High-impact decisions

Do not rely on Zinvyl output as the sole basis for employment, credit, housing, insurance, healthcare, legal rights, safety-critical control, customs compliance, or other regulated or high-impact matters. Qualified human and professional review remains required.

Enforcement

Zinvyl may reject, throttle, suspend, preserve evidence of, or report suspected abuse; remove unsafe materials; and require verification. Lawful security research requires prior written authorization and a defined test scope.