1. Scope
This Acceptable Use Policy ("AUP") supplements the Terms of Service and the Data Processing Agreement. By using Booking Bible you agree to follow this AUP. Violations may result in suspension or termination per the Terms.
2. Prohibited Content and Activity
You may not use the platform to:
- Send unsolicited bulk email or SMS (spam) — even to your own member list, without recorded consent
- Distribute malware, phishing pages, or content designed to deceive
- Process payment for illegal goods/services or in violation of Stripe / Mollie / Frisbii (formerly Reepay) / Adyen acceptable-use policies
- Store or process classified government information, child sexual abuse material, or content that violates intellectual-property law
- Run penetration tests, security scans, or load tests against our infrastructure without prior written agreement
- Resell or repackage the platform as a competing service without an Enterprise + reseller agreement
- Circumvent rate limits, scrape API endpoints outside the documented scope, or extract bulk data faster than the published export limits
3. Rate Limits
Per-account API rate limits are documented at /developers. Soft limits trigger a warning; hard limits return HTTP 429. Sustained abuse may result in account suspension pending review.
4. Data Handling
You are the data controller for your venue’s member data; we are the processor. See the DPA for the full controller / processor split. You agree to obtain lawful basis (consent, contract, or legitimate interest) before adding members to the platform and to honour data-subject requests in time per GDPR Art. 12(3).
5. Reporting Abuse
Report suspected violations of this AUP — by you, by another venue admin, or by a third party — to security@bookingbible.com. We acknowledge within 24h business hours and triage per the SLA severity matrix.
6. Enforcement
Sanctions for AUP violations escalate from warning → temporary suspension → permanent termination, depending on severity + recidivism. Termination triggers the venue offboarding lifecycle (data export within 30 days, then purge per GDPR Art. 17).
7. Changes
We may update this AUP. Material changes (new prohibitions, tighter rate limits) get 14-day notice via email + the in-app banner. Continued use after the effective date constitutes acceptance.