Legal
Acceptable Use Policy
Rules intended to protect CrediFi users, systems, partners, and the public from abuse.
Prohibited conduct
You may not use CrediFi web properties or services to:
- Commit, facilitate, or conceal fraud, theft, money laundering, sanctions evasion, terrorism financing, or other unlawful activity.
- Impersonate CrediFi, its personnel, another user, a credential issuer, or a third party.
- Distribute malware, phishing pages, wallet drainers, credential stealers, or malicious on-chain programs.
- Attempt unauthorized access, credential stuffing, denial-of-service attacks, or destructive security testing.
- Submit false information or manipulate transactions solely to fabricate financial reputation or scoring evidence.
- Use CrediFi information for a prohibited FCRA-regulated decision unless a separately authorized compliant service applies.
- Infringe intellectual-property, privacy, publicity, or other legal rights.
- Use automated access in a way that materially degrades service availability or bypasses documented rate controls.
Enforcement
CrediFi may restrict access, reject an integration, preserve evidence, or report suspected unlawful activity when reasonably necessary to protect users, comply with law, or secure systems.
Security research
Good-faith vulnerability research should follow the guidance on our Security page. Do not access data that is not yours or disrupt production services.