This policy is part of the Rople Terms of Service. It applies to every user of every workspace. The customer is responsible for its users' compliance.
1. You must not
Break the law. Use Rople for anything illegal under Nigerian law or the law that applies to you, including harassment, discrimination, fraud, or processing data you have no right to process.
Attempt to reach another customer's data. This includes probing for other workspaces, manipulating identifiers or tokens to change which workspace a request resolves to, and attempting to enumerate modules or organisations you are not entitled to. Isolation is the core promise of the platform; attacking it is the fastest route to immediate termination.
Probe, scan or overload. No penetration testing, vulnerability scanning, load testing, scraping, or denial-of-service against Rople without our prior written permission. Responsible disclosure is welcome — see §4.
Circumvent limits. No bypassing seat counts, plan entitlements, rate limits, or authentication. No sharing one account between several people.
Misuse invite and claim links. No posting workspace invite links publicly, and no using a claim or invite link that was not intended for you.
Upload harmful content. No malware, no code intended to disrupt the platform, no content that is unlawful, defamatory, or infringes someone's rights.
Upload data we have not agreed to hold. No special-category data — health, biometric, religious, ethnic, political, union membership — without a prior written agreement. No payment card numbers. No government identity numbers unless your order form provides for them.
Resell or white-label. No reselling, sublicensing, or offering Rople as your own service without a written partner agreement.
Reverse engineer or copy. No decompiling, no scraping the interface to rebuild it, no copying custom modules built for another customer.
Abuse AI features. No using AI features to generate unlawful content, to fabricate performance evidence, or to attempt extraction of data from outside your workspace.
2. You should
Use work email addresses. Keep invite and claim links confidential and revoke them when no longer needed. Remove leavers promptly. Set the least privileged role that lets someone do their job. Tell your employees that Rople is in use and what it records. Review AI-generated drafts before acting on them.
3. Enforcement
We would rather talk to you than switch you off. In order of escalation:
- Notice — we contact the workspace owner and ask for it to stop.
- Suspension of a user — for conduct attributable to one person.
- Suspension of a workspace — for unresolved or serious breaches.
- Termination — for severe breaches, with no refund.
Attempted cross-tenant access, deliberate platform attacks, and unlawful use may skip straight to step 3 or 4, and may be reported to the authorities.
4. Reporting
Security vulnerabilities: [SECURITY EMAIL]. Report privately, give us [90] days before disclosing, and do not access or exfiltrate data that is not yours. We will acknowledge within [3] business days and will not pursue legal action against good-faith research that follows these rules.
Abuse or misuse: [ABUSE EMAIL].
5. Changes
We may update this policy with notice to workspace owners. The current version always governs.