Skip to content

Acceptable Use Policy

Effective Date: July 27, 2026

This Acceptable Use Policy (the “AUP”) expands on Section 7 of our Terms of Serviceand is incorporated into them by reference. It applies to everyone who uses Raileon LLC’s platform and services, and to every AI agent operating under your account. Breaking this policy is breaking the Terms. We may update this policy as the platform changes; the Effective Date above shows when it was last revised.

The short version:Use Raileon for lawful business work. Your agents act as you — whatever they do under your account is your responsibility. No spam, no protected health information, no card data, no unsupervised professional advice going out to third parties.

1. General Principle

Raileon is built for lawful business use. You may use the platform for the work your organisation actually does, within the law, and within the terms of the services you connect to it.

You are responsible for what your agents do on your behalf. An agent is not a separate legal actor. When an agent sends an email, posts a message, updates a record, or produces a document under your account, that action is treated as your action. This includes actions taken by agents you configured, agents your team configured, and agents running on a schedule while nobody is watching.

In practice, that means you agree to:

“I didn’t know the agent did that” is not a defence under this policy. If you cannot supervise an automation, do not run it.

2. Prohibited Content and Conduct

Do not use Raileon, or allow your agents to be used, to do any of the following:

3. Prohibited AI Uses

Some uses are off-limits regardless of intent, because the failure mode lands on someone other than you. Do not use Raileon agents for:

If your use case sits close to one of these lines, ask us at admin@raileon.com before you build it. We would rather scope it with you than shut it off later.

4. Communications and Outreach

Your agents can send email and post to chat platforms such as Discord and Telegram on your behalf. That reach is the point of the product, and it is also the fastest way to cause real-world harm, so the rules here are strict.

You are responsible for reviewing and approving consequential communications before they go out. If a message would bind you, advise someone, or damage a relationship if it were wrong, a human should read it first.

5. Regulated Data Limits

Data you may not put into Raileon

Data that needs care

Attorney-client privileged material.You may process privileged and confidential client material, but do it deliberately. Content you submit is processed by third-party AI providers under contracts that prohibit training on your data, and your workspace runs in an isolated per-customer container — but the decision about whether a particular disclosure is consistent with privilege, your engagement terms, and your clients’ expectations is yours, not ours. Where informed client consent is required, get it first.

Your professional obligations are your own. If you are a lawyer, accountant, financial adviser, or other regulated professional, you remain responsible for your bar rules, licensing body, competence and supervision duties, conflict checks, and client confidentiality obligations. Using an AI agent does not transfer any of that to us.

What we do not have, stated plainly: Raileon has no SOC 2 report, no ISO 27001 certification, no third-party penetration-test report, and no HIPAA Business Associate Agreement. We are not going to imply otherwise. What we do have is per-customer container isolation, encryption in transit (TLS 1.2+) and at rest (AES-256), daily per-customer backups with 30-day retention, and United States-only processing. Decide what your compliance posture needs before you bring regulated data anywhere near the platform.

6. Scraping, Crawling, and Connected Services

Agents can browse the web and act inside services you connect. When they do, they act under your name and your credentials, so they follow your obligations to those sites and services.

7. Resource Abuse and Fair Use

Your workspace runs in a dedicated container with finite CPU, memory, storage, and network capacity, sharing host infrastructure with other customers. Use it for the agent work you subscribed for. Specifically, do not:

If your usage threatens the health of the host or other tenants, we may throttle or pause the offending workload while we contact you. We will always tell you what we did and why.

8. Security

Isolation between customers is the single most important property of this platform. Do not test it uninvited.

Responsible disclosure

If you find a vulnerability, tell us at security@raileon.comand give us a reasonable window to fix it before disclosing it publicly. We will not pursue action under this policy against good-faith research that reports promptly, stops at proof of concept, does not access, modify, or exfiltrate anyone else’s data, and does not degrade the service. Include enough detail for us to reproduce the issue.

9. Enforcement

Most violations are mistakes — a misconfigured agent, an outreach list that should not have been imported. We handle those with a conversation, not a shutdown. Our normal escalation is graduated:

StepWhen we use itWhat happens
1. NoticeFirst or minor violation, or something that looks like a misconfiguration.We email you, explain the problem, and give you a deadline to fix it. Service keeps running.
2. SuspensionThe notice deadline passed, the behaviour repeats, or the violation is serious.We pause the offending agents or the workspace. Your data stays intact and you can still reach us and your billing portal.
3. TerminationSuspension did not resolve it, or the violation is severe enough that continuing is not an option.We close the account under the Terms. The 30-day data export window applies unless the law forbids it.

Immediate suspension without prior notice is reserved for cases where waiting would cause damage: active harm to a person, clearly illegal activity, an active security threat or compromised account, sustained abuse of shared infrastructure, or a binding legal demand. We will tell you what happened as soon as we reasonably can after acting.

Appeals. If you think we got it wrong, email admin@raileon.com with your account details and what you believe we misread. A human reviews every appeal and we aim to respond within five business days. If we were wrong, we restore service and say so.

Enforcement under this policy does not entitle you to a refund of fees already paid, and it does not limit any other remedy available to us under the Terms of Service.

10. Reporting a Violation

If you have received something abusive from a Raileon agent, or you believe a customer is using the platform against this policy, tell us. Pick whichever address fits:

Please include what happened, roughly when, and anything that helps us trace it — full email headers, message links, screenshots, or the sending address. Tell us how to reach you if we need more detail. We review every report, act where the report holds up, and we do not retaliate against people who report in good faith.

Raileon LLC
Miami, Florida
admin@raileon.com