Principles
Framer is used by teams around the world to run mission-critical customer support. To keep the platform reliable, safe and lawful for everyone, we ask you to use good judgement and to follow the rules below.
Prohibited content
You must not upload, ingest, generate or transmit content that:
- Is illegal under applicable law, or that facilitates illegal activity.
- Sexually exploits or endangers minors.
- Incites violence, self-harm, or targeted hate against protected groups.
- Infringes intellectual property, trade secrets or contractual rights of others.
- Contains malware, ransomware or code designed to compromise systems.
- Discloses personal data of individuals without a lawful basis.
Prohibited conduct
- Reverse engineering, scraping or systematically extracting the platform beyond documented APIs.
- Interfering with the Service, other tenants' data, or our infrastructure.
- Circumventing rate limits, credit metering, security or authentication.
- Using the Service to build a competing product or to train a competing model.
- Sending spam, unsolicited bulk communications or content that violates anti-spam laws.
- Impersonating another person or misrepresenting your affiliation.
High-risk use cases
You may not use the Service, without an explicit written agreement with us, to make automated decisions with legal or similarly significant effects on individuals, including:
- Credit, insurance, employment or housing decisions.
- Medical diagnosis or treatment recommendations.
- Emergency response, life-safety or critical infrastructure control.
- Biometric identification, social scoring or predictive policing.
AI usage guidelines
- Keep a human in the loop for any customer-facing reply that could cause harm.
- Disclose to your customers that AI is involved where required by law.
- Do not attempt to bypass the platform's safety filters or prompt-injection defences.
- Do not use the platform to generate content that impersonates real individuals.
Security responsibilities
- Use unique, strong passwords and enable MFA on every account.
- Rotate API keys periodically and revoke keys immediately if compromised.
- Report suspected vulnerabilities to [email protected].
- Do not run unauthorized penetration tests against the Service.
Reporting abuse
Report suspected AUP violations to [email protected]. Include enough detail (URLs, workspace names, timestamps) for us to investigate. We do not publicly disclose reporters.
Enforcement
Depending on the severity and history of the violation, we may:
- Warn the workspace administrator.
- Throttle or suspend specific features.
- Suspend the workspace pending investigation.
- Terminate the workspace and forfeit remaining credits for material breach.
- Notify law enforcement where required by law.
Appeals
If you believe an enforcement action was taken in error, contact [email protected] within 30 days. A member of our Trust & Safety team who was not involved in the original decision will review the case within 10 business days.