Acceptable Use Policy
The rules for what may be uploaded, signed, stored, and shared through KXCO Nexus — and how we enforce them.
- Your responsibility for content
- Prohibited content
- Prohibited conduct
- Signature & attestation integrity
- Child sexual abuse material
- Monitoring & enforcement
- Reporting violations
- Cooperation with law enforcement
- Changes
- Contact
This Acceptable Use Policy (the "AUP") governs your use of the KXCO Nexus electronic-signature and data-room platform at sign.kxco.ai (the "Service") and the content you upload, store, send, sign, or share through it ("Content"). It is operated by Knightsbridge Financial Ltd ("we", "us", "our"). This AUP forms part of, and is incorporated into, your agreement with us. You accept this AUP when you create an account, and your continued use of the Service confirms your acceptance. If you use the Service on behalf of an organisation, you accept this AUP for that organisation and confirm you are authorised to do so.
1. Your responsibility for content
You are solely responsible for all Content you upload or transmit and for all activity under your account. For every document you upload or send, you represent and warrant that:
- you own it or have all rights, licences, and permissions necessary to upload, process, sign, and share it through the Service;
- you have the right to collect and submit the personal data of any signer, recipient, or third party it contains, and to have us process that data to provide the Service; and
- its upload, signing, and distribution does not and will not violate any law or any third party's rights.
2. Prohibited content
You must not upload, store, send, sign, host, or distribute any Content that:
- Contains malicious code — viruses, malware, ransomware, embedded scripts, executables, macros, auto-run or launch actions, or any code designed to disrupt, damage, gain unauthorised access to, or exfiltrate data from any system, device, or person.
- Is unlawful under any applicable law, or promotes or facilitates unlawful activity.
- Infringes intellectual property — copyright, trademark, trade secret, patent, or other proprietary rights — or breaches a duty of confidentiality.
- Is sexually explicit, obscene, or pornographic, or is otherwise indecent.
- Is, depicts, or facilitates child sexual abuse material or the sexual exploitation of minors. This is absolutely prohibited — see section 5.
- Is defamatory, harassing, threatening, abusive, hateful, or discriminatory, or incites violence or self-harm.
- Facilitates fraud or financial crime — including money laundering, terrorist financing, sanctions evasion, forged or fraudulent documents, fake identities, or the impersonation of any person or entity.
- Contains another person's sensitive or personal data that you have no lawful basis to process, or discloses it without authorisation.
- You are otherwise not legally permitted to share.
3. Prohibited conduct
You must not, and must not permit or enable any third party to:
- Use the Service to send unsolicited bulk communications (spam) or phishing, or to harvest signatures, credentials, or data by deception.
- Forge, alter, or misrepresent a signature, signer identity, timestamp, attestation, or audit record, or attempt to repudiate or falsify a record the Service has sealed or anchored.
- Sign, or induce another to sign, a document under false pretences, duress, or without the authority to bind the named party.
- Probe, scan, or test the vulnerability of the Service; breach or circumvent authentication, access controls, rate limits, or document-access tokens; or access data, accounts, documents, or data rooms not intended for you.
- Reverse engineer, scrape, or use automated means to access the Service except through interfaces we provide; or copy, resell, or sublicense the Service without authorisation.
- Interfere with or disrupt the integrity or performance of the Service.
- Use the Service in breach of any applicable export-control or sanctions law.
4. Signature & attestation integrity
The value of the Service depends on the integrity of its signatures, certificates, and on-chain attestations. Any attempt to defeat, forge, backdate, or fraudulently manufacture that integrity — or to use the Service to lend false authenticity to a document — is a serious breach of this AUP and may be reported to law enforcement and to any relying party.
5. Child sexual abuse material — zero tolerance
We have zero tolerance for child sexual abuse material ("CSAM"). Any Content that is, depicts, or facilitates the sexual abuse or exploitation of a minor will be removed, the responsible account terminated, and the matter reported to the appropriate authorities (and, where applicable, to bodies such as the UK Internet Watch Foundation (IWF) or the U.S. National Center for Missing & Exploited Children (NCMEC)). We will preserve relevant records as required by law and cooperate fully with investigations. We may do this without prior notice to you.
6. Monitoring & enforcement
- We may, but are not obliged to, scan, inspect, and analyse uploads for malicious code and prohibited Content, automatically or manually. Some uploads — for example, files containing active scripts — may be rejected automatically.
- We do not pre-screen all Content, and we do not warrant that prohibited Content will be detected or prevented. Screening does not make us responsible for your Content.
- Where we detect or are notified of a suspected breach, we may at our sole discretion: remove or disable access to Content; suspend or terminate accounts; preserve and disclose records to the extent permitted or required by law; refer the matter to law enforcement or regulators; and take any other action we consider appropriate.
- For serious or unlawful breaches we may act immediately and without notice. Termination for breach may result in loss of access to your documents and forfeiture of fees, without refund.
7. Reporting violations
To report Content or conduct that breaches this AUP, contact [email protected] with the document reference or URL and a description of the issue. Reports of CSAM or imminent harm are prioritised. We will not disclose the identity of a good-faith reporter except as required by law.
8. Cooperation with law enforcement
We will preserve and disclose Content, account information, and logs where we believe in good faith that doing so is required by law, necessary to enforce this AUP, or necessary to protect the rights, safety, or property of any person.
9. Changes
We may update this AUP at any time by posting the revised version. Material changes take effect when posted (or on the stated effective date). Continued use of the Service after a change constitutes acceptance.
10. Contact
Questions about this AUP: [email protected].