skip to content
$empowered.guru

Legal · acceptable use

Acceptable use policy.

What you can and cannot do on infrastructure and services operated by empowered.guru, LLC.

// scope

This policy applies to any infrastructure we operate for you (private LLMs, agents, hosted apps), to any account we provision for you, and to your use of the empowered.guru website. It supplements, and does not replace, our Terms of Service and any signed Master Services Agreement.

Last updated: August 16, 2026

1. Scope

This Acceptable Use Policy (the "AUP") describes the conduct we prohibit on infrastructure and services we operate. It applies to every user of those systems, including your employees, contractors, and end users where we host an application on your behalf. The AUP is referenced by our Terms of Service and by every Master Services Agreement.

2. Prohibited uses

You may not use the Services to:

  • Violate any law: federal, state, local, foreign, or international law, regulation, court order, or treaty.
  • Infringe intellectual property: copyright, trademark, patent, trade secret, or other proprietary right.
  • Harass or harm: threaten, stalk, defame, or otherwise harass any person, or incite violence against any person or group.
  • Distribute harmful code: malware, ransomware, viruses, worms, spyware, or any code designed to disrupt, damage, or gain unauthorized access.
  • Send unsolicited communications: spam, phishing, or other unsolicited bulk messages, including without proper consent under CAN-SPAM, CASL, GDPR, or PECR.
  • Conduct fraud: impersonate any person or entity, misrepresent affiliation, or engage in deceptive practices.
  • Process illegal content: child sexual abuse material (CSAM), content that violates U.S. export-control or sanctions law, or content that would cause us to lose the protection of any safe-harbor framework we rely on (DMCA, CDA §230, GDPR Art. 85).
  • Circumvent controls: rate limits, authentication, authorization, or any other technical safeguard.
  • Mine cryptocurrency: except where we have explicitly authorized it in a signed SoW.
  • Interfere with operations: degrade service, attempt denial-of-service, or scan or probe the security of systems we operate.
  • Reverse engineer: except to the extent this restriction is prohibited by applicable law.
  • Compete: use the Services to build a competing product or service, or to replicate the Services for a third party.

3. AI-specific rules

When the Services include AI agents, models, or endpoints (whether local or hosted), you additionally agree:

  • You will not use AI features to generate content prohibited by Section 2.
  • You are responsible for any output you publish, send, or rely on. AI outputs are probabilistic and may be wrong, biased, or unsafe; we do not warrant their fitness for any particular purpose.
  • You will not submit personal data of others for AI processing except as authorized under our DPA and your own legal basis.
  • You will not attempt to extract training data, system prompts, or model weights except as expressly permitted in the applicable SoW.
  • For on-prem / local-LLM deployments we set up for you, the weights remain governed by the upstream license (Apache 2.0, MIT, Qwen, Llama Community License, or other) and your use must comply with that license.

4. Private and regulated data

Where your use of the Services involves regulated data (PHI under HIPAA, cardholder data under PCI-DSS, student records under FERPA, controlled unclassified information under CMMC, etc.), your use must comply with the applicable regime. We document what we support and what we will not touch in our regulatory coverage notice. We are happy to enter a Business Associate Agreement (BAA) for HIPAA engagements; it is incorporated into the MSA by reference.

5. Security and abuse reporting

Report suspected violations to security@empowered.guru. Include enough detail for us to investigate (timestamps, request IDs, evidence) but do not include sensitive content itself. Security research conducted in good faith is covered by our responsible disclosure policy.

6. Enforcement

When we determine, in our reasonable judgment, that a violation has occurred, we may take any of the following actions, with or without notice:

  • Issue a warning.
  • Throttle, suspend, or terminate the affected service, account, or workload.
  • Remove or quarantine offending content.
  • Disable API keys, SSH keys, or other credentials.
  • Recover costs of incident response, including forensic and legal fees, from the responsible party.
  • Refer the matter to law enforcement where appropriate.
  • Terminate the underlying MSA for material breach.

Where feasible, we will give advance notice and an opportunity to cure. Where evidence may be destroyed, the safety of a person is at risk, or law requires immediate action, we act first and notify after.

7. Changes

We may update this AUP. Material changes that expand permitted uses take effect immediately; changes that narrow permitted uses take effect 30 days after we post them. The current version is always at this URL.

8. Contact

Questions about this policy: legal@empowered.guru.