Important
This policy does not grant access rights by itself. Your actual permissions come from the relevant website, account, licence, contract or service terms.
Scope
This policy applies to theraeburngroup.com and to any Raeburn Group digital service, platform, API or technology product that expressly incorporates it. Product-specific terms may add further restrictions.
If a conflict exists, the relevant signed or accepted service terms take precedence for that service.
Lawful and authorised use
You must use covered services only for lawful purposes and within the permissions granted to you. You must not use them to commit, facilitate, encourage or conceal unlawful activity, fraud, deception, infringement, harassment or abuse.
Security and access
- do not attempt unauthorised access to accounts, systems, networks or data;
- do not bypass authentication, rate limits, access controls or technical safeguards;
- do not introduce malware, destructive code or deliberately harmful payloads;
- do not probe or scan systems except under an authorised security-testing arrangement; and
- do not interfere with service availability, integrity or other users.
Data, privacy and confidential information
You must have a lawful basis and appropriate authority for personal, confidential or third-party data that you upload, connect, process or instruct a service to use. Do not submit data you are prohibited from disclosing.
You must not use covered services for unlawful surveillance, credential theft, data exfiltration, doxxing or circumvention of privacy rights.
Content and intellectual property
You must not use covered services to infringe intellectual-property rights, distribute unlawful content, impersonate others deceptively, or present generated or altered material as authentic where doing so would be fraudulent or materially misleading.
Automation, AI and high-impact use
Automation and AI must not be used through covered services to make unlawful discriminatory decisions, evade legally required human oversight, fabricate evidence, manipulate regulated processes, or create a false impression that an automated output has been independently verified when it has not.
Where a decision may materially affect a person’s rights, livelihood, access to services, finances, employment or legal position, users remain responsible for appropriate human review and compliance with applicable law.
Email, messaging and outreach
You must not use covered systems to send unlawful spam, phishing, deceptive marketing, malware, forged communications or messages that breach applicable privacy, direct-marketing or electronic-communications laws.
Users are responsible for maintaining lawful contact lists, accurate sender information, appropriate suppression and opt-out handling, and any consent or legitimate-interest assessment required for their campaigns.
Abuse of resources
You must not deliberately impose unreasonable load, exploit service limits, operate abusive scraping or denial-of-service activity, or use the service in a way that materially degrades availability for others.
Enforcement
Where permitted by the relevant contract and law, we may investigate suspected misuse, restrict or suspend access, preserve relevant evidence, remove unlawful content, and report matters to affected providers, rights holders, regulators or law-enforcement bodies.
We will apply proportionate measures and do not promise to monitor every activity or communication.
Reporting misuse
Security or abuse concerns can be reported to contact@theraeburngroup.com. Where a dedicated security reporting route is published on our Trust & Security site, that route should be used for vulnerability reports.