Acceptable Use Policy

The rules that keep the Yinetai Privacy Toolkit safe and reliable for everyone. Last updated: 2 July 2026.

This Acceptable Use Policy ("AUP") applies to every organisation and user that accesses the Yinetai Privacy Toolkit, our websites, and our APIs (together, the "Services"). It forms part of your agreement with Yinetai. If you see something that breaks these rules, report it to support@yinetai.com.

1. Use the Services lawfully

  • Comply with all applicable laws, including the Nigeria Data Protection Act 2023, the Cybercrimes (Prohibition, Prevention, etc.) Act, and any regulation that applies to the data you manage in the platform.
  • Only upload personal data that your organisation has a lawful basis to process. You are the controller of the compliance records you create.
  • Do not use the Services to store or distribute unlawful, defamatory, or infringing content.

2. Respect platform security

  • Keep your credentials confidential. Accounts are for named individuals — do not share logins.
  • Do not probe, scan, or test the vulnerability of the Services without our prior written authorisation.
  • Do not attempt to access another organisation's workspace, records, or audit files.
  • Do not introduce malware, run denial-of-service attacks, or interfere with the integrity of the platform.

3. Respect other users and regulators

  • Information exchanged with a DPCO or the NDPC through the platform's audit workflows must be accurate and submitted in good faith.
  • Do not impersonate another person, organisation, DPCO, or regulator, or misrepresent your accreditation status.
  • Do not use the Services to send spam or unsolicited communications.

4. Fair use of resources

  • Automated access must use our published APIs under a valid Developer Agreement; scraping the web interface is not permitted.
  • We may apply reasonable rate limits and storage quotas to protect service quality for all customers.

5. Enforcement

We may investigate suspected violations. Depending on severity we may warn the account holder, suspend affected accounts or workspaces, remove content, or terminate the agreement. Where the law requires it — for example a personal data breach caused by misuse — we may also notify the Nigeria Data Protection Commission or law enforcement. We will give notice before acting unless doing so would worsen the harm.

6. Changes

We may update this AUP as the Services and the law evolve. Material changes will be announced to account holders before they take effect. Continued use of the Services after a change means you accept the updated policy.

Questions about acceptable use? Contact support@yinetai.com.