Purpose
This Acceptable Use Policy protects SurfLocal customers, recipients, telecommunications networks, service providers, and the SurfLocal platform from abusive, unlawful, fraudulent, or unsafe use.
Lawful Communications
Users must comply with laws and rules that apply to their calling, text messaging, email, recording, marketing, customer data, and other communications.
Users may not send communications when they know or reasonably should know the communication is unlawful or lacks required authorization.
Prohibited Messaging and Email
Users may not:
- Send unlawful spam or bulk unsolicited communications.
- Use purchased, rented, scraped, or improperly obtained consent as if it were valid recipient permission.
- Ignore opt-out, unsubscribe, or suppression requests.
- Use deceptive sender identities, headers, subjects, or message content.
- Send prohibited phishing, malware, credential theft, or fraudulent solicitations.
- Use SurfLocal to evade carrier filtering, messaging registration, consent, or suppression controls.
Fraud, Harassment, and Abuse
Users may not use SurfLocal to impersonate another person or business, defraud recipients, threaten or harass people, facilitate unlawful activity, distribute malicious content, or intentionally interfere with another person's communications or systems.
Call Recording
Recording features may only be used when the user has lawful authority to record the communication.
Users are responsible for required disclosures, participant consent, retention obligations, and restrictions that may apply to recorded or transcribed communications.
Security
Users may not:
- Attempt to bypass authentication, authorization, account isolation, rate limits, or security controls.
- Access another customer's records without authorization.
- Introduce malware or malicious code.
- Probe, scan, or attack SurfLocal systems without written authorization.
- Share credentials in a manner that defeats account security or user accountability.
Customer and Personal Information
Users may only collect and process information they are authorized to handle. Sensitive information should not be collected through a SurfLocal feature unless that feature and the customer's business process are appropriate for the information involved.
Users must not use the platform to unlawfully sell, disclose, exploit, or misuse personal information.
AI and Automated Workflows
Automated features must not be configured to intentionally deceive users about material facts, violate applicable law, bypass consent requirements, or independently make prohibited high-risk decisions.
Customers should maintain human review where the consequences, industry, regulation, or risk level requires it.
Emergency and Dangerous Use
SurfLocal must not be used as the sole communications system for emergency dispatch, life-safety monitoring, emergency medical decision-making, or other uses where failure could reasonably result in death or serious physical harm unless SurfLocal has expressly agreed in writing to support that specific use.
Enforcement
SurfLocal may investigate suspected violations and may restrict, suspend, or terminate affected functionality when reasonably necessary to protect the service, networks, recipients, customers, or the public.
Serious or repeated violations may result in account termination, carrier reporting, preservation of relevant records, or cooperation with lawful investigations.