WorkerKit Acceptable Use Policy
What you may not build, publish, or run here. It is part of the Terms, and a worker acting on its own is no defense under it.
Last Updated: August 3, 2026
Version: 1.0
This Acceptable Use Policy (the "AUP") governs your use of WorkerKit ("WorkerKit," "we," "us," or "our"). This AUP is incorporated by reference into the WorkerKit Terms of Service and is binding on every user, Kit Creator, Admin User, and Authorized User. Capitalized terms not defined here have the meaning given in the Terms of Service.
Violating this AUP is a material breach of the Terms of Service. We may suspend, restrict, or terminate access immediately, with or without notice, and may remove any Kit, for any violation or suspected violation.
1. Why This Policy Exists and How to Read It
WorkerKit is not a chatbot. Workers take actions inside real accounts: they send messages, modify records, move files, and delete things. A misuse of WorkerKit does not produce a bad paragraph. It produces a real consequence in someone's inbox, CRM, file store, or bank-adjacent system.
Three rules govern everything below:
- You are responsible for everything your Workers do, whether or not you anticipated the specific action. "The agent did it" is not a defense under this AUP or the Terms.
- A prohibited act does not become permitted because a Worker performed it autonomously. If you may not do it yourself, you may not configure a Worker to do it.
- You must comply with the terms of every third party in the chain, including every App Provider whose account you connect and every Model Provider whose Model you select. Their restrictions flow down to you.
The lists in this AUP are illustrative, not exhaustive. We interpret them according to their purpose and may act on conduct that violates the spirit of this AUP even if it is not specifically listed.
2. Do Not Break the Law
You will not use the Service, publish a Kit, or run a Worker to engage in, facilitate, promote, or conceal any unlawful activity, including:
- violating any applicable federal, state, or local law or regulation;
- infringing or misappropriating any patent, copyright, trademark, trade secret, or other intellectual property right;
- acquiring, transferring, manufacturing, or distributing controlled substances, illegal goods, or illegal services;
- human trafficking, forced labor, or exploitation;
- money laundering, terrorist financing, sanctions evasion, or processing proceeds of crime;
- tax evasion or the falsification of financial, regulatory, or government records;
- practicing a licensed profession without the required license, or providing legal, medical, financial, tax, or other regulated advice you are not authorized to provide;
- circumventing any regulatory, licensing, disclosure, or reporting requirement; or
- assisting, encouraging, or enabling any other person to do any of the above.
3. Do Not Access Systems or Data You Are Not Authorized to Access
This is the restriction most specific to what WorkerKit does. You will not:
- connect any account you do not own or lack authority from the owner and your organization to connect;
- use the Service to access, read, modify, or delete any account, mailbox, file, record, database, or system without authorization from its owner;
- exceed the scope of authorization you were granted, including by using a Worker to reach data or perform actions outside the purpose for which access was given to you;
- use the Service to retain access to a system after your authorization has been revoked, or after you leave an organization;
- use another person's credentials, share your Credentials, or configure a Worker to obtain credentials from any person;
- harvest, scrape, exfiltrate, aggregate, or copy data from any Connected Account or third-party system in a manner that breaches that provider's terms or applicable law;
- use the Service to conduct surveillance, monitoring, or tracking of any individual without a lawful basis and any required notice or consent, including monitoring of employees, contractors, students, or household members;
- attempt to identify, deanonymize, or re-identify any individual from de-identified or aggregated data; or
- use the Service to test, probe, or scan the security of any system you do not own or have written authorization to test. See Section 12 of the Terms of Service.
4. Do Not Compromise Systems, Networks, or the Service
You will not use the Service, or publish a Kit, to:
- create, distribute, or deploy malware, ransomware, spyware, keyloggers, credential harvesters, cryptominers, worms, or other malicious code;
- discover, develop, or exploit vulnerabilities in any system without authorization;
- conduct denial-of-service attacks or generate traffic intended to degrade any system;
- intercept, monitor, or modify communications without authorization from all parties;
- establish unauthorized persistent access, backdoors, or command-and-control infrastructure;
- bypass, disable, or interfere with authentication, authorization, rate limiting, metering, billing, logging, or security controls, whether ours or a third party's;
- circumvent a suspension, termination, or usage limit, including by creating additional accounts; or
- jailbreak, prompt-inject, or otherwise attempt to bypass the safety measures or guardrails of any Model, Kit, or App Provider.
5. Do Not Compromise Critical Infrastructure or Safety-Critical Systems
You will not use the Service to interact with, control, monitor, or influence:
- power, water, fuel, or utility systems;
- transportation control systems, including vehicles, aircraft, rail, and vessels;
- industrial control systems, SCADA, or manufacturing safety systems;
- medical devices, clinical systems, or patient-care infrastructure;
- emergency services, public safety, or telecommunications infrastructure;
- election systems, voter databases, or ballot infrastructure; or
- weapons systems or military targeting.
You will not use the Service in the design, development, or production of weapons, including chemical, biological, radiological, nuclear, or high-yield explosive weapons, or to circumvent controls on any of them.
6. Do Not Automate High-Stakes Decisions Without Human Review
You will not configure a Worker to make, or to execute without meaningful human review, any decision producing legal or similarly significant effects on an individual. This includes decisions concerning:
- employment, including hiring, promotion, discipline, scheduling, and termination;
- credit, lending, or debt collection;
- housing, tenancy, or eviction;
- insurance underwriting, pricing, or claims;
- healthcare, diagnosis, treatment, triage, or clinical decision support;
- education, admissions, grading, or accreditation;
- eligibility for any government benefit or service;
- criminal justice, sentencing, parole, bail, policing, or risk prediction; or
- immigration or border decisions.
"Meaningful human review" means a person with the authority and information to change the outcome actually reviews the specific decision before it takes effect. A human who rubber-stamps a queue does not satisfy this requirement.
You will also not configure a Worker to execute financial transactions, securities or cryptocurrency trades, payment authorizations, or purchases without human confirmation of each transaction.
Where you use the Service to assist a high-stakes decision, you are responsible for any disclosure, assessment, record-keeping, appeal, or opt-out obligation that applies to you.
7. Do Not Use Workers to Deceive, Defraud, or Impersonate
You will not use the Service to:
- impersonate any person, organization, or entity, or misrepresent your affiliation, identity, or location;
- represent that a Worker's communication came from a human, where the recipient would reasonably assume they were dealing with a person and the law or the context requires disclosure;
- operate scams, phishing, pretexting, business email compromise, romance fraud, or fraudulent schemes of any kind;
- generate or distribute fake reviews, engagement, testimonials, endorsements, or social proof;
- create or distribute counterfeit goods, forged documents, falsified credentials, or fraudulent identification;
- operate pyramid schemes, multi-level marketing fraud, predatory lending, or abusive debt collection;
- manipulate markets, prices, rankings, or auctions; or
- generate or distribute misinformation, including fabricated statements attributed to real people or institutions, false medical or health claims, or content designed to deceive about civic or electoral processes.
8. Do Not Send Unlawful, Unsolicited, or Abusive Communications
Workers frequently have send access to email, messaging, and social accounts. You will not use that access to:
- send unsolicited bulk communications, spam, or unlawful marketing, including in violation of the CAN-SPAM Act, the Telephone Consumer Protection Act, or state equivalents;
- send communications to any person who has opted out, unsubscribed, or requested no contact;
- send communications that would cause an App Provider to suspend, rate-limit, or terminate an account;
- harass, threaten, intimidate, stalk, bully, defame, or doxx any person;
- distribute hate speech, or content promoting violence, terrorism, or violent extremism; or
- distribute content promoting suicide, self-harm, disordered eating, or other self-destructive behavior.
You are responsible for maintaining consent records, suppression lists, and unsubscribe handling for any communications your Workers send. WorkerKit does not do this for you.
9. Do Not Harm Children
You will not use the Service to:
- generate, solicit, store, transmit, or distribute child sexual abuse material, whether or not any part of it is AI-generated;
- sexualize, groom, exploit, or endanger any minor;
- facilitate trafficking, sextortion, or abuse of any minor; or
- provide minors access to age-restricted goods, services, or content.
We report suspected child sexual abuse material to the National Center for Missing and Exploited Children and to law enforcement as required by law, and will terminate the responsible account immediately and permanently.
10. Do Not Generate Prohibited Content
You will not use the Service to generate or distribute:
- sexually explicit content, including depictions of sexual acts, fetish content, and content involving incest or bestiality;
- non-consensual intimate imagery, or sexual or intimate depictions of a real person without their consent;
- content depicting or glorifying gratuitous violence, gore, or animal cruelty;
- content that uses a real person's name, likeness, image, or voice without authorization; or
- content designed to cause psychological or emotional harm, including manipulative products targeting vulnerable people.
11. Do Not Misuse Biometric, Sensitive, or Personal Data
You will not use the Service to:
- perform facial recognition, voice identification, or biometric matching without the informed consent required by applicable law, including the Illinois Biometric Information Privacy Act, the Texas CUBI statute, and Washington's My Health My Data Act;
- conduct real-time remote biometric identification in public spaces;
- infer emotion, mental state, personality, or health status of individuals, including in workplace or educational settings;
- categorize individuals by protected characteristics, or perform social scoring;
- process health, genetic, financial-account, precise-location, or government-identifier data without a lawful basis and any required consent, notice, or safeguard; or
- build profiles of individuals for sale, brokerage, or surveillance.
12. Kit Creator Rules
If you publish a Kit, you additionally will not:
- misdescribe what your Kit does, including its purpose, the App Providers it accesses, the scopes it requests, the data it reads or writes, and every destination to which it transmits data;
- request scopes or permissions broader than your Kit's stated purpose requires;
- include any undisclosed collection, logging, retention, or transmission of user data, Credentials, Inputs, or Outputs, to you or to any third party;
- include any code or instruction designed to escalate privileges, escape a runtime, evade controls or logging, self-modify beyond its disclosed behavior, or persist beyond its authorized scope;
- design a Kit for any use prohibited by this AUP, or market it for one;
- cause users or WorkerKit to breach any App Provider's or Model Provider's terms;
- impersonate another Kit Creator, or use another party's name, brand, or trademarks without authorization;
- represent that your Kit is authored, reviewed, verified, certified, endorsed, or supported by WorkerKit; or
- publish a Kit you know or reasonably should know is defective, insecure, non-compliant, or inaccurately described, or fail to promptly remediate or withdraw one once you learn it is.
13. Do Not Abuse the Platform
You will not:
- resell, sublicense, or provide access to the Service to third parties except as expressly permitted;
- use the Service to build, train, benchmark, or operate a competing product or service;
- scrape, crawl, or extract data from the Site or Service outside our documented APIs;
- reverse engineer, decompile, or attempt to extract source code, model weights, system prompts, or architecture, except where that restriction is unenforceable under applicable law;
- distill, replicate, or train any model on Outputs obtained through the Service, where prohibited by the applicable Model Terms;
- create multiple accounts to circumvent limits, quotas, free-tier allowances, or an enforcement action;
- misrepresent your location or identity, or use a VPN, proxy, or similar means to access a Model, App Provider, or region you are not authorized to access; or
- interfere with the operation of the Service or any other user's use of it.
14. Territorial and Sanctions Restrictions
The Service is offered only in the United States. You will not access or use the Service from outside the United States, and you will not use the Service to circumvent any territorial restriction imposed by us, an App Provider, or a Model Provider.
You will not use the Service if you are located in, ordinarily resident in, or organized under the laws of any country or region subject to comprehensive U.S. sanctions, or if you are identified on, or owned or controlled by a party identified on, any U.S. restricted-party list. See Section 23 of the Terms of Service.
15. Reporting and Enforcement
15.1 Report a Violation
- Abuse, malicious Kits, and security concerns: security@workerkit.ai
- Unlawful content or conduct: legal@workerkit.ai
- Copyright: dmca@workerkit.ai, per Section 14 of the Terms of Service
Include the Kit name or account, what you observed, and any evidence. We investigate reports but do not commit to any response time or outcome, and we may not be able to update you on the result.
15.2 How We Enforce
We may, in our sole discretion and with or without notice: warn you; restrict or remove a Kit; limit or disable features; restrict or revoke Connected Account access; suspend or terminate your account; forfeit unused Wallet funds and subscription time where termination is for breach; report conduct to law enforcement, App Providers, or Model Providers; and cooperate with investigations.
We have no obligation to monitor for violations of this AUP, and we reserve the right to do so. Our decision not to act in any instance does not waive our right to act in any other.
15.3 Changes to This AUP
We may update this AUP. Material changes are subject to the notice provisions in Section 15 of the Terms of Service. Because the risks of agent misuse evolve quickly, we may make changes necessary to address an urgent legal, safety, security, or provider-compliance issue effective immediately upon posting, and will notify you promptly afterward.
16. Contact
WorkerKit
10900 Stonelake Blvd
Austin, TX 78759, United States
- Abuse and security: security@workerkit.ai
- Legal: legal@workerkit.ai
- Support: support@workerkit.ai