← Back to site

Acceptable Use Policy

Last updated: 28 August 2026

This policy sets out what you may and may not do with Token Curb. It forms part of our Terms of Service and applies to everyone who uses the service.

The guiding principle is simple: use Token Curb to understand and control AI spending that you are authorized to see, and do not use it to attack, overload, or gain unauthorized access to anything.

1. Authorization

You may only connect provider accounts and credentials that you own or are authorized by their owner to connect. You may only invite people to a workspace who are entitled to see that organization's spending data.

2. Prohibited activities

You must not:

3. Security expectations for customers

You are expected to:

4. Responsible disclosure

If you believe you have found a security vulnerability in Token Curb, please report it to hello@tokencurb.com with enough detail for us to reproduce it. Please give us a reasonable opportunity to investigate and remediate before disclosing publicly. We will not pursue action against researchers who act in good faith, avoid privacy violations and service disruption, and do not access or modify data beyond what is necessary to demonstrate the issue.

5. Enforcement

If we believe this policy has been breached, we may investigate and take action proportionate to the circumstances, including warning you, restricting features, suspending access, or terminating the account. Where a breach threatens the security of the service or other customers, we may act immediately and notify you afterwards. We will cooperate with law enforcement where legally required.

6. Reporting misuse

To report suspected misuse of Token Curb, contact hello@tokencurb.com.

7. Changes

We may update this policy as the service evolves. The date at the top reflects the current version.