Legal
Acceptable Use Policy
Last updated 2026-07-26 · Effective 2026-07-26
In plain language
This policy sets out what you may not do with Alif Cloud. It applies to every person who uses the platform — administrators, office staff, teachers, parents, guardians and students.
It forms part of our Terms of Use. The school is responsible for making sure everyone it gives access to follows it.
We can update this policy on its own, without changing the Terms of Use, so that we can respond to new kinds of abuse.
1. Who this applies to
This Acceptable Use Policy applies to the school that holds the account and to every user the school permits to access the Service. The school is responsible for its users' compliance and for the consequences of their non-compliance.
Terms used here have the meanings given in our Terms of Use.
2. Unlawful and harmful use
You must not use the Service to:
- break any applicable law or regulation, or facilitate anyone else doing so;
- store, transmit or promote content that sexually exploits or endangers a child, or that is otherwise unlawful to possess or distribute;
- harass, bully, threaten, stalk, defame or intimidate any person, including any student, family member or staff member;
- incite or promote violence, terrorism, or hatred against a person or group on the basis of race, ethnicity, national origin, religion, disability, sex, gender identity or sexual orientation;
- discriminate unlawfully against any person in the operation of the school;
- infringe a copyright, trademark, patent, trade secret, privacy right or other right of any person;
- misrepresent your identity, your role, or your authority to act for a school or a family;
- commit or facilitate fraud, including creating false enrollment records, false invoices, or false payment records; or
- launder money or process payments for goods or services unrelated to the operation of the school.
3. Misuse of student and family information
The Service holds sensitive information about children. The following are prohibited without exception:
- accessing a student, family, staff or financial record that you do not need to access for a legitimate purpose within your role;
- sharing your credentials, or using someone else's credentials;
- exporting, copying, photographing or transmitting student or family information for a purpose unrelated to the school's operation;
- disclosing student or family information to anyone not authorized by the school to receive it;
- using student or family information for marketing, fundraising solicitation, political campaigning, or any commercial purpose not authorized by the school;
- using contact details obtained from the Service to contact a family outside the school's own communications;
- collecting information from a student that the school has not authorized and does not need; or
- retaining student or family information after your role at the school ends.
Schools must promptly deactivate accounts for people who leave or change roles, and must configure roles and permissions so that each user can reach only the records their role requires.
4. Messaging, SMS and email
The Service can send SMS and email to families and staff. The school is the sender and is responsible for every message. You must not:
- send a message to a person who has not given the consent the law requires, or who has opted out;
- ignore or circumvent an opt-out, unsubscribe or STOP request;
- send unsolicited commercial or bulk messages, or anything that would be spam;
- send messages on behalf of an organization other than the school that holds the account;
- send deceptive subject lines, sender names or reply addresses;
- use the Service for political campaigning, fundraising for unrelated causes, or third-party advertising; or
- send a message that would breach telemarketing, anti-spam, or consumer protection law.
The school is responsible for maintaining accurate consent and opt-out records, and for honouring them. Where the school supplies its own messaging provider credentials, it is also responsible for compliance with that provider's policies.
5. Technical misuse
You must not:
- probe, scan or test the vulnerability of the Service, or breach or circumvent any security or authentication measure;
- access any account, data, system or network without authorization;
- interfere with or disrupt the Service, including by overloading, flooding, or launching a denial-of-service attack;
- introduce malware, ransomware, a virus, a worm, or any other harmful code;
- scrape, crawl, harvest or use an automated means to extract data from the Service, except through an API we provide and in accordance with its documentation;
- reverse engineer, decompile or disassemble the Service, or attempt to derive its source code;
- circumvent a usage limit, rate limit, or plan restriction, including by creating multiple accounts to exceed free-plan limits;
- resell, sublicense, rent or provide the Service to a third party as a service bureau; or
- remove or obscure any proprietary notice.
6. Reporting a vulnerability
If you believe you have found a security vulnerability, tell us at abuse@alifcloud.com before disclosing it to anyone else. Give us a reasonable period to investigate and remediate.
Do not access, modify, exfiltrate or delete data belonging to anyone else while investigating, do not run automated scans against production, and do not degrade the Service for other users. We will not pursue action against good-faith research that follows these limits.
7. How we enforce this policy
We do not routinely monitor content. When we receive a report, or when our systems flag something, we investigate.
Depending on what we find, we may: ask the school to remedy the issue; remove or disable access to specific content; suspend an individual user; suspend or throttle the account; terminate the account; and where the law requires or the safety of a person is at stake, report the matter to law enforcement or another authority.
We will normally give notice and an opportunity to fix the problem, and will limit our response to what is reasonably necessary. Where there is a risk to the security of the Service or to the safety of any person, we may act immediately and without prior notice.
Suspension or termination under this policy does not entitle the school to a refund. It does not relieve the school of fees already accrued.
8. Reporting a violation
To report abuse, misuse, or a violation of this policy, email abuse@alifcloud.com with as much detail as you can: what happened, when, which account or school is involved, and any evidence.
If you believe a child is in immediate danger, contact your local emergency services first. Then tell us.
To report alleged copyright infringement, follow the notice procedure in Section 28 of our Terms of Use.
9. Changes to this policy
We may update this policy to address new kinds of misuse. The "Last updated" date above shows when it last changed. Material changes are notified as described in Section 27 of our Terms of Use.