Legal

Acceptable Use Policy

These rules protect law-firm customers, their clients, connected systems, and the integrity of dashboardWISE.

Last updated 2 September 2026

On this page

Scope and Responsibility

This Acceptable Use Policy ("Policy") applies to every person and organisation that accesses or uses the website, application, integrations, APIs, support channels, or other services provided by dashboardWISE LLC (collectively, the "Service"). It forms part of the Terms of Service.

Customer is responsible for its authorised users, administrators, agents, contractors, and anyone who accesses the Service through its accounts or credentials. Customer must maintain policies, supervision, permissions, and training appropriate to the sensitivity of the data it processes and the professional services it provides.

Authorised and Lawful Use

You may use the Service only for legitimate internal business and professional purposes, within your organisation's permissions and purchased entitlements, and in compliance with applicable law, regulation, court orders, professional rules, and the Agreement. You must have authority to access every firm, client, matter, record, account, and Connected Service you use with dashboardWISE.

You must not use the Service to:

  • commit, facilitate, conceal, or promote illegal, fraudulent, deceptive, or abusive activity;
  • violate a court order, professional obligation, contractual duty, privacy right, intellectual property right, or other right;
  • impersonate another person, misrepresent identity or authority, or create an account using false or misleading information;
  • access, disclose, alter, delete, or export information without appropriate authority; or
  • discriminate unlawfully, harass, threaten, exploit, defame, or cause unlawful harm to a person or organisation.

Security and System Integrity

You must not, directly or indirectly:

  • share individual accounts or authentication credentials, defeat multi-factor authentication, or permit access by an unauthorised person;
  • probe, scan, penetration test, or attempt to discover a vulnerability without our prior written authorisation;
  • bypass authentication, tenant isolation, permissions, rate limits, usage limits, security controls, or access restrictions;
  • introduce malware, ransomware, malicious code, destructive content, or any mechanism intended to obtain unauthorised access;
  • interfere with, overload, degrade, disable, or disrupt the Service, a Connected Service, another customer's use, or supporting infrastructure;
  • conduct denial-of-service activity, abusive automation, credential stuffing, unauthorized interception, or traffic manipulation; or
  • conceal the source of activity, defeat logging or monitoring, or assist another person in doing anything prohibited by this Policy.

You must promptly rotate or disable compromised credentials, remove access that is no longer required, maintain reasonable endpoint and email-account security, and report suspected compromise without undue delay.

Privacy and Personal Data

You may submit or connect personal data only where your organisation has a valid lawful basis, appropriate authority, and all required notices and consents. You must respect data-subject rights, purpose limitation, data minimisation, retention requirements, and any geographic or contractual restrictions applicable to the data.

You must not:

  • use the Service to collect, monitor, infer, profile, sell, share, or disclose personal data unlawfully;
  • upload data obtained through fraud, unlawful surveillance, unauthorised scraping, or another source you are not permitted to use;
  • attempt to re-identify data that has been anonymised or de-identified unless law and the data provider expressly permit it; or
  • expose personal data in support messages, screenshots, prompts, exports, or shared links beyond what is necessary and authorised.

If your organisation is subject to sector-specific, professional, or contractual restrictions, it is responsible for determining that the Service and its configuration are suitable before submitting the affected data.

Sensitive Data and Health Information

Law-firm source systems may contain highly sensitive information, including health, disability, financial, trust-account, identity, criminal-offence, employment, immigration, biometric, genetic, or children's information. Submit such information only when necessary, lawful, authorised, and protected by safeguards appropriate to its sensitivity. Do not use the Service as the sole or authoritative system of record for deadlines, trust accounting, evidence, or records subject to mandatory preservation.

You must not submit protected health information regulated by the United States Health Insurance Portability and Accountability Act ("HIPAA") unless dashboardWISE has executed a Business Associate Agreement covering your use and has confirmed the approved service configuration in writing. A subscription, security questionnaire, or this Policy is not a Business Associate Agreement and does not make the Service HIPAA compliant for your use.

The Service is intended for adult business users. You must not create an account for a child or use the Service to collect personal information directly from a child in a manner subject to the United States Children's Online Privacy Protection Act. This does not prohibit authorised processing of records concerning minors as Customer Data where the law firm has a lawful basis and appropriate safeguards.

Professional Duties and Privilege

Lawyers and law firms remain responsible for professional conduct, competence, supervision, confidentiality, conflicts, privilege, discovery, legal holds, client instructions, court rules, and all other duties applicable to their practice. You must evaluate whether dashboardWISE, each Connected Service, each integration permission, and each proposed use are appropriate for the affected representation and jurisdiction.

Do not assume that marking information confidential, placing it in a law-firm system, or processing it through dashboardWISE creates or preserves attorney-client privilege, legal professional privilege, or work-product protection. Use least-privilege access, minimise included matter detail, avoid unnecessary disclosure, and obtain client or other authorisation where required.

dashboardWISE does not provide legal, accounting, tax, financial, compliance, or other professional advice. You must not represent an output as advice from dashboardWISE or rely on it as a substitute for qualified professional judgement.

Automation and Artificial Intelligence

Any automated, predictive, or artificial-intelligence-assisted output must be reviewed by an appropriately qualified person before it is relied on, acted upon, filed, sent to a client, or used in a material decision. You are responsible for checking source support, accuracy, completeness, bias, confidentiality, and fitness for the intended purpose.

You must not use the Service or its outputs to:

  • make a solely automated decision producing legal or similarly significant effects unless the use is lawful, authorised, and subject to required safeguards and human review;
  • fabricate evidence, citations, records, identities, professional qualifications, or material facts;
  • mislead a court, regulator, client, counterparty, or other person about the origin, review, accuracy, or capabilities of an output;
  • infer highly sensitive traits or create unlawful discriminatory, deceptive, manipulative, or harmful profiles; or
  • submit confidential or personal data to an AI-enabled feature that your organisation has not approved for that data and purpose.

Prohibited Content and Conduct

You must not use the Service to store, process, create, or distribute:

  • content that is unlawful, fraudulent, defamatory, threatening, harassing, exploitative, or unlawfully discriminatory;
  • child sexual abuse material, non-consensual intimate imagery, content that sexually exploits a person, or content that facilitates trafficking or abuse;
  • malware, stolen credentials, phishing material, or instructions primarily intended to facilitate cybercrime or unauthorised access;
  • material that infringes copyright, trademark, privacy, confidentiality, publicity, database, or other proprietary rights; or
  • unsolicited bulk communications or deceptive messages in violation of anti-spam, marketing, or consumer-protection law.

Service and Intellectual Property Abuse

You must not:

  • copy, sell, resell, sublicense, distribute, or commercially exploit the Service except as expressly permitted by an Order Form;
  • reverse engineer, decompile, disassemble, translate, or attempt to derive source code, non-public APIs, models, or underlying ideas, except to the limited extent applicable law makes the restriction unenforceable;
  • scrape, crawl, index, harvest, or systematically extract the Service or its content through unauthorised means;
  • benchmark or publish performance, security, or availability test results in a misleading manner or without complying with an agreed testing process;
  • use the Service, outputs, or documentation to build, train, or improve a competing product or model; or
  • remove ownership notices, misrepresent dashboardWISE branding, or imply sponsorship or endorsement without written permission.

Export Controls and Sanctions

You must comply with applicable export-control, economic sanctions, and trade laws. You must not access, export, re-export, transfer, or use the Service from or for a prohibited destination, restricted party, prohibited end user, or prohibited end use, or in any manner designed to evade a restriction. You must not use the Service if you are listed on a relevant government restricted-party list or are owned or controlled by a restricted party.

You must provide information reasonably requested to verify compliance and must promptly notify us if your sanctions or export status changes. dashboardWISE may restrict access where required by law or reasonably necessary to manage sanctions or export risk.

Monitoring and Enforcement

We may investigate suspected violations using information reasonably available to us, including account, security, integration, and operational records. We are not required to monitor all Customer Data or activity and do not assume responsibility for Customer's legal or professional compliance.

Where reasonably necessary to protect people, data, Connected Services, dashboardWISE, or third parties, we may remove or restrict content, limit functionality, block activity, suspend access, preserve evidence, or terminate the affected account in accordance with the Terms of Service. We will consider severity, scope, recurrence, intent, legal obligations, and the feasibility of mitigation. Where circumstances permit, we will give notice and an opportunity to cure.

We may disclose information where required by law or a valid legal process, or where permitted by law and reasonably necessary to prevent imminent harm, investigate fraud or security incidents, or protect legal rights. Enforcement does not limit other remedies available under the Agreement or law.

Reporting Concerns

Report suspected misuse, unlawful content, compromised credentials, or a security concern to support@dashboardwise.com. Include enough information to identify the affected account, activity, or system, but do not include unnecessary client information, credentials, protected health information, or other sensitive data in the initial message.

Do not publicly disclose a suspected vulnerability, access another customer's data, disrupt the Service, or exceed the minimum testing necessary to describe a concern without our prior written authorisation. Nothing in this Policy prohibits a report to a regulator, law-enforcement authority, or other body where law protects that report.

Contracting entity

dashboardWISE LLC

Registered address

8 The Green STE ADover, Kent County, DE 19901United States

Legal contact

support@dashboardwise.com

State of Delaware, United States