Plain Language Summary
This policy defines what you can and cannot do with Eira OS commercial software, services, and infrastructure. Key points: Software is leased for your internal business use only. You may not copy, reverse engineer, modify, resell, or use it to build competing products. You are responsible for your own hardware and infrastructure. Violations may result in immediate termination and legal action.
Effective Date: August 9, 2026
1. Scope and Incorporation
This Acceptable Use Policy ("AUP" or "Policy") governs the use of all Eira OS commercial software, services, infrastructure, and deliverables (collectively, "Eira OS Resources"). This Policy is incorporated by reference into the Eira OS Terms of Service and is enforceable as part of those Terms. By using any Eira OS Resources, the Member agrees to comply with this Policy. This Policy applies to Memberships only. Consumer products, when available, are governed by separate terms.
2. Permitted Uses
What You May Do
The Member may use Eira OS Resources for the following purposes during an active Membership:
- Internal Business Operations: Use Software and Deliverables for the Member's own internal personal daily living use within the scope of the Membership;
- Compliance Preparation: Use Deliverables (gap analyses, remediation roadmaps, policy drafts, knowledge bases) to prepare for compliance assessments and audits;
- Infrastructure Analysis: Use Services to analyze the Member's own infrastructure, networks, and systems;
- Internal Reference: Retain copies of Deliverables for internal reference after the Membership concludes, subject to the limitations in the Terms of Service;
- Authorized Sharing: Share Deliverables with the Member's own employees, auditors, or assessors who have a need to know, provided they are bound by confidentiality obligations no less protective than those in the Terms of Service;
- Review and Comment: Review AI-assisted findings, request explanations, and provide feedback to Eira OS for correction and improvement of Deliverables during the Membership.
3. Prohibited Uses
What You May Not Do
The following uses are strictly prohibited. Violation of any provision in this Section constitutes a material breach of the Terms of Service and may result in immediate termination without cure period.
Intellectual Property Violations
- Copy, reproduce, distribute, or transfer Software or Deliverables to any third party, except as expressly permitted in Section 2;
- Reverse engineer, decompile, disassemble, or attempt to derive the source code, architecture, or internal workings of any Software;
- Modify, adapt, create derivative works from, translate, or alter any Software or Deliverables;
- Remove, alter, or obscure any copyright, trademark, or proprietary notices on or in any Software or Deliverables;
- Use any tool, technique, or process to extract, scrape, or harvest model weights, configurations, prompts, templates, or methodologies from Software;
- Sublicense, lease, rent, lend, or otherwise make Software available to any third party.
Competing Use
- Use Software or Deliverables to develop, train, or improve any competing AI system, product, or service;
- Use Software or Deliverables to provide services to third parties, including hosting, managed services, consulting, or auditing;
- Use Eira OS methodologies, templates, or processes revealed during an Membership to create a competing offering;
- Disclose Eira OS pricing, methodologies, or proprietary information to any third party, except as required by law.
Unlawful or Harmful Use
- Use Eira OS Resources for any illegal purpose, or in violation of any applicable law, regulation, or contractual obligation;
- Use Eira OS Resources to infringe the intellectual property, privacy, or other rights of any third party;
- Use Eira OS Resources to store, process, or transmit unlawful, defamatory, or harmful content;
- Attempt to gain unauthorized access to Eira OS systems, infrastructure, data, or personnel information;
- Use Eira OS Resources in a manner that could damage, disable, overload, or impair Eira OS infrastructure or systems, or any third-party system;
- Introduce any virus, malware, malicious code, or harmful component into Eira OS systems or infrastructure.
Geographic Restrictions
- Use, access, or operate Software or Deliverables outside the United States;
- Export, re-export, or transfer Software or Deliverables to any country, entity, or person prohibited by United States export control laws;
- Permit access to Software or Deliverables by any person located outside the United States.
Circumvention
- Attempt to circumvent any access control, license enforcement, or usage limitation in Software;
- Use Software after termination or expiration of the Membership;
- Retain copies of Software after termination, except as expressly permitted for Deliverables in the Terms of Service;
- Attempt to disable, bypass, or interfere with any monitoring, logging, or audit functionality in Software.
4. Member Responsibilities
The Member is responsible for the following:
- Hardware and Infrastructure: The Member is solely responsible for the procurement, maintenance, and security of any hardware, networks, and infrastructure on which Software is deployed. Eira OS is not responsible for hardware failures, network outages, or infrastructure issues on the Member's side.
- Access Management: The Member is responsible for managing access to Software and Deliverables within its organization. The Member must ensure that only authorized personnel access Software and that terminated personnel have access revoked promptly.
- Compliance with Laws: The Member is responsible for compliance with all applicable laws and regulations related to its use of Eira OS Resources, including data protection, privacy, and industry-specific regulations.
- Accurate Information: The Member must provide accurate, complete, and current information to Eira OS for the purpose of Services. Inaccurate or incomplete information may result in inaccurate Deliverables for which Eira OS is not responsible.
- Third-Party Software: If Software requires or integrates with third-party software, the Member is responsible for obtaining and maintaining all necessary licenses for such third-party software.
- Notification: The Member must notify Eira OS promptly of any suspected or actual unauthorized access, use, or disclosure of Eira OS Resources.
Managed Service Provider Restrictions
MSPs May NOT Access, Maintain, or Modify Eira OS Software
The following restrictions apply to all Managed Service Providers (MSPs), IT consultants, IT staff, or any third-party technology provider engaged by the Member. These restrictions are material terms of the Membership. Violation constitutes immediate grounds for termination without cure period.
MSPs and third-party technology providers are strictly prohibited from:
- Accessing, logging into, or attempting to access any Eira OS Software, configuration, model, or infrastructure component;
- Installing, deploying, updating, patching, modifying, or configuring any software on hardware where Eira OS Software is deployed;
- Establishing direct network connections to Eira OS Software or hardware hosting Eira OS Software, including but not limited to SSH, RDP, VNC, Telnet, HTTP/HTTPS administration interfaces, or any other remote access protocol;
- Maintaining, servicing, or performing any maintenance activity on Eira OS Software or the hardware hosting it;
- Running diagnostic commands, scripts, or tools against Eira OS Software or its host hardware;
- Modifying firewall rules, routing tables, or network configurations that affect Eira OS Software connectivity;
- Attempting to extract, inspect, or copy any Eira OS Software component, configuration, model, or data.
The only exception is basic availability monitoring: An MSP may verify that the hardware hosting Eira OS Software is reachable using a single ICMP echo request per the following specification:
- Protocol: ICMP (Internet Control Message Protocol), IPv4 only;
- Type: Echo Request (Type 8, Code 0). The host will respond with Echo Reply (Type 0, Code 0);
- Packet Size: Total ICMP packet size not exceeding 1024 bytes, including the 8-byte ICMP header and payload. No fragmentation permitted (DF bit set);
- Frequency: No more than one (1) echo request per sixty (60) second interval. Burst or continuous monitoring is prohibited;
- Source: Originating from the MSP's designated monitoring IP address only, as provided to Eira OS in writing;
- Response: ICMP does not use TCP or UDP ports. The echo reply is returned to the originating IP address at the IP layer. No connection is established, maintained, or logged as a session;
- Duration: Each echo request and reply must complete within the normal ICMP timeout for the Member's network. No sustained or persistent monitoring sessions.
No other monitoring, probing, scanning, or connection attempt is permitted. This includes but is not limited to: TCP port scanning, UDP port scanning, SYN scans, ACK scans, service detection, banner grabbing, SNMP queries (any version), HTTP or HTTPS health checks, SSH banner checks, Telnet checks, DNS queries against the host, ARP table inspection, or any protocol that establishes a connection, session, or exchange beyond a single ICMP echo request and reply.
MSP responsibilities are limited to:
- Physical hardware replacement (rack, stack, power, cabling) if the hardware is owned by the Member;
- Network connectivity at the switch port level (ensuring the port is active and properly configured by the Member's network team);
- Single ICMP echo request (1024 bytes maximum) for availability monitoring.
The Member acknowledges that Eira OS Software is a sovereign, local-first system managed exclusively by Eira OS personnel. Any unauthorized access, modification, or maintenance by an MSP or third-party technology provider voids all support, warranty, and service obligations immediately and may constitute a material breach of the Terms of Service. The Member is responsible for communicating these restrictions to any MSP or third-party technology provider it engages and for ensuring compliance.
5. Security Responsibilities
The Member must maintain reasonable security measures to protect Eira OS Resources, including:
- Maintaining current operating system updates and security patches on hardware where Software is deployed;
- Using strong, unique credentials for all accounts with access to Software;
- Restricting access to Software to personnel with a legitimate business need;
- Maintaining firewall and network security controls appropriate to the Member's environment;
- Not storing Software credentials, keys, or access tokens in unencrypted or publicly accessible locations;
- Promptly reporting any security incident involving Eira OS Resources to Eira OS.
Eira OS is not liable for any breach or security incident caused by the Member's failure to maintain reasonable security measures. The Member bears sole responsibility for the security of its own infrastructure.
6. Data Responsibilities
The Member retains all ownership of its data. The Member is responsible for:
- Maintaining backups of Member Data before providing it to Eira OS for analysis;
- Ensuring the Member has the legal right to share any data provided to Eira OS;
- Not providing data that is subject to restrictions that would prevent Eira OS from processing it as part of the Services;
- Notifying Eira OS of any special data handling requirements (e.g., classified, controlled unclassified, PHI, PCI) before the Membership begins.
Eira OS processes Member Data on sovereign, on-premise infrastructure and does not transmit Member Data to third-party cloud services unless explicitly agreed in writing. See the AI Usage Disclosure for additional information about how AI interacts with Member Data.
7. Support and Warranty Conditions
Support for Eira OS Resources is provided under the terms of the applicable Membership. The following actions may void support and warranty coverage:
- Modifying, patching, or altering Software beyond configurations documented or approved by Eira OS;
- Deploying Software on hardware or operating systems that do not meet the specifications provided by Eira OS;
- Failing to apply updates or patches provided by Eira OS within a reasonable timeframe;
- Using third-party tools or scripts to interact with Software in ways not authorized by Eira OS;
- Failing to maintain the security measures described in Section 5;
- Using Software outside the scope of the Membership.
Eira OS reserves the right to charge additional fees for support services required due to Member actions that void standard support coverage.
8. Audit Rights
Eira OS may audit the Member's compliance with this AUP and the Terms of Service upon thirty (30) days written notice. Audits may include verification of:
- The number of authorized users and deployments;
- Compliance with license restrictions;
- Compliance with security requirements;
- Whether any Software has been copied, modified, or redistributed in violation of this AUP.
Audits will be conducted during business hours and will not unreasonably interfere with the Member's operations. If an audit reveals non-compliance, the Member must remediate within ten (10) days. Eira OS may charge the Member for the cost of the audit if material non-compliance is found. The Member must maintain records sufficient to demonstrate compliance for the duration of the Membership plus three (3) years.
9. Enforcement
Eira OS may take the following actions in response to violations of this AUP:
- Warning: For minor, first-time violations, Eira OS may issue a written warning requiring remediation within ten (10) days.
- Suspension: For repeated or serious violations, Eira OS may suspend access to Software and Services immediately pending remediation.
- Termination: For material violations, including any prohibited use in Section 3, Eira OS may terminate the Membership immediately without cure period.
- Legal Action: For violations involving intellectual property infringement, illegal activity, or unauthorized disclosure, Eira OS may pursue legal action including injunctive relief and damages under the Terms of Service and applicable law.
Eira OS reserves the right to take any action it deems appropriate to protect its intellectual property, infrastructure, and legal rights. The Member acknowledges that violations of this AUP may also constitute violations of federal copyright law (17 U.S.C. et seq.) and Arizona state law.
10. Changes to This Policy
Eira OS may update this Acceptable Use Policy from time to time. The effective date at the top of this page indicates when the current version was posted. Changes apply to new Memberships entered into after the effective date. Memberships already in progress are governed by the Policy in effect at the time the Membership was initiated, unless the Membership expressly provides otherwise.
Relationship to Terms of Service: This Acceptable Use Policy is incorporated by reference into the Eira OS Terms of Service. In the event of a conflict between this Policy and the Terms of Service, the Terms of Service control. This Policy does not create any warranty or right not expressly stated in the Terms of Service or the applicable Membership.