1. Prohibited data
The Service is not accredited to hold controlled government information. You may not upload, paste, or otherwise submit:
- Classified National Security Information of any level.
- Controlled Unclassified Information (CUI) as defined in 32 C.F.R. Part 2002.
- Federal Contract Information (FCI) as defined in FAR 52.204-21.
- Source-selection sensitive information as defined in FAR 2.101 and the Procurement Integrity Act, 41 U.S.C. § 2102.
- Export-controlled technical data subject to ITAR or the EAR.
- Protected health information, consumer financial account numbers, Social Security numbers, or biometric identifiers.
- Another party's proprietary or confidential information that you are not authorized to disclose.
2. Prohibited conduct
- Using the Service to violate any law, regulation, or contractual obligation to a government customer.
- Attempting to gain unauthorized access to the Service, other tenants' data, or related systems.
- Probing, scanning, or testing the vulnerability of the Service without our prior written permission.
- Circumventing rate limits, authentication, tenant isolation, or usage metering.
- Scraping or bulk-extracting data, or using the Service to build a competing product.
- Submitting content that is unlawful, infringing, defamatory, or malicious code.
- Representing AI-generated output as human-authored where a law, solicitation, or certification requires disclosure.
- Presenting Service output as a guaranteed or predicted procurement outcome to any third party.
3. Acceptable use of AI capacity
AI capacity on every plan - whether a stated monthly allowance or a contracted pooled allowance under an annual agreement - is licensed for the genuine, day-to-day work of the licensed human users on the account. It is not a license for machine-scale consumption or redistribution, and no plan grants unmetered machine access. The following are outside acceptable use:
- Automated, scripted, or programmatic bulk requests, or otherwise generating volume no human user could plausibly review.
- Reselling, sublicensing, redistributing, or operating a service bureau on Service output for third parties.
- Sharing a single seat across multiple people or an organization in place of licensing seats.
- Any use that materially degrades Service performance, reliability, or capacity for other customers.
4. How we handle it - no surprise cutoffs
We do not throttle or silently degrade a paying human's normal analysis volume. We monitor for the machine-scale and redistribution patterns above; if an account trips our internal review threshold we contact the account owner first - to right-size a plan or move genuine enterprise-scale needs to a Command Enterprise agreement (which includes programmatic/API access) - rather than cut off a paying customer. We act immediately, without prior notice, only where conduct is a live security threat or is actively degrading the Service for others.
5. Reporting and enforcement
Report abuse or suspected vulnerabilities to info@dssadvisorygroup.com. We investigate all good-faith reports and will not pursue legal action against researchers who act in good faith, avoid privacy violations and service degradation, and give us reasonable time to remediate before disclosure.
We may suspend or terminate access for violations, with notice where practicable and immediately where necessary to protect the Service or other customers.