Acceptable Use
What you can't do with Tavsin.
Last updated: 2026-06-26
Tavsin can run code, browse the web, talk to APIs, and act on your behalf. That power requires a few hard limits. Breaking them gets the account suspended; the worst categories get referred to law enforcement. This page defines the floor.
1. Illegal use
Don't use Tavsin to do anything that is illegal where you are or where the recipient is. This includes — but is not limited to — fraud, identity theft, money laundering, sanctions evasion, gambling where prohibited, and unlicensed practice of regulated professions.
2. Harm to people, especially children
- No CSAM (child sexual abuse material), no generation, possession, distribution, or facilitation of it. We report immediately to NCMEC and the relevant authorities.
- No content that sexualizes minors or grooms children.
- No content that promotes self-harm, suicide, or eating disorders to vulnerable users.
- No targeted harassment, threats, doxxing, or coordinated abuse.
- No incitement of violence against people or groups.
3. Weapons & dangerous capabilities
- No assistance designing, building, or deploying weapons capable of mass casualties — biological, chemical, nuclear, radiological, or autonomous lethal systems.
- No instructions for synthesizing controlled substances, explosives, or weaponized pathogens.
- No "uplift" — taking someone from intent to capability — for serious physical harm.
4. Malware & offensive security
- No generating, packaging, or distributing malware: ransomware, spyware, stalkerware, info-stealers, RATs, droppers, persistence kits, botnet C2.
- No developing exploits intended for non-consensual use against systems you don't own or have explicit written authorization to test.
- Defensive security research, CTF play, internal red-teaming, and authorized engagements are allowed — the line is consent and legality, not technical sophistication.
5. Privacy & data theft
- No scraping or harvesting personal data at scale, especially from sites whose terms forbid it.
- No biometric data collection without explicit, informed consent.
- No reidentification of anonymized datasets.
- No use of Tavsin to enable surveillance that would violate applicable privacy law.
6. Spam, phishing, deception
- No sending unsolicited bulk email, SMS, or messages.
- No phishing, smishing, vishing, or pretexting — Tavsin must not be used to impersonate any person or organization in order to obtain credentials, payments, or secrets.
- No generation of deepfakes of real people without their explicit consent.
- No SEO spam, link farms, or content explicitly designed to manipulate search ranking or trust signals.
7. Intellectual property & infringement
- No use of Tavsin to infringe copyright, trademarks, patents, or trade secrets.
- No removing or circumventing license headers, attribution, or DRM you don't have the right to defeat.
- You are responsible for ensuring you have the right to feed any code or data into Tavsin and to use its output.
8. Infrastructure abuse
- No probing, scanning, or attacking systems you don't own (this includes Tavsin's own infrastructure beyond the API contract documented for your tier).
- No interfering with other Tavsin users' service: no rate-limit games, no resource starvation, no shared-secret leakage.
- No mining cryptocurrency on Tavsin-hosted compute.
- No proxying / reselling Tavsin or its bundled model providers as a generic API, except where your subscription tier explicitly allows it.
9. Misuse of model providers
When you use Tavsin to call a model provider (Anthropic, OpenAI, Google, OpenRouter), their usage policies also apply to you. We are required to enforce them. A violation of an upstream policy is a violation of this AUP.
10. Misrepresenting Tavsin output
- Don't present AI-generated content as the work of a real human (or, where law requires, fail to disclose AI involvement).
- Don't claim Tavsin (the product or company) endorses, partners with, or operates a service it does not.
11. Reporting & enforcement
If you see abuse: abuse@tavsin.xyz. We respond, at the latest, within one business day. We may suspend or terminate accounts without prior notice for serious violations (anything in §2, §3, or §4 above), and we cooperate with lawful requests from authorities — see our Privacy Policy §5 for the rights you keep.
If we get this wrong — your account was suspended in error — reply to the suspension email and we'll review. Good-faith security research, including reports of vulnerabilities, is welcomed; nothing in this AUP overrides our standing offer to not pursue legal action against researchers acting in good faith.
12. Changes
If we change what this policy prohibits, we'll update this page and (for material changes) email account holders. The version that applies to your conduct is the one published at the time of the conduct, not the time of the account creation.
13. Contact
Abuse reports: abuse@tavsin.xyz. Other questions: hello@tavsin.xyz.