Acceptable Use Policy

Last updated: June 2, 2026

1. Introduction

This Acceptable Use Policy ("AUP") defines the acceptable and prohibited uses of the Unheadless platform operated by Unheadless. This AUP is incorporated by reference into our Terms of Service.

By using the Service, you agree to comply with this AUP. Violations may result in warnings, suspension, or termination of your account without refund.

2. Permitted Use

Unheadless is designed for the following legitimate business purposes:

  • Connecting headless CMS repositories via API keys you own or are authorized to use
  • Querying, filtering, and exploring your CMS content inventory
  • Generating, exporting, and sharing content reports
  • Scheduling automated recurring reports for your team
  • Managing team member access and organizational settings

3. Prohibited Activities

3.1 Platform Abuse & Overload

  • Automated scraping, crawling, or data extraction from the Unheadless platform itself
  • Circumventing or attempting to bypass subscription tier limits, rate limits, or usage quotas through technical means
  • Running automated scripts, bots, or tools against the Unheadless user interface
  • Deliberately overloading the Service with excessive requests designed to degrade performance
  • Interfering with or disrupting the integrity or performance of the Service

3.2 Security Violations

  • Attempting to access data belonging to other users, organizations, or tenants
  • Probing, scanning, or testing the vulnerability of the Service without prior written authorization from Unheadless
  • Bypassing, disabling, or circumventing authentication mechanisms or access controls
  • Sharing, selling, or distributing your account credentials or API keys
  • Attempting to reverse-engineer, decompile, or disassemble any part of the Service

3.3 CMS Abuse

  • Using Unheadless as a mechanism to circumvent your CMS provider's API rate limits or usage restrictions
  • Using the platform to bulk-download or mass-extract CMS content for purposes other than reporting and content inventory
  • Connecting CMS repositories that you do not own or are not authorized to access
  • Attempting to use the platform to write, modify, publish, or delete CMS content (Unheadless is a read-only tool)

3.4 Illegal Activity

  • Using the Service for any purpose that violates applicable local, state, national, or international laws
  • Infringing upon the intellectual property rights, privacy rights, or other rights of third parties
  • Transmitting or uploading malicious code, viruses, or harmful content
  • Engaging in fraudulent activity or financial crimes

3.5 Misrepresentation

  • Creating accounts with false, misleading, or fraudulent registration information
  • Impersonating another person, organization, or entity
  • Misrepresenting your relationship with or authorization from an organization
  • Creating multiple accounts to circumvent tier limits or enforcement actions

3.6 Unauthorized Resale & Redistribution

  • Reselling, sublicensing, or redistributing access to the Service without written authorization from Unheadless
  • White-labeling, rebranding, or presenting the Service as your own product
  • Using the Service to build a competing product or service

4. Fair Use & Rate Limits

Your use of the Service is subject to fair use limits based on your subscription tier. These limits are designed to ensure a reliable experience for all users.

  • API and query usage that significantly exceeds normal patterns may be automatically throttled
  • CMS sync operations are rate-limited to protect both Unheadless infrastructure and your CMS provider's API
  • If your usage consistently exceeds your tier's limits, we will notify you and work with you to find an appropriate plan
  • Enterprise customers may contact sales@unheadless.com to discuss custom usage limits

5. Vulnerability Disclosure

If you discover a security vulnerability in the Unheadless platform, we ask that you report it responsibly:

  • Email security@unheadless.com with a detailed description of the vulnerability
  • Allow reasonable time for us to address the issue before any public disclosure
  • Do not exploit the vulnerability beyond what is necessary to demonstrate it
  • Do not access, modify, or delete data belonging to other users

We will not take legal action against security researchers who follow this responsible disclosure process in good faith.

6. Reporting Violations

If you become aware of any activity that violates this AUP, please report it to:

We investigate all reports and take appropriate action.

7. Enforcement

Unheadless reserves the right to enforce this AUP at our discretion. Enforcement actions may include:

  • Warning: For first-time or minor violations, we may issue a written warning with a deadline to remediate
  • Throttling: Automated reduction of API access or feature availability for abusive usage patterns
  • Suspension: Temporary suspension of account access for serious or repeated violations
  • Termination: Permanent account termination for egregious violations, illegal activity, or repeated offenses after prior warnings

Accounts terminated due to AUP violations are not eligible for refunds. We will attempt to provide notice before taking enforcement action, except where immediate action is necessary to protect the Service, our users, or comply with legal obligations.

8. Changes to This Policy

We may update this Acceptable Use Policy from time to time. We will notify you of material changes via email. Your continued use of the Service after changes take effect constitutes acceptance of the revised policy.

9. Contact Us

For questions about this policy: