Acceptable use policy
What the platform, the network and the screens may not be used for.
Application
This policy applies to everyone who uses the Castis platform, applications, network and screens, whether as a customer, an authorised user, a partner or a guest. It is incorporated into the Terms of service.
Prohibited content
You must not distribute, display, store or transmit content that is unlawful in the territory of distribution; that infringes intellectual property, publicity or privacy rights; that depicts child sexual abuse; that incites violence, terrorism or hatred against a protected group; that constitutes defamation, harassment or threats; that is obscene where displayed in a public space; or that misrepresents an emergency.
Content shown on a public or guest-facing screen must comply with local classification, advertising and broadcast standards. Responsibility for classification and approval rests with the operator of the screen.
Prohibited conduct
Do not attempt to gain unauthorised access to any account, tenant, system or network. Do not probe, scan or test the vulnerability of the platform without our prior written consent. Do not circumvent authentication, rate limits, entitlement checks or content protection.
Do not introduce malicious code, conduct a denial-of-service attack, or interfere with any other party's use of the platform.
Do not use the platform to send unsolicited commercial messages, to harvest personal data, or to conduct surveillance of individuals beyond the operational purposes the products are designed for.
Do not resell, sublicense or provide access to the platform beyond the scope stated in your Order.
Advertising and measurement
Advertising delivered through the platform must be truthful, must comply with the advertising standards of the territory, and must be identifiable as advertising where the law requires it.
Do not falsify proof of play, impression counts, audience measurements or delivery reports. Do not attempt to inflate or misattribute measured delivery.
Devices and networks
Devices connected to the platform must be operated in accordance with the documentation and applicable electrical, safety and radio regulations. Do not modify device software in a way that defeats security, telemetry or content protection.
Where Castis provides or operates network components inside a property, they must not be used to intercept guest traffic beyond what the operator has lawfully disclosed and, where required, obtained consent for.
Security research
We welcome responsible disclosure. If you believe you have found a vulnerability, write to partner@castis.io with the detail necessary to reproduce it. Do not access data that is not yours, do not degrade the service, and give us reasonable time to remediate before public disclosure. We will not pursue action against research conducted in good faith within these limits.
Enforcement
We may investigate a suspected breach and may remove content, suspend access or terminate an account. Where practical we give notice and an opportunity to remedy first, but where there is a risk to safety, security, legal compliance or the service itself we may act immediately.
Report a suspected breach to partner@castis.io.