Account & Access Policy
ACCOUNT AND ACCESS POLICY
EFFECTIVE DATE: January 1, 2025
1. ACCOUNT CREATION
1.1 Account creation requires completion of the registration process and, where applicable, identity verification.
1.2 One account is permitted per individual unless explicitly authorized otherwise.
1.3 Corporate or team accounts may be issued at the Platform Owner's discretion.
2. ACCESS LEVELS AND ROLES
2.1 USER (DEFAULT)
Standard account with access to features commensurate with the active subscription tier.
2.2 ADMINISTRATIVE ROLES
The Platform Owner may designate administrative roles including Super Admin, Admin, Finance Manager, and Support Staff. Each role carries defined permissions enforced at the backend.
2.3 ROLE ASSIGNMENT
All role assignments are made exclusively by the Platform Owner or Super Admin. Users cannot self-assign elevated roles.
3. ADMIN AUTHORITY
The Platform Owner and designated administrators retain the right to:
- Create, edit, suspend, or delete any user account
- Assign or revoke roles and permissions at any time
- Access any account for compliance, fraud investigation, or system integrity purposes
- Modify visibility, pricing, feature access, and content at any time
- Override any user-initiated action when deemed necessary
- Recover, reclaim, or reassign accounts that are inactive, suspected of abuse, or legally required
4. TENANT CONTROL AND ISOLATION
4.1 In multi-tenant environments, each tenant operates within a logically isolated workspace.
4.2 Tenants may manage their own content, users (sub-users), and settings within their authorized scope.
4.3 Tenants may NOT:
- Access data belonging to other tenants
- Modify core platform settings or global configurations
- Disable security controls or override admin restrictions
- Lock out or exclude the Platform Owner from their workspace
4.4 The Platform Owner may access any tenant's workspace at any time for operational, compliance, or legal purposes without prior notice.
5. PLATFORM LOCKOUT PREVENTION
5.1 No user or tenant action may permanently prevent the Platform Owner from accessing platform systems.
5.2 Any attempt to lock out the Platform Owner — through credential changes, technical manipulation, or legal threats — constitutes a material breach of this Agreement and grounds for immediate termination.
6. ACCOUNT SECURITY
6.1 Users are responsible for securing their accounts and access credentials.
6.2 Users must enable available security features (e.g., multi-factor authentication) when prompted.
6.3 Suspected unauthorized access must be reported immediately.
7. INACTIVE ACCOUNTS
7.1 Accounts with no activity for 12 consecutive months may be suspended.
7.2 The Platform Owner will attempt to notify the account holder before suspension.
7.3 Suspended accounts may be permanently deleted after an additional 90-day notice period.
8. ACCOUNT RECOVERY
8.1 Account recovery requests must be submitted through official support channels.
8.2 Identity verification is required for account recovery.
8.3 The Platform Owner's determination in account recovery matters is final.
