Legal / 04

Acceptable use policy

The boundaries that protect your repositories, connected services, other customers, and the payment networks that make Refinar available.

Last updated · August 10, 2026

Operator · Yaman Jalal, operating as Refinar

This policy is part of the Terms of Service. We may update it as the Service, connected providers, or applicable rules change.

1. Use the Service lawfully

You may use Refinar only for lawful, authorized, and legitimate activity. You must follow the laws, contracts, licenses, and platform rules that apply to you, your software, your users, and the countries where you operate.

2. Do not compromise systems or people

You may not use Refinar to:

  • access, modify, or delete a repository, account, system, or data without authorization;
  • create or deploy malware, ransomware, credential stealers, spyware, destructive code, or tools intended to bypass security;
  • discover or exploit vulnerabilities in systems you do not own or have permission to test;
  • phish, impersonate, defraud, harass, stalk, threaten, or facilitate harm to another person;
  • expose secrets, API keys, passwords, payment data, or personal data through prompts, commits, pull requests, logs, or generated code; or
  • evade rate limits, access controls, identity checks, or safety measures.

3. Respect content and software rights

Do not submit or generate content that infringes intellectual property, confidentiality, privacy, publicity, or other rights. Do not use the Service to remove license notices, misrepresent authorship, or distribute software without the permissions required by its license.

If your product processes regulated, sensitive, or high-risk data, you are responsible for confirming that your use of Refinar and any connected AI or hosting provider is permitted. Do not submit such data unless you have a lawful basis and the necessary agreements in place.

4. Protect connected services

You may connect only accounts and repositories you are authorized to control. Use the minimum permissions reasonably needed, keep your tokens and credentials private, and revoke access that is no longer needed. Do not use Refinar to overload GitHub, a model provider, a payment provider, or another third-party service.

5. Do not misuse payments

You may not use Refinar or its payment flow for fraud, card testing, money laundering, sanctions evasion, fake identities, misleading product descriptions, or transactions designed to bypass a payment provider’s restrictions. You must accurately describe your product, pricing, access, renewals, and refund terms.

We may suspend checkout, cancel transactions, hold or reverse access, or cooperate with a merchant of record, payment processor, card network, or law-enforcement authority where we reasonably believe activity creates risk or violates a policy or law.

6. Keep production decisions human-reviewed

Automated suggestions can be wrong. You must review generated code, test material changes, and maintain appropriate rollback and incident procedures before deploying to production. Do not represent that Refinar or its models performed a human security, legal, medical, or financial review unless that review actually occurred.

7. Enforcement and reports

We may investigate suspected violations, limit or suspend access, remove content, revoke connected credentials, or terminate accounts. We consider the seriousness and intent of the conduct, risk to people or systems, prior history, and applicable law. Where practical, we will provide a reason and a path to appeal or correct the issue.

Report a suspected violation or security issue to yaman@refinar.ai. Do not include passwords, full access tokens, or other secrets in your report.