Acceptable use

Use Mascot Billresponsibly.

This policy sets boundaries for payment links, invoice checkout, pre-authorizations, bank workflows, SME loan intake, messages, APIs, webhooks, and hosted customer workflows.

Effective date: June 18, 2026

Policy posture

Clear boundaries protect every payment workflow.

Mascot Bill workflows touch payments, customer trust, borrower information, and financial partners. This policy keeps prohibited activity away from the platform.

Legal, truthful workflows

Payment pages, invoices, loan intake, messages, and API workflows must accurately describe lawful products, services, amounts, and customer obligations.

Processor and partner rules

Use must remain compatible with payment processor, banking, card network, sanctions, and financial partner requirements.

Enforcement when risk appears

We may review, block, suspend, remove, limit, or report activity that violates this policy or creates unacceptable risk.

Not allowed

Prohibited categories.

Illegal or harmful activity

Illegal goods or services, unlawful transactions, trafficking, exploitation, violence, harassment, hate, doxxing, abuse, or content that promotes harm.

Fraud and deception

Misrepresentation, fake invoices, phishing, account takeover, refund abuse, chargeback schemes, pyramid schemes, deceptive lending, or unauthorized collections.

Restricted financial activity

Unlicensed money transmission, cash advances, debt collection abuse, credit repair scams, unauthorized lending, illegal investment schemes, or regulatory evasion.

High-risk or prohibited goods

Weapons, illegal drugs, counterfeit goods, stolen goods, sanctions violations, adult exploitation, illegal gambling, or products restricted by providers.

Platform and security abuse

Malware, credential theft, scraping private areas, API abuse, spam, unauthorized testing, bypassing limits, interfering with webhooks, or attacking systems.

Messaging abuse

Spam, unsolicited bulk messages, misleading subject lines, unlawful marketing, impersonation, or messages without required consent.

1. Scope

This Acceptable Use Policy applies to Mascot Bill websites, dashboards, hosted payment pages, payment links, invoice checkout, pre-authorization workflows, bank or ACH workflows, SME loan intake, messages, API access, documentation, webhooks, and related services.

You are responsible for ensuring that your organization, users, customers, borrowers, payers, integrations, content, and workflows comply with this policy, our Terms of Use, provider rules, and applicable law.

2. Lawful and accurate use

You must use Mascot Bill only for lawful business purposes and only for products, services, payments, applications, or customer workflows you are authorized to offer.

You must accurately describe amounts, fees, due dates, loan terms, product or service details, refund policies, authorization language, customer obligations, and business identity.

You must obtain all consents, notices, authorizations, licenses, registrations, and approvals required for your workflows.

3. Prohibited businesses and activities

You may not use Mascot Bill for illegal activity, prohibited goods or services, sanctions violations, deceptive sales, fraudulent transactions, unauthorized lending, abusive debt collection, unlawful gambling, counterfeit goods, stolen goods, exploitative content, or activity that violates payment processor or financial partner rules.

Restricted or high-risk businesses may require prior approval, additional underwriting, special controls, or may be unavailable. Availability of any feature does not mean a business model or transaction is approved.

You may not use Mascot Bill to process transactions for a different undisclosed business, act as an unauthorized payment facilitator, resell payment services, or hide the true nature of a transaction.

4. Payment and loan workflow misuse

You may not create fake payment links, false invoices, unauthorized pre-authorizations, misleading loan applications, unlawful repayment flows, or workflows designed to pressure, confuse, or deceive customers.

You may not submit false borrower, payer, bank, card, business, identity, transaction, document, or revenue information.

You may not use Mascot Bill to evade chargebacks, conceal refunds, bypass compliance review, split transactions to avoid limits, or manipulate reporting.

5. Security and systems abuse

You may not probe, scan, attack, overload, disrupt, reverse engineer, bypass, scrape, or interfere with Mascot Bill systems, APIs, webhooks, hosted pages, authentication flows, access controls, rate limits, or provider integrations.

You may not upload malware, exploit vulnerabilities, use stolen credentials, disclose API keys, impersonate another user, automate abusive requests, or access data without authorization.

Responsible security reports should be sent to security@mascotbill.com and must avoid privacy violations, service disruption, social engineering, or data destruction.

6. Content and communications

You may not submit, publish, transmit, or store content that is unlawful, infringing, defamatory, deceptive, abusive, exploitative, hateful, harassing, invasive of privacy, or harmful.

Messages must comply with consent, anti-spam, consumer protection, telemarketing, email, SMS, and marketing laws. You are responsible for honoring opt-outs and communication preferences.

Hosted pages and customer communications must not impersonate Mascot Bill, a financial institution, a government agency, or another business.

7. Sanctions and restricted jurisdictions

You may not use Mascot Bill for transactions, users, customers, counterparties, goods, services, or jurisdictions prohibited by applicable sanctions, export controls, anti-money laundering rules, or provider policies.

You may not attempt to hide location, ownership, beneficial ownership, business category, transaction purpose, or counterparty identity.

8. Reporting violations

If you suspect misuse of Mascot Bill, unauthorized account activity, fraudulent workflows, security issues, or policy violations, contact us promptly at abuse@mascotbill.com.

Include relevant workspace details, links, timestamps, screenshots, transaction references, customer context, and a clear description of the issue.

9. Enforcement

We may review activity, request information, delay or block workflows, remove content, restrict features, suspend accounts, terminate access, revoke API keys, preserve records, notify providers, or report activity to law enforcement or regulators.

We may take action based on our judgment, provider requirements, legal obligations, risk signals, customer complaints, disputes, chargebacks, sanctions screening, or suspected violations.

Violations may also result in funds holds, processor restrictions, termination by providers, legal claims, or permanent loss of access.

10. Changes to this policy

We may update this Acceptable Use Policy as our products, provider obligations, legal requirements, and risk controls change. Continued use after updates means you accept the revised policy.

Report misuse

Help keep payment workflows trustworthy.

Send abuse reports, suspected fraud, security concerns, or policy questions to the Mascot Bill team.