Section 01
Purpose
Ongoing.AI provides business intelligence built from public ecommerce signals. The Service is designed to help customers understand apps, brands, technologies, rankings, install signals, and market movement in the Shopify and ecommerce ecosystem.
This Acceptable Use Policy (“AUP”) sets rules for using the Service in a way that protects Ongoing, our customers, merchants, app developers, vendors, third-party platforms, and the integrity of the substrate.
This AUP is incorporated into our Terms of Service. A violation of this AUP is a violation of the Terms and may result in suspension, termination, loss of access, or other enforcement action.
Section 02
Ongoing Data and access rights
Ongoing Data
For purposes of this AUP, “Ongoing Data” means any data, output, signal, record, ranking, score, detection, classification, summary, fingerprint, insight, export, API response, MCP response, dashboard result, metadata, or derived work made available through Ongoing.AI or the Service. This term has the same meaning as the defined term “Ongoing Data” in the Terms of Service.
Ongoing Data includes outputs generated from public sources, third-party sources, customer inputs, and Ongoing’s proprietary collection systems, detection logic, classification methods, ranking systems, enrichment workflows, algorithms, and analysis.
Ongoing Data is licensed, not sold. Except as expressly permitted by the Service, your subscription, or a written agreement with Ongoing, you may use Ongoing Data only for your internal business purposes.
Proprietary data and investment
Ongoing Data is not merely a copy of public information. It is collected, selected, verified, filtered, structured, classified, ranked, scored, enriched, and delivered through Ongoing’s proprietary systems, detection logic, algorithms, workflows, infrastructure, and analysis.
The substrate represents substantial investment by Ongoing, including capital investment, engineering effort, infrastructure costs, collection systems, quality controls, enrichment processes, historical monitoring, and ongoing operational maintenance. As between you and Ongoing, Ongoing owns and retains all rights, title, and interest in and to the Service, the substrate, Ongoing Data, and the related proprietary systems and intellectual property.
Restrictions on competitive use and redistribution
You may not, and may not permit any third party to:
- scrape, crawl, bulk export, mirror, syndicate, cache, store, reproduce, publish, display, sell, resell, sublicense, redistribute, transfer, or make available Ongoing Data except through documented product features, exports, APIs, or written authorization;
- use the Service, substrate, API, MCP server, or Ongoing Data to build, train, fine-tune, benchmark, evaluate, enrich, validate, populate, or improve any product, dataset, model, database, index, directory, marketplace, research tool, intelligence platform, analytics product, lead product, enrichment product, competitive-monitoring product, or service that competes with Ongoing;
- use Ongoing Data to create a substitute for the Service or to reduce the need for a customer, prospect, vendor, partner, or third party to subscribe to or access the Service directly;
- combine Ongoing Data with other data in a way that enables a third party to reconstruct, approximate, replicate, or commercially exploit a substantial portion of the substrate;
- circumvent authentication, billing, rate limits, quotas, usage limits, access controls, or technical restrictions;
- rotate accounts, API keys, organizations, user identities, proxies, or IP addresses to avoid limits or enforcement;
- reverse engineer, infer, extract, or attempt to derive Ongoing’s proprietary algorithms, detection methods, ranking logic, enrichment workflows, source selection, scoring systems, data structures, or non-public signals;
- use screenshots, exports, API responses, MCP responses, or other outputs from the Service as a source dataset for any competing or redistributed product;
- access the Service in a manner intended to test, bypass, degrade, or evade Ongoing’s commercial, technical, or security controls.
For clarity, these restrictions apply whether Ongoing Data is accessed through the dashboard, API, MCP server, exports, screenshots, reports, browser sessions, automated tools, or any other Service surface.
Section 03
Treatment of third parties
The substrate describes real businesses, including merchants, app developers, vendors, platforms, and brands. You are responsible for using Ongoing Data lawfully and responsibly.
You may not use the Service to:
- send spam, unlawful outreach, deceptive messages, harassment, threats, or abusive communications;
- impersonate Ongoing, merchants, app developers, brands, vendors, platforms, or any other third party;
- conduct or facilitate phishing, fraud, credential theft, social engineering, scraping abuse, or credential stuffing;
- compile, infer, or use lists for unlawful discrimination, exclusion, profiling, or targeting based on protected characteristics;
- make legal, compliance, competitive, investment, or public claims about a third party that misrepresent Ongoing detections, rankings, classifications, summaries, or inferred signals as guaranteed, exhaustive, endorsed, or independently verified by that third party;
- violate the terms, platform rules, or access policies of Shopify, search engines, app platforms, ecommerce platforms, or any other third-party service;
- use Ongoing outputs to harass, pressure, defame, mislead, or interfere with merchants, app developers, vendors, or competitors.
Any outreach based on Ongoing signals must comply with applicable laws, including anti-spam, privacy, consumer-protection, and marketing laws. This may include CAN-SPAM, CASL, GDPR, ePrivacy rules, CCPA/CPRA, and similar laws depending on where you and the recipient are located.
At minimum, outreach must include a clear sender identity, a lawful basis where required, accurate message content, and a working opt-out mechanism where required. You are responsible for honoring unsubscribe, deletion, objection, and suppression requests that apply to your own use of Ongoing outputs.
Section 04
Platform integrity
You may not:
- probe, scan, penetration test, vulnerability test, or attempt to assess the security of the Service without written authorization, except through a responsible disclosure process we have published;
- interfere with, disrupt, degrade, overload, or impair the Service or related infrastructure;
- conduct denial-of-service attacks, resource-exhaustion attacks, abuse-pattern traffic, or automated behavior that creates operational risk;
- use the Service to attack, scan, probe, overload, or compromise any third party;
- upload or transmit malware, ransomware, spyware, credential stealers, worms, destructive code, or any code intended to disrupt systems or users;
- attempt unauthorized access to accounts, organizations, API keys, sessions, infrastructure, data, logs, or internal systems;
- share account credentials, API keys, session tokens, or other access credentials outside your organization;
- allow unauthorized users or systems to access the Service through your account, organization, API key, MCP configuration, or session.
You are responsible for maintaining the security of your account, organization, API keys, integrations, and systems that connect to Ongoing.
Section 05
Content and inputs
You may not upload, transmit, submit, or process through the Service:
- content, data, or materials you do not have the right to use;
- third-party trade secrets, confidential information, credentials, private keys, access tokens, or non-public platform data without authorization;
- copyrighted materials in a way that violates applicable law or third-party rights;
- personal information of others without a lawful basis;
- sensitive personal information that the Service is not designed to process, including payment card numbers outside Stripe, government identifiers, protected health information, biometric identifiers, precise geolocation, or children’s personal information;
- sexually explicit content, sexual content involving minors, terrorist content, violent extremist content, or content that incites violence;
- content that is illegal in your jurisdiction, our jurisdiction, or any jurisdiction where the Service is provided;
- content intended to abuse, evade, mislead, or compromise Ongoing, our users, our vendors, third-party platforms, or other third parties.
Ongoing may remove, suppress, block, or restrict content or inputs that violate this AUP, create risk, or interfere with operation of the Service.
Section 06
AI and automation
Ongoing may provide AI-assisted and automation-friendly surfaces, including the API, MCP server, model-assisted enrichment, classification, summarization, and other automated workflows.
When using these features, you may not:
- generate malware, phishing content, scams, impersonation, harassment campaigns, deceptive outreach, or other content that violates this AUP;
- use Ongoing outputs to train, fine-tune, benchmark, evaluate, or populate a model, dataset, index, or competing service without written authorization;
- present Ongoing outputs to your users, customers, prospects, or the public as guaranteed, authoritative, exhaustive, endorsed, or independently verified ground truth;
- operate agents, crawlers, scripts, or automations that recursively crawl, query, export, or reproduce Ongoing Data outside documented rate limits or permitted product behavior;
- use unstable, misleading, anonymous, or rotating user agents, credentials, accounts, or API keys to conceal automated access;
- connect Ongoing to an automated system that takes high-impact actions without appropriate human review, including legal, financial, employment, credit, eligibility, or compliance decisions;
- use Ongoing to automate unlawful outreach, platform abuse, spam, harassment, or third-party terms-of-service violations.
Automated systems that access Ongoing must comply with documented rate limits, authentication requirements, usage limits, and any additional instructions provided in product documentation or written agreements.
Section 07
Enforcement
If we believe you have violated this AUP, the Terms of Service, or applicable law, we may take enforcement action with or without prior notice.
Enforcement actions may include:
- throttling, rate-limiting, or blocking requests;
- disabling API keys, MCP access, exports, integrations, or specific features;
- suspending or terminating user accounts or organizations;
- cancelling subscriptions;
- refusing refunds where permitted by law and the Terms;
- removing, suppressing, or restricting content, inputs, or outputs;
- preserving logs, records, and evidence related to the activity;
- notifying affected parties where appropriate;
- cooperating with law enforcement, regulators, platforms, vendors, or third parties where legally required or where necessary to protect rights, safety, or platform integrity.
Where practical and appropriate, we may provide notice and an opportunity to resolve unintentional or low-risk violations.
We may act immediately where activity appears deliberate, unlawful, abusive, harmful to third parties, harmful to Ongoing, harmful to our customers, or threatening to the integrity, security, availability, or reputation of the Service.
Protection of Ongoing rights
You acknowledge that unauthorized competitive use, redistribution, extraction, or misuse of Ongoing Data may cause substantial and irreparable harm to Ongoing, including harm that may be difficult to measure through monetary damages alone.
Ongoing reserves all rights and remedies available under contract, intellectual-property, trade-secret, database, unfair-competition, computer-access, and other applicable laws. These remedies may include suspension or termination of access, revocation of API keys, preservation of logs and evidence, claims for damages, injunctive relief, equitable relief, recovery of costs and attorneys’ fees where available, and any other remedy available under applicable law.
Nothing in this AUP limits Ongoing’s right to investigate suspected misuse, enforce technical restrictions, protect its systems, or take action against unauthorized access, redistribution, competitive use, reverse engineering, or infringement of its rights.
Section 08
Report abuse
To report suspected abuse of Ongoing.AI or a violation of this AUP, email legal@ongoing.ai with as much detail as you can provide.
For security vulnerabilities, email security@ongoing.ai and include a description, impact, reproduction steps, and any relevant evidence.
Ongoing LLC
400 Spectrum Center Dr, Floor 19
Irvine, CA 92618
United States
legal@ongoing.ai