Legal

Acceptable use policy

English only. Last updated 19 August 2026. Rules for lawful operator use of the site, trials, software, and APIs.

1. Scope

This Acceptable use policy (“AUP”) applies to the Site, demo and trial tenants, production Software, APIs, webhooks, and support channels. It forms part of the Terms of use. Capitalised words have the meaning in the Terms. If this AUP conflicts with an Order on a specific operational permission (for example a contracted penetration test window), the Order controls for that item.

You are responsible for Authorised Users and for End Users to the extent their misuse is enabled by your configuration or your failure to apply controls the Software provides.

2. Permitted use

You may use the Services only:

  • For lawful operation of a proprietary trading, evaluation, or related B2B desk that you control.
  • To evaluate the Software as an operator during a trial we issue.
  • In accordance with documentation, rate limits, and the Order.
  • In a way that does not harm other tenants, our infrastructure, or Third-Party Services.

Ordinary search-engine indexing of public marketing pages is permitted. Automated access to authenticated APIs requires a key we issue and must respect published limits.

3. Prohibited activities

You must not, and must not allow anyone to:

Unlawful and deceptive use

  • Use the Services to commit, facilitate, or conceal fraud, identity theft, market manipulation, unlicensed dealing, or other crime.
  • Use the Services for money laundering, terrorist financing, sanctions evasion, or proliferation financing.
  • Misrepresent that OneProp is the prop firm, the funder, a regulator, a bank, or the counterparty to End User contracts.
  • Solicit retail funded-account buyers from a OneProp demo, trial, or this Site as if we sold those accounts.
  • Upload or transmit content that is illegal, including child sexual abuse material, or that incites violence.
  • Process personal data of children under 18 in the Software.

Security and integrity

  • Attempt to gain unauthorised access to the Site, Software, other tenants, staff accounts, or related systems.
  • Probe, scan, or test vulnerabilities except under a written authorisation for a named test window.
  • Introduce viruses, worms, trojans, ransomware, or other malicious code.
  • Launch denial-of-service attacks, flood APIs, or otherwise degrade availability.
  • Circumvent authentication, MFA, geo rules, rate limits, or billing meters.
  • Share operator credentials in a public repository or ticket that is not under your control.

Scraping and misuse of data

  • Scrape, harvest, or bulk-extract data from the Site or Software in a way that degrades service or copies non-public data, except as the API documentation allows for your own tenant.
  • Use Client Data from another customer if you encounter it through a defect; you must notify us immediately and not exploit it.
  • Use the Services to build a competing white-label platform by systematic copying of features, copy, or non-public interfaces.

Operational abuse

  • Use a trial as a production desk or to process live trader funds.
  • Resell seats or tenant access except as white-label End User access the Order allows.
  • Send spam or unlawful marketing through any email or messaging integration.
  • Interfere with payout, KYC, or risk audit logs in an attempt to conceal breaches.

4. Content standards

Brand assets, emails, and trader-facing copy you load must not infringe intellectual property, must not be unlawfully misleading in the jurisdictions you target, and must not contain malware. We may remove or disable content that we reasonably believe violates this AUP or law, without undertaking a duty to monitor all content.

5. Security testing

You must not perform penetration tests, load tests, or vulnerability scans against shared infrastructure without our prior written consent. Coordinated tests against your isolated tenant may be allowed under an Order. Public research that reasonably avoids service impact and follows a disclose-then-publish approach may be sent to admin@oneprop.shop. Do not extort, and do not access data that is not yours.

6. Investigation and enforcement

We may investigate suspected violations, preserve logs, suspend or terminate access, remove content, report conduct to authorities, and pursue civil remedies. We may cooperate with law enforcement and with Third-Party Service providers whose terms you have broken. Suspension may be immediate where we reasonably believe there is fraud, a security threat, or harm to End Users or other customers.

You will indemnify us for claims and reasonable costs arising from your violation of this AUP, as further described in the Terms.

7. Reporting abuse

Report suspected abuse, security issues, or unlawful content to admin@oneprop.shop with the subject “Abuse”. Include URLs, timestamps, and tenant identifiers where you have them. Do not send exploit code that could be executed accidentally; describe the issue at a high level first.

These documents are in English only. They describe a technology provider’s website and software licence practices. They are not legal, tax, or regulatory advice, and they are not a substitute for a signed Order or data-processing addendum. The contracting entity is 1591011 B.C. LTD, a British Columbia company trading as OneProp. A registered office, if required, is stated in the Order. Notices: admin@oneprop.shop.

Questions: admin@oneprop.shop.