Back to Trust Centre

Acceptable Use Policy

Draft

Last updated: 3 August 2026

Draft document

This Acceptable Use Policy is a working draft and will be reviewed before CrewGrid accepts paying customers.

1. Purpose

This Acceptable Use Policy explains how customers and authorised users may use CrewGrid and identifies conduct that is prohibited.

This policy forms part of the CrewGrid Terms of Service. A customer is responsible for ensuring that its administrators, managers, supervisors, team leaders, employees, contractors and other authorised users comply with it.

2. Lawful Business Use

CrewGrid must be used only for lawful and legitimate business, workforce, project, safety, compliance, communication and operational purposes.

Users must comply with applicable laws, workplace obligations, contractual duties and company policies when using CrewGrid.

CrewGrid must not be used to organise, assist, conceal or promote unlawful conduct.

3. Authorised Access Only

Users may access only the companies, branches, projects, employees, conversations, documents and platform functions that they are authorised to access.

Users must not:

  • Attempt to access another customer’s company or branch data.
  • View another user’s private account or messages without authority.
  • Bypass role restrictions, permissions or access controls.
  • Use another person’s login details.
  • Allow another person to use their account.
  • Create accounts using false or misleading identities.
  • Continue accessing CrewGrid after their authority has ended.

4. Account Security

Each user must take reasonable steps to protect their account and device.

  • Use a strong and unique password.
  • Keep passwords and authentication information confidential.
  • Sign out of shared or unattended devices.
  • Do not save credentials on a device that unauthorised people can access.
  • Promptly report suspected account compromise.
  • Notify a customer administrator when a user no longer requires access.

Users must not intentionally disable, interfere with or avoid account-security controls.

5. Accurate and Honest Records

Users must take reasonable care to ensure information entered into CrewGrid is accurate, current and complete.

Users must not intentionally:

  • Create false attendance, clock-in or clock-out records.
  • Upload altered, forged or misleading licences, tickets, certificates or identification documents.
  • Record a signature, declaration or safety acknowledgement on behalf of another person without authority.
  • Misrepresent a person’s qualifications, competency, attendance or fitness for work.
  • Change project, timesheet, payroll-related or compliance data to conceal an error or misconduct.
  • Submit false support, bug or security reports.

Genuine errors should be reported and corrected through authorised company processes.

6. Employee and Personal Information

Users must not collect, upload, view, disclose or download employee or personal information unless they are authorised and the information is reasonably required for legitimate business use.

Users must not:

  • Upload unnecessary sensitive or personal information.
  • Use employee information for harassment, discrimination or an unrelated personal purpose.
  • Share employee documents outside the customer company without authority.
  • Download records for personal retention or use after access is no longer required.
  • Publish private CrewGrid information on social media or public websites.
  • Use GPS, selfies, messages or attendance records for unlawful surveillance.

7. Photos, Documents and Signatures

Users may upload photos, documents and signatures only where they have authority to do so.

Users must not upload:

  • A photograph of another person where collection or use is unlawful.
  • A document that the user is not authorised to possess or disclose.
  • A forged, altered or misleading document.
  • Material that infringes copyright, confidentiality or intellectual property rights.
  • Content containing passwords, private keys or other secret credentials.
  • Content that is unlawful, abusive, threatening or seriously offensive.

8. Messaging and Communications

CrewGrid messaging must be used for legitimate workplace and business communication.

Users must not use private messages, group messages, announcements, photos or push notifications to:

  • Harass, bully, intimidate, threaten or abuse another person.
  • Send unlawful discriminatory or sexually inappropriate material.
  • Distribute spam, scams or misleading communications.
  • Impersonate another user, manager, customer or CrewGrid representative.
  • Disclose confidential project, employee or customer information without authority.
  • Send malicious links, malware or unsafe attachments.
  • Use @everyone or announcement features for unrelated or excessive messages.

9. Platform Security

Users must not test, probe, attack or interfere with CrewGrid security or availability without CrewGrid’s prior written approval.

Prohibited conduct includes:

  • Attempting to discover or exploit a vulnerability.
  • Circumventing authentication, row-level access controls or file permissions.
  • Intercepting data or communications.
  • Introducing malware, ransomware, viruses or harmful code.
  • Attempting to obtain passwords, tokens, keys or session information.
  • Performing denial-of-service or excessive request attacks.
  • Scanning CrewGrid systems or infrastructure without permission.
  • Using a security issue to access, alter or delete data.

Suspected security issues must be reported responsibly to info@crewgrid.co without accessing more information than is reasonably necessary to describe the concern.

10. Automated Access and Scraping

Users must not use bots, scripts, crawlers, scraping tools or automated systems to access CrewGrid unless the activity is provided by an approved CrewGrid feature or expressly authorised in writing.

Users must not:

  • Extract or copy CrewGrid data in bulk through unauthorised methods.
  • Circumvent export controls or plan limits.
  • Make excessive automated requests that affect performance.
  • Collect information about other customers or users.
  • Use CrewGrid content or outputs to train a competing product without written permission.

11. Subscription and Feature Restrictions

Users must not avoid, bypass or manipulate CrewGrid subscription, trial, company, branch, plan or user limits.

Prohibited conduct includes:

  • Creating repeated accounts to obtain additional free trials.
  • Sharing one paid account between people who require separate accounts.
  • Altering browser or request data to unlock restricted features.
  • Attempting to continue write access after an account becomes read-only.
  • Using another customer’s subscription or company account.
  • Reselling or sublicensing CrewGrid without written approval.

12. AI-Assisted Features

AI-assisted features must be used responsibly and only for legitimate business purposes.

Users must not:

  • Upload drawings, documents or project information they are not authorised to process.
  • Use AI features to process unlawfully obtained personal or confidential information.
  • Present an AI-generated output as independently verified when it has not been reviewed.
  • Represent an AI estimate as engineering certification, statutory approval or guaranteed pricing.
  • Use CrewGrid AI output to make a final safety, engineering, employment or commercial decision without appropriate human review.
  • Attempt to manipulate AI features to expose system instructions, private data or another customer’s information.
  • Use CrewGrid AI to generate unlawful, deceptive or harmful content.

Customers remain responsible for ensuring that AI outputs are reviewed by suitably competent and authorised personnel.

13. Scaffolding, Safety and Compliance Use

CrewGrid must not be used to misrepresent or bypass scaffolding, workplace safety, engineering or compliance requirements.

Users must not:

  • Treat a CrewGrid record as proof that a scaffold is safe where required inspection or approval has not occurred.
  • Issue or approve a scaffold handover without proper authority or inspection.
  • Record an inspection, licence or compliance status known to be false.
  • Use an AI estimate as a substitute for required engineering design.
  • Conceal a safety incident, failed inspection or expired qualification.
  • Use CrewGrid to direct another person to perform unlawful or unsafe work.

14. Intellectual Property

Users must respect CrewGrid’s intellectual property and the rights of customers, employees, clients and third parties.

Users must not:

  • Copy, reproduce or distribute CrewGrid source code or non-public platform materials.
  • Reverse engineer or decompile CrewGrid except where that restriction is not permitted by law.
  • Remove CrewGrid branding or ownership notices.
  • Create a competing service by copying CrewGrid interfaces, workflows or documentation.
  • Upload drawings, photographs or documents in breach of copyright or confidentiality obligations.
  • Use CrewGrid trademarks or branding without permission.

15. Unlawful or Harmful Content

CrewGrid must not be used to store, communicate or distribute content that is unlawful or creates a serious risk of harm.

This includes:

  • Content that facilitates crime, fraud or identity theft.
  • Malware or instructions intended to compromise systems.
  • Threats of violence or serious harm.
  • Unlawful discriminatory, abusive or exploitative material.
  • Content that infringes privacy, confidentiality or intellectual property rights.
  • Material prohibited by applicable Australian law.

16. Investigations and Cooperation

CrewGrid may investigate suspected breaches of this policy where reasonably necessary to protect customers, users, the platform or lawful rights.

CrewGrid may review relevant account, access, message, file, support and technical records to the extent reasonably necessary for an investigation.

Customers and users must provide reasonable cooperation when CrewGrid investigates a suspected security issue, unlawful use or material breach.

17. Actions CrewGrid May Take

If CrewGrid reasonably believes this policy has been breached, CrewGrid may take proportionate action, including:

  • Requesting that the user or customer stop or correct the conduct.
  • Removing or restricting access to particular content.
  • Temporarily restricting an account or feature.
  • Resetting or revoking compromised sessions or credentials.
  • Suspending access where necessary to prevent harm.
  • Terminating access for serious or repeated breaches in accordance with the Terms of Service.
  • Preserving evidence relevant to an incident or dispute.
  • Reporting conduct to a customer administrator, regulator or law-enforcement body where required or permitted by law.

Where reasonably practicable, CrewGrid will notify the customer and allow an opportunity to remedy the issue before suspension or termination. Immediate action may be taken where delay would create a serious security, legal or safety risk.

18. Reporting Misuse

Suspected misuse, unlawful content, unauthorised access or a security concern may be reported to:

CrewGrid

Intended legal entity: CrewGrid Pty Ltd — registration pending

Western Australia, Australia

support@crewgrid.co

Reports should include enough information to identify and investigate the concern. Passwords, private keys and secret credentials must not be included.

19. Changes to This Policy

CrewGrid may update this policy as its services, risks, product features or legal obligations change.

The updated policy will be published with a revised “Last updated” date. CrewGrid will provide reasonable notice if a material change significantly affects current customers.