Acceptable Use Policy

Effective Date: June 30, 2026  |  Last Updated: July 4, 2026

This Acceptable Use Policy (“AUP”) governs your use of the Middledoc platform, operated by Skillhanger Limited (trading as Middledoc), including all features, APIs, and integrations (the “Service”). It is incorporated by reference into the Middledoc Terms of Service. Capitalized terms not defined here have the meanings given in the Terms of Service.

Middledoc is a professional tool designed for legitimate document collection and e-signature workflows. We rely on all users to use the Service responsibly. Violation of this AUP may result in immediate suspension or termination of your account, without refund, and may be reported to law enforcement where appropriate.


1. Prohibited Content

You may not upload, transmit, store, or distribute through the Service any content that:

1.1 Is Illegal or Facilitates Illegal Activity

  • Violates any applicable federal, state, local, or international law or regulation
  • Facilitates fraud, money laundering, tax evasion, or other financial crimes
  • Constitutes or enables identity theft or impersonation
  • Violates export control laws, sanctions regulations (including OFAC sanctions), or embargoes
  • Infringes or misappropriates any patent, copyright, trademark, trade secret, or other intellectual property right
  • Constitutes defamation, libel, or unlawful discrimination

1.2 Is Harmful or Dangerous

  • Contains malware, viruses, ransomware, Trojan horses, worms, spyware, adware, keyloggers, or any other malicious code
  • Contains exploits, vulnerability probes, or attack tools targeting Middledoc systems or third parties
  • Is designed to damage, disable, overburden, or impair any system, network, or service

1.3 Is Sexually Explicit or Abusive

  • Constitutes child sexual abuse material (CSAM) or any content that sexually exploits minors
  • Is used to harass, threaten, bully, or intimidate any individual
  • Constitutes non-consensual intimate imagery (“revenge porn”)

1.4 Violates Privacy Rights

  • Contains personal data of third parties collected without lawful basis or required consent
  • Is uploaded in violation of applicable data protection laws (GDPR, CCPA, HIPAA, etc.)
  • Constitutes unauthorized surveillance or tracking of individuals

2. Prohibited Activities

You may not use the Service to:

2.1 Unauthorized Access and Security Attacks

  • Attempt to gain unauthorized access to any Middledoc system, account, server, network, or data
  • Access another user's account without explicit authorization from that user and Middledoc
  • Conduct penetration testing, vulnerability scanning, or security research against Middledoc infrastructure without prior written authorization from our security team (see [email protected])
  • Launch denial-of-service (DoS) or distributed denial-of-service (DDoS) attacks against any target
  • Conduct man-in-the-middle attacks, session hijacking, or credential stuffing
  • Exploit or attempt to exploit any security vulnerability in the Service

2.2 Reverse Engineering and Circumvention

  • Reverse engineer, decompile, disassemble, or attempt to derive source code from any part of the Service
  • Circumvent, disable, or otherwise interfere with security features of the Service, including authentication mechanisms, access controls, or encryption
  • Remove, obscure, or alter any copyright notice, trademark, or proprietary legend on the Service
  • Create derivative works based on the Service software without express written permission

2.3 Automated Scraping and Bulk Data Extraction

  • Use automated bots, scrapers, spiders, or crawlers to extract data from the Service without prior written authorization
  • Systematically download or cache Service content beyond normal browser caching
  • Use the API in ways that exceed documented rate limits or circumvent rate limiting mechanisms

2.4 Spam and Abusive Communications

  • Use the email reminder system to send unsolicited bulk email (spam) to individuals who have not consented to receive communications from you
  • Harvest email addresses from the Service for use in unsolicited communications
  • Impersonate Middledoc, another user, or any person or entity in communications sent through the Service
  • Send phishing or social engineering communications through the document request system

2.5 Resource Abuse

  • Upload files for purposes unrelated to document collection (e.g., using Middledoc as a general-purpose file hosting service)
  • Use the Service in a manner that disproportionately burdens shared infrastructure and degrades performance for other users
  • Create multiple free accounts to circumvent plan limits (limit cycling)
  • Resell access to the Service to third parties without an authorized reseller agreement with Middledoc

2.6 Interference with the Service

  • Introduce any content or code that disrupts, modifies, or interferes with the Service's normal operation
  • Conduct load testing against Middledoc production infrastructure without prior written approval
  • Intercept or redirect network traffic associated with the Service

3. Account Responsibility

You are responsible for all activity that occurs under your account, including the activity of anyone you invite to your team, and the documents uploaded by clients using your share links. You must:

  • Keep your account credentials confidential and not share your password with others
  • Use strong, unique passwords and enable any multi-factor authentication options when available
  • Promptly notify Middledoc at [email protected] if you believe your account has been compromised
  • Ensure that all team members you add comply with this AUP
  • Ensure that clients uploading documents via your share links have been appropriately notified of the platform's terms and privacy practices
  • Not grant account access to individuals whose purpose you know or suspect to be abusive or harmful

4. Compliance with Laws

You are solely responsible for ensuring that your use of the Service complies with all laws and regulations applicable to you and your clients, including but not limited to:

  • Data protection laws (GDPR, CCPA/CPRA, PIPEDA, POPIA, etc.)
  • Healthcare privacy laws (HIPAA, if you handle protected health information)
  • Financial regulations applicable to your professional practice
  • Electronic signature laws in your jurisdiction
  • Professional licensing and ethics rules governing your practice area

Middledoc is not a HIPAA Business Associate by default. If you handle Protected Health Information (PHI) and are subject to HIPAA, you must execute a Business Associate Agreement (BAA) with Middledoc before using the Service for PHI. Contact [email protected] to request a BAA.


5. Reporting Violations

If you become aware of content or activity on the Service that appears to violate this AUP, please report it promptly to:

Middledoc Trust & Safety
Email: [email protected]
Subject: “AUP Violation Report”

Include a description of the suspected violation, the URL or account involved (if known), and any supporting evidence. We will investigate all credible reports and take appropriate action. We may not be able to disclose the outcome of investigations due to privacy considerations.

To report child sexual abuse material (CSAM), contact us immediately and also report directly to the National Center for Missing and Exploited Children (NCMEC) at cybertipline.org or by calling 1-800-843-5678.


6. Consequences of Violation

If we determine or reasonably suspect that you have violated this AUP, we may, in our sole discretion and without limiting other remedies:

  • Issue a warning and require remediation within a specified time
  • Temporarily suspend your account or specific features pending investigation
  • Permanently terminate your account without refund
  • Remove offending content from the Service
  • Report suspected illegal activity to law enforcement, regulatory authorities, or affected parties
  • Pursue legal action for damages or injunctive relief where appropriate
  • Cooperate with law enforcement investigations and disclose information pursuant to lawful requests

For minor or first-time violations, we will typically provide notice and an opportunity to cure before imposing sanctions, unless the violation poses an immediate security threat or is clearly illegal.


7. Changes to This Policy

We may update this AUP from time to time. Changes will be posted at middledoc.com/legal/acceptable-use with an updated effective date. Material changes will be communicated to account holders by email at least 14 days before taking effect.


8. Contact

Skillhanger Limited (trading as Middledoc)
48a Ogudu, Lagos, Nigeria
RC 1711272
Email: [email protected]