Terms & conditions
Acceptable Use Policy
What must never be done with the Registry, EBRICS codes, ATVs or document seals, and how breaches are handled.
1. Purpose
The Registry is only as trustworthy as the way it is used. This policy applies to every visitor, applicant, code holder, counterparty and API user.
2. Prohibited conduct
You must not:
- Impersonate. You must not present yourself as, or act for, a principal you do not represent, or use another party's code, Seal ID or ATV.
- Fabricate. You must not create, alter or distribute documents that bear a code mark or Seal ID the holder did not apply, or that falsely claim registration, tier, Reserve List position or Registry endorsement.
- Probe. You must not guess, generate, enumerate or brute-force codes, seals, ATV references, confirmation links or API keys, or run automated queries against public pages.
- Attack. You must not attempt to bypass rate limits, authentication or access controls; test for vulnerabilities outside the Responsible Disclosure policy; or introduce malicious code.
- Scrape or resell. You must not copy, harvest, publish or commercialise Registry data or verified profiles.
- Imitate the Registry. You must not operate websites, email addresses or messaging accounts that imitate EBRICS or claim to "verify" EBRICS codes on its behalf.
- Evade sanctions. You must not use the Registry to enable dealings with sanctioned persons or jurisdictions, or to conceal beneficial ownership.
- Mislead about the Registry's role. You must not state or imply that the Registry is a party to, arranges, recommends or guarantees a transaction.
3. Enforcement
Depending on the seriousness of the breach, the Registry may:
- block access from particular networks or accounts;
- suspend or revoke codes and API keys;
- notify affected counterparties and principals;
- report the matter to law enforcement, financial intelligence units, sanctions authorities or regulators;
- take legal action, including for infringement of the EBRICS marks.
4. Reporting misuse
Report suspected misuse or impersonation to compliance@eurabeltfuels.com, or anonymously under the Speak-Up Policy. Security vulnerabilities should be reported under the Responsible Disclosure policy.