Template. This document is a starting point and has not been reviewed by counsel. Have a qualified lawyer review it before launch.

Acceptable Use Policy

Last updated July 3, 2026

This Acceptable Use Policy (the AUP) sets the rules for using silobase, the Salesforce Sandbox Email Safety Ledger at silobase.io. It applies to the free scan, the $99 Report, and the $39/mo Release Ledger, and forms part of our Terms of Service. silobase is operated by {{TODO: confirm legal operating entity — likely Peakure LLC}}.

Agreeing to this policy

By uploading a metadata export, running a scan, or paying for a plan, you agree to this AUP. If you do not agree, do not upload metadata and do not use the service.

What silobase is — and is not

silobase is an upload-only static analyzer. It parses a Salesforce metadata export (a zip or SFDX source) and maps every email-sending path it can find — Flows, workflow rules, email alerts, Apex senders, approval emails, and org-wide sender and deliverability settings. Keep these boundaries in mind whenever you use it:

  • It reads metadata only. It does not read email content, CRM records, or contact data.
  • It never writes back to your org.
  • It never sends email. It maps the paths that would send; it does not trigger one.
  • It is upload-only in v1: there is no live-org connection or OAuth, and recipient resolution is heuristic.
  • It is independent: not a Salesforce product, not endorsed by Salesforce, not Mailtrap, and not a live-org connection.

Only upload metadata you are authorized to analyze

You may upload metadata only from a Salesforce org or sandbox that you own or are authorized to analyze. You are responsible for holding the rights and permissions for every export you submit.

If you are an admin or consultant acting for a client, you confirm that the client has authorized you to analyze their metadata. Do not upload metadata belonging to a third party without permission.

Prohibited uses

You may not:

  1. Upload metadata you are not authorized to analyze, including an export belonging to another organization that you obtained without permission.
  2. Use silobase to attack, probe, map, or plan unauthorized access to any org you do not control.
  3. Reverse-engineer, decompile, or attempt to extract the detector logic, source code, or underlying models.
  4. Resell, sublicense, or redistribute scans, manifests, or reports without written permission.
  5. Upload malware, executables, scripts, or any payload that is not Salesforce metadata, or attempt to exploit the parser or file storage.
  6. Abuse the free scan — for example, by scripting submissions, farming it across many exports to avoid the paid tiers, or creating multiple accounts to evade paid gating.
  7. Interfere with the service by overloading it, disrupting it, or circumventing security, rate limits, or row-level access controls.
  8. Use the service to break the law or violate the rights of others.

The free scan

The free, no-signup scan surfaces one to two risky paths so you can evaluate the detector on your own metadata before you pay. It is not a way to process metadata you are not authorized to analyze, and it is not for automated or scripted use meant to bypass the paid tiers.

Enforcement

If you violate this policy, we may suspend or terminate your access, remove uploaded metadata, and decline further service — with or without notice, depending on how serious or ongoing the violation is. These steps do not waive any other remedy available to {{TODO: confirm legal operating entity — likely Peakure LLC}}.

Fees you have already paid are handled under the Terms of Service and its refund terms. The $99 Report carries a 14-day full refund if the manifest surfaces nothing beyond the free scan; email support to request it. The $39/mo Release Ledger can be cancelled at any time, with billing stopping at the end of the current cycle and no cancellation fee. Ending access for a violation does not create a refund beyond what those terms require.

Report abuse or a security issue

If you see misuse of silobase, or something that looks like a security problem, tell us:

Uploaded metadata can be deleted on request.

Changes to this policy

We may update this AUP as the product changes; the last-updated date above reflects the current version. This policy is governed by the same terms as our Terms of Service, under the laws of {{TODO: governing-law jurisdiction}}.

Questions about this policy? See Contact or read the Privacy Policy.
    Acceptable Use Policy — silobase