Legal

Policies that can be cited directly.

Last updated 31 July 2026Applies to AspireACE

Choose the record you need

  • Terms of service: Use, minors, acceptable-use, liability, and governing-law publication status.
  • Privacy: Data purposes, retention, sharing, DPDP rights, export, deletion, and grievance status.
  • Refund and cancellation: Product-specific refund terms and the current approval boundary.
  • Grievance: The statutory contact record and the owner facts still required for publication.
  • Child safety: the separate publication posture for a service used by minors.

6 of the 11 records in the trust register are not published. They are listed here rather than left out, because an absent policy reads like an answered one.

  • Retention and deletion: The previous page-authored deletion and tax-retention timelines were removed.
  • AI providers and subprocessors: No vendor, hosting location or data-transfer claim is inferred from code or marketing copy.
  • Vulnerability disclosure: A security.txt file will not publish a guessed inbox or response promise.
  • Incident communication: Service incidents remain an app/operator responsibility until the public policy is approved.
  • Service status: Availability requires production monitoring evidence, not a decorative green badge.
  • Certifications and assurance: Certification, audit and compliance claims require scope, issuer, validity and evidence.