VendorBrief
VendorBrief Acceptable Use Policy
Elevora Holding LLC
Last Updated: September 9, 2026
This Acceptable Use Policy (the "Policy") governs your use of VendorBrief (the "Service") and is incorporated into the VendorBrief Terms of Service. It applies to the VendorBrief Offering only, and confers no right in respect of any other product, service, brand, or application operated by Elevora Holding LLC, as provided in Section 2 of the Terms of Service. Capitalized terms not defined here have the meaning given in the Terms of Service. If you do not agree to this Policy, do not use the Service.
1. Rights in What You Upload
You may upload a document only if you have the lawful right to do so. You must not upload:
- content you do not own or are not licensed or otherwise permitted to upload;
- content whose disclosure to Elevora or to its sub-processors would breach a non-disclosure agreement, a proprietary information agreement, a contract flow-down, a licence, or any other confidentiality obligation you owe to a third party;
- content that infringes any third party's intellectual property, privacy, publicity, or other rights.
Buyer requirement documents are frequently marked proprietary and restricted in distribution by the buyer that issued them. Checking whether you are permitted to upload a given document is your responsibility and yours alone.
2. Controlled, Classified, and Regulated Material
You must not upload material that is controlled under the International Traffic in Arms Regulations, 22 C.F.R. Parts 120 to 130, or the Export Administration Regulations, 15 C.F.R. Parts 730 to 774, or that is classified, controlled unclassified information, or otherwise export-restricted, unless you have first confirmed in writing with Elevora that the Service is authorized to process that material. Elevora holds no such authorization as at the date of this Policy.
The Service applies restricted handling to documents bearing controlled or limited-distribution markings and refuses documents bearing classified markings. Those measures are a risk-reduction control operated for Elevora's own protection. They are not an authorization, they do not discharge any obligation you owe under an export classification, a prime contract flow-down, or a technology control plan, and you must not treat the Service's acceptance of a document as approval to submit it.
3. Personal and Sensitive Data
The Service is built for the analysis of buyer requirement documents. You must not use it as a repository for personal data, and in particular you must not upload:
- special categories of personal data as defined in Article 9 of the GDPR, or data relating to criminal convictions and offences within Article 10 of the GDPR;
- government identification numbers, payment card numbers, or financial account numbers;
- health information, or the personal data of children;
- any personal data for which you do not have a lawful basis to disclose it to Elevora and its sub-processors.
4. Prohibited Conduct
You must not:
- use the Service for any unlawful purpose, or in violation of any applicable law or regulation;
- upload malware, malicious code, or any file designed to disrupt, damage, or gain unauthorized access to any system;
- attempt to gain unauthorized access to the Service, to another account, to another customer's data, or to any underlying infrastructure;
- probe, scan, or test the vulnerability of the Service, or breach or circumvent any security, authentication, or rate-limiting control, except under a written authorization from Elevora;
- interfere with or disrupt the integrity or performance of the Service, including by excessive automated request volume;
- reverse engineer, decompile, or disassemble the Service, or attempt to derive its source code, models, or prompts;
- scrape, crawl, or systematically extract data from the Service;
- resell, sublicense, timeshare, or make the Service available to any third party except your own authorized users;
- use the Service, or any output of it, to build, train, or improve a competing product or service;
- create multiple accounts, or use anonymous or unverified sessions, in order to exceed usage limits, obtain additional free credits, or evade a suspension;
- misrepresent your identity, your company, or your authority to act on behalf of an organization;
- remove, obscure, or alter any notice, disclaimer, or attribution displayed on a Vendor Brief, an exported PDF, or a shared report.
5. Sharing and Representations to Third Parties
You must not present a Vendor Brief, or any part of one, as a certification, an audit, an accreditation, a legal opinion, or an assurance of compliance. You must not represent, to a buyer, a prime contractor, a regulator, an auditor, or anyone else, that Elevora has approved, certified, or verified your submission, your process, or your organization.
If you share a Vendor Brief with a third party, you must not remove the disclosure notice displayed on it, and you must make clear to the recipient that the brief is not a compliance opinion and that Elevora accepts no responsibility to them. Section 9 of the Terms of Service governs shared briefs.
6. Reporting and Enforcement
Report suspected abuse or a security concern to evens.p@elevoraholding.com. Include the affected URL, the approximate time, the browser or integration context, and a concise description. Do not include document contents, credentials, payment information, or regulated technical data in an initial report.
Elevora may investigate suspected violations and may remove or disable access to content that violates this Policy. Elevora may suspend or terminate access, with or without notice depending on the severity and the risk to others, and may refer matters to law enforcement or to a relevant authority where applicable. Elevora may also apply technical limits, including rate limits, to protect the Service.
Elevora is not obliged to monitor content, and the absence of enforcement action in any instance is not a waiver of the right to act later.
7. Changes
Elevora may update this Policy. Material changes will be communicated through the Service or by email, with the updated date shown above.
8. Contact
Elevora Holding LLC, 1021 East Lincolnway #9241, Cheyenne, WY 82001
Contact: evens.p@elevoraholding.com