Use CASE Budget responsibly
CASE Budget is built for legitimate financial organization, planning, and collaboration. Users must respect account boundaries, workspace permissions, financial-data ownership, security controls, and the rights of others.
Purpose
CASE Budget is intended to help individuals, households, businesses, and organizations organize authorized financial information and make informed financial-planning decisions.
This policy is intended to protect:
- CASE Budget users and workspace members.
- Personal and financial information stored within the platform.
- XilAire Technologies systems, employees, contractors, and service providers.
- Financial institutions and connected-data providers.
- The availability, integrity, security, and reputation of CASE Budget.
Related policies
This policy forms part of the CASE Budget Terms of Service and should be read together with the Privacy Policy, Security Practices, and other Legal Center documents.
Permitted use
You may use CASE Budget for lawful, authorized, and legitimate financial-management purposes supported by your subscription, workspace permissions, and account role.
Personal financial planning
Create budgets, track income and expenses, manage bills, monitor savings goals, review debts, and organize financial records.
Household collaboration
Share authorized financial-planning information with family or household members through supported workspace permissions.
Business organization
Use eligible business workspaces to organize authorized budgets, expenses, accounts, reports, and financial-planning information.
Financial analysis
Use reports, projections, summaries, and educational tools to better understand financial activity and planning progress.
- Create and manage personal or authorized shared budgets.
- Record income, expenses, transactions, bills, savings goals, debts, assets, investments, and net-worth information.
- Import supported financial information from accounts you are authorized to access.
- Invite authorized users to supported household, business, or organization workspaces.
- Generate reports, projections, summaries, and other permitted financial-planning materials.
- Use administrative tools only within the permissions assigned to your account.
- Contact customer support for legitimate account, subscription, security, and technical assistance.
Account and credential security
You must protect your CASE Budget credentials and use account-access features responsibly.
- Use an individual account for each person accessing CASE Budget.
- Maintain a strong and unique password.
- Enable multi-factor authentication when available or required.
- Protect recovery links, authentication codes, session information, and security keys.
- Keep your email account and devices secure.
- Promptly revoke access for former household, business, or organization members.
- Notify XilAire Technologies if you suspect account compromise.
Credential sharing
You may not share passwords, authentication cookies, recovery links, MFA codes, security keys, or other private authentication information with another person.
Shared access must be provided through supported workspace invitations and role-based permissions.
You are responsible for your account
You are responsible for activity performed through your account when caused by your failure to protect credentials or remove unauthorized access.
Illegal, deceptive, or fraudulent activity
CASE Budget must not be used to facilitate, conceal, promote, or support unlawful, fraudulent, or deceptive activity.
- Fraud, theft, identity theft, forgery, or false representation.
- Money laundering, sanctions evasion, terrorist financing, or unlawful movement of funds.
- Tax evasion, falsification of financial records, or concealment of legally required information.
- Creating fake financial institutions, lenders, investment services, charities, or payment services.
- Operating phishing, impersonation, credential-harvesting, or social-engineering schemes.
- Creating misleading financial statements, account histories, invoices, receipts, or reports for unlawful purposes.
- Using stolen bank, payment, identity, employment, tax, or credit information.
- Participating in unlawful gambling, illegal lending, or prohibited financial services.
- Misrepresenting ownership, authority, income, assets, liabilities, or credit information.
We may preserve and disclose information when legally required to investigate suspected unlawful activity or respond to valid legal process.
Financial scams and abusive financial activity
You may not use CASE Budget to create, support, operate, or promote fraudulent or abusive financial schemes.
- Investment scams, Ponzi schemes, pyramid schemes, or false profit guarantees.
- Fake loans, advance-fee schemes, predatory lending, or unauthorized debt collection.
- Cryptocurrency, token, foreign-exchange, or trading scams.
- False fundraising, donation, crowdfunding, or charity campaigns.
- Deceptive credit-repair, debt-relief, insurance, tax, or financial-advice services.
- Manipulation or fabrication of financial reports to mislead investors, lenders, employers, governments, or other parties.
- Unauthorized pooling, custody, transfer, or management of another person's funds.
- Use of CASE Budget to conceal stolen funds, criminal proceeds, or unauthorized transactions.
CASE Budget is not a payment or custody service
Unless a future feature expressly states otherwise, CASE Budget does not hold customer funds, provide custody, execute trades, originate loans, or transfer money.
Harmful, abusive, or prohibited content
You must not upload, store, share, or transmit content that is unlawful, harmful, threatening, exploitative, or abusive.
- Content that threatens, harasses, intimidates, stalks, or targets another person.
- Content promoting hatred, violence, or discrimination against protected groups.
- Content supporting terrorism, violent extremism, or criminal organizations.
- Child sexual abuse material, child exploitation, or content that endangers minors.
- Non-consensual intimate content, sexual exploitation, trafficking, or coercion.
- Malware, ransomware, spyware, viruses, destructive code, or malicious attachments.
- Phishing pages, credential-harvesting forms, or deceptive account notices.
- Private or sensitive information disclosed without authorization.
- Content that infringes copyright, trademark, privacy, publicity, or other legal rights.
Financial notes, descriptions, attachments, workspace names, and support submissions are all subject to this policy.
Platform abuse and disruption
You must not interfere with the availability, integrity, performance, or normal operation of CASE Budget.
- Overload, flood, disrupt, degrade, or disable the platform.
- Send excessive requests or intentionally trigger costly operations.
- Exploit bugs, race conditions, configuration errors, or unintended feature behavior.
- Upload files or data designed to exhaust storage, memory, processing, or bandwidth.
- Interfere with another user's access or workspace operations.
- Create excessive accounts, workspaces, records, or subscriptions to avoid limits.
- Use CASE Budget to distribute spam, bulk unsolicited messages, or abusive invitations.
- Attempt to remove, modify, obscure, or disable security, copyright, or attribution notices.
- Use the service in a way that creates unreasonable operational, legal, or security risk.
Fair use of shared resources
CASE Budget may enforce reasonable technical and usage limits to protect performance, reliability, and access for all users.
Automated access, scraping, and API use
Automated use is permitted only through approved features, documented APIs, authorized integrations, or written permission from XilAire Technologies.
- Do not scrape pages, records, reports, or user information without authorization.
- Do not use bots, crawlers, scripts, or browser automation to bypass normal controls.
- Do not reverse engineer private APIs or undocumented application behavior.
- Do not collect user information for advertising, profiling, resale, or unauthorized analytics.
- Do not automate account creation, invitations, support requests, or subscription actions for abusive purposes.
- Do not use multiple accounts, IP addresses, devices, or identities to evade limits.
- Do not interfere with API authentication, signatures, request validation, or rate limits.
Approved integrations
Approved integrations must use authorized credentials, follow documented limits, protect customer information, and stop accessing data when authorization is revoked.
Connected financial institutions and services
You may connect only accounts, institutions, and services that you are legally authorized to access.
- Do not connect another person's financial account without authorization.
- Do not use stolen or improperly obtained bank credentials.
- Do not impersonate an account holder or institution representative.
- Do not interfere with a financial institution's authentication or security controls.
- Do not repeatedly reconnect accounts to evade provider limits or access restrictions.
- Do not use imported information for identity theft, fraud, harassment, or unauthorized surveillance.
- Comply with the terms and policies of connected financial institutions and service providers.
- Disconnect integrations when your authorization ends.
Authorization is required
Your ability to view an account does not always mean you are authorized to import, share, or manage that account's information.
Financial data requirements
Information entered, imported, or shared through CASE Budget must be lawfully obtained and used.
- Enter information accurately when it may affect other users or business records.
- Do not knowingly fabricate balances, transactions, income, expenses, debts, assets, invoices, or reports for deceptive purposes.
- Do not upload stolen financial records or identity information.
- Do not disclose account numbers, tax records, payroll information, or sensitive documents without authorization.
- Do not use financial information to harass, discriminate against, exploit, or harm another person.
- Apply appropriate workspace permissions before sharing sensitive records.
- Remove or correct information when you no longer have authority to store or share it.
Business and organization records
Business and organization users are responsible for ensuring that information uploaded to CASE Budget complies with their own legal, regulatory, contractual, accounting, employment, and privacy obligations.
Artificial intelligence features
CASE Budget may introduce AI-assisted categorization, summaries, recommendations, explanations, forecasts, or other automated features.
- Use AI features only for lawful and authorized purposes.
- Review AI-generated outputs before relying on them.
- Do not submit passwords, MFA codes, secret keys, or unnecessary sensitive information to AI features.
- Do not attempt to use prompt injection or other techniques to access system instructions, private data, or restricted tools.
- Do not use AI features to generate fraud, phishing, malware, scams, harassment, or prohibited content.
- Do not attempt to bypass safety controls, rate limits, permissions, or subscription restrictions.
- Do not represent AI-generated financial information as guaranteed, verified, or professional advice.
- Do not use AI outputs to make decisions about another person without appropriate authority and human review.
AI output may be incorrect
AI-generated classifications, explanations, and recommendations may be incomplete, inaccurate, outdated, or inappropriate for your circumstances.
Intellectual property and proprietary rights
You must respect the intellectual property and proprietary rights of XilAire Technologies, CASE Budget users, licensors, and third parties.
- Do not copy, distribute, resell, sublicense, or commercially exploit CASE Budget without authorization.
- Do not remove copyright, trademark, branding, license, or attribution notices.
- Do not create confusingly similar CASE Budget websites, applications, or services.
- Do not use XilAire Technologies trademarks without permission.
- Do not upload content that infringes copyright, trademark, patent, trade-secret, privacy, or publicity rights.
- Do not reverse engineer, decompile, or attempt to extract protected source code except where such restrictions are prohibited by law.
- Open-source components remain governed by their applicable licenses.
Workspace owners and administrators
Workspace owners and administrators have additional responsibilities because they may control access to sensitive financial information.
- Invite only authorized users.
- Assign the minimum permissions needed.
- Review members and roles regularly.
- Remove access promptly when employment, household membership, or authorization ends.
- Protect information belonging to other workspace members.
- Do not use administrative access for personal gain, harassment, retaliation, or unauthorized surveillance.
- Do not conceal administrative actions or manipulate audit information.
- Comply with applicable business, employment, privacy, and record-retention requirements.
- Respond appropriately to suspected compromise or misuse.
Workspace access creates responsibility
Owners and administrators may be responsible for misuse caused by knowingly granting inappropriate access or failing to remove unauthorized members.
Reporting suspected violations
Report suspected violations, fraud, unauthorized access, harmful content, or abuse to XilAire Technologies.
Describe
Explain the suspected violation and the affected CASE Budget area.
Document
Provide relevant dates, account details, or screenshots with sensitive values removed.
Submit
Send the report to the abuse or security contact that best matches the issue.
General abuse reports
Security vulnerabilities or account compromise
Do not include secrets
Do not send passwords, MFA codes, session tokens, private keys, full payment details, or full financial account numbers in an initial report.
Investigation and enforcement
XilAire Technologies may investigate suspected violations and take reasonable action to protect users, service providers, financial institutions, and the platform.
Warning or notice
We may notify you about suspected misuse and require corrective action.
Feature restriction
Specific functions, integrations, workspaces, or administrative actions may be limited.
Account suspension
Access may be temporarily suspended while a violation or security concern is reviewed.
Account termination
Serious, repeated, unlawful, or harmful conduct may result in permanent termination.
- Request additional information or identity verification.
- Remove or restrict prohibited content.
- Revoke sessions, integrations, API access, or workspace permissions.
- Limit features, connected accounts, invitations, or administrative actions.
- Suspend or terminate accounts and workspaces.
- Preserve evidence and audit records.
- Notify affected users, organizations, service providers, or financial institutions.
- Refer suspected unlawful activity to authorities when required or appropriate.
- Seek reimbursement or legal remedies for losses caused by prohibited conduct.
Enforcement decisions may consider the severity, frequency, intent, impact, history, and legal risk of the conduct.
Immediate action may be required
We may act without advance notice when necessary to contain a security incident, protect users, comply with law, or prevent significant harm.
Changes to this policy
XilAire Technologies may update this Acceptable Use Policy as CASE Budget features, integrations, security risks, business operations, or legal requirements change.
Updated versions will display a new last-updated date. Material changes may also be communicated through CASE Budget, email, or another appropriate method.
Contact us
Questions about this policy or reports of suspected misuse may be directed to XilAire Technologies.
Abuse and policy reports
Report suspected fraud, prohibited content, platform misuse, or other policy violations.
abuse@xilairetechnologies.comSecurity reports
Report suspected vulnerabilities, account compromise, unauthorized access, or security incidents.
security@xilairetechnologies.com