Acceptable Use Policy

Last updated: November 1, 2025

This Acceptable Use Policy (“AUP”) governs the use of Hafinen’s platform, APIs, integrations, AI-assisted tools, and related services (collectively, the “Services”).

This AUP forms part of Hafinen’s Terms of Service.

By using Hafinen, you agree to comply with this Policy.

Failure to comply may result in suspension, restriction, or termination of access.

1. Purpose

Hafinen is designed to support lawful workforce management, recruitment, payroll, attendance, compliance, and operational workflows.

This Policy exists to protect customers, employees, candidates, administrators, third parties, Hafinen’s infrastructure, and Hafinen’s legal compliance obligations.

2. Lawful Use Requirement

You may use Hafinen only for lawful business and organizational purposes.

You must comply with employment laws, labor laws, privacy laws, data protection laws, anti-discrimination laws, tax laws, payroll regulations, biometric regulations, and intellectual property laws.

You are solely responsible for your use of the Services.

3. Prohibited Activities

You may not use Hafinen to violate applicable laws, commit fraud, impersonate another person or organization, falsify records, forge payroll records, manipulate attendance records unlawfully, fabricate employment documentation, create false hiring records, misrepresent candidate qualifications, and abuse platform workflows for unlawful purposes.

4. Recruitment and Hiring Restrictions

You may not use Hafinen to conduct discriminatory hiring, unlawfully profile candidates, violate equal opportunity laws, collect candidate data without lawful basis, retain candidate data unlawfully, and process candidate data outside lawful recruitment purposes.

Customers remain responsible for fair and lawful recruitment practices.

5. Employee Monitoring Restrictions

You may not use Hafinen for unlawful workplace surveillance.

This includes covert employee monitoring, unlawful tracking, unauthorized attendance monitoring, unauthorized location tracking, and invasive behavioral profiling.

Customers must ensure lawful employee notice and authorization where required.

6. Biometric Data Restrictions

Where Hafinen is used with biometric systems, you may not collect biometric data unlawfully, bypass consent requirements where applicable, store raw biometric data in Hafinen, use biometric systems for unauthorized surveillance, and use biometric records beyond lawful attendance or workforce purposes.

Customers remain responsible for compliance with local biometric laws.

7. Payroll and Financial Misuse

You may not use Hafinen to evade taxes, falsify payroll records, conceal compensation obligations, manipulate statutory deductions unlawfully, and create fraudulent compensation records.

Customers remain solely responsible for payroll legality.

8. Content Restrictions

You may not upload or distribute content that is unlawful, infringes intellectual property, contains malware, contains ransomware, contains viruses, contains malicious scripts, contains abusive material, contains hate speech, and contains fraudulent content.

9. Security Abuse

You may not probe or scan Hafinen systems without authorization, attempt unauthorized access, exploit vulnerabilities, interfere with platform stability, perform denial-of-service attacks, bypass access controls, intercept data unlawfully, and test production systems without permission.

Security testing requires written approval from Hafinen.

10. API and Webhook Abuse

You may not exceed reasonable API limits, abuse API endpoints, attempt credential stuffing, scrape data unlawfully, abuse webhooks, bypass rate limits, create excessive automated traffic, and reverse engineer protected APIs.

Hafinen may restrict or revoke API access.

11. AI Misuse Restrictions

You may not use Hafinen AI tools to make unlawful discriminatory decisions, automate unlawful employment decisions, generate fraudulent legal documents, create misleading HR policies, conduct unlawful profiling, produce abusive content, violate labor laws, and violate privacy laws.

AI-assisted workflows remain subject to Hafinen’s AI Usage Policy.

12. Data Privacy Obligations

You must collect data lawfully, provide required notices, obtain required consents, maintain lawful retention practices, honor lawful deletion obligations, and process personal data responsibly.

Customers act as Data Controllers for their Customer Data.

13. Service Integrity

You may not overload Hafinen systems, disrupt service availability, interfere with other customers, misuse trial environments, abuse promotional offers, and create duplicate fraudulent accounts.

14. Intellectual Property

You may not copy Hafinen software unlawfully, reverse engineer proprietary systems, resell unauthorized access, misuse Hafinen branding, and infringe Hafinen intellectual property.

15. Enforcement

Hafinen may investigate violations of this Policy.

Hafinen may suspend accounts, restrict access, revoke API credentials, remove content, report unlawful conduct, and terminate subscriptions.

Enforcement may occur without prior notice where necessary.

17. Changes

Hafinen may update this AUP from time to time.

Continued use of the Services constitutes acceptance of updates.

귀하는 Hafinen이 귀하의 경험을 향상시키기 위해 사용할 수 있는 선택적 쿠키를 선택할 수 있습니다. 필수 쿠키와 보안 쿠키는 인증, 플랫폼 보안, 사기 방지 및 안정적인 서비스 운영에 필수적이므로 항상 활성화되어 있습니다. 언제든지 기본 설정을 업데이트할 수 있습니다.

꼭 필요한 쿠키

이러한 쿠키는 Hafinen이 안전하고 안정적으로 작동하는 데 필수적입니다. 계정 인증, 로그인 세션, CSRF 보호, 보안 세션 연속성, 로드 밸런싱 및 기타 핵심 플랫폼 기능을 지원합니다. 이러한 쿠키는 서비스가 작동하는 데 필요하므로 비활성화할 수 없습니다.

보안 쿠키

이러한 쿠키는 의심스러운 활동을 감지하고, 무단 액세스를 방지하고, 남용을 완화하고, API 요청을 검증하고, 속도 제한을 지원하고, 플랫폼 무결성을 유지함으로써 귀하의 계정과 서비스를 보호하는 데 도움이 됩니다. 이 쿠키는 보안을 위해 필요하며 비활성화할 수 없습니다.

기능성 쿠키

기능 쿠키는 귀하의 선호도를 기억하고 귀하의 경험을 개인화합니다. 여기에는 언어, 시간대, 테마, 접근성 설정, 인터페이스 사용자 정의 및 대시보드 기본 설정이 저장될 수 있으므로 서비스를 사용할 때마다 구성할 필요가 없습니다.

분석 쿠키

분석 쿠키는 서비스가 어떻게 사용되는지 이해하여 유용성, 성능 및 안정성을 향상시키는 데 도움이 됩니다. 기능 채택, 페이지 상호 작용, 탐색 패턴, 브라우저 호환성, 충돌 보고서 및 성능 지표와 같은 정보를 수집합니다. 가능한 경우 이 정보는 집계되거나 익명으로 처리됩니다.

성능 쿠키

성능 쿠키는 서비스의 속도, 안정성 및 응답성을 향상시킵니다. 캐싱, 콘텐츠 전달 최적화, 트래픽 밸런싱, 자산 로딩 및 일관되고 안정적인 사용자 경험을 제공하는 데 도움이 되는 기타 기술을 지원합니다.

커뮤니케이션 쿠키

통신 쿠키는 알림 전달, 이메일 이벤트 추적, SMS 확인 및 서비스를 사용하는 동안 귀하에게 정보를 제공하는 방법을 향상시키는 기타 운영 통신 워크플로와 같은 서비스 관련 상호 작용을 지원합니다.