Acceptable Use Policy

    Version 2026-08-01 · Last updated August 2026

    This Acceptable Use Policy forms part of the Terms of Service between you and ClickCues. It exists mainly because ClickCues runs a script on other people's websites and captures screenshots of them, which creates obligations you take on when you install it.

    1. Who may install the widget

    You may install the ClickCues widget only on a website or application where you are the owner, or where you have written authorisation from the owner to install third-party scripts and capture screenshots.

    You are the controller of the personal data captured through your installation. ClickCues acts as your processor for that data. That means the obligation to inform your own users and reviewers, and to have a lawful basis for the capture, sits with you, not with us.

    2. Where the widget must not be installed

    Do not install the widget on pages that display, or are likely to display:

    • Health, medical or clinical records, or anything else that would be protected health information.
    • Full payment card numbers, bank credentials or government identity document images.
    • Children's personal data, or any service directed at children under 16.
    • Legally privileged material, or third-party confidential information you are not permitted to disclose.
    • Another organisation's authenticated account area, unless that organisation has authorised the install.

    ClickCues masks password fields, payment card inputs, and any element you tag withdata-clickcues-ignore before a screenshot is taken. That masking is a safeguard, not a compliance control: everything else visible on the page is captured. Use the tagging attribute on any region that should never be photographed.

    3. Prohibited conduct

    • Using ClickCues to conduct surveillance of employees, contractors or end users.
    • Using ClickCues to capture credentials, session tokens or other secrets.
    • Uploading malware, or content that is unlawful, harassing, defamatory or infringing.
    • Reverse engineering, scraping, load-testing or probing the service without written permission.
    • Reselling, sublicensing or white-labelling ClickCues without a written agreement.
    • Circumventing plan limits, storage quotas, rate limits or trial restrictions, including by creating multiple accounts.
    • Sharing account credentials. Each seat is for one named person.

    4. Automated and AI use

    Do not submit content to ClickCues for the purpose of extracting model output at scale, and do not use the service as a general-purpose AI endpoint. AI enrichment exists to summarise genuine product feedback. See the AI Transparency Notice for what is and is not sent to a model provider.

    5. Enforcement

    Where we believe this policy has been breached we may, proportionately to the severity: contact you, suspend a widget installation, suspend an account, or terminate an account. Where a breach creates an immediate risk to other people's data, we may act first and notify you afterwards.

    We do not routinely review the content of your feedback items. Enforcement is complaint-driven and signal-driven (for example, abuse rate limits triggering).

    6. Reporting a violation

    Report suspected abuse to support@clickcues.com or through our contact page. Include the affected URL and, where possible, the ClickCues project or task involved.