Back to SFProto

Acceptable Use Policy

Last updated 16 September 2026 · SFProto is a product of Cloud Mavericks Pty Ltd, Melbourne, Australia

Plain English: prototypes must never be passed off as a real Salesforce system, never used to collect credentials, and never filled with real customer data. Report anything that looks wrong and we will act on it.

The short version

SFProto builds screens that look convincingly like Salesforce. That is useful for design reviews and dangerous in the wrong hands, so this policy is mostly about not misleading people.

This policy is part of the Terms of Service and applies to everyone using SFProto, including people who open a link you shared.

No impersonation or phishing

  • Do not present a prototype as a real Salesforce system, a real company’s system, or a live service of any kind.
  • Do not remove, hide or work around the "Prototype — not Salesforce" banner on shared pages.
  • Do not build screens designed to collect passwords, one-time codes, payment details or other credentials from anyone.
  • Do not use a brand, logo or company name you have no right to use, or imply an endorsement that does not exist.

Other people's data

  • Use made-up sample data. Prototypes are design artefacts and are not a safe place for real records.
  • Do not upload or paste real customer personal information, and never sensitive information such as health, financial, biometric or government identifiers.
  • Do not upload credentials, API keys or payment details in prompts, wireframes or pages.
  • Only share links with people entitled to see the work, and turn a link off when it is no longer needed.

Content limits

  • Nothing unlawful, infringing, defamatory, hateful or harassing.
  • Nothing that contains malware, or that tries to get the AI to produce harmful instructions.
  • Nothing that instructs the AI through text hidden in an uploaded image. Writing inside wireframes is treated as content to reproduce, never as instructions.

Fair use of the service

  • Do not work around usage limits, for example with extra accounts, automation or shared invitations.
  • Do not scrape SFProto, run load tests against it, or automate it beyond your own normal use.
  • Do not resell access, or run SFProto as a service for others, without a written agreement with us.
  • Do not probe, scan or test the security of SFProto without our written permission. If you find a vulnerability, tell us at support@sfproto.com and give us reasonable time to fix it.

What happens if this is broken

Depending on what has happened we may turn off a share link, remove content, suspend an account or end access. Where the situation allows, we will tell you what we found and give you a chance to put it right.

We act faster and without warning where there is a risk to someone — phishing, impersonation of a real organisation, or exposure of personal data.

Reporting a problem

Every shared prototype has a Report abuse link, and you can email support@sfproto.com at any time. Tell us the link and what looks wrong, and we will investigate.