In short
- Use inSigner only for lawful documents that the signer expects to receive.
- WhatsApp and SMS messages need the recipient’s permission and must follow carrier and Meta rules.
- Anyone can report illegal content to [email protected], and we review every notice.
- We act in proportion to the problem, and we tell you why when we restrict content.
Who this covers
This policy applies to every customer, user, signer, and developer who uses inSigner, including the website, the workspace, signing links, add-ons, the API, and the mobile apps once they are released. The terms of service require you to follow it.
Content you may not upload or send
Do not use inSigner to create, store, or send:
- Material that sexually exploits or endangers children. We report it to the competent authorities.
- Content that promotes terrorism or violent extremism, or that incites violence or hatred against people because of a protected characteristic.
- Documents designed to deceive a signer about what they are signing, such as forged agreements, fake invoices, or phishing.
- Malware, links to malware, or files built to exploit software.
- Content that infringes copyright, trademarks, trade secrets, or privacy rights.
- Personal data, including identity documents or health data, that you have no lawful basis to process or share.
- Content that breaks sanctions, export controls, gambling, securities, or consumer protection laws.
Conduct that is not allowed
You also may not:
- Apply another person’s signature, sign for someone without authority, or tell inSigner that someone agreed when they did not.
- Invite people who have no reason to receive a document, or use signing invitations to send unsolicited marketing.
- Impersonate Nubesti, a government, a bank, or another person, or present a signing page as their site.
- Probe, scan, or test the service for vulnerabilities without following the security overview, or interfere with its operation.
- Overload the service, get around usage limits, or share accounts to avoid paying for a plan.
- Resell or white label the service without an Enterprise agreement that allows it.
Messaging add-ons
OTP by WhatsApp and SMS, and document signing on WhatsApp, may be used only to deliver messages that a recipient expects in connection with a document. Before you send them, make sure that:
- You have the recipient’s phone number lawfully and any prior consent the law requires, for example under the U.S. Telephone Consumer Protection Act, Canada’s anti-spam law, or the ePrivacy rules in Europe.
- Messages are not used for marketing, and include opt-out information where the law requires it.
- Content follows the WhatsApp Business Messaging Policy, the WhatsApp Commerce Policy, and the rules of mobile carriers and telecom regulators in the recipient’s country.
Identity verification
KYC may be used only to confirm that a signer is who they claim to be, for a document where that check is justified. Do not use it to monitor people, to build profiles, or to make decisions about someone’s eligibility for employment, housing, credit, or insurance without the notices and safeguards the law requires. Tell signers why you are asking for verification, and offer another way to proceed where the law requires it.
Regulated documents
Some documents, such as wills, certain real estate deeds, court documents, some consumer credit agreements, or documents that need a notary or a witness, may require a form of signature or a formality that inSigner does not provide. You are responsible for checking the rules that apply before you send them.
Reporting illegal content
Anyone can report content they believe is illegal or breaks this policy by writing to [email protected] with the subject “Content report”. This is also our point of contact for notices under the EU Digital Services Act. Please include:
- A clear explanation of why you believe the content is illegal or breaks this policy.
- The exact location of the content, such as the signing link or the document name and sender.
- Your name and email address, unless the report concerns child sexual abuse material.
- A statement that you believe in good faith that the information in your report is accurate and complete.
We acknowledge notices, review them diligently and without arbitrary decisions, and tell the person who reported the content what we decided. Copyright notices can also follow the copyright notices policy.
Enforcement and appeals
Depending on the seriousness of a breach, we may warn the account, remove or disable access to content, block a signing link, limit a feature such as messaging or KYC, suspend the account, or close it. We act in proportion to the problem and consider whether the breach was intentional and whether it was repeated.
When we restrict content or an account, we send the customer a statement of reasons with the facts, the rule involved, and whether any automated means were used, unless the law does not allow it or doing so would help ongoing abuse. You can contest a decision by replying to that message or writing to [email protected]. A person who was not involved in the original decision reviews the appeal. If you are in the European Union, you may also use a certified out-of-court dispute settlement body under the Digital Services Act.