Purpose
This policy applies to organisations and authorised users of Roster. It supplements the customer agreement and must be approved with the operator's enforcement and contact procedures before becoming effective.
Permitted use
Use Roster only for authorised workforce scheduling, attendance, leave, employee administration, document, reporting, and related business purposes under your organisation's instructions.
Prohibited conduct
- Access another tenant, employee, account, document, or system without authorisation, or attempt to bypass role or database controls.
- Upload malware, exploit code, unlawful material, or files that create an unreasonable security or availability risk.
- Probe, scan, overload, scrape, disrupt, or test the service without written authorisation.
- Share credentials, impersonate another person, falsify attendance or employment records, or conceal the source of an action.
- Enter, export, disclose, or use personal information without authority or for discrimination, harassment, surveillance, fraud, or another unlawful purpose.
- Use Roster to send spam, phishing, deceptive messages, or content that infringes intellectual-property, privacy, confidentiality, or employment rights.
- Circumvent plan limits, copy or resell the service, or reverse engineer it except to the limited extent the law permits.
Sensitive workforce information
Government identifiers, bank details, statutory identifiers, investment documents, attendance, leave, and employment records must be limited to people who need them for an authorised role. Do not place secrets, passwords, unnecessary identity documents, or unrelated sensitive information in free-text fields or uploads.
Enforcement and reporting
Suspected misuse may be reported to support@infinitysolutions.app. The operator may preserve relevant evidence, investigate, restrict the affected feature, or suspend access in proportion to the risk. The Administrator approves emergency suspension; notice is provided where safe and lawful; and the customer may appeal through support@infinitysolutions.app within 30 days. Investigation evidence follows the 180-day security-log target unless a documented legal hold requires longer retention.