Purpose
Scope
This Acceptable Use Policy ("AUP") governs the acceptable use of https://klicktify.com and all services, software, APIs, and applications provided by Klicktify Sdn Bhd (Company Registration No. 202601000123 (1456789-X)) ("Klicktify", "we", "us", or "our"). It forms part of the Terms of Service (/legal/terms) and the agreement between you and Klicktify. Capitalised terms not defined here have the meanings given in the Terms of Service.
Who This Applies To
This AUP applies to all users of the Klicktify platform, including Merchant account holders (café owners and staff) and Member account holders (loyalty programme participants), as well as visitors to klicktify.com.
Prohibited Conduct
General Prohibitions
You must NOT use the Klicktify platform to:
- Violate any applicable Malaysian or international law, regulation, or court order.
- Infringe the intellectual property rights, privacy rights, or other legal rights of Klicktify, other users, or any third party.
- Collect, scrape, harvest, or extract personal data from the platform without Klicktify's prior written authorisation, except as explicitly permitted through the platform's own API with appropriate authorisation.
- Use automated bots, scripts, software, hardware devices, or any other automated means to interact with the QR check-in system, points engine, or reward redemption functionality.
- Tamper with, modify, hack, decode, reverse-engineer, decompile, or disassemble any part of the Klicktify platform or its underlying software.
- Introduce or transmit any malware, virus, ransomware, worm, trojan, or other harmful code into the platform.
- Attempt to gain unauthorised access to any other user's account, to Klicktify's systems, databases, or infrastructure, or to any third-party systems.
- Use the platform to facilitate fraud, money laundering, terrorist financing, or any other criminal activity.
- Harass, defame, abuse, threaten, or intimidate any other user or Klicktify staff.
- Impersonate any person or entity, including Klicktify staff or representatives.
- Post or transmit content that is obscene, sexually explicit, discriminatory, hateful, or violent.
- Obstruct, disrupt, or degrade the platform's operation or the experience of other users.
- Use the platform to send unsolicited commercial messages (spam).
QR Check-In and Points Fraud — Specific Prohibitions
The following conduct is specifically prohibited in relation to QR check-in and the points system:
- Screenshots or copies of QR codes: sharing, transferring, selling, or using screenshots of a QR code belonging to another Member, or using your own QR code on behalf of another person who is not physically present at the Merchant's venue.
- Bot-generated check-ins: using automated scripts, bots, or other software to simulate QR scans or generate check-ins without a genuine physical presence.
- Location spoofing: using GPS spoofing applications or VPN services to misrepresent your physical location in order to claim a check-in at a venue you have not visited.
- Collusion: coordinating with Merchant staff or other persons to obtain check-ins or points without a genuine qualifying transaction or physical visit.
- QR code tampering: altering, printing duplicate QR codes, or otherwise manipulating the QR code display to obtain duplicate check-ins.
- Exploiting platform bugs: deliberately exploiting bugs, race conditions, or unintended behaviour in the points engine or check-in system to obtain points you are not entitled to.
- QR code resale: selling, trading, or transferring QR code access to third parties.
These prohibitions apply to both Members who engage in fraudulent check-in activity and Merchants who knowingly facilitate or tolerate such activity.
Merchant-Specific Prohibitions
Merchants must NOT:
- Operate a loyalty programme that misleads Members about the value, availability, or terms of rewards.
- Publish false or defamatory content about competitors through the platform.
- Use Member personal data for purposes other than operating their loyalty programme, without the Member's separate consent.
- Discriminate against Members in the operation of their loyalty programme in a manner prohibited by applicable Malaysian law.
- Tamper with or bypass Klicktify's security controls or fraud detection systems.
- Allow persons under the age of 18 to independently operate a Merchant account.
Enforcement and Remedies
Enforcement Ladder
When a violation of this AUP is identified, Klicktify may take the following actions, in order of escalating severity. The action taken will depend on the nature, severity, and frequency of the violation, as well as any prior history:
- Warning: for minor or first-time violations, we may issue a written warning requesting that the conduct cease immediately.
- Temporary suspension: for repeated violations, serious violations, or cases where immediate harm is occurring, we may suspend the account temporarily while we investigate. During suspension, the account holder cannot access the platform.
- Account restrictions: we may restrict specific features (e.g., check-in functionality, analytics access) while leaving the rest of the account active.
- Forfeiture of points: points obtained through fraudulent check-in activity may be forfeited without compensation.
- Permanent termination: for the most serious violations, repeated conduct, or violations that cause significant harm to other users or the platform, we may permanently terminate the account and all associated data.
- Legal referral: in cases involving fraud, criminal conduct, or significant harm, we may refer the matter to law enforcement authorities and cooperate with any resulting investigation.
Investigation
We reserve the right to investigate suspected AUP violations, including by reviewing account activity logs, check-in records, points transaction history, device and IP address data, and any other relevant evidence. You agree to cooperate with any investigation. Failure to cooperate may be treated as an aggravating factor.
Repeat Violations
Repeat violations — even of different rules — may result in escalated enforcement action, including permanent account termination, regardless of the severity of any individual violation.
Reporting Violations
How to Report
If you become aware of a violation of this AUP, please report it to us immediately at security@klicktify.com. Please include: (a) your name and account details; (b) a description of the suspected violation; (c) any evidence you have (screenshots, account identifiers, dates); and (d) whether you consent to your identity being used in any follow-up investigation.
Good-Faith Reports
We prohibit retaliation against any person who makes a good-faith report of a suspected AUP violation. Reports made in bad faith, or with the intent to harass, may themselves be treated as AUP violations.
Contact
Questions
If you have questions about this Acceptable Use Policy, please contact legal@klicktify.com.