← Back to Home

Acceptable Use Policy

Last updated: September 2026

Provider: CRADD PTY LTD (ABN 55 694 856 132) trading as ibakepro

This Acceptable Use Policy (“AUP”) governs your access to and use of the ibakepro platform, software, custom websites and storefronts, invoicing and payment tools, messaging tools, AI features (“Choux”), APIs, and related services (the “Service”) provided by CRADD PTY LTD (“ibakepro”, “we”, “us”, or “our”).

This AUP is incorporated by reference into our Terms of Service. By creating an account or using the Service, you agree to comply with it. Capitalised terms not defined here have the meaning given in the Terms of Service. This AUP applies to you, your team members, and anyone who accesses the Service through your account or API keys, and you are responsible for their compliance.

1. General Conduct & Account Integrity

You must use ibakepro only for lawful business operations related to baking, food production, catering, and order management. You must not:

  • Use the Service in any way that breaches local, national, or international laws or regulations, or infringes third-party rights.
  • Impersonate any person or business, or misrepresent your identity or your affiliation with a business or brand.
  • Share login credentials, bypass access controls, or give anyone access to the Service through your credentials. Add staff as team members with their own logins instead.
  • Engage in misleading or deceptive conduct toward your customers through the Service, including false pricing, fake reviews or testimonials, or false ingredient, allergen, dietary, or origin claims.

2. Prohibited Financial & Payment Activities

Payments you accept through ibakepro are processed by the payment provider you connect (such as Stripe, PayPal, or Square). To protect you, your customers, and our access to those networks, you must not:

  • Card testing and system abuse: Run automated transaction attempts, card-testing scripts, or system-probing requests through checkout, invoices, or connected payment gateways.
  • Self-dealing and cash advances: Process transactions on your own payment cards, or cards you control, to earn rewards, obtain cash advances, or move funds, or process transactions that do not relate to a genuine sale of goods or services.
  • Unsafe payment data handling: Ask for, collect, store, or transmit full card numbers, card security codes (CVV/CVC), PINs, or online banking logins through custom form fields, order notes, messages, file uploads, or any other part of the Service. Card payments must be taken only through the integrated payment features of your connected payment provider.
  • Money laundering and sanctions: Facilitate transactions that disguise the origin of funds, or that breach anti-money laundering, counter-terrorism financing, or sanctions laws.
  • Payment provider rules: Breach the terms of the payment provider you connect, including its rules on prohibited or restricted businesses.

3. Regulated & Prohibited Products

You must not use the Service to sell:

  • Products that are illegal where you or your customer are located.
  • Regulated products (such as alcohol or cannabis products) without the licences and age checks the law requires, or through a payment provider that does not permit them.

4. Intellectual Property

You must not:

  • Unlicensed designs and trademarks: Market, offer, display, or sell products, images, or media that infringe third-party copyrights, trademarks, or other intellectual property rights (including characters, logos, or artwork you are not licensed to use) unless you hold the necessary licence or permission from the rights holder.
  • Prohibited content: Upload, publish, or send content that is defamatory, obscene, harassing, hateful, discriminatory, fraudulent, or that promotes violence or illegal acts.

5. Messaging & Customer Data

  • Do not send spam, unsolicited messages, or messages that breach anti-spam, telemarketing, or consumer protection laws applicable to you or your recipients (including the Spam Act 2003 (Cth) and equivalent laws where your recipients are).
  • Obtain and record any consent the law requires before sending marketing SMS or email, and honour opt-out and unsubscribe requests promptly.
  • Do not upload or import contact lists you do not have a lawful basis to use, and use your customers' personal information only in line with the privacy laws that apply to you.

6. Technical Infrastructure & AI Usage

When using the platform, its APIs, and Choux, you must not:

  • Reverse engineer, decompile, scrape, or attempt to extract source code, system prompts, or proprietary logic from the Service.
  • Introduce viruses, trojans, worms, logic bombs, or other malicious code.
  • Probe, scan, or test the security of the Service without our prior written permission. If you find a vulnerability, report it to us privately.
  • Use bots, scripts, or spiders to access customer portals, storefronts, or backend systems, except through our API within its documented limits.
  • Manipulate AI inputs or system prompts to generate abusive, fraudulent, infringing, or harmful output, or to get around content moderation.

7. Monitoring & Compliance Checks

  • Monitoring: We may, but are not obliged to, use automated and manual checks on account activity, storefront content, usage, and transaction patterns to detect breaches of this AUP, security risks, fraud, or illegal activity. We access account data only as described in our Privacy Policy and Data Processing Addendum.
  • Compliance requests: If we receive a complaint, or a payment provider, bank, regulator, or rights holder raises a concern, we may ask you for documents that verify your identity, your business, your licences, your right to use a design, or your ability to fulfil orders. If you do not respond within a reasonable time, we may take action under section 8.

8. Enforcement & Account Actions

If we reasonably believe you have breached this AUP or our Terms of Service, we may take action proportionate to the breach, including where your conduct risks the deliverability, reputation, or compliance of services we provide to other customers. Actions may include:

  • Disabling checkout, invoicing, payment gateway connections, messaging, or AI features.
  • Removing or hiding infringing or prohibited storefront items, media, or content.
  • Rate-limiting, suspending, or terminating your account and access to the Service.
  • Reporting illegal activity to, and cooperating with, law enforcement, regulators, and payment providers where the law requires or permits it.

Where practicable, we will notify you and give you an opportunity to fix the issue first. We may act immediately where the risk to the Service, other customers, payment providers, or third parties requires it. If you believe we have made a mistake, contact us and we will review the decision.

9. Changes to This Policy

We may update this AUP to reflect changes in law, regulation, or payment provider requirements. We will notify you of material changes via email or in-app, in the same way as changes to our Terms of Service. Continued use of the Service after a change takes effect means you accept the updated AUP.

10. Reporting a Violation

To report a suspected breach of this policy, a security vulnerability, or an intellectual property infringement on an ibakepro storefront, email hello@ibakepro.com.

For intellectual property complaints, please include your contact details, the work or trademark you own, the web address of the content concerned, and a statement that you are the rights holder or authorised to act for them. Our wider legal framework is set out in our Terms of Service.