BoB HQ™™← Back to BoB HQ™
BoB HQ™ Legal

Acceptable Use Policy

This Acceptable Use Policy establishes the rules for lawful and responsible use of BoB HQ™, including its campaign tools, integrations, data features, and communications services.

Effective date: September 12, 2026

This Policy is incorporated into the BoB HQ™ Terms of Service. Violations may result in delayed campaigns, restricted features, account suspension, or termination.

1. Scope and responsibility

This Acceptable Use Policy applies to every person and organization that accesses or uses the BoB HQ™ website, application, dashboards, integrations, campaign tools, communication features, support resources, and related services collectively referred to as the “Services.”

Customers are responsible for activity conducted through their accounts, including activity by employees, producers, contractors, administrators, and other authorized users.

Customers must ensure that their users understand and comply with this Policy, the Terms of Service, the Privacy Policy, applicable laws, carrier requirements, vendor terms, and professional obligations.

Permission from BoB HQ™ to access a feature does not mean that a customer’s particular use of that feature is lawful. Customers must independently evaluate and approve their data, audiences, messages, timing, consent, and campaign purpose.

2. Lawful use and communications compliance

Customers may use the Services only for lawful business purposes and in compliance with every law, regulation, order, industry rule, carrier requirement, contract, and professional standard that applies to the customer or the communication.

Customers are responsible for compliance with requirements that may include:

  • The Telephone Consumer Protection Act;
  • Federal Communications Commission rules and orders;
  • The Telemarketing Sales Rule;
  • Federal and state do-not-call requirements;
  • State telemarketing and telephone-solicitation laws;
  • Caller-identification and call-time restrictions;
  • Call-recording and voice-consent laws;
  • Privacy and data-protection laws;
  • Insurance licensing and marketing requirements;
  • CMS Medicare communications and marketing requirements;
  • Carrier, agency, and contractual requirements; and
  • Consent, revocation, disclosure, and recordkeeping obligations.

Customers must determine whether a communication is informational, transactional, marketing, telemarketing, insurance marketing, or otherwise regulated before initiating it.

BoB HQ™ does not provide legal or compliance advice and does not guarantee that a template, workflow, campaign label, default setting, or suggested audience complies with the laws applicable to a customer.

3. Consent and recipient eligibility

Customers may contact a recipient through the Services only when they have a documented and legally sufficient basis for the specific recipient, telephone number or address, message, purpose, timing, and communication technology.

Ringless voicemail and direct-to-voicemail technology may be treated as a call using an artificial or prerecorded voice. Customers must obtain and document the level of prior consent required before launching a campaign.

An existing business relationship, previous transaction, CRM record, possession of a telephone number, or prior conversation does not automatically establish sufficient consent for every communication.

Customers must:

  • Maintain reliable records showing when, how, and for what purpose consent was obtained;
  • Confirm that consent covers the customer, campaign purpose, message, technology, and service providers used;
  • Screen applicable federal, state, internal, and carrier do-not-call or suppression lists;
  • Maintain accurate deceased-client, wrong-number, reassigned-number, revocation, and opt-out records;
  • Honor revocations, opt-outs, and suppression requests promptly; and
  • Retain consent and campaign records for the legally required period.

Customers may not use purchased, rented, scraped, appended, shared, or third-party lead lists unless they have independently verified a lawful basis and campaign-specific consent for each intended recipient.

4. Prohibited communications and content

Customers may not use the Services to send or distribute:

  • Unlawful telemarketing, spam, or unsolicited communications;
  • Messages sent without legally sufficient consent or after consent has been revoked;
  • False, deceptive, misleading, or materially incomplete content;
  • Messages that misrepresent the sender, caller, business, carrier, product, purpose, or source;
  • Harassing, threatening, abusive, hateful, defamatory, obscene, or discriminatory content;
  • Content that exploits or targets children or vulnerable individuals unlawfully;
  • Fraudulent offers, impersonation attempts, phishing messages, or requests for unauthorized payments or credentials;
  • Malware, harmful code, deceptive links, or content intended to compromise a device or account;
  • Content that infringes copyrights, trademarks, privacy rights, publicity rights, voice rights, or other legal rights; or
  • Communications prohibited by a carrier, communications provider, connected platform, or applicable industry rule.

5. Prohibited and restricted data

Unless BoB HQ™ expressly authorizes a specific field or workflow in writing, customers may not upload, store, record, synchronize, or transmit through the Services:

  • Social Security numbers;
  • Medicare Beneficiary Identifiers;
  • Full payment-card or financial-account numbers;
  • Payment-card security codes;
  • Passwords or authentication credentials for another service;
  • Biometric identifiers or biometric templates;
  • Medical records, diagnoses, treatment information, or detailed claims information;
  • Government identity documents;
  • Information obtained through fraud, deception, scraping, unauthorized access, or unlawful data brokerage; or
  • Other information requiring heightened safeguards that the Services are not expressly designed to provide.

The Services are not represented as HIPAA-compliant and are not intended to create a business-associate relationship under HIPAA unless BoB HQ™ signs a separate Business Associate Agreement covering the relevant Services and data.

Customers must minimize the information they submit and use only information reasonably necessary for an authorized business purpose.

6. Security and system integrity

Customers may not:

  • Access or attempt to access an account, system, record, or feature without authorization;
  • Share individual account credentials except through an authorized multi-user feature;
  • Bypass authentication, permissions, security controls, usage restrictions, or account limits;
  • Probe, scan, test, or exploit a vulnerability without prior written authorization from BoB HQ™;
  • Introduce malware, malicious code, corrupted files, or harmful instructions;
  • Interfere with, overload, disrupt, degrade, or damage the Services or another user’s access;
  • Use automated tools to scrape, extract, crawl, or copy nonpublic information or functionality;
  • Reverse engineer or attempt to discover nonpublic source code, models, systems, or technical components except where a restriction is prohibited by law;
  • Use the Services to test, develop, train, benchmark, or operate a competing product without written authorization; or
  • Conceal, falsify, or manipulate account identity, message origin, caller identification, headers, or technical information.

Customers must notify BoB HQ™ promptly at support@getbobhq.app if they discover suspected unauthorized access, credential compromise, data exposure, or another security issue involving the Services.

7. Identity, recordings, and representation

Customers must accurately identify themselves and the business responsible for each communication. Customers may not conceal or misrepresent the identity, telephone number, address, organization, carrier relationship, or purpose associated with a campaign.

Customers may not:

  • Impersonate another person, business, agency, or organization;
  • Falsely claim to represent or be endorsed by an insurance carrier, government agency, CMS, Medicare, or another organization;
  • Use misleading caller identification, business names, return addresses, or contact information;
  • Record or use another person’s voice without every required permission;
  • Use a cloned, synthetic, altered, or AI-generated voice without legally sufficient authorization and required disclosures;
  • Remove or conceal disclosures required by law, contract, carrier, or industry rule; or
  • Use expired, inaccurate, misleading, or unapproved campaign content.

Customers must review and approve every recording, script, template, disclosure, and call-to-action before activating a campaign.

8. Integrations and third-party services

Customers may connect only accounts, systems, and data sources they are authorized to access and use.

Customers may not:

  • Connect another person’s CRM, communications account, payment account, or business system without authorization;
  • Use an integration to access, extract, alter, or transmit information beyond the permissions granted;
  • Use BoB HQ™ to evade another provider’s restrictions, suspension, usage limits, or security controls;
  • Provide false credentials, tokens, account information, or authorization records; or
  • Continue using an integration after authorization has been revoked or the business relationship has ended.

Customers must comply with the terms, privacy requirements, usage policies, and technical limitations of each connected service.

BoB HQ™ may disable or restrict an integration when required by the provider, when authorization cannot be verified, or when continued access may create security, legal, operational, or reputational risk.

9. Platform and account abuse

Customers may not:

  • Resell, sublicense, lease, white-label, or provide unauthorized third-party access to the Services;
  • Create multiple accounts to avoid fees, restrictions, enforcement, or usage limits;
  • Circumvent active-client limits, campaign limits, billing requirements, or subscription controls;
  • Conduct activity that materially exceeds reasonable or documented usage expectations;
  • Use the Services as an unauthorized data broker, list broker, lead-selling platform, or mass-messaging service;
  • Use another customer’s data, recordings, templates, or account resources without authorization;
  • Misrepresent account ownership, agency affiliation, licensing status, subscription eligibility, or payment information; or
  • Use the Services in a manner that creates unreasonable legal, security, financial, carrier, vendor, or operational risk for BoB HQ or another person.

Agency, multi-producer, reseller, and other expanded uses require an appropriate plan or separate written authorization from BoB HQ™.

10. Monitoring, investigation, and enforcement

BoB HQ™ is not obligated to pre-screen every customer, recipient, record, recording, script, campaign, or communication. However, BoB HQ may use automated and manual methods to identify suspected fraud, abuse, security threats, excessive usage, complaints, delivery problems, or Policy violations.

BoB HQ™ may request information reasonably necessary to verify identity, licensing, account ownership, recipient eligibility, consent, suppression practices, message content, campaign purpose, or compliance.

If BoB HQ™ reasonably believes activity violates this Policy or may create harm, BoB HQ™ may:

  • Delay, reject, or cancel a campaign;
  • Remove or restrict content or data;
  • Disable an integration or communication feature;
  • Reduce usage limits or require additional verification;
  • Require corrective action or evidence of compliance;
  • Temporarily suspend an account or user;
  • Terminate access to the Services;
  • Preserve relevant records;
  • Notify an affected customer, provider, carrier, recipient, or authority when appropriate; or
  • Take other reasonable action to protect the Services and third parties.

When reasonably practical, BoB HQ™ will provide notice and an opportunity to correct a violation. Immediate action may be taken when delay could expose BoB HQ™, a recipient, a customer, a provider, or another person to legal, security, financial, or operational harm.

BoB HQ™ may consider the seriousness, frequency, intent, impact, history, cooperation, and corrective actions associated with a violation when determining an appropriate response.

11. Reporting and cooperation

Suspected abuse, unlawful communications, unauthorized access, security issues, or other violations may be reported to support@getbobhq.app.

Reports should include enough information to identify the relevant account, communication, date, telephone number or address, campaign, and reason for concern. Reporters should avoid sending unnecessary sensitive information.

Customers must cooperate reasonably with investigations, complaint handling, suppression requests, security reviews, carrier inquiries, legal process, and corrective actions.

A person who discovers a potential security vulnerability must report it privately and must not exploit the issue, access unnecessary data, disrupt the Services, demand payment, or disclose the vulnerability publicly before BoB HQ™ has had a reasonable opportunity to investigate and respond.

12. Changes and contact information

BoB HQ™ may update this Policy to reflect changes in the Services, integrations, communications technologies, vendor requirements, security practices, business operations, or applicable law.

When changes are material, BoB HQ™ will provide reasonable notice through the Services, by email, on the website, or through another appropriate method before the updated Policy takes effect. The effective date at the top of this page identifies the current version.

Questions or concerns regarding this Acceptable Use Policy may be directed to:

Ballestra Group, LLC, doing business as BoB HQ™
Support: support@getbobhq.app
Legal: legal@getbobhq.app
Website: https://getbobhq.com

© 2026 Ballestra Group, LLC. All rights reserved.
BoB HQ™ is a trademark of Ballestra Group, LLC.

TermsPrivacyAcceptable UseDisclaimers