Acceptable Use Policy
Last updated: February 18, 2026
1. General Provisions
This Acceptable Use Policy (hereinafter — "Policy") forms an integral part of the Terms of Service of JourneyBay and defines the acceptable and prohibited ways of interacting with the JourneyBay mobile application, website, and AI systems (hereinafter — "Service").
By using the Service, you agree to comply with this Policy. Violation of this Policy may result in suspension or termination of access to the Service without reimbursement.
2. Acceptable Use
The Service is intended for:
- Planning personal travel and trips
- Receiving AI recommendations on places, itineraries, and activities
- Communicating with the AI assistant about travel-related topics
- Searching for and saving places
- Creating and managing itineraries
3. Prohibited Actions
3.1. AI System Manipulation
The following is strictly prohibited:
- Prompt injection — embedding malicious instructions in AI queries to alter its behavior, bypass restrictions, or gain unauthorized access to system data
- Jailbreaking — attempting to bypass built-in AI safety restrictions, forcing AI to ignore its instructions or rules
- System prompt extraction — attempting to obtain, disclose, or reproduce system instructions, configurations, or AI parameters
- Context manipulation — deliberately providing false context to manipulate AI output
- Mass generation — automated sending of large volumes of AI queries to exhaust resources, extract training data, or otherwise abuse the system
3.2. Prohibited Content Generation
Using AI to create or facilitate the creation of:
- Content that violates the laws of the Russian Federation or international law
- Materials promoting terrorism, extremism, or violence
- Discriminatory content based on race, nationality, gender, religion, disability, or sexual orientation
- Information for planning illegal activities (smuggling, illegal immigration, customs evasion, etc.)
- Knowingly false information that may harm others
- Sexual content involving minors
- Personal data of third parties without their consent
3.3. Technical Abuse
The following is prohibited:
- Automated access — using bots, scrapers, crawlers, or other automated tools to interact with the Service without written permission
- Reverse engineering — decompiling, disassembling, or analyzing the source code or algorithms of the Service
- Infrastructure disruption — DDoS attacks, excessive load creation, vulnerability exploitation
- Circumventing restrictions — attempting to bypass the token system, request limits, regional restrictions, or other technical limitations
- Malware — distributing viruses, trojans, spyware, or other malicious code through the Service
3.4. Commercial Abuse
The following is prohibited:
- Reselling access to the Service or account
- Commercial use of AI-generated content without a separate agreement with JourneyBay
- Creating competing products based on data obtained from the Service
- Mass copying of content (places, recommendations, itineraries) from the Service
- Using the Service for spam distribution or phishing
3.5. Account Abuse
The following is prohibited:
- Creating multiple accounts to bypass restrictions or abuse the trial period
- Transferring account to third parties
- Providing knowingly false information during registration
- Using another person's account without their permission
4. Consequences of Violations
Upon detecting violations, JourneyBay reserves the right to:
- Warning — notification of the violation with a demand to cease
- Feature restriction — temporary restriction of access to specific features (AI chat, itinerary generation)
- Account suspension — temporary blocking of Service access
- Account deletion — permanent termination of Service access without refund
- Content removal — removal of User Content that violates this Policy
- Legal action — referral to law enforcement when criminal activity is indicated
The chosen measure depends on the severity, systematic nature, and character of the violation. JourneyBay is not obligated to provide a warning before taking action in cases of serious violations.
5. Report a Violation
If you discover a violation of this Policy by other users, please report it:
- Email: [email protected]
- Subject: "AUP Violation Report"
Please include: a description of the violation and, where possible, screenshots or other evidence. We will review the report within 5 business days.
6. Responsible Vulnerability Disclosure
If you discover a security vulnerability in the Service, please report it to [email protected] with the subject "Security Vulnerability." We commit to:
- Acknowledging receipt within 48 hours
- Not pursuing legal action against researchers acting in good faith
- Remedying confirmed vulnerabilities within a reasonable timeframe
Please refrain from publicly disclosing the vulnerability until it has been fixed.
7. Changes
We may update this Policy. We will notify you of significant changes through the app or by email. The current version is always available on this page.