VendorStacks

Acceptable Use Policy

Effective 2026-08-09 · draft pending legal review

This policy is part of the Terms of Service. It sets out how the data may be used, and — because the data comes from other people’s websites — how we behave when we collect it.

1. What the data is for

Vendor-stack intelligence: understanding which providers a company discloses, sizing markets, qualifying accounts, third-party risk review, and giving agents a factual grounding for the same. Every result carries the quoted evidence and the source URL so you can verify it.

2. Prohibited uses

  • Making decisions about an individual’s employment, credit, housing, insurance, or eligibility for a benefit. This is not a consumer report and may not be used as one.
  • Harassment, doxxing, or building profiles of individual people rather than companies.
  • Sending communications that break applicable marketing, anti-spam, or privacy law in your jurisdiction or the recipient’s — including CAN-SPAM, GDPR/ePrivacy, and the TCPA. A company appearing in the index is not consent to be contacted.
  • Reselling, sublicensing, or republishing the index in bulk, or using it to build a substantially similar competing dataset.
  • Circumventing credit accounting or rate limits — sharing keys across organizations, key rotation to evade limits, or distributed scraping of the API.
  • Anything unlawful, or anything that endangers the service or its other users.

3. How our crawler behaves

  • We fetch only pages that are publicly reachable without authentication.
  • We respect robots.txt and identify ourselves honestly in the user agent.
  • We rate-limit per host and cache aggressively; we would rather be slow than be a burden.
  • We do not attempt to bypass paywalls, logins, or access controls.
  • We store the extracted disclosure text and its source URL as evidence for the results we return.

4. Removal and correction requests

If you represent a company in the index and a page should not be there, or the extraction is wrong, write to josh@grovehillresearch.com or use the support form. Tell us the domain and the URL. We review removal and correction requests promptly and do not require a legal threat to act on one.

5. Enforcement

We may rate-limit, suspend, or terminate access for breach of this policy. Where a breach is inadvertent and quickly fixed, we would much rather email you first — and usually will.

6. Reporting abuse

If you believe someone is misusing VendorStacks data, tell us at josh@grovehillresearch.com.