PROHIBITED DATA + PURPOSES / VERSION 2026-07-22-US-NC-B2B-v1
If the boundary is uncertain, do not submit.
SCREENING IS NOT A GUARANTEE. Pattern checks reject common restricted-data indicators but cannot identify every prohibited item. The user remains responsible for authorization, minimization, classification, and permitted purpose.
01 / NEVER SUBMIT
Public forms and API routes reject these data classes.
PERSONAL + REGULATEDIdentifying records
- Protected health, medical diagnosis/treatment, genetic, or biometric information
- Government ID, Social Security, tax ID, personal address, or precise geolocation
- Children's, educational student, consumer credit, insurance, employment-selection, or criminal-justice records
- Unredacted personal datasets or data the user lacks authority to submit
PAYMENT + SECURITYSecrets and access
- Payment-card or bank-account information
- Authentication credentials, passwords, API secrets, or private cryptographic keys
- Source repositories, source-code uploads, production database exports, executables, archives, or malware
- Remote URLs, cloud-storage links, repository links, or any instruction to fetch or execute
CONFIDENTIAL + CONTROLLEDProtected material
- Legal-client privileged material or confidential client files
- Classified, export-controlled, or controlled-unclassified information
- Trade secrets belonging to another party
- Weapon-development information or safety-critical control instructions
02 / NEVER USE FOR
No regulated, determinative, or high-consequence decision.
INDIVIDUAL RIGHTSNo eligibility decisions
- Medical diagnosis or treatment
- Legal advice
- Financial or investment advice
- Credit decisions
- Insurance eligibility or pricing
- Employment hiring, firing, or promotion
- Housing eligibility
- Education admissions
- Immigration decisions
SAFETY + STATE POWERNo control or surveillance
- Criminal-justice decisions
- Biometric identification
- Critical-infrastructure control
- Physical safety systems
- Weapons
- Law-enforcement surveillance
- Child-directed services
APPROVALNo authoritative conclusion
- Certification
- Compliance approval
- Autonomous high-consequence decisions
- Sole or determinative basis for a consequential decision
- Production authorization, safety approval, or guaranteed result
03 / SAFE INPUT
Use non-identifying labels and bounded summaries.
Permitted API structures use short descriptions, enumerated categories, bounded integer metrics, categorical observations, small arrays, customer-supplied summaries, and non-identifying labels under a fixed internal_evaluation / public-or-internal / non_consequential context. Use the local tools to remove unnecessary content before any authenticated submission.
If custom evidence, private-system access, confidential files, independent reproduction, or production observation may be required, stop public submission and request a separately signed manual scope. That request does not authorize transfer.