Legal & Compliance

Acceptable Use Policy

How Skoolfly systems, data and devices may and may not be used by personnel.

1. Policy Statement

Skoolfly provides systems, data and devices to enable its work. This policy defines acceptable use of those resources so that they are used responsibly, securely and for legitimate purposes.

2. Purpose

The purpose of this policy is to protect Skoolfly's systems and data, prevent misuse, and set clear expectations about how company resources are used.

3. Scope

This policy applies to all personnel and to all Skoolfly-owned resources, including computers, accounts, networks, email, internet access, data and applications. Reasonable personal use that does not conflict with this policy and is incidental to work may be acceptable.

4. Permitted Uses

Using company resources to perform authorised work for Skoolfly and its customers.

Accessing company systems and data in line with access permissions and applicable policies.

Communication that is professional, respectful and consistent with company values.

Limited personal use that does not interfere with duties or create security or legal risk.

5. Prohibited Uses

Unauthorised access to systems, data or resources.

Sharing accounts, credentials or access with others.

Downloading, storing or transmitting illegal or infringing material.

Harassment, discrimination or offensive behaviour through company resources.

Introducing malicious software or circumventing security controls.

Using company resources for personal commercial gain without approval.

Activity that violates law, regulation or contractual obligations.

6. Email and Communication

Email and messaging are used for authorised business purposes.

Sensitive data is sent only through approved, secure channels.

Messages should not be unnecessarily copied or forwarded without need.

Verify recipients before sending, especially for sensitive information.

Avoid opening unsolicited attachments or links from unknown sources.

7. Data Handling and Confidentiality

Personnel handle data in line with its classification and the Data Protection & Privacy Policy. Confidential information is stored, transmitted and disposed of securely, and personal data is used only for authorised purposes.

8. Internet and Social Media

Internet use should support work and not compromise security or performance.

Work-related, sensitive information is not shared publicly without approval.

Social media use should not misrepresent Skoolfly or disclose confidential information.

Downloads are made only from trusted, legitimate sources.

9. Personal Devices and Remote Access

Where personal devices are permitted, they should meet applicable security expectations, including current updates and appropriate access controls, and should not store confidential data unnecessarily. Access to company systems from personal devices follows the Access Control Policy.

10. Monitoring and Auditing

Skoolfly may monitor or audit the use of its systems to protect security, comply with the law and investigate potential misuse. Monitoring is conducted in accordance with applicable law and relevant policies.

11. Consequences of Violation

Violation of this policy may result in corrective action, including restriction of access or disciplinary measures up to and including termination of employment or engagement, and may be referred to the authorities where conduct is unlawful.

12. Review

This policy is reviewed at least annually, or when working practices or legal requirements change significantly.