Legal

Acceptable Use Policy

Last updated: May 2026

About this policy

This Acceptable Use Policy ("AUP") sets out the rules that apply to anyone who accesses or uses the Black Stripe Platform, the Black Stripe API, the Black Stripe Web Interface, and all associated payment services, together the "Platform". It applies to you, your Authorised Users, your Sub-Clients, and your End-Users.

This AUP forms part of your Master Services Agreement with Black Stripe ("Agreement"). Words defined in the Agreement have the same meaning here. By accessing or using the Platform, you confirm that you have read, understood, and agreed to this AUP. If you do not agree, you must not use the Platform.

We may update this AUP from time to time. We will notify you of material changes via the Website or by email. Continued use of the Platform following any update constitutes your acceptance of the revised policy.

If you have any questions about this AUP, contact us at support@blackstripe.io.

Who can use the Platform?

The Platform is available to businesses only. You must be a legal entity, duly incorporated and in good standing in your jurisdiction of incorporation. Individual consumers may not enter into an Agreement with Black Stripe directly.

To access and use the Platform you must have successfully completed Black Stripe's onboarding and verification process, received confirmation from Black Stripe that your application has been approved, accepted the Agreement including this AUP, and where required, entered into any applicable Service Schedule or Black Stripe Service Partner Agreement.

Access to the Platform is personal to you. You may not resell, sublicense, or otherwise make the Platform available to third parties except as expressly permitted under the Agreement.

Permitted uses

You may use the Platform solely for lawful business purposes in accordance with the Agreement and this AUP. Permitted uses include:

  • sending and receiving domestic and cross-border payments in fiat currencies using the Black Stripe Payment Services;
  • accepting Digital Assets from your End-Users as a payment method during checkout, via the functionality made available on the Black Stripe Platform;
  • accessing and operating your Wallet(s) and Virtual Account(s) to manage your funds and give payment instructions;
  • integrating with the Black Stripe API to connect your own systems to the Platform in accordance with the API Documentation; and
  • downloading and using Reports and transaction data accessible via the Platform for your own internal business purposes.

Prohibited uses

The following uses of the Platform are strictly prohibited. This list is not exhaustive. Black Stripe reserves the right to determine, acting reasonably, whether any activity not listed here falls outside the scope of permitted use.

Financial crime and fraud

You must not use the Platform to engage in, facilitate, or attempt to facilitate money laundering, terrorist financing, or the financing of proliferation of weapons of mass destruction, process payments that are connected to the proceeds of crime or any unlawful activity, conduct transactions designed to evade reporting obligations or circumvent applicable AML or sanctions controls, submit false, misleading, or fraudulent payment instructions or documentation, impersonate another person or entity or misrepresent your identity or the nature of your business, or process payments on behalf of an undisclosed third party or act as a payment intermediary without Black Stripe's prior written approval.

Sanctions and restricted parties

You must not use the Platform to transact with any individual, entity, or jurisdiction that is subject to sanctions administered by the United Nations, the European Union, the United Kingdom Office of Financial Sanctions Implementation ("OFSI"), the United States Office of Foreign Assets Control ("OFAC"), or any other applicable sanctions authority, or to otherwise circumvent or evade applicable sanctions controls.

Prohibited business activities and industries

You must not use the Platform in connection with any of the following business activities or transaction types, regardless of whether they are legal in your jurisdiction:

Financial crime and exploitation

  • darknet marketplaces or services that anonymise financial transactions for illicit purposes;
  • investment fraud, Ponzi schemes, pyramid schemes, or any other fraudulent investment arrangements; and
  • unlicensed money transmission, currency exchange, or payment services.

Regulated activities without authorisation

  • securities, derivatives, or investment products where you do not hold the required regulatory authorisation in the relevant jurisdiction;
  • consumer credit, lending, or debt collection services without the required regulatory licence; and
  • gambling, sports betting, fantasy sports involving real money, lotteries, or sweepstakes, unless you have obtained Black Stripe's prior written approval and hold all required licences.

Harmful, illegal, or exploitative content and services

  • child sexual abuse material or any content that sexually exploits or endangers minors;
  • human trafficking, forced labour, or any form of modern slavery;
  • illegal weapons, firearms, ammunition, or components thereof;
  • controlled substances, illegal drugs, or drug paraphernalia;
  • counterfeit goods, pirated software, or any products that infringe third-party intellectual property rights; and
  • services that facilitate unlawful surveillance, stalking, or harassment.

High-risk or reputationally sensitive activities

  • cryptocurrency exchanges, crypto-to-crypto conversion platforms, or digital asset brokers;
  • initial coin offerings ("ICOs"), token sales, or other unregulated digital asset fundraising activities;
  • adult content or services of a sexually explicit nature; and
  • tobacco, e-cigarettes, or vaping products where restricted by applicable law or regulation, unless expressly approved in writing by Black Stripe.

If you are uncertain whether your business or a specific transaction type is permitted, contact us at support@blackstripe.io before proceeding.

Your obligations as a Platform user

Know your own customers

Where you use the Platform to process payments on behalf of your own End-Users or Sub-Clients, you are responsible for conducting your own customer due diligence and KYC checks on those individuals and entities in accordance with applicable AML law and your obligations under the Agreement. Black Stripe's regulatory checks do not substitute for your own obligations.

Keeping your account secure

You are responsible for keeping your account credentials, API keys, and login information secure and confidential. You must not share credentials with unauthorised individuals, use another person's account or credentials, allow your Authorised Users to share login details with one another, or leave active sessions unattended or accessible to unauthorised persons.

You must notify us immediately at support@blackstripe.io if you suspect that your account, API key, or any credentials have been compromised, or if you become aware of any unauthorised access to or use of the Platform via your account.

Accurate information

You must ensure that all information you provide to Black Stripe, including information provided during onboarding and KYC, information contained in payment instructions, and information about your End-Users and Sub-Clients, is true, accurate, complete, and up to date. You must notify us promptly of any material changes to your business, ownership structure, or the nature of the transactions you process through the Platform.

Compliance with laws

You are responsible for ensuring that your use of the Platform complies at all times with all applicable laws and regulations in every jurisdiction in which you operate or where your End-Users are located. This includes but is not limited to AML and counter-terrorist financing law, payment services regulation, data protection and privacy law, consumer protection law, sanctions and export control law, and tax and financial reporting obligations. Black Stripe's provision of the Platform does not constitute legal or regulatory advice, and you should seek independent advice if you are uncertain about your obligations.

Your End-Users

You are responsible for the actions of your End-Users, Authorised Users, and Sub-Clients on the Platform. You must ensure that they are made aware of and comply with this AUP, that you do not onboard End-Users or Sub-Clients who engage in prohibited activities, and that you have in place appropriate terms of service with your End-Users that are consistent with your obligations under this AUP and the Agreement.

API and technical use

If you access the Platform via the Black Stripe API, you must use the API only in accordance with the API Documentation as published on the Website from time to time. You must not attempt to probe, scan, or test the vulnerability of the Platform or any related system or network, circumvent or disable any security feature, rate limit, or access control on the Platform, reverse engineer, decompile, disassemble, or otherwise attempt to derive the source code or underlying architecture of the Platform, use automated scripts, bots, or crawlers to access the Platform in a manner not authorised by the API Documentation, or introduce malware, viruses, or any other malicious code into the Platform or any connected system.

Monitoring and enforcement

Black Stripe reserves the right to monitor use of the Platform to the extent permitted by applicable law for the purposes of compliance with this AUP, our regulatory obligations, and the Agreement.

If Black Stripe reasonably suspects that you, your Authorised Users, your Sub-Clients, or your End-Users are in breach of this AUP, Black Stripe may take one or more of the following actions, depending on the severity and nature of the suspected breach:

  • issue a written warning and require you to remedy the breach within a specified period;
  • temporarily suspend your access to all or part of the Platform pending investigation;
  • withhold, delay, or reverse specific payment instructions;
  • permanently terminate your access to the Platform and the Agreement in accordance with the termination provisions of the Agreement;
  • report the activity to FINTRAC, the FCA, the KNF, law enforcement, or any other applicable Regulatory Authority as required by law; and
  • take legal action to recover losses or damages suffered by Black Stripe as a result of the breach.

Where we suspend or restrict access to the Platform, we will notify you as soon as reasonably practicable, unless doing so would be prohibited by law, for example, where we are required to file a suspicious activity report and are prevented from tipping you off.

Reporting a breach or concern

If you become aware of any use of the Platform that you believe violates this AUP, including suspected fraud, financial crime, or misuse by another user, please report it to us promptly at:

Black Stripe takes all reports seriously and will investigate in accordance with our internal procedures. We will maintain the confidentiality of reports where possible and to the extent permitted by law.

Liability

Your breach of this AUP may result in liability to Black Stripe and to third parties. You agree to indemnify Black Stripe against all losses, liabilities, costs, and expenses, including legal fees, arising from your breach of this AUP or the Agreement, any prohibited use of the Platform by you or your Authorised Users, End-Users, or Sub-Clients, and any claim by a third party arising from your use of the Platform in violation of this AUP.

The liability provisions of Section B, clause 12 of the Agreement apply to this AUP.

Governing law

This AUP is governed by and construed in accordance with the laws of England and Wales, consistent with the governing law of the Agreement. Any dispute arising out of or in connection with this AUP is subject to the dispute resolution provisions of the Agreement.

Contact us

For any questions about this Acceptable Use Policy, please contact:

General enquiries support@blackstripe.io
Compliance concerns compliance@blackstripe.io
Complaints complaints@blackstripe.io
Website www.blackstripe.io