CONTROLLED EARLY ACCESS RELEASE — Authorized Test Users OnlyRequest access
Legal

Terms of Service

Terms governing access to and use of the Sirat Bridge multi-tenant operational SaaS platform.

Last updated: June 5, 2026Version: 1.2.0

Business contact

Sirat Bridge LLC
Registered address: 18429 Veterans Memorial Drive E, Bonney Lake, WA 98392, United States
Mailing address: P.O. Box 7024, Bonney Lake, WA 98391, United States
Phone: (323) 209-5682
Business hours: Monday – Friday, 8:00 AM – 5:00 PM Pacific Time
Legal: legal@siratbridge.net · Compliance: compliance@siratbridge.net · Support: support@siratbridge.net

Platform terms

The Sirat Bridge platform is currently provided as a Controlled Early Access Release serving operational organizations across customer communications, workflow automation, document management, AI-assisted operations, logistics, and customer operations. Service availability, features, and pricing may change. Early Access participants accept that data may be migrated, exported, or reset as part of progressing the platform to general availability, with reasonable advance notice.

Platform Provider vs Tenant Organization responsibilities

Sirat Bridge LLC ("Platform Provider") operates the platform infrastructure, security controls, and processing engine. Each "Tenant Organization" is responsible for lawful use within its workspace, internal access provisioning, customer notices, consent capture, and compliance with regulations that apply to its own operations.

Acceptable use

  • Use the platform only for lawful operational, communications, workflow, and document-management purposes
  • Do not attempt to access other tenants' data, bypass RLS, or probe the platform without authorisation
  • Do not use the platform for sanctioned-party activity or operations prohibited by applicable law
  • Do not upload malware, illegal content, or content that infringes third-party rights
  • Do not use AI-assisted features to generate deceptive, harassing, defamatory, or unlawful content
  • Do not use automated communications to circumvent consent, opt-out, or calling-window controls

Messaging & communications terms

By using Sirat Bridge, tenant administrators and their invited users consent to receive operational SMS, voice, and email notifications necessary for platform security, operational events, and onboarding. Customers who provide a phone number through a Tenant Organization consent to receive operational updates from that organization via the platform.

  • Consent must be obtained before sending any promotional communications
  • All operational messaging must include clear opt-out instructions
  • Tenants are responsible for maintaining accurate contact information and honoring opt-out requests promptly
  • Sirat Bridge reserves the right to suspend messaging capabilities for tenants that violate carrier policies or generate complaints

Full SMS policy details are available in our SMS Consent & Communications Policy.

Automated & AI-assisted communications

Tenants may configure Sirat Bridge to place outbound voice, SMS, or email communications generated wholly or in part by automated systems and AI assistants. Tenants are responsible for ensuring such communications:

  • Identify themselves as automated or AI-assisted where required by applicable law
  • Honor calling-window, DNC, and opt-out controls enforced by the platform
  • Provide a clear path to a human representative on request
  • Do not impersonate any individual or entity

Tenant responsibilities

  • Maintain accurate organization, staff, and customer records
  • Promptly revoke access for departing staff
  • Ensure customer-facing data is processed in accordance with applicable privacy law
  • Keep contact and billing information current
  • Honor all opt-out and communication-preference requests from customers
  • Respond to data subject rights requests originating from your customers

Governance & Compliance

Sirat Bridge's control framework is designed to align with SOC 2 Trust Services Criteria, NIST CSF, and CIS Controls v8. Core mechanisms include MFA, append-only audit logging, least-privilege RBAC, Row-Level Security data isolation, webhook signature verification, calling-window enforcement, and DNC suppression. Tenants must enrol MFA for administrators, protect credentials, and report security incidents promptly. Account sharing is prohibited.

Data Subject Rights

Sirat Bridge supports tenant fulfillment of access, rectification, erasure, restriction, portability, objection, and consent-withdrawal requests as described in the Privacy Policy. Tenants remain the primary point of contact for their own customers.

Data Retention & Deletion

Default retention schedules and deletion timelines are defined in the Privacy Policy. Tenants may configure shorter or longer retention within legal limits. Upon termination, tenant data is purged within 30 days, subject to legal-hold obligations.

Operational conduct

Tenants must communicate accurate operational statuses to their customers and not use the platform to misrepresent service state, document authenticity, or regulatory status.

Account restrictions

Sirat Bridge may suspend or terminate access for breaches of these terms, security incidents originating from a tenant, or non-payment of fees once general availability commences. Material enforcement actions are recorded in the audit log.

Report a Vulnerability

Security disclosures: security@siratbridge.net. We aim to acknowledge reports within one business day.

Disclaimer

The Controlled Early Access Release platform is provided on an "as-is" basis without warranties of merchantability or fitness for a particular purpose. Tenants remain responsible for their own carrier, regulatory, and customer obligations.

Contact