We do not monitor the content of workspaces. We act on reports, on signals from our security tooling, and on orders from authorities. When we learn of a likely violation we may, proportionately to the harm:
- ask the Customer to fix it;
- remove or disable access to the specific content;
- revoke a token, an OAuth grant or an integration;
- suspend a User or the workspace, in line with the Terms of Service; or
- report illegal content to the authorities where the law requires it.
We will tell the Customer what we did and why, with the facts we relied on, unless the law or an authority forbids it or telling them would create a security risk. You can ask us to reconsider by replying to that notice; a person who was not involved in the original decision will review it.