1. Definitions
"AllowNow", "we", "us", or "our" refers to AllowNow, the operator of the AllowNow platform available at allownow.eu.
"Service" means the AllowNow web application, API, and related services.
"Customer", "you", or "your" refers to the organisation or individual that has registered an account on the Service.
"Users" means individual persons who access the Service under a Customer's account, including administrators, reviewers, and implementors.
"Customer Data" means any data uploaded to or generated within the Service by the Customer, including user records, access assignments, and compliance reports.
"Subscription" means a paid or free plan providing access to the Service.
2. The Service
AllowNow provides an access compliance management platform that enables organisations to track user access to services, conduct periodic access reviews, generate audit-ready reports, and manage compliance with frameworks including SOC 2, ISO 27001, PCI DSS, HIPAA, and GDPR.
We reserve the right to modify, update, or discontinue features of the Service at any time. Where material changes are made that affect paid Subscriptions, we will provide reasonable advance notice.
The Service is provided on an "as is" and "as available" basis. We make no warranties that the Service will be uninterrupted or error-free, but we commit to reasonable efforts to maintain availability and security.
3. Accounts and Eligibility
You must be at least 18 years old and acting on behalf of a legally existing organisation to create an account. By registering, you represent that you have the authority to bind your organisation to these Terms.
You are responsible for maintaining the confidentiality of your account credentials and for all activity that occurs under your account. You must notify us immediately at [email protected] if you suspect unauthorised access.
Sign-in is provided through Google Workspace and Microsoft Entra ID (OAuth 2.0). We do not accept personal email addresses (e.g. Gmail, Hotmail, Yahoo) as a security measure — access is restricted to verified corporate email domains.
You may not create accounts for the purpose of reselling, abusing free tier limits, or circumventing restrictions. We reserve the right to refuse registration or terminate accounts that violate this policy.
4. Acceptable Use
You agree to use the Service only for lawful purposes and in accordance with these Terms. You must not:
- Use the Service to store or process data in violation of applicable laws, including data protection laws;
- Attempt to gain unauthorised access to any part of the Service or its infrastructure;
- Introduce malware, viruses, or any harmful code into the Service;
- Use automated tools to scrape, crawl, or extract data from the Service beyond normal API usage;
- Misrepresent your identity or your organisation's identity;
- Use the Service to infringe the intellectual property rights of any third party;
- Resell, sublicence, or make the Service available to third parties outside your organisation without written permission.
Breach of this section may result in immediate suspension or termination of your account without notice.
5. Payment and Billing
Paid Subscriptions are billed through Stripe, a third-party payment processor. By subscribing, you authorise AllowNow to charge your payment method through Stripe in accordance with the plan you have selected.
Subscription fees are charged in advance on a monthly or annual basis, depending on your plan selection. All prices are quoted excluding VAT where applicable. Irish VAT may be applied at the prevailing rate for EU customers.
If a payment fails, we will notify you and provide a grace period to update your payment details. After the grace period, your account may be downgraded or suspended until payment is resolved.
Refunds are not provided for partial billing periods. If you cancel, your Subscription remains active until the end of the current billing period. We do not provide pro-rated refunds for early cancellation.
We reserve the right to change Subscription pricing with 30 days' notice. Continued use of the Service after a price change constitutes acceptance of the new pricing.
6. Your Data and Data Retention
You retain ownership of all Customer Data uploaded to or generated within the Service. By using the Service, you grant AllowNow a limited licence to store, process, and display your Customer Data solely for the purpose of providing the Service to you.
Data retention: AllowNow retains Customer Data for a maximum of 24 months (2 years) from the date of creation or last modification. After this period, data may be automatically purged. For active Subscriptions, data is retained for the duration of the Subscription plus 24 months.
Right to access: You have the right to request a complete export of all Customer Data associated with your account at any time. To request a data export, contact us at [email protected]. We will provide the export in a machine-readable format within 30 days.
Right to deletion: You have the right to request deletion of your account and all associated Customer Data. To request deletion, contact us at [email protected]. We will process deletion within 30 days, subject to our legal obligations to retain certain records. Deletion is irreversible.
Legal data requests: You have the right to receive a copy of any personal data we hold about you as required under applicable data protection law, including GDPR and UK GDPR. Requests should be directed to [email protected] and will be processed within the statutory timeframe (one calendar month).
We implement appropriate technical and organisational measures to protect Customer Data, including encryption at rest and in transit, access controls, and regular security reviews.
7. Privacy and Cookies
AllowNow is committed to privacy. We collect only the data necessary to provide the Service:
- Account information (name, corporate email, organisation name) collected at registration;
- Customer Data you upload (user records, access assignments, notes);
- Usage data necessary to operate the Service (authentication logs, error reports);
- Payment information processed by Stripe — we do not store card details.
We do not sell, rent, or share your personal data with third parties for marketing purposes. We do not use advertising networks or tracking pixels.
Cookies: AllowNow uses only essential cookies required for authentication and session security. We do not use tracking, analytics, or advertising cookies. No third-party cookie consent is required because we do not deploy non-essential cookies.
For GDPR-related enquiries, contact our data protection contact at [email protected].
8. Intellectual Property
The Service, including its software, design, trademarks, and content, is owned by AllowNow and protected by applicable intellectual property laws. These Terms do not grant you any ownership rights in the Service.
You retain all intellectual property rights in your Customer Data. You grant us no rights beyond those necessary to operate the Service.
Feedback, suggestions, or ideas you provide about the Service may be used by us without obligation of confidentiality or compensation.
9. Service Availability
We target high availability for the Service but do not guarantee uninterrupted access. Planned maintenance will be communicated in advance where possible. We are not liable for downtime caused by factors outside our control, including third-party service failures, network outages, or force majeure events.
We reserve the right to modify the Service, including removing or replacing features, with reasonable notice where the change materially affects paid Subscriptions.
10. Termination
By you: You may cancel your Subscription at any time through your account settings or by contacting [email protected]. Cancellation takes effect at the end of the current billing period.
By us — for breach: We reserve the right to suspend or permanently terminate your account and access to the Service without prior notice if we determine, at our sole discretion, that you have breached these Terms. This includes but is not limited to: violation of the Acceptable Use Policy (Section 4), fraudulent activity, non-payment, or use of the Service in a manner that poses a risk to other customers or to the platform's integrity.
By us — for convenience: We may terminate your account with 30 days' notice if we decide to discontinue the Service or a particular feature. In such cases, we will provide a data export and, for paid Subscriptions, a pro-rated refund for the unused portion of the billing period.
Effect of termination: Upon termination, your right to access the Service ceases immediately. We will retain your Customer Data for up to 30 days after termination to allow you to request an export, after which it will be deleted subject to our legal retention obligations.
11. Limitation of Liability
To the maximum extent permitted by applicable law, AllowNow's total cumulative liability to you for any claims arising from or related to these Terms or the Service shall not exceed the greater of: (a) the amount you paid for the Service in the 12 months preceding the claim, or (b) €100.
In no event shall AllowNow be liable for indirect, incidental, consequential, special, or punitive damages, including loss of profits, data, goodwill, or business opportunity, even if we have been advised of the possibility of such damages.
Nothing in these Terms excludes or limits liability for death or personal injury caused by negligence, fraud, or any other liability that cannot be limited by law.
12. Governing Law and Disputes
These Terms are governed by and construed in accordance with the laws of Romania. Any disputes arising from these Terms or your use of the Service shall be subject to the exclusive jurisdiction of the courts of Romania.
Before initiating legal proceedings, we encourage you to contact us at [email protected] to resolve any dispute informally. We will make reasonable efforts to resolve disputes within 30 days of receiving written notice.
If you are a consumer based in the EU, you may also refer disputes to the European Commission's Online Dispute Resolution platform.
13. Contact
For any questions about these Terms, data requests, or legal enquiries:
These Terms & Conditions were last updated on 22 May 2026. We reserve the right to update these Terms at any time. Material changes will be communicated by email to registered account holders at least 14 days before the change takes effect. Continued use of the Service after the effective date of any change constitutes acceptance of the updated Terms.