Legal and governance

Draft legal framework for an AI-powered delivery marketplace.

These policies make the AI delivery model, buyer review duties, payment limitations, data handling, and governance gates visible before public production.

Draft legal notice

Draft policy for product development. Not legal advice. Attorney review is required before public production launch. Public production launch remains blocked until legal review and operational blockers are resolved.

Policies

14

Attorney review open

14

Compliance score

42%

Public production

NO_GO

draft

Terms of Service

Draft marketplace terms for AI-assisted services, buyer responsibilities, account use, project lifecycle, and launch limitations.

Version 0.1.0-draft - Last updated 2026-05-14

draft

Privacy Policy

Draft privacy policy for accounts, projects, generated files, audit events, telemetry, AI processing, and deletion requests.

Version 0.1.0-draft - Last updated 2026-05-14

draft

AI Delivery Disclosure

Clear disclosure that DesirForge uses an automated AI delivery workforce and does not present hidden human freelancers.

Version 0.1.0-draft - Last updated 2026-05-14

draft

Acceptable Use Policy

Draft rules for allowed and prohibited requests, uploads, AI-generated outputs, abuse, security misuse, and regulated work limitations.

Version 0.1.0-draft - Last updated 2026-05-14

draft

Refund and Cancellation Policy

Draft policy for cancellation windows, refund review, revision paths, payment mode limits, and non-guaranteed outcomes.

Version 0.1.0-draft - Last updated 2026-05-14

draft

Dispute Resolution Policy

Draft dispute process for scope disagreements, deliverable review, acceptance criteria, audit evidence, and operator escalation.

Version 0.1.0-draft - Last updated 2026-05-14

draft

IP Ownership Policy

Draft IP policy for buyer-provided materials, generated deliverables, third-party dependencies, open-source notices, and ownership transfer timing.

Version 0.1.0-draft - Last updated 2026-05-14

draft

Marketplace Review Policy

Draft rules for buyer reviews, moderation, review integrity, AI disclosure in reviews, and abuse handling.

Version 0.1.0-draft - Last updated 2026-05-14

draft

Buyer Conduct Policy

Draft buyer conduct expectations for accurate intake, safe uploads, review responsibility, and respectful marketplace use.

Version 0.1.0-draft - Last updated 2026-05-14

draft

Expert Delivery Team Policy

Draft policy for DesirForge expert-style AI delivery team profiles, operator review, profile accuracy, and non-deceptive positioning.

Version 0.1.0-draft - Last updated 2026-05-14

draft

Payment and Commercial Terms

Draft payment terms covering package pricing, platform fees, tax estimates, provider mode, invoices, payment events, and beta limitations.

Version 0.1.0-draft - Last updated 2026-05-14

draft

Data Retention Policy

Draft retention defaults for accounts, projects, generated files, audit events, logs, backups, launch evidence, deletion requests, and legal holds.

Version 0.1.0-draft - Last updated 2026-05-14

draft

Cookie and Tracking Notice

Draft cookie notice for sessions, CSRF/origin controls, preferences, operational metrics, logs, and future analytics.

Version 0.1.0-draft - Last updated 2026-05-14

draft

Accessibility Statement

Draft accessibility statement with WCAG 2.1 AA target, known limitations, reporting process placeholder, and ongoing improvements.

Version 0.1.0-draft - Last updated 2026-05-14

Compliance readiness matrix

Closed beta is conditional. Public production remains blocked.

Privacy

Privacy and Security

Attorney review

Public production blocked until privacy policy, processors, deletion workflow, and retention defaults are reviewed.

AI Disclosure

Trust and Safety

Partial

Closed beta can proceed conditionally with visible AI disclosure; public production needs legal approval.

Payment Terms

Finance and Marketplace Operations

Attorney review

Live payments blocked until provider, tax, refund, and dispute terms are approved.

Dispute Process

Marketplace Operations

Partial

Public production requires formal escalation, evidence export, and counsel-reviewed dispute terms.

Refund Process

Marketplace Operations

Partial

Live refunds require payment provider validation and reviewed cancellation rights.

IP Ownership

Legal and Marketplace Operations

Attorney review

Public production blocked until generated-output ownership and dependency/license terms are approved.

Data Retention

Privacy and Security

Partial

Public production requires approved deletion and legal hold process.

Security Controls

Security

Partial

Security smoke must remain passing and production secrets must be configured before launch.

Audit Logging

Platform

Implemented

Audit evidence supports governance, dispute, and acceptance tracking.

File Uploads/Scanning

Security and Platform

Blocked

Production storage/file scanning remains a blocker before public production.

Observability

Operations

Partial

Observability stack must be started and validated before public production.

Backup/Restore

Operations

Partial

Restore drill must be executed before public production.

Accessibility

Product

Partial

Public launch should include audit evidence and a reporting channel.

Cookies/Tracking

Privacy and Security

Partial

Non-essential analytics require consent UX and policy update before public use.

User Deletion

Privacy and Platform

Not started

Deletion requests require operational workflow before public production.

Vendor Management

Operations

Not started

Public production requires provider inventory and DPAs where applicable.

Incident Response

Security and Operations

Partial

Incident runbooks exist but tabletop evidence remains needed for public production.

Rollback

Operations

Partial

Rollback check remains conditional until previous release/image pointer is configured.

Prisma package metadata

Platform

Partial

Low-risk technical debt; does not block closed beta.