Terms of Service
DRAFT — placeholder written by engineering on 2026-09-18. Not reviewed by counsel. Not for publication.
This document is a skeleton. Every heading below marks something the platform already does, drawn from the engineering documents named in each section. None of it is legal advice, none of it has been reviewed, and nothing here may be published or presented to a user as the operator's terms until counsel has written the real text. The acceptance machinery (TERMS_VERSION, profiles.terms_version) is live, so whatever replaces this file must carry a new version string.
1. Who we are
The operator of Sotillion, its registered address and its contact address are to be supplied. The product name and domain are settled (docs/development/DECISIONS.md, 2026-09-16): Sotillion, sotillion.com.
2. Eligibility — 18+
Sotillion is an 18-and-over platform. Age is collected at sign-up as a date of birth and eligibility is enforced on the server for every door into an account; an under-18 sign-up creates nothing (docs/security/data-protection.md, "Children"). Date of birth is sensitive personal data and is never returned by any endpoint.
3. Your account
- One account per person. A username may be changed; a released username can be taken by somebody else, and re-signing up after deletion creates a genuinely new account.
- You are responsible for what happens under your account and for keeping your credentials safe.
- Account states and what each one means — deactivate (reversible), anonymise (one-way), delete (14-day grace, then hard delete) — are in §9 below.
4. What Sotillion is, and is not
Sotillion is a platform: a social network, and a marketplace where organizers sell tickets to their own events. Who the seller of record is for a ticket — the organizer or the platform — is an open question for the accountant (docs/architecture/payment-architecture.md, "Tax"; CLAUDE.md "Still open"). This section cannot be written until that is answered, and the answer changes both this document and the invoice.
5. Buying tickets
- Prices are set by the organizer. A service fee and GST are added to the ticket price and shown in the checkout breakdown before payment (
docs/architecture/fee-architecture.md§22). - Seats are held for ten minutes while an order is in progress and released if payment does not complete.
- A ticket is issued only after the payment provider confirms the payment.
- Card details are never received or stored by Sotillion; payment happens on the provider's hosted checkout (
docs/security/data-protection.md, "Payments"). - Refunds are governed by the Refund Policy, which is part of these terms and is disclosed at checkout before purchase (
refund-policy.md;docs/architecture/refund-architecture.mdRule 4).
6. Entry to an event
A ticket admits one person once. Check-in is a single server-side state change: the first scan is accepted, any later scan of the same ticket is refused as already used (docs/architecture/qr-security-architecture.md). Where an event is age-restricted, photo ID may be required at the door by the organizer.
7. Your content and your conduct
Posts, comments, messages, listings and community activity are governed by the Community Guidelines (community-guidelines.md), which are part of these terms. You keep ownership of what you post and grant the platform the licence it needs to display and distribute it on the service — the exact licence wording is counsel's. Moderation outcomes, and the single appeal against each of them, are described in the guidelines.
8. Organizers
An organizer acts through an organization, accepts the Organizer Agreement (organizer-agreement.md) and is bound by it in addition to these terms.
9. Suspension, deactivation and deletion
| Action | Effect | Reversible |
|---|---|---|
| Deactivate | profile and posts hidden; signing in restores it exactly | yes |
| Anonymise | posts stay, credited to "a former member"; the account is gone | no |
| Delete | 14-day grace, invisible and signed out everywhere, then hard delete | during the grace only |
| Suspension (ours) | read-only with a reason and an end date; one appeal, answered within 5 working days; tickets and refunds in flight are unaffected | lifts automatically |
Source: docs/security/data-protection.md, "Account lifecycle". Financial records survive deletion without personal data — see the Privacy Policy.
10. Availability, changes and liability
Uptime commitments, the right to change or withdraw features, limitation of liability, indemnity, warranty disclaimers: all to be written by counsel. Nothing may be asserted here by engineering.
11. Governing law and disputes
To be supplied by counsel (jurisdiction, seat, and whether disputes go to arbitration).
12. Changes to these terms
These terms carry a version string. When it changes, you are asked to accept the new version before continuing to use the app, and the version and the moment you accepted it are recorded against your account. Notice period and the treatment of material changes: counsel.
13. Grievance officer
To be appointed. Name, designation, address and contact address are required before launch by the DPDP Act 2023 and must appear here and in the Privacy Policy (docs/security/data-protection.md, "Data-principal rights"). Response SLA: to be set with counsel.
14. Contact
To be supplied.