API terms and conditions
1. Introduction
Welcome to the Vzla.io API. These terms and conditions govern access to and use of our application programming interface (the “API”), including its endpoints, documentation, software development kits and related tools. They are intended for developers who generate an API token and access the product programmatically.
By requesting an API token or sending any request to the API, you agree to these terms. If you are accepting them on behalf of a company or other organization, you confirm that you have authority to bind that organization, and “you” refers to that organization. If you do not agree, do not use the API.
These terms supplement, and do not replace, the general terms and conditions that apply to your use of Vzla.io. The API privacy policy at /legal/api/privacy-policy describes how we process data related to API use.
2. Definitions
In these terms:
- “Vzla.io”, “we”, “us” or “our” refers to the operator of the platform, including its mobile application, website, API and other services.
- “API” refers to the Vzla.io application programming interface and its related endpoints, documentation and tools.
- “Developer”, “you” or “your” refers to any person or organization that registers for, or accesses, the API.
- “API token” (or “API key” or “credential”) refers to the secret value that authenticates your requests to the API.
- “Application” refers to any software, service or integration you build that calls the API.
- “End user” refers to any individual who interacts with your application or on whose behalf you send requests to the API.
3. Eligibility and registration
To use the API you must:
- Be at least 18 years old and have the legal capacity to enter into a binding agreement.
- Hold a valid Vzla.io account in good standing.
- Provide accurate registration information and keep it up to date.
You are responsible for all activity that occurs under your account and your API tokens. You must not share your account, transfer your access to the API, or let anyone use the API on your behalf outside the terms of a lawful agreement for which you remain responsible.
4. API tokens and authentication
Access to the API is authenticated with an API token that you generate from your account.
- Your API token is confidential. Treat it like a password: store it securely, never embed it in client-side code, public repositories, mobile binaries or logs, and never share it with unauthorized parties.
- You are responsible for all requests made with your token, whether or not you authorized them. Requests authenticated with your token are treated as made by you.
- You must transmit tokens and all API traffic over encrypted connections (HTTPS/TLS).
- If a token is lost, exposed or compromised, you must rotate or revoke it immediately from your account and notify us without undue delay at support@vzla.io.
- We may rotate, scope or revoke tokens where necessary to protect the security or integrity of the API.
5. Acceptable use and rate limits
You may use the API only for lawful purposes, in accordance with these terms and any technical documentation we publish.
- The API is subject to rate limits, quotas and other technical constraints that we may set and adjust to protect availability for all developers. You must design your application to respect these limits, handle throttling responses gracefully, and back off when instructed.
- You must not attempt to circumvent rate limits, quotas or access controls, including by using multiple accounts or tokens to exceed a limit.
- You should cache and reuse data where reasonable rather than making redundant requests, and only request the data your application actually needs.
- We may offer different limits or tiers for different plans; the applicable limits are those associated with your account.
6. Prohibited uses
When using the API, you must not:
- Use the API for any unlawful, fraudulent, infringing or harmful purpose.
- Attempt to gain unauthorized access to the API, other accounts, or the systems or networks connected to the API.
- Interfere with, disrupt, overload or impair the API or the infrastructure that supports it.
- Reverse engineer, decompile or attempt to derive source code or non-public aspects of the API, except to the extent this restriction is prohibited by applicable law.
- Resell, sublicense or otherwise make the API available to third parties as a standalone product without our prior written permission.
- Use the API to build a product that materially replicates or competes with Vzla.io, or to scrape or harvest data beyond what the API intends to provide.
- Misrepresent your identity, your application, or your affiliation with Vzla.io.
- Use the API to process data in violation of applicable law or the rights of any person.
7. End-user data and data protection
If your application processes personal data that is obtained through, sent to, or handled in connection with the API, you are responsible for doing so lawfully.
- As between you and Vzla.io, you are the controller of the personal data of your end users, and you determine the purposes and means of your processing. You must have a valid legal basis for that processing.
- You must provide your end users with clear privacy information and obtain any consents required by applicable law before sending their data to the API.
- Where we process personal data on your behalf as part of providing the API, we act as a processor and process it only on your documented instructions and as described in the API privacy policy at
/legal/api/privacy-policy. - Vzla.io operates from the United States but complies with the EU General Data Protection Regulation (GDPR) and equivalent data protection laws by choice. You must likewise comply with the GDPR and any other data protection laws that apply to you, and you must pass through equivalent obligations to anyone acting on your behalf.
- You must implement appropriate technical and organizational measures to protect personal data, and you must not use the API to collect or process special categories of data or children’s data unless you are lawfully permitted to do so.
- You must promptly assist us, and we will assist you, in responding to data subject requests and security incidents to the extent relevant to data processed through the API. Report security incidents to privacy@vzla.io.
8. Availability, changes and deprecation
We work to keep the API available and reliable, but we provide it on an evolving basis.
- We may add, change, deprecate or remove endpoints, parameters, fields or features of the API. Where a change is likely to break existing integrations, we aim to give reasonable advance notice through our documentation, changelog or the contact details associated with your account.
- We may set, and later change, versioning and deprecation policies. You are responsible for keeping your application compatible with supported versions and for migrating away from deprecated functionality within any notice period.
- The API may be unavailable during maintenance, updates or events outside our reasonable control. We do not guarantee any specific level of availability unless separately agreed in writing.
9. Intellectual property
The API, its documentation, and all related software and materials are owned by Vzla.io or its licensors and are protected by intellectual property laws.
- We grant you a limited, non-exclusive, non-transferable, revocable license to access and use the API solely to build and operate your application in accordance with these terms.
- This license does not transfer any ownership rights and does not grant you any right to our trademarks, logos or branding except as we expressly permit.
- You retain ownership of the application you build and of your own data, subject to our rights in the API and the data it provides.
10. Disclaimers and limitation of liability
The API is provided “as is” and “as available,” without warranties of any kind, whether express or implied, including any implied warranties of merchantability, fitness for a particular purpose, accuracy or non-infringement.
To the maximum extent permitted by applicable law, Vzla.io is not liable for:
- Any indirect, incidental, special, consequential or punitive damages, or any loss of profits, revenue, data or goodwill.
- Damages caused by your use or misuse of the API, or by your application.
- Errors, inaccuracies or interruptions in the API, or issues arising from third-party services connected to it.
Nothing in these terms excludes or limits liability that cannot be excluded or limited under applicable law, including mandatory consumer and data protection rights available to individuals in the European Union.
11. Suspension and termination
We may suspend, throttle, restrict or terminate your access to the API, in whole or in part:
- If we detect misuse, abuse, security risk, or a violation of these terms.
- If required to protect the API, our other developers, end users or third parties.
- If required by law or by a regulatory authority.
Where practical and lawful, we will give notice before suspending or terminating access, but we may act immediately where necessary to address a serious or urgent risk. You may stop using the API and revoke your tokens at any time. On termination, the licenses granted to you end and you must stop using the API; provisions that by their nature should survive (including intellectual property, disclaimers, liability limits and governing law) continue to apply.
12. Governing law
These terms are governed by the laws of the State of Wyoming, United States, without regard to its conflict-of-law rules, and the courts located there have jurisdiction over any dispute. This choice of law and forum does not deprive individuals in the European Union of the mandatory protections of the GDPR and other applicable consumer and data protection laws of their country of residence.
13. Changes to these terms
We may update these terms at any time. We will notify you of significant changes through our documentation or the contact details associated with your account, but it is your responsibility to review this page periodically. If you continue using the API after an update takes effect, you are considered to have accepted the new terms.
14. Contact
For questions about these terms or technical support with the API, contact support@vzla.io. For legal matters, contact legal@vzla.io. For privacy and data protection matters, contact privacy@vzla.io.