1. API access
API access is granted through credentials associated with an AlpineLayer account. Customers are responsible for protecting tokens, rotating compromised credentials and limiting permissions.
2. Rate limits
AlpineLayer may apply request, concurrency or resource limits to protect platform stability. Published limits may vary by endpoint and account tier.
3. Automated actions
Customers are responsible for actions performed with their API credentials, including provisioning, deletion, network changes and costs created by automation.
4. Security
API clients must use secure transport, avoid embedding secrets in public code and follow least-privilege practices.
5. Versions and changes
AlpineLayer should version materially incompatible APIs and provide reasonable migration notice under the Product Lifecycle Policy.
6. Acceptable use
API use is subject to the AUP and may not be used to evade account, fraud, billing or security controls.