Back to home

Data Security & Acceptable Use Policy

This policy defines what data may be processed in H2 GOVCON READY and how the platform may be used. It is incorporated into the Terms of Use.

Last updated August 16, 2026

No classified information

H2 GOVCON READY is not authorized for the storage, transmission, processing, or analysis of classified information. Users must not upload Confidential, Secret, Top Secret, SCI, SAP, or other classified government information in any form, including excerpts, derivative summaries, or screenshots.

No CUI, CDI, or export-controlled data

Do not upload Controlled Unclassified Information (CUI), Covered Defense Information (CDI), export-controlled technical data subject to ITAR or the EAR, or other information requiring specialized government security controls unless H2 GOVCON READY has expressly authorized such use in writing.

Suitable content

Use the platform for publicly released and business-owned material, such as:

  • Publicly posted solicitations, attachments, addenda, and Q&A responses.
  • Your own company profile data, capability statements, NAICS codes, and certifications.
  • Your own past performance summaries, resumes, and proposal drafts.
  • Pipeline, deadline, pricing, and teaming information your organization owns.

Prohibited content

  • Classified information at any level, or information derived from classified sources.
  • CUI, CDI, or FCI where your contract requires controls the platform does not provide.
  • Export-controlled technical data under ITAR or the EAR.
  • Personal data beyond what is needed for proposal personnel records — no SSNs, clearance numbers, financial account numbers, or protected health information.
  • Source selection sensitive or procurement sensitive information you are not authorized to hold.
  • Third-party proprietary or confidential data you lack rights to process.

If you discover prohibited data has been uploaded, delete it immediately and notify us at security@govconunlocked.com so we can purge it and follow up.

AI output must be independently verified

Solicitation analysis, extracted dates and NAICS codes, fit scores, compliance matrices, and generated proposal text are produced by AI and may contain errors or omissions. You are responsible for verifying every item against the official solicitation, its addenda, and applicable regulations before submission. Do not treat platform output as legal, contracting, accounting, or compliance advice.

No government affiliation or accreditation claims

H2 GOVCON READY is a private commercial product and is not affiliated with, endorsed by, or operated by the U.S. Government. We do not represent the platform as CMMC compliant, FedRAMP approved, NIST compliant, DFARS 7012 compliant, or government approved, and users may not make those representations on our behalf.

Security responsibilities

  • Use strong, unique credentials and do not share accounts.
  • Remove teammates promptly when they leave your organization.
  • Review uploaded documents for prohibited content before analysis.
  • Report suspected vulnerabilities or unauthorized access to security@govconunlocked.com.

Enforcement

Violations may result in content removal, suspension, or termination without refund, and may be reported to appropriate authorities where required by law.