API and MCP Terms
These terms apply when you use Citeon API keys or the Citeon MCP. They add to our Terms of Service, which still apply in full, including liability, law and courts.
1. Who can use them
API keys and the Citeon MCP are included in the Optimize plan (5,000 calls a month) and the Enterprise plan (25,000 calls a month). A canceled, unpaid or paused subscription has no access; during a failed payment retry access continues. Owners and admins of a workspace create and revoke its keys.
2. What a key gives access to
A key reads one workspace’s Citeon data, read only, through the tools described in the documentation. It cannot change anything in Citeon or read another workspace.
3. Your keys are your responsibility
- Keep keys secret, like passwords. Share them only with people and tools in your organisation that need them.
- You are responsible for what is done with your keys, and for the AI assistants you connect.
- If you think a key has leaked, revoke it in Developers and tell us at hello@citeon.ai.
4. What is allowed, and what is not
You may use the data for your own business, including in reports for your clients if you are an agency.
- Do not resell or republish the data as a data service of your own.
- Do not try to get around the quotas, for example with several workspaces or shared keys.
- Do not test the service’s limits with load or security testing without our written agreement.
- The fair use rules in our Terms of Service apply.
5. Quotas
Calls are counted per billing workspace and reset on the 1st of each month (UTC). Every call that runs counts, including one whose data could not be read. The whoami tool is free, and so is a call refused before it runs. When the quota is reached, calls are refused until it resets. There is no per minute limit today; if we add one, we announce it in the changelog in the documentation first.
6. AI assistants you connect
When you connect an AI assistant, such as Claude, Cursor or VS Code, the data it reads from Citeon is sent to that assistant’s provider. You choose the assistant, and its provider processes the data under its own terms. Text that AI engines wrote, returned by the get_answers tool, is third party content.
7. What we record
For each call we record the tool, whether it succeeded and counted, how long it took, the key, the time and, for a failed call, the error message, never what was asked or returned, and keep it 30 days. We store a one way hash of each key, never the key. Our Privacy Policy has the details.
8. Changes
We may add tools and improve results at any time. Before we remove a tool or change what it returns in a way that can break your use, we announce it in the changelog and by email to workspace owners at least 30 days ahead, except when a change is needed for security or by law.
9. Suspension
We may revoke a key or suspend access if it is used against these terms, puts Citeon or others at risk, or the subscription ends. Where possible we warn you first.
10. Contact
Questions about these terms: hello@citeon.ai.