API Terms of Service
1. Eligibility
The GEXBoard API (the “API”) is sold exclusively as a paid add-on to an active Pro or Trader subscription. There is no standalone API tier. Your right to call the API exists only while both your base subscription and your API add-on are in good standing. Cancellation or lapse of either ends your right to use the API.
This eligibility requirement is structural — it derives from our market data licensing agreement, which authorizes derivative API access only for active GEXBoard subscribers.
2. API Keys & Authentication
Each API key (gxb_live_*) is issued to one paying account. You agree to:
- Treat your key as you would a password — store it in a secrets manager, environment variable, or vault
- Never share, publish, embed in client-side code, or transmit your key to any third party
- Rotate your key (regenerate) immediately if you believe it has been exposed
- Not maintain multiple active keys outside the regeneration flow we provide
You are responsible for all calls made with your key, whether or not authorized by you. Loss of a key is not grounds for refund of consumed API usage; rotate and re-issue from /account.
3. Acceptable Use
You may use the API to support your own internal trading, research, alerts, dashboards, or single-team operations. Specifically permitted:
- Personal trading bots that consume API data to inform your own positions
- Slack / Telegram / email alert pipelines for you or your immediate team
- Internal dashboards combining GEXBoard data with your own data feeds
- Backtesting and quantitative research within your own organization
- One-off scripts, notebooks, and academic use
4. Prohibited Use
You agree NOT to, and not to allow any third party to:
- Redistribute or resell any API response, derived data, or aggregated dataset to anyone outside your own organization, whether for free or for compensation
- Mirror, proxy, or repackage the API as your own product or service (white-label, wrapped API, paid newsletter feed, etc.)
- Build competing products that replicate GEXBoard's methodology, calculations, or visualizations using API data as the source
- Train machine learning models on API responses for any purpose where the trained model, its outputs, or derived signals are sold, licensed, or distributed externally
- Mass-scrape, enumerate, or systematically harvest across tickers, timeframes, or contracts beyond what your trading or research workflow reasonably requires
- Attempt to reverse engineer the gamma exposure, dealer-positioning, or wall-detection methodologies that produce our outputs
- Share, lend, or sublicense your API key — one key, one paying account
- Circumvent or attempt to defeat rate limits, tier gates, or any other access control
- Use the API in any manner that would violate our market data provider's terms (including but not limited to redistributing real-time options data to non-subscribers)
5. Rate Limits & Throttling
Per-tier rate limits are published at gexboard.com/api-docs/reference and are enforced server-side. We may change limits with reasonable notice (minimum 14 days for material reductions; immediately for security or abuse).
We reserve the right to throttle, suspend, or terminate access without prior notice if your usage materially exceeds documented limits, threatens service stability, or appears to be automated abuse (e.g. credential stuffing, mass enumeration, distributed key sharing).
5.1 Cookie-Authenticated Surface — Strictly Off-Limits to API Subscribers
The browser dashboards at /radar, /heatmap, /greeks, /premium-map, etc., and the supporting /api/* JSON endpoints they consume, are cookie-authenticated for browser use only. They are not part of the API Addon surface.
Programmatic, automated, or scripted access to the cookie-authenticated surface is prohibited under our general Terms of Service (Section 9.1). API Addon subscribers are additionally bound by this restriction: holding an API Addon subscription does not permit you to script the cookie-authenticated browser endpoints. The two surfaces are distinct in licensing, rate limits, and acceptable use.
If you find yourself wanting data the API Addon does not currently expose, contact us directly and we will discuss extending coverage. Do not work around the gap by scripting your browser session.
5.2 Enforcement — Consequences of Violation
Violations of Sections 4, 5, 5.1, or 7 are treated as material breach and may be enforced through any combination of the following actions, at our sole discretion and without prior notice or opportunity to cure:
- Immediate API key revocation with no refund of the current billing period (or any pre-paid future periods)
- Termination of the underlying GEXBoard subscription as well, with no refund
- Permanent blocklist of your email, payment methods, and Stripe customer record — future signup attempts are refused
- IP address blocking at our application layer, web server layer, and via public abuse databases including AbuseIPDB
- Stripe Radar fraud designation — your customer record and payment methods are flagged across the entire Stripe network as fraud-risk, affecting your ability to subscribe to unrelated services using Stripe payments. We do not control this designation once submitted and we do not guarantee its reversal.
- Formal abuse complaints to your internet service provider — identified via WHOIS records of the originating IP — with a complete log of the activity that constitutes the violation
- Civil and criminal recourse for damages, including but not limited to investigation costs, computing resources consumed, lost API Addon revenue from the displaced legitimate subscription, and reputational harm. We reserve the right to pursue all available remedies in any jurisdiction where you may be reached.
By using the API or any GEXBoard endpoint, you acknowledge and consent to each of these measures in advance. Resubscribing under a new email, payment method, IP address, or other identifier to continue or resume prohibited activity is itself a separate violation and is treated as payment fraud for the purposes of Stripe reporting under Section 5.2 above.
6. Service Provided “As Is”
The API is provided “as is” and “as available” without warranties of any kind, express or implied, including but not limited to merchantability, fitness for a particular purpose, accuracy, completeness, or non-infringement.
We do not guarantee uptime, latency, freshness of any individual data point, or the absence of bugs. Pro API tier does not include a service-level agreement (SLA). Trader API tier targets 99.5% monthly uptime and 24-hour email response on support, but these are targets, not contractual guarantees in the absence of a separately signed SLA addendum.
7. Not Investment Advice; No Trading Liability
API responses convey market data and derived analytics. They are not investment advice, recommendations, signals, or solicitations. We are not a registered investment adviser, broker-dealer, or fiduciary. You are solely responsible for any decisions you make using the API, including all trading losses.
Trading involves substantial risk of loss. Past data does not predict future outcomes. You acknowledge that algorithmic or systematic trading using API data can amplify losses as well as gains and that bugs in your code, latency in our service, or stale data may produce outcomes you did not intend.
8. Data Source & Flow-Down Obligations
Our API responses are derived from third-party market data licensed to GEXBoard for service to active subscribers (often called “Edge Users” in our upstream agreement). You agree that:
- You are an Edge User of GEXBoard, not of our upstream data provider
- You hold no direct license to the underlying market data and may not claim one
- You will comply with any redistribution, retention, or audit obligations we communicate to you that flow from our upstream agreement
- If our upstream license materially changes, we may need to modify these terms or the API itself; we will provide reasonable notice when feasible
9. Termination
We may suspend or terminate your API access:
- For breach of these terms or the main Terms of Service, with notice where reasonable and immediately for material or repeated breaches
- For non-payment of your base subscription or the API add-on charge, after standard Stripe dunning has failed
- For security or fraud concerns, with immediate effect and prompt notification
- At our discretion, with at least 30 days' notice for non-cause termination, including a pro-rated refund of unused API add-on fees
You may cancel the API add-on at any time from /account. Cancellation revokes your active key effective immediately upon Stripe confirming the subscription item removal; data already pulled is yours to retain and use within your own organization, subject to Section 4.
10. Modifications to These Terms
We may update these terms from time to time. Material changes (new prohibitions, reduced limits, jurisdictional changes) will be communicated by email to your account address with at least 14 days' notice. Continued use of the API after the effective date constitutes acceptance. If you disagree with a change, your remedy is to cancel the add-on before the effective date.
11. Limitation of Liability
To the maximum extent permitted by applicable law, our total aggregate liability arising from or related to your use of the API — whether in contract, tort, statute, or otherwise — will not exceed the amount you paid for the API add-on in the twelve (12) months preceding the event giving rise to liability. We are not liable for indirect, incidental, consequential, special, or punitive damages, including lost profits, lost trading opportunities, or trading losses.
12. Governing Law
These supplemental terms shall be governed by and construed in accordance with the laws of Mexico, without regard to its conflict of law provisions, consistent with the main Terms of Service. Any disputes shall be resolved in the courts of competent jurisdiction in Mexico.
13. Contact
Questions about these terms, custom enterprise quotes, or compliance requests: contact@gexboard.com. We aim to respond within 24 business hours.