General Terms and Conditions

Version 2.0
Status: September 2024

These Terms of Use ("Terms") govern the use of the BlueID SaaS solution ("Service") and the associated platforms ("Platform") and contain the rules, guidelines, and obligations of all users, organizations, and integrators who access or use the Service. These Terms are an integral part of the overarching contractual documents (including the framework agreement, the General Terms and Conditions, as well as the Service Level Agreements).

1. Purpose and Scope

1.1 These Terms of Use govern the use of the BlueID SaaS solution ("Service") as well as the associated platforms ("Platform") and form an integral part of the overarching contractual documents (e.g., framework agreement, General Terms and Conditions, Service Level Agreements).

1.2 The purpose of these Terms is to ensure the proper and secure use of the Service, protect its integrity and performance, and secure a lawful usage environment for all parties involved.

1.3 These Terms apply to all users, including end users, organizational administrators, and integrators.

2. Definitions

For the purposes of these Terms, the following definitions apply:

  • Service: The BlueID SaaS solution, including all functionalities, applications, and associated services.
  • Platform: The technical infrastructure that enables the operation and management of the Service.
  • User Content: All data, content, and information that is uploaded or provided via the Service.
  • End User: Any person who directly interacts with the Service.
  • Organizations and Tenants: "Organizations" refer to the entities set up by the customer to manage access rights. "Tenants" refer to additional organizational units established within the Service.
  • Customer Data: All data provided or uploaded by the customer.
  • Aggregated Data: Data derived from customer data for statistical or operational purposes, including the improvement of the Service.
  • Documentation: The technical specifications, system requirements, and usage instructions from BlueID, available at BlueID Documentation.
  • Rates: The pricing plans and cost structures as specified in the respective order forms.

Terms not defined in these Terms have the meaning assigned in the overarching contractual documents.

3. Acceptance and Scope

3.1 By accessing or using the Service, the user declares that they have read, understood, and accepted these Terms of Use as well as all contractual documents referenced therein.

3.2 Integrators and customers must align their internal policies with these Terms; in the event of a conflict, these Terms shall take precedence.

4. Permitted Use and Prohibited Actions

4.1 Permitted Use

4.1.1 The Service is provided exclusively for managing access rights, controlling and monitoring BlueID-enabled locks, as well as using the functionalities specified in the order form and the documentation.

4.1.2 The use of the Service is to be carried out solely in accordance with applicable laws, regulations, and the contractually agreed purpose.

4.2 Prohibited Actions

4.2.1 It is not permitted to license, sublicense, sell, resell, transfer, assign, distribute, or otherwise commercially exploit the Service or parts thereof, unless such use is explicitly permitted.

4.2.2 It is not allowed to modify, decompile, analyze, or create derivative works from the Service in any way.

4.2.3 Actions that lead to violations of the intellectual property rights of BlueID or third parties are prohibited.

4.2.4 Any use that impairs or disrupts the proper operation, availability, or security of the Service is prohibited.

5. API Usage, Rate Limiting, and Fair Use

5.1 API Usage and Rate Limits

5.1.1 The following limits apply to API calls per second and differentiate between regular read/write accesses and "batch" operations. In the Free and Smart rates, API usage is not enabled.

Rate Read Operations
(GET)
Batch Requests
(GET)
Write Operations
(POST, PUT, PATCH, ...)
Professional 3 requests
per second
1 request
per second
1 request
per second
Integrator 10 requests
per second
3 requests
per second
5 requests
per second

Table 1: API limits per second (single requests and batch requests)

5.1.2 In addition to the per-second limits, a rolling 60-second time window applies to mitigate short-term load spikes. If a user exceeds the following maximum values within 60 seconds, BlueID may reject further requests or temporarily suspend access.

Rate Read Operations
(GET)
Write Operations
(POST, PUT, PATCH, ...)
Professional 200 requests
per 60 sec.
70 requests
per 60 sec.
Integrator 700 requests
per 60 sec.
300 requests
per 60 sec.

Table 2: API limits in the 60-second rolling window

5.1.3 "Batch Request" refers to a single query (e.g., a GET request) that returns up to 100 records in one step. Once the above limits are exceeded, BlueID may reject additional API calls with the HTTP status code 429 (Too Many Requests) or temporarily suspend access.

5.1.4 Exceeding the limits does not relieve BlueID of the obligation to provide the agreed interfaces; however, any additional support or liability obligations related to exceeding the limits are expressly excluded.

5.1.5 BlueID reserves the right to adjust the stated rate limits with a notice period of at least 30 days.

5.2 Fair Use

5.2.1 Users agree to use the APIs and other functionalities of the Service within a reasonable scope to ensure optimal performance for all customers.

5.2.2 Excessive or abusive use – especially if error responses account for more than 5% of daily requests – may lead to additional rate limits, fees, or suspension of API access.

6. User Obligations and Security Commitments

6.1 Users are fully responsible for all activities that occur under their accounts and must implement appropriate technical and organizational security measures.

6.2 In the event of suspected unauthorized access or security incidents, BlueID must be notified immediately.

6.3 The Service is to be used exclusively in accordance with the usage guidelines set out in the Documentation, these Terms of Use, and all applicable legal provisions.

6.4 Users agree to immediately report any abuse, security vulnerabilities, or other incidents that impair or disrupt the proper operation of the Service to BlueID.

7. Intellectual Property Rights

7.1 BlueID retains all rights, titles, and interests in the Service, the Platform, and all associated intellectual property rights.

7.2 The customer is granted only a limited, non-exclusive, and non-transferable license to use the Service in accordance with these Terms of Use and the overarching contractual documents.

7.3 Any modification or creation of derivative works based on BlueID's intellectual property requires explicit written permission.

8. Disclaimer, Limitation of Liability, and Indemnification

8.1 The Service is provided "as is"; BlueID assumes no express or implied warranties, unless otherwise provided for in the overarching contractual documents.

8.2 BlueID’s liability for damages arising from the use or non-use of the Service is limited as specified in the contractual documents.

8.3 Under no circumstances shall BlueID be liable for indirect, incidental, or consequential damages, unless there is intent or gross negligence.

8.4 The user agrees to indemnify BlueID and its affiliated companies, bodies, directors, employees, and representatives against all claims, losses, or damages arising from a breach of these Terms or unauthorized use of the Service.

9. Amendments and Adjustment Process

9.1 BlueID reserves the right to change these Terms of Use at any time.

9.2 Significant changes (e.g., major releases) will be communicated to the user at least 30 days prior to taking effect via email and/or publication on the BlueID website. For minor changes that do not substantially affect the agreed rights and obligations, prior notice may be omitted.

9.3 If the user does not raise any objections within the notice period, the amended Terms shall be deemed accepted.

10. Governing Law and Dispute Resolution

10.1 These Terms of Use as well as any disputes arising therefrom shall be governed by the laws of the Federal Republic of Germany, excluding its conflict of laws principles.

10.2 In the event of a dispute, the parties agree to first seek an amicable resolution through negotiations. Should negotiations fail, all disputes shall be subject to the exclusive jurisdiction of the courts in Munich.