TDAM TD Asset Management Warehouse package tracking

Acceptable Use Policy

Last Updated: July 12, 2026

Purpose

This Acceptable Use Policy establishes requirements for the proper use of TD Asset Management (“TDAM”).

TDAM is an internal business application used to track warehouse packages, storage locations, package movements, pickups, deliveries, related documentation, and user activity.

All users must use TDAM responsibly, securely, and only for authorized business purposes.

Authorized Use

Users may access TDAM only:

  • Through an authorized user account.
  • For legitimate job-related activities.
  • Within the permissions assigned to their role.
  • In compliance with organizational policies and procedures.
  • Using approved devices, networks, and authentication methods.

Access must not be used for personal gain, unrelated business, or unauthorized activities.

Account Security

Users must:

  • Protect passwords and authentication credentials.
  • Use only their own account.
  • Prevent unauthorized access to logged-in devices.
  • Log out or lock unattended devices.
  • Report suspected account compromise promptly.
  • Follow applicable multifactor-authentication requirements.
  • Avoid saving credentials on public or shared devices.

Users must not share accounts or credentials.

Appropriate Data Entry

Users must enter information that is accurate, relevant, and appropriate for the business process being performed.

Users must not knowingly enter:

  • False package information.
  • Misleading status updates.
  • Incorrect pickup or delivery confirmations.
  • Fictitious signatures.
  • Inappropriate notes.
  • Information intended to harass or embarrass another person.
  • Unnecessary sensitive personal information.
  • Information unrelated to warehouse or package-management activities.

Package Activity

Users must record package activity honestly and at the appropriate time.

Users must not:

  • Mark a package as received when it has not been received.
  • Mark a package as picked up by the wrong person.
  • Mark a package as delivered or accepted when that event has not occurred.
  • Change storage locations to conceal or misrepresent package movement.
  • Delete, erase, or archive records to hide an error or unauthorized activity.
  • Assign a QR code to an incorrect package intentionally.
  • Use another person’s electronic signature or confirmation.

Errors should be corrected through authorized procedures and documented when appropriate.

Files and Images

Files uploaded to TDAM must be relevant to authorized operations.

Permitted files may include:

  • Package photographs.
  • Packing slips.
  • Delivery records.
  • Shipping documentation.
  • Damage photographs.
  • Storage-location photographs.
  • Other approved business records.

Users must not upload:

  • Malware or executable code intended to cause harm.
  • Personal photographs unrelated to business operations.
  • Offensive, discriminatory, threatening, or obscene material.
  • Copyrighted material without authorization.
  • Confidential information that is unnecessary for the applicable record.
  • Government identification numbers, financial-account information, medical information, or other highly sensitive personal information unless specifically required and authorized.

Confidential Information

Users must protect confidential information contained in TDAM.

Users must not:

  • Share TDAM records with unauthorized individuals.
  • Send TDAM information to personal email accounts.
  • Post TDAM information on social media.
  • Upload TDAM information to unauthorized cloud-storage or artificial-intelligence services.
  • Copy information to unapproved removable media.
  • Leave printed reports or QR labels unsecured.
  • Photograph or record TDAM screens for an unauthorized purpose.

Security Restrictions

Without written authorization, users must not:

  • Probe, scan, or test the security of TDAM.
  • Attempt to gain elevated permissions.
  • Bypass authentication or role controls.
  • Manipulate URLs or requests to access restricted records.
  • Inspect, alter, or extract database information.
  • Inject scripts, SQL, code, or other commands.
  • Disable security, logging, or monitoring features.
  • Use automated tools to scrape or copy information.
  • Interfere with another user’s access.
  • Attempt to overload or disrupt the system.
  • Install unauthorized plugins, themes, or software.

Suspected vulnerabilities should be reported privately to the appropriate Information Technology or Information Security contact.

Email and Notifications

TDAM may send operational email notifications.

Users must not:

  • Alter notifications to misrepresent package activity.
  • Forward confidential package information to unauthorized recipients.
  • use notification features to send spam or unrelated messages.
  • Intentionally trigger excessive or false notifications.

Unexpected or misdirected notifications should be reported.

Shared and Mobile Devices

When using TDAM on a shared, mobile, warehouse, or scanning device, users must:

  • Confirm they are signed into the correct account.
  • Prevent unauthorized individuals from viewing package information.
  • Log out when finished when required.
  • Secure the device against loss or theft.
  • Avoid storing unnecessary files locally.
  • Report lost or stolen devices promptly.

Respectful Use

Users must interact professionally when entering notes, descriptions, comments, partner information, or other content.

TDAM must not be used to:

  • Harass or threaten others.
  • Discriminate against individuals or groups.
  • Impersonate another person.
  • Publish insulting or defamatory statements.
  • Retaliate against a person who reports a concern.
  • Conduct surveillance for an unauthorized purpose.

Monitoring

System usage may be logged and reviewed for security, operational, troubleshooting, auditing, and compliance purposes.

Logged activity may include:

  • Login activity.
  • Page and feature usage.
  • Package changes.
  • QR scans.
  • Pickup and delivery actions.
  • File uploads.
  • Administrative changes.
  • Date, time, user, device, and network information when available.

Reporting Problems

Users should promptly report:

  • Suspected unauthorized access.
  • Lost or stolen devices.
  • Incorrect permissions.
  • Suspicious QR codes.
  • Inaccurate package records.
  • Unexpected data exposure.
  • System vulnerabilities.
  • Malicious files.
  • Misuse of another person’s account.
  • Unexplained changes to package information.

Reports should be made through the organization’s approved support, management, Information Technology, or Information Security process.

Enforcement

Failure to follow this policy may result in:

  • Removal or limitation of TDAM access.
  • Reversal or correction of system activity.
  • Investigation.
  • Disciplinary action.
  • Referral to management, Human Resources, Information Technology, Information Security, Legal, or law enforcement when appropriate.

Policy Changes

This Acceptable Use Policy may be revised periodically.

Users are responsible for complying with the current version whenever they access TDAM.

Contact

Questions about acceptable use should be directed to the TDAM administrator, Information Technology department, Information Security department, or another designated organizational contact.