Terms and Conditions
Effective Date: September 10, 2026
These Terms and Conditions govern your use of One Access Panel, a MikroTik Hotspot Dashboard operated by OG Pisofi Network and Data Solutions ("Provider," "we," "us"). By accessing or using the Service, you agree to these Terms. If you disagree, do not use the Service.
1. The Service
One Access Panel is a web-based dashboard for managing MikroTik RouterOS 7.x hotspots. It monitors live traffic, manages hotspot, PPPoE, and IPoE subscribers, tracks sales from vending machines, and records network health metrics. The Provider operates the dashboard and payment system; operators connect their own MikroTik routers to the platform.
Plans:
- Starter: 1 router, hotspot and PPPoE management, Quick User with the One Access sales label, live traffic, activity history, ping diagnostics. 150 PHP per month.
- Pro: 3 included routers, plus IPoE service areas, Sales Insight, Network Health, and Quick User with custom machine names. 500 PHP per month.
- Extra routers beyond the plan allocation: 100 PHP per month each. Maximum 8 extra routers per account.
2. Accounts and Access
Only administrators create accounts. There is no self-registration. New accounts inherit a default plan (Starter) and a 30-day billing cycle starting at creation.
Each operator manages hotspot users through the dashboard. Those hotspot users are not parties to this agreement. Their use of the hotspot is governed by the operator's own policies.
You are responsible for the security of your login credentials and for all activity under your account. The Provider can disable or delete any account except the Administrator account. The Provider can impersonate operator accounts for support purposes; impersonation events are logged in the activity history.
3. Router Connection
The Service connects to your MikroTik router using credentials you provide. Router passwords are stored encrypted in the database. The connection uses the native MikroTik API over API-SSL. TLS certificate verification is disabled because MikroTik devices commonly use self-signed certificates.
You grant the Service permission to read and write configuration on your router. This includes creating and deleting hotspot users, managing PPPoE secrets and profiles, applying queue types, and executing system scripts. The Service does not modify router firmware or core system settings.
You are responsible for the availability and security of your router and network. The Provider is not liable for data loss, service interruption, or security incidents on your MikroTik device.
4. Payments and Billing
Prices are in Philippine pesos. Payment methods: e-wallet or bank transfer. The current methods and account details appear on the Plan Status page. There is no automated billing system. You submit a payment reference number through the order form, and the team verifies it manually. Account activation or renewal happens within 24 hours of verification. Billing cycles run 30 days from activation.
There are no refunds. Cancellation stops future renewals; current access continues until the billing period ends. The Provider does not collect or store payment card information. Third-party payment providers (e-wallet providers and banks) have their own terms and fees.
Plan prices are not fixed and may change. The prices shown on the pricing page at renewal time apply. A price change never affects a billing cycle already paid for.
5. Data Collection
The Service stores:
- Your account credentials, plan, subscription status, and payment history.
- Your MikroTik router configuration (URL, API username, API password), stored encrypted.
- Your IP address and approximate location (city, region, country, ISP) on each login, resolved through ip-api.com and cached for 24 hours. This lookup sends your IP address to ip-api.com over HTTP.
- Session cookies (httpOnly, 12-hour expiry) for authentication only. These cookies contain no tracking data.
- Router telemetry: CPU usage, memory usage, throughput, hotspot and PPPoE session counts, ping latency, uptime incidents.
- Session logs: usernames, IPs, MAC addresses, byte counts, session duration.
- Sales data: transaction amounts, machine names, voucher codes (if synced from MikroTik scripts).
- Bug reports you submit, including any optional files or contact information.
6. Data Retention
The Provider applies retention policies that delete data after set periods. Default (Standard policy):
- Health snapshots, uptime incidents, session logs: 35 days.
- Ping results: 90 days.
- Sales transactions: no expiry.
- Bug reports: 120 days.
- Activity history: 1,000 events per operator.
The system runs an hourly sweep that enforces these limits. Admins can assign different policies (Extended at 90 days, Compliance at 365 days, Minimal at 7 days) and override individual operators. Admins can also purge specific data types (health, sales, ping, history) on demand through the Data Retention dashboard.
When an account is deleted, the Provider removes all associated data: payments, history, health snapshots, sessions, sales, ping results, and router configuration.
7. Demo Mode
Demo sessions are available without registration. Limits apply: 30-minute session lifetime, 2 concurrent demos per IP address, 20 concurrent demos globally, 60-second cooldown between demo creations per IP. Demo data connects to a mock router, not your real device. All demo data is automatically purged when the session expires.
8. Rate Limits and Security
The Service enforces a global rate limit of 1,000 requests per IP address per 15-minute window. Exceeding this returns an HTTP 429 response with a Retry-After header.
Failed login attempts are throttled: 10 failures within the lockout period triggers a 30-minute account lock. A 300-millisecond delay applies to each failed login attempt. Login throttling is keyed per IP per username.
Passwords must be at least 8 characters, containing at least one letter and one number. Passwords are stored hashed and never in plaintext.
9. Storage Quotas
Admins can set storage quotas per operator. The system tracks row counts across all data tables and flags operators exceeding the configured limit (default: 1,000,000 rows). This is a soft alert. The Service does not block data ingestion when quotas are exceeded. Retention policies and on-demand purges are managed by the Provider. Operators can reduce their stored data by deleting their own sales transactions, collections, and history entries, or by asking the Provider to shorten their retention policy or purge data.
10. Availability
The Service does not guarantee uptime. The dashboard runs on infrastructure controlled by the Provider. Scheduled maintenance, outages, and disruptions may occur without advance notice. Availability here means the dashboard itself is reachable; router, ISP, and payment outages are excluded.
If dashboard availability drops below 99% in a calendar month, affected operators may claim a service credit within 7 days after that month ends by contacting support with the affected dates. The credit extends the subscription by one day for each full 24 hours of downtime, up to 30 days, applied through the subscription renewal option. No other compensation applies.
11. Support
Support is available through email, live chat, and the in-app bug report system. The bug report system accepts text descriptions and optional file attachments. There is no phone support. Response times vary. The Provider may request additional information to resolve reported issues.
12. Acceptable Use
You agree to:
- Use the Service only for managing MikroTik hotspots you own or administer.
- Keep your login credentials secure and not share your account.
- Not attempt to circumvent rate limits, authentication, or access controls.
- Not use the Service to scan, probe, or attack networks other than your own.
- Not resell, sublicense, or redistribute the Service without written permission.
The Provider reserves the right to suspend or terminate accounts that violate these terms.
13. Termination
Either party can end the agreement. You can stop using the Service at any time. The Provider can suspend or terminate your account with written notice for abuse, non-payment, or violation of these Terms.
On termination or account deletion, the Provider purges all operator data. The Provider retains no copies of your data after deletion. Export your data before account deletion; the Provider cannot recover deleted data.
14. Modifications
The Provider may update these Terms. Material changes will appear as an in-app announcement or login notice. Continued use of the Service after changes take effect constitutes acceptance. If you disagree with revised Terms, stop using the Service and request account deletion.
15. Limitation of Liability
The Provider's total liability under these Terms does not exceed the fees paid for the most recent billing month. The Provider is not liable for indirect, incidental, or consequential damages, including data loss, business interruption, or loss of profits.
The Provider is not liable for: router outages or configuration errors, ISP or network failures, third-party payment processing delays, data loss from retention policy enforcement, or security incidents on your MikroTik device.
16. Governing Law
These Terms are governed by the laws of the Republic of the Philippines. Any dispute arising from these Terms or the Service falls under the jurisdiction of the courts of Antipolo City, Rizal.
17. Privacy
The Service collects IP-based geolocation data through ip-api.com, a third-party service. ip-api.com's own privacy policy governs that data. The Service stores session cookies for authentication only; these cookies contain no tracking data and expire after 12 hours.
The Administrator can access all operator accounts and impersonate them for support purposes. Impersonation is logged. The Provider does not sell, share, or disclose operator data to third parties except as required by law or for the ip-api.com geolocation lookup.
Operators control what hotspot user data is collected through their router configuration and retention policies. The Provider does not access hotspot user data independently.
18. Contact
For questions about these Terms, contact us through the in-app bug report system, live chat on our website, or by email at the address listed on our website.
*OG Pisofi Network and Data Solutions*