Acceptable Use Policy
The activities permitted and prohibited when using CyberRecon’s domain intelligence and monitoring capabilities.
Last updated 28 August 2026Permitted defensive use
- Assess public domains you own or are expressly authorized to test.
- Monitor approved client domains under a current written engagement.
- Use results to prioritize remediation, validate configuration changes, and produce defensive reports.
- Demonstrate CyberRecon using reserved or intentionally controlled test assets.
Prohibited activity
- Scanning targets without ownership or authorization.
- Attempting to access accounts, data, systems, or services beyond the reported public metadata.
- Running exploitation, credential attacks, denial-of-service activity, malware delivery, spam, fraud, phishing, or surveillance.
- Evading rate limits, ownership controls, target validation, authentication, billing limits, or service protections.
- Collecting, publishing, or retaining personal or confidential data unrelated to a legitimate authorized assessment.
- Using results to threaten, extort, harass, discriminate, or facilitate unlawful activity.
Enforcement
CyberRecon may pause scans, restrict features, suspend accounts, preserve relevant security records, or report activity where reasonably necessary to protect users, providers, third parties, or comply with law. Serious or repeated violations may result in termination without restoring consumed service capacity.
Report concerns
Send suspected abuse to support@cgreglab.space with the relevant domain, time, and evidence. Do not include passwords, tokens, or unnecessary personal data.