Prohibited activity
- Unauthorized access, exploitation, surveillance, or collection of another person’s information.
- Credential theft, phishing, malware distribution, or disruption of systems.
- Attempts to evade access controls, approval gates, service limits, or security monitoring.
- Submission of unlawful, deceptive, abusive, or rights-infringing content.
- Interference with the availability, integrity, or confidentiality of the website or service.
- Use of security data for unrelated purposes without a lawful basis and appropriate permission.
Protect the data you submit
Minimize personal information, restrict access according to role, and avoid unnecessary secrets in logs or prompts. Public contact forms are for business inquiries, not confidential investigation evidence.
Follow your organization’s policies and applicable laws when connecting data sources or transferring security information.
Review AI output and response actions
Verify important AI outputs against evidence and retain appropriate human oversight. Obtain authorization for consequential actions, including account changes, token revocation, endpoint isolation, or production remediation.
Do not use the service to make unsupported accusations or consequential decisions about individuals without the required review and lawful basis.
Handling misuse
Service-specific procedures for investigating misuse, restricting access, suspension, and termination should be defined in the applicable agreement. Nothing on this page limits rights that cannot lawfully be limited.
Report a concern through the contact page or use the responsible disclosure process for a suspected vulnerability.