Legal / Acceptable Use Policy

Acceptable Use Policy

Boundaries for lawful and responsible use of the website and security operations capabilities.

Revision prepared 2026-09-13 · Draft for business and legal review

This policy is a prepared draft. The contracting legal entity, registered address, and direct privacy contact still require confirmation before this notice can be treated as final.

Use within your authority

Use the public website lawfully. When this policy is incorporated into a service agreement, use GuardNex AI only with systems, identities, telemetry, and workflows that you are authorized to access and process.

The platform’s security purpose does not grant authority to monitor, investigate, or change a third party’s environment.

Prohibited activity

  • Unauthorized access, exploitation, surveillance, or collection of another person’s information.
  • Credential theft, phishing, malware distribution, or disruption of systems.
  • Attempts to evade access controls, approval gates, service limits, or security monitoring.
  • Submission of unlawful, deceptive, abusive, or rights-infringing content.
  • Interference with the availability, integrity, or confidentiality of the website or service.
  • Use of security data for unrelated purposes without a lawful basis and appropriate permission.

Protect the data you submit

Minimize personal information, restrict access according to role, and avoid unnecessary secrets in logs or prompts. Public contact forms are for business inquiries, not confidential investigation evidence.

Follow your organization’s policies and applicable laws when connecting data sources or transferring security information.

Review AI output and response actions

Verify important AI outputs against evidence and retain appropriate human oversight. Obtain authorization for consequential actions, including account changes, token revocation, endpoint isolation, or production remediation.

Do not use the service to make unsupported accusations or consequential decisions about individuals without the required review and lawful basis.

Handling misuse

Service-specific procedures for investigating misuse, restricting access, suspension, and termination should be defined in the applicable agreement. Nothing on this page limits rights that cannot lawfully be limited.

Report a concern through the contact page or use the responsible disclosure process for a suspected vulnerability.