1. Scope
This policy applies to every person who accesses AegisOne, whether under a paid subscription, a partner arrangement or a demonstration environment. Customer is responsible for the conduct of its operators and for any third party it permits to use its tenancy.
3. Prohibited activity
You must not use AegisOne to:
- Scan, probe or test the security of networks, systems or services you are not authorised to assess.
- Gain, or attempt to gain, unauthorised access to any system, account or data, whether ours, another customer’s or a third party’s.
- Harvest, exfiltrate or misuse credentials, including credentials held in the vault, beyond the operational purpose for which access was granted.
- Distribute, stage or execute malware, ransomware, rootkits or any code intended to damage, disable or covertly control a system.
- Execute destructive commands against endpoints without authority, including mass deletion, encryption, disabling security controls or rendering systems unbootable.
- Mine cryptocurrency, or otherwise consume compute, storage or bandwidth for purposes unrelated to endpoint management.
- Send unsolicited bulk messages, spam or phishing content from or through the platform.
- Conduct covert surveillance of individuals, including using remote screen or terminal access to observe a person without a lawful basis and without the notice their jurisdiction requires.
- Circumvent authentication, rate limits, quotas, tenancy boundaries or any other technical control.
- Stress test, load test or otherwise deliberately degrade the platform, or resell access outside an executed partner agreement.
- Store or process content that is unlawful, or that infringes another party’s rights.
4. Resource use
The platform is provided for endpoint management workloads at a scale consistent with your subscription. Sustained use that materially degrades service for other customers may be rate limited or suspended. Where we can, we will contact you before acting.
5. Security research
Good-faith security research conducted under our Vulnerability Disclosure Policy is not a breach of this policy. Research conducted outside that policy — particularly against other customers’ tenancies or data — is.
6. Enforcement
We may investigate suspected breaches and may suspend access where there is a credible risk to the platform, to other customers or to third parties. We will give notice and an opportunity to remedy where circumstances reasonably allow.
Serious or repeated breaches may result in termination under the Terms of Service. We will report unlawful activity to the relevant authorities where required.
To report a suspected breach of this policy, contact abuse@aegisone.lynxclub.ph.