Acceptable Use

Use the scanner responsibly and only against systems you are authorised to test.

Permitted scanning

Scanning is limited to public hostnames and approved TLS ports. Obtain written authorisation when assessing a customer, partner, or employer system.

Prohibited activity

Do not use the service for unauthorised reconnaissance, disruption, vulnerability exploitation, evasion, credential attacks, malware delivery, privacy violations, or attempts to reach private and metadata networks.

Operational limits

Do not bypass concurrency, rate, hostname, or port controls. Accounts and scans may be suspended when activity threatens the service or another system.