This Acceptable Use Policy applies to anyone accessing the AetherGuard Technologies client portal at client.aetherguard.xyz (the "Portal"). It is part of our Terms of Service. Because AetherGuard is a security company, we hold ourselves and our clients to a clear standard here: the Portal is a business tool, not a target.
Unless a specific, currently active engagement explicitly authorizes it in writing, do not scan, probe, fuzz, exploit, or attempt to bypass authentication, authorization, or rate limiting on the Portal or any other AetherGuard-operated system. If you believe you've found a security issue in the Portal itself, please report it responsibly per Section 5 rather than continuing to test it.
Do not attempt to view, modify, or infer another client's tickets, billing information, engagement records, or account details, including by manipulating URLs, request parameters, or file identifiers. Every account-scoped action in the Portal is checked server-side against your own client and user IDs; attempting to work around that check is a violation of this policy regardless of whether the attempt succeeds.
If you discover a vulnerability in the Portal, please report it to us before taking any further action, through a support ticket marked "Security" or by emailing support@aetherguard.xyz. Good faith reports made through this channel, without accessing data beyond what is needed to demonstrate the issue, will not be treated as a violation of this policy.
Violations of this policy may result in a warning, suspension, or termination of Portal access, and, where the conduct is severe (for example, an actual attempt to breach another client's data or AetherGuard's own systems), referral to law enforcement. We aim to be proportionate: most first-time, low-severity issues are handled with a conversation, not a lockout.