What this covers
Terms of Service: clear expectations for safe operation.
Plain-language policy content for customers, users, partners and researchers.
01Authorised use
- ThreatCanary services may only be used by authorised users and only against approved assets, APIs and environments.
- Customers are responsible for maintaining accurate scope, credentials, contacts and approvals.
- Users must not attempt to bypass platform safety controls, role permissions or contractual boundaries.
02Service expectations
- ThreatCanary provides security discovery, analysis, validation, evidence and workflow capabilities.
- Outputs should be reviewed by qualified personnel before operational, legal or compliance decisions are made.
- Availability, support, security, confidentiality and commercial terms are governed by the applicable agreement.
03Customer responsibilities
- Keep account access secure and notify ThreatCanary of suspected unauthorised access.
- Provide only credentials, logs, scopes and data that the customer is authorised to use for testing.
- Use findings and evidence responsibly and avoid disclosure that could create unnecessary risk.
04Formal agreement
- This page is a plain-language summary for website visitors and platform users.
- Signed customer agreements, order forms and policies control the legal relationship.
- Contact ThreatCanary for contract, procurement or security review questions.