Legal

Acceptable Use Policy

Version 1.0 — Effective August 6, 2026

This Acceptable Use Policy is part of the Law-O-Matic Terms of Service. Breaching it is a breach of those Terms and may result in immediate suspension of your account without refund.

1. Authorization

Submit only addresses you own, operate, or are authorized to have scanned. Do not use the Service for reconnaissance against systems you have no relationship with.

You will be asked to affirm your authorization each time you submit a domain. That affirmation is recorded against the scan.

2. Protecting the Service itself

You must not, and must not permit anyone else to:

reverse engineer, decompile, disassemble, or otherwise attempt to derive the detection rules, scoring logic, thresholds, weightings, prompts or remediation templates that underlie the Service; access the Service by any means other than the interface we provide, including scripted or automated access to the web application; scrape, harvest, or systematically extract reports, fix files, rule text or any other output; run scans for the purpose of mapping our rule set or reverse-engineering our scoring; circumvent or attempt to circumvent any rate limit, paywall, account gate, or usage metering; resell, sublicense, rent or time-share access to the Service; or use the Service, its outputs, or knowledge derived from either to build, train, improve or market a competing website compliance, audit or scanning product.

You must not use the Service's outputs as training data for a machine-learning model without our prior written permission.

3. Volume and fairness

One purchase covers one scan of one domain unless the purchase says otherwise. Do not share accounts, pool purchases across unrelated organizations, or attempt to apply a single purchase to multiple sites. We may apply rate limits and may decline to scan addresses that impose unreasonable load.

4. Prohibited content and conduct

Do not use the Service in connection with any unlawful activity, to infringe anyone's rights, to interfere with the Service or the systems of others, to introduce malicious code, or to misrepresent your identity or authorization.

5. Reporting security issues

Report suspected security vulnerabilities in the Service to [email protected] rather than disclosing them publicly, and give us a reasonable opportunity to respond. We will not pursue good-faith security research conducted within the scope of a coordinated disclosure and consistent with this policy.

6. Enforcement

We may investigate suspected breaches and may suspend or terminate access, remove content, or decline to run a scan. Where a breach is inadvertent and promptly corrected, we will normally raise it with you before acting.

Contact: Technology On Call — [email protected]