Acceptable Use Policy
Status: v1.4 policy. Effective at general availability.
Aletheia is a defensive binary reverse-engineering and vulnerability-research laboratory. You may use it only on software and systems you own, are authorized to test, or may lawfully research.
You must not use Aletheia to:
- access, disrupt, damage, extort, surveil, or exfiltrate from systems without authorization;
- develop, deploy, or operate malware, ransomware, credential theft, botnets, destructive payloads, or unauthorized persistence;
- evade sanctions, export controls, law-enforcement orders, or platform abuse controls;
- upload unlawful material, personal data you have no right to process, or third-party secrets unrelated to an authorized security engagement;
- attack Aletheia, other tenants, its providers, or its operational limits;
- misrepresent diagnostic leads as proven vulnerabilities or remove evidence provenance from reports; or
- use automated access in a way that defeats quotas, capacity limits, or reasonable operator instructions.
Research involving dual-use techniques is permitted when it is authorized, proportionate, and directed toward defensive validation, remediation, or responsible disclosure. We may throttle, suspend, preserve relevant operational records, or terminate access when necessary to protect customers, providers, or the public. Suspected abuse may be reported to [email protected].
Last reviewed: 2026-07-19.