Acceptable Use Policy
Last updated: May 29, 2026
1. Purpose
This Acceptable Use Policy ("AUP") governs your use of ShadeGPT ("the Service"), including its AI models, security and reconnaissance tools, vulnerability research features, code execution sandbox, file analysis, web access, and any connected integrations. It supplements, and is incorporated into, our Terms of Service. By using the Service you agree to this AUP. We may suspend, restrict, or terminate access for any violation.
2. Authorized Use Only
The Service provides powerful offensive- and defensive-security capabilities, including network scanning, port and service discovery, subdomain enumeration, SSL/TLS inspection, domain and IP intelligence, vulnerability and exploit research, breach and credential exposure lookups, hash analysis, and binary inspection. You may use these capabilities only against systems, networks, domains, accounts, files, and data that you own or are explicitly authorized in writing to test.
You are solely responsible for obtaining all required authorizations before using any tool, and for complying with all applicable laws, regulations, contracts, bug-bounty program rules, workplace policies, and the terms of any third party you interact with through the Service.
3. Prohibited Activities
You must not use the Service to:
- Scan, probe, enumerate, attack, disrupt, or attempt to access any system, network, or account without explicit authorization
- Develop, generate, distribute, or operate malware, ransomware, spyware, botnets, or phishing infrastructure
- Harvest, validate, sell, or otherwise misuse credentials, tokens, session cookies, breach data, or personal information
- Conduct denial-of-service attacks, credential stuffing, brute forcing, or other abusive automation against any target
- Evade, disable, or interfere with security controls, rate limits, abuse controls, or access restrictions — ours or anyone else's
- Violate the terms, acceptable-use rules, or rate limits of any upstream provider or data source the Service relies on (including search, reputation, breach, vulnerability, and AI model providers)
- Resell, redistribute, or provide automated/bulk access to the Service or its upstream data sources without authorization
- Target critical infrastructure, government systems, or any third party in a manner prohibited by law
- Generate content that is illegal, that facilitates harm to others, or that violates the rights of others
- Use the Service in any way that creates legal risk, abuse complaints, or operational harm for the Service or its other users
4. Tool and Sandbox Conduct
The code execution sandbox and security tools are provided for legitimate research, development, education, and defensive purposes. You must not use them to stage attacks, host malicious content, mine cryptocurrency, exfiltrate data, or circumvent the isolation, resource, or network controls of the sandbox environment.
5. Enforcement
We may, at our discretion and without prior notice, investigate suspected violations; limit, suspend, or terminate accounts; restrict or revoke tool access; remove content; preserve and disclose records as required by law or to protect the Service and others; and cooperate with law enforcement. Violations may also be reported to affected third parties and upstream providers.
6. Reporting Abuse
If you believe the Service is being used in violation of this AUP — including unauthorized scanning, credential theft, malware, harassment, or other harmful activity — report it to abuse@mail.shadegpt.app. Please include relevant details such as timestamps, source identifiers, URLs, affected systems, and logs where available.
7. Changes to This Policy
We may update this AUP from time to time. Continued use of the Service after any changes constitutes acceptance of the updated policy. We will update the "Last updated" date accordingly.