Legal

Acceptable Use Policy

DRAFT — not yet in force. Prepared to support legal review; this is not legal advice and binds no one yet. Items in [brackets] must be completed by counsel. The registered legal entity behind Ferrite Security is available on request — contact admin@ferritesec.com — and should be named here directly rather than inserted as a personal name. Where this conflicts with the counsel-reviewed EULA or Terms, those control.

Related drafts: Security · Open-source notices · Export & sanctions · Data Processing Addendum

This Acceptable Use Policy ("AUP") supplements the EULA and Terms of Service. It governs how you may use Ferrite's visibility, deep-inspection, DNS, and enforcement capabilities. Ferrite is a powerful network tool; these rules keep its use lawful.

1. Only systems you own or are authorized to administer

You may observe, inspect, filter, or block network traffic with Ferrite only on devices and networks you own or have explicit authorization to administer. Using Ferrite to intercept, inspect, or log the communications of other people, or of systems you are not authorized to monitor, may violate interception and computer-misuse laws — for example the U.S. Electronic Communications Privacy Act and Computer Fraud and Abuse Act, and equivalent laws in your jurisdiction.

2. Lawful purpose

You are responsible for complying with all laws that apply to you. In some jurisdictions the use of firewalls, deep-packet inspection, encrypted DNS, or filtering-circumvention tools is regulated or restricted. You must satisfy yourself that your use is lawful where you are.

3. No harmful or abusive use

Do not use Ferrite to attack, disrupt, degrade, or gain unauthorized access to any system; to evade security controls you are not permitted to bypass; or to facilitate surveillance of individuals without a lawful basis and any consent the law requires.

4. Deploying to devices used by others (employees, clients, family)

If you deploy Ferrite on devices used by other people — an employer managing staff machines, a managed-service provider managing client machines, or an administrator managing shared devices — you are responsible for providing any notice, lawful basis, and consent required by law, including employee-monitoring, works-council, and data-protection rules (which are strict in the EU/EEA and vary by U.S. state). Business customers processing personal data this way should request our Data Processing Addendum. Ferrite must not be deployed for covert surveillance where the law requires transparency.

5. Export controls & sanctions

Ferrite contains cryptography and is subject to export-control and sanctions law. You may not use, export, or re-export it in violation of those laws, or make it available to sanctioned persons or embargoed regions. See our Export Compliance & Sanctions Notice.

6. Dual-use inspection features

Deep-inspection signals (such as SNI, ALPN, and JA3/JA4 fingerprints), DNS control, and connection enforcement are provided to help you defend systems you control. Using them to intercept or profile third parties is prohibited under §1.

7. Consequences of violation

Use that breaches this AUP is a material breach of the EULA and may result in suspension or termination of your license under its terms. On termination the Software falls back to Free-tier behavior; your local configuration is not deleted.

← Back to home · Questions: admin@ferritesec.com