1. Prohibited content & activity
You may not use the Service to:
- Break any law, regulation or court order in any jurisdiction where you operate or where the data is received.
- Infringe intellectual-property rights, including by uploading content you don't have the rights to.
- Process personal information in violation of POPIA, GDPR, UK GDPR, CCPA/CPRA or equivalent laws.
- Upload malware, exploit code, or test attack payloads outside of an authorised security test.
- Harass, defame, threaten or discriminate against any person.
- Generate or distribute CSAM, non-consensual intimate imagery, or content designed to facilitate fraud, terrorism or weapons of mass destruction.
2. System integrity
- No probing, scanning, or testing the vulnerability of any system or network without our written permission. See our Vulnerability Disclosure Programme for the safe-harbour path.
- No bypassing or attempting to bypass authentication, rate-limits, tenant isolation, or access controls.
- No interfering with another customer's use of the Service.
- No automated scraping that materially affects performance for other users.
3. API & integration use
- Respect documented rate limits. Repeated 429s without backoff may result in temporary suspension.
- Keep API keys and webhooks secret. Rotate immediately on suspected compromise.
- Send only the minimum personal data needed; honour the purpose limitation in the originating consent.
4. OT / industrial integrations
For MQTT and IIoT integrations, you are responsible for ensuring devices are commissioned in line with IEC 62443 baseline guidance — unique credentials per device, signed firmware where available, and network segmentation between OT and IT.
5. AI features
Do not submit sensitive personal data, secrets, or third-party confidential information into AI features unless you are authorised to do so. See our AI Policy.
6. Enforcement
We may investigate suspected violations, suspend or terminate access without notice for serious or repeated breaches, and cooperate with law-enforcement requests where legally required. Where appropriate, we will give you a reasonable opportunity to remediate first.
7. Reporting abuse
Report suspected abuse, takedown requests, or AUP violations to abuse@cyntech.co.za. Security issues should go to security@cyntech.co.za under our disclosure programme.
