This Acceptable Use Policy governs your use of Luretrace honeypot sensors, the console platform, and any associated threat intelligence products.
Permitted Uses
- Deploying sensors on networks and systems you own or operate.
- Deploying sensors on third-party networks pursuant to a written security assessment or managed security services agreement.
- Using captured threat intelligence for defensive security operations, incident response, and threat hunting.
- Sharing IOCs (indicators of compromise) derived from captured data with threat intelligence sharing communities (ISAC, FS-ISAC, etc.) in accordance with the TLP framework.
- Academic and security research using properly isolated lab environments.
Prohibited Uses
- Deploying sensors on networks or systems without authorization from the owner.
- Using captured credentials, payloads, or malware samples to conduct offensive operations against any third party.
- Re-using or redistributing captured malware samples for purposes other than defensive analysis.
- Using the platform to harass, stalk, or target any individual or organization.
- Attempting to circumvent platform security controls or access data belonging to other users.
- Using CVE simulation modules to test production systems without explicit authorization and a documented change window.
Responsible Disclosure
If you discover a vulnerability in the Luretrace platform, please report it responsibly to security@luretrace.com before public disclosure. We will acknowledge receipt within 48 hours and work toward remediation within 90 days.
Enforcement
Violations of this policy may result in immediate suspension of access, termination of your account, and referral to law enforcement authorities where appropriate.